Digital health companies (ENS) are essential players in the French health system. They develop and provide digital products and services that improve the quality of care, the efficiency of organizations and patient participation.
To guarantee the security and proper functioning of these products and services, the ANS, the Digital Health Agency, imposes a certain number of obligations on ENS.
These obligations are defined by the General Data Protection Regulation (GDPR), by the National Digital Health Strategy and by standards and technical guides published by the ANS.
Data security is the top priority of ENS. They must put in place appropriate technical and organizational measures to protect the personal health data they collect, process or store.
These measures must be designed to prevent the risks of destruction, loss, alteration, unauthorized, accidental or illicit disclosure or access. Here are some examples of measures:
Interoperability is the ability of two or more systems or applications to communicate and exchange data efficiently and securely. It is essential to guarantee the fluidity of data exchanges between the different players in the health system.
ENS must ensure that their products and services are interoperable with other health systems and services. To do this, they can use standards and technical guides published by the ANS.
ENS must respect the standards applicable to their products and services. These standards can be defined by the legislator, by standardization organizations or by health professionals.
The ANS may impose standards compliance requirements on ENS as part of its missions.
In addition to the obligations mentioned above, ENS may also be subject to other obligations, depending on the nature of their activities.
For example, ENS that develop digital medical devices must obtain a marketing authorization (AMM) from the ANSM.
ENS which do not respect their obligations may be subject to sanctions, in particular administrative or criminal.
Our team of IT security experts is ready to offer you the audit that best suits your needs and your business.