
{"id":9810,"date":"2021-10-14T15:03:46","date_gmt":"2021-10-14T13:03:46","guid":{"rendered":"https:\/\/ticsalutsocial.atoom.space\/noticia\/requisits-seguretat-apps-salut\/"},"modified":"2021-11-02T16:31:13","modified_gmt":"2021-11-02T14:31:13","slug":"requisits-seguretat-apps-salut","status":"publish","type":"noticia","link":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/","title":{"rendered":"Security requirements in health applications"},"content":{"rendered":"\n<p>The Office of the Data Protection Officer is providing Healthcare organizations with a new document to verify and guarantee that health applications that deal with personal data meet the minimum and desirable requirements in terms of information security.<\/p>\n\n\n\n<p>In accordance with the provisions of <a href=\"https:\/\/www.ccn-cert.cni.es\/series-ccn-stic\/800-guia-esquema-nacional-de-seguridad\/5326-ccn-stic-857-requisitos-seguridad-para-aplicaciones-cibersalud\/file.html\" target=\"_blank\" rel=\"noreferrer noopener\">Royal Decree 3\/2010<\/a>, of 8 January, which regulates the National Security Framework (ENS) in the field of Electronic Administration, the preventive measures indicated in the guide CCN-STIC 857 <em>Security Requirements for eHealth Applications.<\/em><\/p>\n\n\n\n<p>It also proposes measures in accordance with the criteria of the <a href=\"https:\/\/owasp.org\/www-project-top-ten\/2017\/\" target=\"_blank\" rel=\"noreferrer noopener\"><em>&nbsp;Open Web Application Security Project<\/em><\/a>(OWASP), with the aim of ensuring both service availability and the integrity, authenticity, confidentiality and traceability of information.<\/p>\n\n\n\n<p>Finally, it also includes a series of recommendations to mobile application developers on Data Protection and Privacy matters, extracted from the ENISA report called <a href=\"https:\/\/www.enisa.europa.eu\/publications\/privacy-and-data-protection-in-mobile-applications\" target=\"_blank\" rel=\"noreferrer noopener\"><em>&nbsp;proPrivacy and data<\/em><\/a><a href=\"https:\/\/www.enisa.europa.eu\/publications\/privacy-and-data-protection-in-mobile-applications\" target=\"_blank\" rel=\"noreferrer noopener\"><em>protection in mobile applications<\/em><\/a><em>.<\/em><\/p>\n\n\n\n<p>The requirements as a whole are structured around 10 security objectives to be met by the manufacturers of the technological product:<\/p>\n\n\n\n<ol class=\"wp-block-list\" type=\"1\"><li>Final application testing<\/li><li>Architecture testing<\/li><li>Source code testing<\/li><li>Third-party software testing<\/li><li>Cryptography testing<\/li><li>Authentication testing<\/li><li>Data storage and protection testing<\/li><li>Network communication testing<\/li><li>Platform-specific interaction testing<\/li><li>Resilience testing<\/li><\/ol>\n\n\n\n<p>The result of the evaluation in accordance with the proposed objectives is collected automatically in an executive summary generated by the tool itself, available in the Resources and documentation section of the <a href=\"https:\/\/ticsalutsocial.atoom.space\/dpd-salut\/entitats\/\">Office of the DPO<\/a> website.<\/p>\n\n\n\n<p>For more information and inquiries contact <a href=\"\\Users\\36527806B\\Desktop\\dpd@ticsalutsocial.cat\" target=\"_blank\" rel=\"noreferrer noopener\">dpd@ticsalutsocial.cat<\/a><\/p>\n","protected":false},"author":3,"featured_media":9634,"menu_order":0,"template":"","meta":{"_acf_changed":false,"inline_featured_image":false},"etiqueta":[],"tipus":[107],"topic":[120],"class_list":["post-9810","noticia","type-noticia","status-publish","has-post-thumbnail","hentry","tipus-dpd-health","topic-dpo"],"acf":{"autor":"Oficina DPD","imatge":9634,"textos_destacats":false,"documents":false},"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.1.1 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Security requirements in health applications - Fundaci\u00f3 TIC Salut i Social<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Security requirements in health applications - Fundaci\u00f3 TIC Salut i Social\" \/>\n<meta property=\"og:description\" content=\"The Office of the Data Protection Officer is providing Healthcare organizations with a new document to verify and guarantee that health applications that deal with personal data meet the minimum and desirable requirements in terms of information security. In accordance with the provisions of Royal Decree 3\/2010, of 8 January, which regulates the National Security [&hellip;]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/\" \/>\n<meta property=\"og:site_name\" content=\"Fundaci\u00f3 TIC Salut i Social\" \/>\n<meta property=\"article:modified_time\" content=\"2021-11-02T14:31:13+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png\" \/>\n\t<meta property=\"og:image:width\" content=\"582\" \/>\n\t<meta property=\"og:image:height\" content=\"436\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/\",\"url\":\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/\",\"name\":\"Security requirements in health applications - Fundaci\u00f3 TIC Salut i Social\",\"isPartOf\":{\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png\",\"datePublished\":\"2021-10-14T13:03:46+00:00\",\"dateModified\":\"2021-11-02T14:31:13+00:00\",\"breadcrumb\":{\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#primaryimage\",\"url\":\"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png\",\"contentUrl\":\"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png\",\"width\":582,\"height\":436},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Inici\",\"item\":\"https:\/\/ticsalutsocial.atoom.space\/en\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Security requirements in health applications\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/ticsalutsocial.atoom.space\/en\/#website\",\"url\":\"https:\/\/ticsalutsocial.atoom.space\/en\/\",\"name\":\"Fundaci\u00f3 TIC Salut i Social\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/ticsalutsocial.atoom.space\/en\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Security requirements in health applications - Fundaci\u00f3 TIC Salut i Social","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/","og_locale":"en_US","og_type":"article","og_title":"Security requirements in health applications - Fundaci\u00f3 TIC Salut i Social","og_description":"The Office of the Data Protection Officer is providing Healthcare organizations with a new document to verify and guarantee that health applications that deal with personal data meet the minimum and desirable requirements in terms of information security. In accordance with the provisions of Royal Decree 3\/2010, of 8 January, which regulates the National Security [&hellip;]","og_url":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/","og_site_name":"Fundaci\u00f3 TIC Salut i Social","article_modified_time":"2021-11-02T14:31:13+00:00","og_image":[{"width":582,"height":436,"url":"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png","type":"image\/png"}],"twitter_card":"summary_large_image","twitter_misc":{"Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/","url":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/","name":"Security requirements in health applications - Fundaci\u00f3 TIC Salut i Social","isPartOf":{"@id":"https:\/\/ticsalutsocial.atoom.space\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#primaryimage"},"image":{"@id":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#primaryimage"},"thumbnailUrl":"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png","datePublished":"2021-10-14T13:03:46+00:00","dateModified":"2021-11-02T14:31:13+00:00","breadcrumb":{"@id":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#primaryimage","url":"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png","contentUrl":"https:\/\/ticsalutsocial.atoom.space\/wp-content\/uploads\/2021\/10\/Contexto-ENS.png","width":582,"height":436},{"@type":"BreadcrumbList","@id":"https:\/\/ticsalutsocial.atoom.space\/en\/noticia\/requisits-seguretat-apps-salut\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Inici","item":"https:\/\/ticsalutsocial.atoom.space\/en\/"},{"@type":"ListItem","position":2,"name":"Security requirements in health applications"}]},{"@type":"WebSite","@id":"https:\/\/ticsalutsocial.atoom.space\/en\/#website","url":"https:\/\/ticsalutsocial.atoom.space\/en\/","name":"Fundaci\u00f3 TIC Salut i Social","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/ticsalutsocial.atoom.space\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"_links":{"self":[{"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/noticia\/9810","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/noticia"}],"about":[{"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/types\/noticia"}],"author":[{"embeddable":true,"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/users\/3"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/media\/9634"}],"wp:attachment":[{"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/media?parent=9810"}],"wp:term":[{"taxonomy":"etiqueta","embeddable":true,"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/etiqueta?post=9810"},{"taxonomy":"tipus","embeddable":true,"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/tipus?post=9810"},{"taxonomy":"topic","embeddable":true,"href":"https:\/\/ticsalutsocial.atoom.space\/en\/wp-json\/wp\/v2\/topic?post=9810"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}