---
title: "Medical Device Cybersecurity: Protecting Healthcare Cloud Data"
description: Explore Medical Device Cybersecurity to safeguard patient safety and protect sensitive healthcare systems from vulnerabilities.
image: https://cspm.cleardata.com/hubfs/Imported_Blog_Media/shutterstock_1100101856-2.jpg
---

[Log in to the CyberHealth™ Platform](http://cyberhealth.cleardata.com/)

[Talk to a Cloud Expert](https://www.cleardata.com/consultation/)

[![Clear data](https://cspm.cleardata.com/hubfs/Cleardata_February2025/images/cleardata-logo.svg)](https://www.cleardata.com/)

- [CSPM for Healthcare](https://www.cleardata.com/cspm) 
    - - [Safeguards: HIPAA, HITRUST, GDPR, ISO, NIST, PCI](https://www.cleardata.com/cspm/#cspm-features)
          - [Automated Compliance](https://www.cleardata.com/cspm/#cspm-features)
          - [Cloud Risk Identification & Remediation](https://www.cleardata.com/cspm/#cspm-features)
          - [Compliance Risk Scores](https://www.cleardata.com/cspm/#cspm-features)
          - [PHI Leak Discovery](https://www.cleardata.com/cspm/#cspm-features)
          - [Audit-Ready Reporting](https://www.cleardata.com/cspm/#cspm-features)
- Services 
    - Managed Services 
          - [Cloud Compliance](https://www.cleardata.com/cloud-compliance/)
          - [Managed Detection & Response](https://www.cleardata.com/cspm/managed-detection-and-response/)
          - [Cloud Operations](https://www.cleardata.com/cspm/cloud-operations/)
    - [Professional Services](https://www.cleardata.com/cspm/cloud-transformation/) 
          - [Cloud Migration & Modernization](https://www.cleardata.com/cspm/cloud-transformation/#migration)
          - [Cloud Assessments](https://www.cleardata.com/cspm/cloud-transformation/#assessments)
          - [End-to-End Cloud Resilience](https://www.cleardata.com/cspm/cloud-transformation/#end2end)
- Solutions 
    - By Market 
          - [Healthcare Software & Services](https://www.cleardata.com/solutions-by-market/healthcare-software-services/)
          - [Medical Devices & Equipment](https://www.cleardata.com/solutions-by-market/medical-devices-equipment/)
          - [Healthcare Providers](https://www.cleardata.com/solutions-by-market/medical-devices-equipment/)
          - [Healthcare Payers](https://www.cleardata.com/solutions-by-market/healthcare-payers/)
    - By Topic 
          - - [Risk Visualization & Prioritization](https://www.cleardata.com/risk-visualization-prioritization/)
                  - [Threat Detection & Protection](https://www.cleardata.com/security-threat-protection/)
                  - [Cost & Performance Optimization](https://www.cleardata.com/cost-performance-optimization/)
                  - [Healthcare Cloud Compliance](https://www.cleardata.com/healthcare-cloud-compliance/)
                  - [Analytics & Reporting](https://www.cleardata.com/analytics-reporting/)
                  - [GxP for Life Sciences](https://www.cleardata.com/gxp-life-sciences/)
                  - [EHR Deployments in the Cloud](https://www.cleardata.com/ehr-cloud-deployments/)
- Resources 
    - - [View All](https://www.cleardata.com/resources/)
          - [Blog](https://www.cleardata.com/blog/)
          - [What Is Compliance Debt?](https://www.cleardata.com/blog/eliminating-compliance-debt-the-key-to-healthcare-tech-innovation/)
          - [Customer Stories](https://www.cleardata.com/stories/)
          - [Events](https://www.cleardata.com/events/)
- [About](https://www.cleardata.com/about-us/) 
    - - [Leadership Team](https://www.cleardata.com/about-us/leadership-team/)
          - [Careers](https://www.cleardata.com/about-us/careers/)
          - [News](https://www.cleardata.com/about-us/news/)
          - [Partners](https://www.cleardata.com/supported-clouds/)

- [CSPM for Healthcare](https://www.cleardata.com/cspm) 
    - - [Safeguards: HIPAA, HITRUST, GDPR, ISO, NIST, PCI](https://www.cleardata.com/cspm/#cspm-features)
          - [Automated Compliance](https://www.cleardata.com/cspm/#cspm-features)
          - [Cloud Risk Identification & Remediation](https://www.cleardata.com/cspm/#cspm-features)
          - [Compliance Risk Scores](https://www.cleardata.com/cspm/#cspm-features)
          - [PHI Leak Discovery](https://www.cleardata.com/cspm/#cspm-features)
          - [Audit-Ready Reporting](https://www.cleardata.com/cspm/#cspm-features)
- Services 
    - Managed Services 
          - [Cloud Compliance](https://www.cleardata.com/cloud-compliance/)
          - [Managed Detection & Response](https://www.cleardata.com/cspm/managed-detection-and-response/)
          - [Cloud Operations](https://www.cleardata.com/cspm/cloud-operations/)
    - [Professional Services](https://www.cleardata.com/cspm/cloud-transformation/) 
          - [Cloud Migration & Modernization](https://www.cleardata.com/cspm/cloud-transformation/#migration)
          - [Cloud Assessments](https://www.cleardata.com/cspm/cloud-transformation/#assessments)
          - [End-to-End Cloud Resilience](https://www.cleardata.com/cspm/cloud-transformation/#end2end)
- Solutions 
    - By Market 
          - [Healthcare Software & Services](https://www.cleardata.com/solutions-by-market/healthcare-software-services/)
          - [Medical Devices & Equipment](https://www.cleardata.com/solutions-by-market/medical-devices-equipment/)
          - [Healthcare Providers](https://www.cleardata.com/solutions-by-market/medical-devices-equipment/)
          - [Healthcare Payers](https://www.cleardata.com/solutions-by-market/healthcare-payers/)
    - By Topic 
          - - [Risk Visualization & Prioritization](https://www.cleardata.com/risk-visualization-prioritization/)
                  - [Threat Detection & Protection](https://www.cleardata.com/security-threat-protection/)
                  - [Cost & Performance Optimization](https://www.cleardata.com/cost-performance-optimization/)
                  - [Healthcare Cloud Compliance](https://www.cleardata.com/healthcare-cloud-compliance/)
                  - [Analytics & Reporting](https://www.cleardata.com/analytics-reporting/)
                  - [GxP for Life Sciences](https://www.cleardata.com/gxp-life-sciences/)
                  - [EHR Deployments in the Cloud](https://www.cleardata.com/ehr-cloud-deployments/)
- Resources 
    - - [View All](https://www.cleardata.com/resources/)
          - [Blog](https://www.cleardata.com/blog/)
          - [What Is Compliance Debt?](https://www.cleardata.com/blog/eliminating-compliance-debt-the-key-to-healthcare-tech-innovation/)
          - [Customer Stories](https://www.cleardata.com/stories/)
          - [Events](https://www.cleardata.com/events/)
- [About](https://www.cleardata.com/about-us/) 
    - - [Leadership Team](https://www.cleardata.com/about-us/leadership-team/)
          - [Careers](https://www.cleardata.com/about-us/careers/)
          - [News](https://www.cleardata.com/about-us/news/)
          - [Partners](https://www.cleardata.com/supported-clouds/)

[Blog](https://cspm.cleardata.com/cleardata-blog/tag/blog), [Cybersecurity](https://cspm.cleardata.com/cleardata-blog/tag/cybersecurity), [Compliance](https://cspm.cleardata.com/cleardata-blog/tag/compliance)

# Best Practices for Medical Device Cybersecurity in Healthcare

 May 15, 2025

 7 minute read

<https://www.reddit.com/submit?url=https://cspm.cleardata.com/cleardata-blog/blog/medical-device-cybersecurity-best-practices> <https://www.linkedin.com/sharing/share-offsite/?url=https://cspm.cleardata.com/cleardata-blog/blog/medical-device-cybersecurity-best-practices> [mailto:?body=https://cspm.cleardata.com/cleardata-blog/blog/medical-device-cybersecurity-best-practices](mailto:?body=https://cspm.cleardata.com/cleardata-blog/blog/medical-device-cybersecurity-best-practices)

### [![2024-Threat-Report-data-1](https://cspm.cleardata.com/hubfs/Cleardata_February2025/images/2024-Threat-Report-data-1.jpg) Guide 2024 Healthcare Threat Report Learn More](https://www.cleardata.com/resources/healthcare-threat-report/)

#### Table of Contents

The rise of connected [medical devices](https://www.cleardata.com/solutions-by-market/medical-devices-equipment/) has transformed patient care with real-time monitoring and data integration, but it also brings cybersecurity risks. Without proper safeguards, vulnerabilities could jeopardize patient safety, disrupt healthcare, and lead to data breaches, making cybersecurity a top concern for providers, manufacturers, and regulators. 

From implementing robust design principles to [ensuring compliance with medical device cybersecurity standards](https://www.cleardata.com/solutions-by-market/medical-devices-equipment/), we’ll cover everything you need to know to mitigate risks and protect sensitive healthcare systems. 

## Why Are Medical Devices Under Attack?  

Medical device cybersecurity [faces several critical challenges](https://www.ibm.com/think/insights/cybersecurity-in-healthcare-onging-crisis) that leave healthcare systems vulnerable to attacks. To start, many legacy devices still in use were not built with cybersecurity in mind, often relying on outdated software that creates weak points for hackers.  

[The Food and Drug Administration (FDA)](https://www.fda.gov/) works to enforce regulations, but inconsistent [compliance](https://www.cleardata.com/blog/soc-2-audit-what-you-need-to-know/) from manufacturers and healthcare providers continues to worsen these vulnerabilities. 

Additionally, many medical devices lack robust security protocols, making them easy targets for cybercriminals. Their complexity, with multiple components, interfaces, and connectivity options, adds another layer of difficulty in securing these devices. I[nteroperability requirements](https://www.cleardata.com/blog/interoperability-in-healthcare/)—where devices must connect with other systems and networks—further increase the [risk](https://www.cleardata.com/risk-visualization-prioritization/) of breaches.  

Compounding the issue, some manufacturers lack the necessary cybersecurity expertise to implement proper controls. Supply chain risks also play a significant role, as healthcare providers often lack end-to-end visibility across medical device networks, limiting their ability to detect and respond to threats.  

## Cybersecurity in Medical Devices

A standard U.S. hospital typically has 10 to 15 medical devices per bed, [meaning a 1,000-bed hospital could house roughly 15,000 devices.](https://www.hipaajournal.com/63pc-known-exploited-vulnerabilities-hospital-networks/) These include imaging systems, clinical [IoT](https://www.cleardata.com/blog/healthcare-internet-of-things-drivers/) devices, and surgical equipment, all of which expand the hospital’s attack surface. Any vulnerability in these devices, particularly those connected to the internet, can be exploited by cybercriminals to infiltrate the network and access sensitive data. 

Medical devices such as insulin pumps, implantable defibrillators, and imaging systems often handle sensitive health data and interact with external systems like cloud platforms or hospital networks. A single cyberattack compromising a medical device could lead to operational disruptions, loss of vital patient data, or even harm to individuals reliant on those devices for care. These high stakes highlight the urgency and importance of implementing robust cybersecurity frameworks. 

These trends reveal an urgent need to improve cybersecurity measures and align with evolving [medical device cybersecurity](https://www.federalregister.gov/documents/2022/02/23/2022-03227/medical-devices-quality-system-regulation-amendments) standards. 

## FDA Guidelines for Securing Medical Device Data 

The [FDA’s updated 2023 guidance](https://www.fda.gov/medical-devices/guidance-documents-medical-devices-and-radiation-emitting-products/recent-final-medical-device-guidance-documents) on medical device cybersecurity replaces the 2014 version, aiming to improve consistency, streamline premarket reviews, and enhance device [resilience](https://www.cleardata.com/blog/cracking-the-code-ep-23/). It applies to devices with software or programmable logic, not just network-enabled ones. 

### Premarket cybersecurity guidance:  

The FDA offers [premarket cybersecurity guidance](https://www.fda.gov/regulatory-information/search-fda-guidance-documents/cybersecurity-medical-devices-quality-system-considerations-and-content-premarket-submissions) which includes integrating security risk management into the overall risk management process (ISO 14971). Companies must submit a threat modeling summary to assess system-level risks and a [Software Bill of Materials (SBOM)](https://www.ntia.gov/page/software-bill-materials#:~:text=A%20%E2%80%9CSoftware%20Bill%20of%20Materials,that%20make%20up%20software%20components.) detailing third-party and open-source software. Additionally, they should demonstrate capabilities to detect, respond to, and recover from cybersecurity incidents while performing ongoing risk assessments and enabling updates or patches.  

Key documentation includes security architecture, access control methods (e.g., least privilege, authentication), and data integrity and confidentiality measures like encryption for data at rest and in transit 

### Postmarket Cybersecurity Guidance 

The [FDA’s post-market cybersecurity guidance](https://www.fda.gov/regulatory-information/search-fda-guidance-documents/postmarket-management-cybersecurity-medical-devices) stresses the need for robust risk management in medical devices, focusing on timely vulnerability detection, disclosure, and resolution in line with ISO/IEC standards. Manufacturers must prioritize secure patch deployment, assess vulnerabilities, and maintain a cybersecurity plan within the [Quality System Regulation](https://www.federalregister.gov/documents/2022/02/23/2022-03227/medical-devices-quality-system-regulation-amendments) to protect patient safety as technology advances. 

### Device manufacturers are required to comply with Quality System Regulation

This covers critical aspects such as design controls, [corrective and preventive actions (CAPA),](https://medicaldeviceacademy.com/capa/) and complaint handling. Additionally, integrating cybersecurity activities into design and production processes is now an essential expectation. By ensuring these elements are well-documented and seamlessly incorporated, manufacturers can enhance compliance and safeguard device functionality. [Adhering to QSR](https://www.ecfr.gov/current/title-21/chapter-I/subchapter-H/part-820) not only supports regulatory requirements but also reinforces product quality and user safety, making it a crucial focus for medical device developers. 

### Secure Product Lifecycle (SPLC) Principles 

The FDA highlights the need for robust cybersecurity in medical devices, recommending frameworks like [NIST SP 800-53](https://csrc.nist.gov/pubs/sp/800/53/r5/upd1/final) and industry standards such as AAMI TIR57. Key practices include defense-in-depth architecture, restricting unnecessary functions, effective logging, tamper resistance, and secure development processes like code reviews. These measures help reduce vulnerabilities and ensure safer, more resilient devices. 

### Cybersecurity Labeling and Transparency  

The FDA highlights the need for clear medical device labeling to communicate cybersecurity measures. Labels should detail the device’s intended use, safe operating [environments](https://www.cleardata.com/cleardata-managed-services-regulated-environments/), user responsibilities (e.g., password policies, updates), and update/patch policies. Manufacturers are encouraged to provide detailed security documentation to support users and IT teams in maintaining strong cybersecurity practices. 

### Reporting Requirements  

The FDA requires cybersecurity vulnerabilities in medical devices to be reported under its Medical Device Reporting ([MDR](https://www.cleardata.com/cleardata-managed-services-managed-detection-response/)) rules if they pose risks like death, serious injury, or potential harm. These regulations aim to identify and address vulnerabilities promptly, ensuring patient safety and reducing preventable risks. 

## Best Practices to Improve Medical Device Cybersecurity Checklist 

1. Embed Security in Device Design 

- Conduct thorough threat modeling to identify potential risks during the design phase. 
- Use secure coding practices and validated cryptographic protocols to protect data and communications. 
- Ensure the device supports streamlined software updates to address emerging threats quickly. 

2. Conduct Regular Risk Assessments 

- Perform cybersecurity risk analyses to identify vulnerabilities across the full ecosystem of interconnected systems. 
- Simulate attack scenarios (e.g., penetration testing) to uncover potential weaknesses in software, hardware, or networking configurations. 

3. Adopt Secure Cloud Practices 

- Use cloud providers compliant with healthcare data regulations like [HIPAA](https://www.cleardata.com/healthcare-cloud-compliance/). 
- Implement multi-factor authentication (MFA) and stringent access controls to protect sensitive patient data stored in the cloud. 

4. Monitor and Manage Third-Party Software Risks 

- Maintain an up-to-date Software Bill of Materials (SBOM), documenting every software component used (e.g., third-party libraries or open-source tools). 
- Stay informed of vulnerabilities in third-party software through platforms such as the [CISA](https://www.cleardata.com/blog/reducing-successful-cyber-attack-vectors/) Known Exploited Vulnerabilities Catalog. 

5. Prioritize Post-Market Security Maintenance 

- Plan for timely software patches and updates for vulnerabilities identified after device deployment. 
- Use regular audits and testing procedures to validate ongoing compliance with security standards. 

6. Educate End-Users and Stakeholders 

- Provide clear user guides for managing device security, including network configurations, patch instructions, and response protocols for cyber incidents. 
- Train [healthcare IT](https://www.cleardata.com/blog/what-is-healthcare-msp/) teams to implement best practices like segmenting device networks to contain potential attacks. 

7. Partner with a Managed Security [Services](https://www.cleardata.com/services-descriptions/) Provider ([MSSP](https://www.cleardata.com/blog/cleardata-soc-2-audit-completion/)) 

- Work with an MSSP that specializes in safeguarding sensitive healthcare information to enhance your cybersecurity posture. 
- Leverage their expertise in compliance, [threat detection](https://www.cleardata.com/security-threat-protection/), and incident response to defend against evolving cyber risks. 

8. Implement Continuous Security Monitoring 

- Utilize [advanced](https://www.cleardata.com/cleardata-managed-advanced/) monitoring tools to detect suspicious activity across devices and networks in real time. 
- Establish a framework for immediate response to potential breaches, minimizing downtime and protecting patient data. 

By adopting best practices like secure design principles and robust risk management, you can significantly reduce vulnerabilities and gain a competitive edge in the marketplace. 

## Scale Smarter. Innovate Faster:  

Designing life-changing medical devices is complex, but securing data and navigating regulations shouldn’t slow you down. Want to enhance the security of your medical devices?  

Discover how [ClearDATA](https://www.cleardata.com/) has [partnered with medical device companies](https://www.cleardata.com/resources/infobionic/) using cloud technology to implement robust security and compliance solutions—filling critical gaps where internal resources were unavailable. 

From integrating device data with healthcare systems to meeting stringent FDA regulations, we’re here to simplify the process with managed cloud [compliance](https://www.cleardata.com/cloud-compliance), [security](https://www.cleardata.com/cspm/managed-detection-and-response/), and [operations](https://www.cleardata.com/cspm/cloud-operations/) services and the [CSPM software](https://www.cleardata.com/cspm) you can trust, so you stay ready to develop groundbreaking medical technology. 

[Speak with an expert.](https://cspm.cleardata.com/consultation/)

 Secure Your Healthcare Cloud

## Speak with a healthcare cybersecurity and compliance expert today.

[Speak with an expert](https://www.cleardata.com/consultation/)

### [![5 Ways Healthcare Cloud Threat Intelligence Can Prevent Data Breaches ](https://cspm.cleardata.com/hubfs/Imported_Blog_Media/MKT-0158-Blog-Image.png) Blog 5 Ways Healthcare Cloud Threat Intelligence Can Prevent Data Breaches ](https://cspm.cleardata.com/cleardata-blog/blog/healthcare-cloud-threat-intelligence)

### [![Using AI Threat Detection in Healthcare](https://cspm.cleardata.com/hubfs/Imported_Blog_Media/shutterstock_2472590013.jpg) Blog Using AI Threat Detection in Healthcare](https://cspm.cleardata.com/cleardata-blog/blog/using-ai-threat-detection-in-healthcare)

### [![Best Practices for Managing and Protecting PHI in the Cloud](https://cspm.cleardata.com/hubfs/Imported_Blog_Media/AdobeStock_1202358155.jpg) Blog Best Practices for Managing and Protecting PHI in the Cloud](https://cspm.cleardata.com/cleardata-blog/blog/best-practices-for-managing-and-protecting-phi)

[![Clear data](https://cspm.cleardata.com/hubfs/Cleardata_February2025/images/cleardata-logo.svg "Clear data")](https://www.cleardata.com/)

<https://twitter.com/cleardatacloud>

<https://www.linkedin.com/company/cleardata-networks/>

<https://www.youtube.com/@_ClearDATA>

- [CSPM for Healthcare](https://www.cleardata.com/cspm) 
    - [Safeguards: HIPAA, HITRUST, GDPR, ISO, NIST, PCI](https://www.cleardata.com/cspm/#cspm-features)
    - [Automated Compliance](https://www.cleardata.com/cspm/#cspm-features)
    - [Cloud Risk Identification & Remediation](https://www.cleardata.com/cspm/#cspm-features)
    - [Compliance Risk Scores](https://www.cleardata.com/cspm/#cspm-features)
    - [PHI Leak Discovery](https://www.cleardata.com/cspm/#cspm-features)
    - [Audit-Ready Reporting](https://www.cleardata.com/cspm/#cspm-features)

- Services 
    - Managed Services 
          - [Cloud Compliance](https://www.cleardata.com/cloud-compliance/)
          - [Managed Detection & Response](https://www.cleardata.com/cspm/managed-detection-and-response/)
          - [Cloud Operations](https://www.cleardata.com/cspm/cloud-operations/)
    - [Professional Services](https://www.cleardata.com/cspm/cloud-transformation/) 
          - [Cloud Migration & Modernization](https://www.cleardata.com/cspm/cloud-transformation/#migration)
          - [Cloud Assessments](https://www.cleardata.com/cspm/cloud-transformation/#assessments)
          - [End-To-End Cloud Resilience](https://www.cleardata.com/cspm/cloud-transformation/#end2end)

- Solutions 
    - By Market 
          - [Healthcare Software & Services](https://www.cleardata.com/solutions-by-market/healthcare-software-services/)
          - [Medical Devices & Equipment](https://www.cleardata.com/solutions-by-market/medical-devices-equipment/)
          - [Healthcare Providers](https://www.cleardata.com/solutions-by-market/healthcare-providers/)
          - [Healthcare Payers](https://www.cleardata.com/solutions-by-market/healthcare-payers/)
    - By Topic 
          - [Risk Visualization & Prioritization](https://www.cleardata.com/risk-visualization-prioritization/)
          - [Threat Detection & Protection](https://www.cleardata.com/security-threat-protection/)
          - [Cost & Performance Optimization](https://www.cleardata.com/cost-performance-optimization/)
          - [Healthcare Cloud Compliance](https://www.cleardata.com/healthcare-cloud-compliance/)
          - [Analytics & Reporting](https://www.cleardata.com/analytics-reporting/)
          - [GxP For Life Sciences](https://www.cleardata.com/gxp-life-sciences/)
          - [EHR Deployments In The Cloud](https://www.cleardata.com/ehr-cloud-deployments/)

- Resources 
    - [View All](https://www.cleardata.com/resources)
    - [Blog](https://www.cleardata.com/blog/) 
          - [What Is Compliance Debt?](https://www.cleardata.com/blog/eliminating-compliance-debt-the-key-to-healthcare-tech-innovation/)
    - [Events](https://www.cleardata.com/events/)
    - [Customer Stories](https://www.cleardata.com/cloud-case-studies/)
- About 
    - [Leadership Team](https://www.cleardata.com/about-us/leadership-team/)
    - [Careers](https://www.cleardata.com/about-us/careers/)
    - [News](https://www.cleardata.com/about-us/news/)
    - [Cloud Partners](https://www.cleardata.com/supported-clouds) 
          - [Microsoft Azure](https://www.cleardata.com/cspm/microsoft-azure/)
          - [Amazon Web Services (AWS)](https://www.cleardata.com/cspm/aws/)
          - [Google Cloud Platform](https://www.cleardata.com/cspm/google-cloud/)

© 2026 CLEARDATA All rights reserved

- [Privacy Policy](https://www.cleardata.com/legal/privacy-policy)
- [Notice of Copyright Infringement](https://www.cleardata.com/legal/notice-of-copyright-infringement)
- [Acceptable Use Policy](https://www.cleardata.com/legal/acceptable-use-policy/)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "natalie.yahnke",
    "url" : "https://cspm.cleardata.com/cleardata-blog/author/natalie-yahnke"
  },
  "dateModified" : "2025-09-18T21:24:40.136Z",
  "datePublished" : "2025-05-15T15:34:51.000Z",
  "headline" : "Medical Device Cybersecurity: Protecting Healthcare Cloud Data",
  "image" : [ "https://cspm.cleardata.com/hubfs/Imported_Blog_Media/shutterstock_1100101856-2.jpg" ],
  "mainEntityOfPage" : {
    "@id" : "https://cspm.cleardata.com/cleardata-blog/blog/medical-device-cybersecurity-best-practices",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://cspm.cleardata.com/hubfs/ClearDATA-logo-1540.png"
    }
  }
}
```