Skip to content
MarketScale
‹ Back to IndustriesEnergy

Healthcare Orgs, Take Control of Your Network! Level Up Cyber Hygiene with Diligent Vendor Vetting and Software Segmentation

Healthcare organizations face growing cybersecurity risks from third-party software vendors and poorly segmented networks. Diligent vendor vetting and software segmentation are essential strategies to limit breach exposure and protect critical systems. Proactive cyber hygiene practices at the supply chain level are key to reducing attack surfaces.

This story was produced through MarketScale. See how Energy teams put it to work with Customer Stories & Case Studies.

Promoted content from Experts Talk on MarketScale.

By Robin Berthier, Ph.D. · Cybersecurity in HealthcareMedtech DevicesNetwork PerceptionRobin Berthier
Share

Key takeaways

01

Healthcare organizations must rigorously vet third-party and vendor software before deployment to reduce supply chain risk.

02

Network segmentation of critical systems limits the lateral movement of attackers in the event of a breach.

03

Consistent cyber hygiene practices across the organization and its vendors are foundational to healthcare cybersecurity.

Get featured

Want to get featured in MarketScale Energy?

Create a free MarketScale workspace and get your company's expertise featured across our Energy coverage. No credit card, no demo required.

Request an invite

The digital transformation of healthcare organizations has significantly increased reliance on software and medtech devices, weaving a complex web of interdependencies in their supply chains. This shift raises critical vulnerabilities as highlighted by infamous incidents like the SolarWinds breach, underscoring the urgency for enhanced cyber hygiene practices. With recent executive orders pushing for better security protocols, healthcare organizations are under pressure to fortify their supply chains against escalating cyber threats.

What strategies can healthcare organizations employ to effectively manage the cyber hygiene of their healthcare supply chain, including software and medtech devices?

Robin Berthier, CEO and founder of Network Perception, advocates for rigorous cyber hygiene practices within healthcare supply chains on a recent episode of Expert's Talk. He emphasizes the necessity of standard vendor questionnaires and robust security protocols and underscores the importance of continuous vendor risk assessments and software segmentation to effectively mitigate potential cyber threats, drawing lessons from major breaches like SolarWinds.

Continuous vendor risk assessments and software segmentation effectively mitigate potential cyber threats.

Key takeaways:

  1. Develop Standard Questionnaires for Vendors: Establishing standard questionnaires for all vendors can help assess the risks introduced by third parties and ensure they adhere to secure coding best practices.
  2. Vet Vendor Security Practices: It's crucial to scrutinize the security practices surrounding the build environments of vendors to prevent incidents similar to the SolarWinds breach, where malware was inserted directly into the source code.
  3. Implement Software Segmentation: By applying segmentation to software, organizations can contain potential breaches within manageable risk levels, thereby minimizing widespread impact.
  4. Regular Patching and Updates: Ensuring that all software and devices within the supply chain are regularly updated and patched can significantly reduce vulnerabilities.
  5. Continuous Risk Assessment: Continual evaluation of the risks posed by vendors and their products is essential to adapting and strengthening cybersecurity measures over time.
Video TranscriptExpand ↓

Yeah. The risk of supply chain has been really a major point of discussion that pushed by the executive order a couple of years back from the White House. It's really the practical advice there is to adopt an approach where you develop a standard questionnaire for all your vendors that will help you assess the risk that you're introducing and what type of secure coding best practices they are doing, how they are securing their build environment. Like, we all have in, you know, the the memories of, SolarWind, being being breached, like, attackers being able to introduce malware directly inside the source code of a major IT platform. And then once we're in the build environment, every customer is patching their Soloway instance will get infected. And so we have eighteen thousand organizations infected in just a few weeks. So really vetting the risk that you're bringing with those, solution providers and then also applying those concepts of segmentation to, to your software, to, to the software you're introducing to make sure that if something goes bad, then it's contained into, into the proper risk level.

Experts Talk

Part of this channel

Experts Talk

Industry experts debate the ideas that drive B2B decisions.

Visit the channel

Your experts belong here

Every story in MarketScale Energy starts with a company putting its field engineers, operations leads, and project developers on the record. Buyers are already reading this topic. The only question is whose experts they find.

Developers and operators shortlist on credibility, and your engineers give your sales team something real to send.

Get your team featuredSee how it works15 minutes, straight to a calendar.

About the author

RB
Robin Berthier, Ph.D.

Follow Energy Insights

Get new expert content in your inbox.

Energy: are you visible to AI?

Before they reach out, Energy buyers ask AI engines which vendors to trust. See how AI describes your company today, and where competitors show up instead.

Free workspace

You just read one Energy expert. Your company is full of them.

This article was produced through MarketScale. The same platform turns your field engineers, operations leads, and project developers into the articles, video, and social content Energy buyers are searching for. Create a free workspace and see it with your own people. No credit card, no demo required.

NPS +73 · 1,000+ creators · 38+ countries

What you get, free

Your own MarketScale Studio workspace
One video edit a month, on us
AI writing, editing, and publishing tools
In-platform coaching to learn the system

More Energy Insights

U.S. grid batteries are set to top 100 GW by 2028, changing peak prices

U.S. grid batteries are set to top 100 GW by 2028, changing peak prices

U.S. utility-scale battery storage reached nearly 52 GW of nameplate capacity by June 2026 after adding 8.3 GW in the first six months of the year, according to the U.S. Energy Information Administration. The same EIA planning data shows 54 GW more is planned for the second half of 2026 through 2028, including 14 GW in the second half of 2026, 26 GW in 2027, and 14 GW in 2028. pv magazine USA reports total national operational storage capacity is expected to pass 105 GW by the end of 2028. Solar photovoltaic plants host the largest battery storage capacity units, including AES’ Bellefield Solar and Energy Storage Farm in California and Florida Power & Light’s Manatee Solar Energy Center in Florida, according to EIA.

  • 01The planning benchmark that matters for 2027 to 2028 contracts: EIA’s reported pipeline implies U.S. battery nameplate capacity could roughly double from ~52 GW to ~106 GW by end of 2028 if schedules hold.
  • 02Storage penetration is becoming a pricing question, not a technology question. pv magazine USA points to ERCOT growing from 15 GW (2025) to 37 GW (end of 2027), a level that could alter who sets the marginal price in evening peaks and how much capacity value peakers retain.

Sep 3, 2026

NuScale and Nucor’s SMR talks put “always-on” power back in industrial planning

NuScale and Nucor’s SMR talks put “always-on” power back in industrial planning

NuScale Power and Nucor signed an MOU to explore co-locating NuScale VOYGR small modular nuclear reactor plants near Nucor electric arc furnace steel mills, including studies of site suitability, transmission interconnection capability, and capital costs, according to POWER Magazine. The move lands as commercial and industrial energy buyers are re-evaluating “return quality” across distributed energy resource value stacks, a dynamic pv magazine USA illustrated with Massachusetts electricity rates rising to about 20.9 cents/kWh for commercial customers in 2024, up roughly 61% from 2014. At the same time, grid-facing flexibility is getting practical attention, with Renewable Energy World’s Factor This reporting on managed EV charging and vehicle-to-grid reforms needed to scale V2X. For operators, the implication is clear: “firm” electricity is no longer a single procurement lane, it’s a portfolio decision spanning on-site generation, grid programs, and controllable load.

  • 01The operational question behind the NuScale-Nucor MOU is not “nuclear vs renewables,” it’s whether a mill can secure 24/7 power with a permitting and interconnection path that matches expansion timelines (POWER Magazine).
  • 02A useful benchmark for C&I energy planning: Massachusetts average commercial electricity rates rose from roughly 13.0 cents/kWh in 2014 to 20.9 cents/kWh in 2024, well above the 2024 national commercial average of about 13.9 cents/kWh (pv magazine USA, citing EIA data).
  • 03Managed EV charging and V2X are shifting from pilots to policy and tariff design work, which means facilities with fleet electrification can treat charging as a dispatchable asset only if their utility and program rules allow it (Renewable Energy World).

Sep 2, 2026

GE Vernova is adding HVDC capacity as grids scramble to serve data centers

GE Vernova is adding HVDC capacity as grids scramble to serve data centers

GE Vernova is enhancing its high-voltage direct current (HVDC) capacity as part of efforts to meet increasing demand from data centers. The company is navigating challenges in project timelines caused by equipment lead times, which now dictate power-plant schedules.

  • 01GE Vernova is expanding its HVDC capacity to support increasing data center demands.
  • 02Project timelines for power plants are now dictated by equipment lead times rather than design.
  • 03GE Vernova's initiatives occur amidst growing urgency to upgrade transmission capabilities.

Aug 29, 2026

Explore More Energy Insights

Read more expert perspectives from across Energy.

Browse Energy Hub

About the Expert

RB
Robin Berthier, Ph.D.

CEO and Co-founder at Network Perception

Robin Berthier, Ph.D. is the CEO and co-founder of Network Perception, a cybersecurity company specializing in network security monitoring and visualization. He holds a Ph.D. in computer science and has extensive research and industry experience in critical infrastructure protection. Berthier frequently speaks on topics related to OT/ICS network security and cyber hygiene.

For B2B teams

Your experts could be publishing here

Stories like this one run on content MarketScale captures from real practitioners. See how your team's expertise becomes coverage in Energy and beyond.

Book a 15-minute demo

Or call us. No forms required. We pick up. 214-945-2512