CYMEDSEC – Cybersecurity for Connected Medical Devices

The EU-funded CYMEDSEC project is working to define new cybersecurity standards that better protect connected medical devices from digital threats. The goal is to develop a practical toolkit that allows manufacturers and regulators to assess the risks and benefits of digital health technologies and to embed cybersecurity into the design process from the very beginning, following the “Security by Design” principle.
The Barkhausen Institut plays a key role in the project by developing a trustworthy hardware–software platform for secure endpoints and gateway systems in medical networks. This technology ensures that devices can communicate safely, safeguard sensitive patient data, and support transparent, dependable system updates. The platform builds on the institute’s core expertise in secure computer architecture and operating systems. The institute is also exploring new methods to detect hardware-level attacks at an early stage - an increasingly important capability in the field of medical technology.
The context: Healthcare systems around the world are facing a rising number of cyberattacks. Studies show that a significant share of medical institutions has already been affected. These incidents don’t just lead to financial losses—they can also compromise patient care and violate data privacy. As healthcare becomes more digital, the need for effective, built-in security is more urgent than ever—and CYMEDSEC is addressing that challenge head-on.
As the project progresses, a hands-on evaluation tool will be developed to help systematically assess the cybersecurity posture of connected medical devices. The platform created by the Barkhausen Institut will serve as a technical foundation for secure and trustworthy Internet of Medical Things (IoMT) systems—helping to strengthen digital healthcare for the long term.
Project Duration: November 1, 2023 – October 31, 2027
Contact:
Dr. Carsten Weinhold
Composable Operating Systems Group
carsten.weinhold@barkhauseninstitut.org
+49 351 799916 52
Project Partners: Technische Universität Dresden, Vrije Universiteit Brussel, Athena Research and Innovation Center, Fondazione Casa Sollievo Della Sofferenza, Fondazione ICONS, secunet Security Networks AG, PARTICLE Summary, Hospital do Espírito Santo de Évora, Umana Medical Technologies Ltd, Austrian Standards International
