How Can Standardised Certification programs and Government Regulations Influence IoT Security in the Healthcare Sector
2025 (English)Independent thesis Basic level (degree of Bachelor), 20 credits / 30 HE credits
Student thesis
Abstract [en]
This thesis aims to analyse the influence of certification standards and government regulation on the security of Internet of Things (IoT) technologies in the health sector. The data for this study was collected through a systematic literature review (SLR) and expert interviews. The study attempts to highlight the challenges that arise from fragmentation in standards, inconsistent certifications, and jurisdictional variations. It unveiled that IoT devices prioritise functionality over security and lack security-by-design principles. Some standards exist, such as International Organization for Standardization (ISO), the National Institute of Standards and Technology (NIST), and the European Telecommunications Standards Institute (ETSI). However, their overlapping guidelines and generalisations about IoT currently make implementation in small municipalities and organisations an expensive and highly impractical undertaking. In addition, the study highlights that existing laws and regulations, such as General Data Protection Regulation (GDPR) and the Medical Device Regulation (MDR), or other European Union (EU) initiatives, are far too broad and too slow to respond to changing threats. The findings indicate a need for regulatory collaboration, scalable certification schemes, and better support for smaller municipalities.
Place, publisher, year, edition, pages
2025. , p. v, 110
Keywords [en]
Internet of Things (IoT), Healthcare, Standardisation, Certification programs, Government Regulations, Cybersecurity, Data Privacy
National Category
Information Systems Information Systems, Social aspects
Identifiers
URN: urn:nbn:se:his:diva-25434OAI: oai:DiVA.org:his-25434DiVA, id: diva2:1981547
Subject / course
Informationsteknologi
Educational program
Network and Systems Administration
Supervisors
Examiners
Note
Examensarbete i informationsteknologi med inriktning mot nätverks- och systemadministration G2E, 30 hp.
2025-07-042025-07-042025-09-29Bibliographically approved