
Colin Neale is principal business development manager at Wireless Logic – a leading global Internet of Things (IoT) solutions provider connecting more than 20 million IoT devices around the world.
In the second in our series of on-the-ground interviews from HLTH Europe 2026, Colin takes us through Wireless Logic’s threat detection suite and explains the vital importance of device visibility.
Q: What’s the core problem you’re solving for customers?
Say you have a medical device and you want to scale that operation efficiently across the world.
The last thing you want to worry about is needing a separate connectivity contract in every region, with restrictions in Africa, restrictions in Brazil, and so on. How do you manage all of that?
That’s the pain we solve.
We work with companies at any point in the supply chain, from the point of manufacture right through to customers who already have devices out in the field and are now facing that exact problem.
What we do is give them a single bill and a single portal to manage connectivity globally.
Q: Where does device security fit into all this?
Ransomware and data security come up constantly, and data privacy is one of the first things customers ask us about.
We have a private APN, private IP addresses, and we’ve added layers of anomaly detection on top.
Colin Neale
New compliance requirements are coming in too, like the Cybersecurity Resilience Act, where organisations have to demonstrate they’re taking every possible step to keep devices secure.
We’ve built that directly into the connectivity layer, so we can analyse the data, understand what’s normal for an organisation, and flag anything that falls outside that.
Q: Can you give a practical example of how the anomaly detection works?
A device might normally send data to a very small number of IP addresses.
If it suddenly starts talking to a new one, and that address is also flagged by Kaspersky or other engines as malicious, we let the customer know straight away so they can act on it.
Customers get a visual of connectivity across their estate on a red, amber, green basis.
A red flag might mean a DDoS attack, someone port scanning the device, or usage patterns suggesting something is wrong.
There’s reporting behind all of this too, so a CISO or data security officer can go to the board and show exactly what’s been picked up across the IT estate, whether that’s local to one country or spread globally.
Q: Are other providers doing anything similar at this scale?
There are other MVNOs [Mobile Virtual Network Operators], but from a security standpoint I haven’t seen much that’s comparable.
I wouldn’t say nothing exists, but as far as I’m aware, no one is building anomaly and threat detection with compliance reporting into the product in the same layered way we do.
Analysts like Gartner and Transforma Insights recognise us as a thought leader in this space, and a lot of that recognition comes from these additional security services, particularly around health and medtech.
Q: What do you see as the biggest threats facing IoT devices in healthcare right now?
Not having visibility across the estate.
If you don’t know your devices are up to date, or even where your estate is, that’s where the threat lies.
Part of the value [of our service] is being able to investigate: go back through the logs and history to understand what happened.
We once ran an assessment for a customer and found a Mirai botnet on their network.
In that case, a technician had plugged a personal device into an access point to watch something, it got infected, and the botnet spread onto the whole network.
Having disaster recovery in place matters, but without visibility in the first place, you can’t stop it happening again, and you can’t stop the same person making the same mistake six months later.
Q: Is there a role for educating users about how they interact with these devices?
Definitely.
People understand the risks with a laptop instinctively, but there’s a different perception with IoT devices, so we need people to be just as aware of the distributed perimeter estate as they are of the estate itself.
The aim is to achieve that without the burden of downloading agents or extra software, which is exactly what our anomaly and threat detection does.
It effectively mirrors traffic within our own estate, so deployment is as simple as switching it on.
