Logo
StreamLex Home
Logo
StreamLex Home
Laws
Laws
Recitals
Recitals
About Us
News
Recitals
Trackers
Resources
Newsletter
Terms of Use
Privacy Notice
LinkedIn
undefined | StreamLex

Procurement guidelines for hospital cybersecurity (GDPR)

Procurement guidelines for the cybersecurity of hospitals and healthcare providers

The guidelines help hospitals and healthcare providers integrate cybersecurity objectives across all phases of the procurement life cycle, setting out cybersecurity requirements and the information suppliers must provide. With respect to the GDPR, the guidelines align procurement criteria with security-of-processing obligations for the personal and health data handled by medical devices and IT systems procured by healthcare entities.

Metadata

Author: ENISA

Status: Adopted / Published

Adoption date: 2026-07-22

Last updated: 19 Aug 2026

Category: Guidance

Subcategory: Official recommendations

Relevant laws and articles:

GDPR
32
Source URL:https://www.enisa.europa.eu/publications/procurement-guidelines-for-the-cybersecurity-of-hospitals-and-healthcare-providers

© 2026 StreamLex

NewsletterAbout UsTerms of UsePrivacy NoticeManage Cookies

© 2026 StreamLex