ISO/IEEE 11073-40101

PECB Store

View profile

ISO/IEEE 11073-40101:2022

(0 customer reviews)


ISO/IEEE 11073-40101:2022 Health informatics — Device interoperability — Part 40101: Foundational — Cybersecurity — Processes for vulnerability assessment

*Taxes or charges may apply. The final price, including any applicable taxes, will be calculated at checkout.

USD 192.00

Within the context of secure plug-and-play interoperability, cybersecurity is the process and capability of preventing unauthorized access or modification, misuse, denial of use, or the unauthorized use of information that is stored on, accessed from, or transferred to and from a PHD/PoCD. The process part of cybersecurity is risk analysis of use cases specific to a PHD/PoCD.

For PHDs/PoCDs, this standard defines an iterative, systematic, scalable, and auditable approach to identification of cybersecurity vulnerabilities and estimation of risk. This iterative vulnerability assessment uses the Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege (STRIDE) classification scheme and the embedded Common Vulnerability Scoring System (eCVSS). The assessment includes system context, system decomposition, pre-mitigation scoring, mitigation, and post-mitigation scoring and iterates until the remaining vulnerabilities are reduced to an acceptable level of risk.

Standard Number ISO/IEEE 11073-40101:2022
Title ISO/IEEE 11073-40101:2022 Health informatics — Device interoperability — Part 40101: Foundational — Cybersecurity — Processes for vulnerability assessment
Status Published
Publication Date 17 Mar 2022
Committee ISO/TC 215 Health informatics
Publisher PECB Store
Format PDF
Pages 38
Price USD 192.00
There are no reviews for this product yet

PECB Store

View profile