Senate turns up a decade of federal cybersecurity failure — FCW

0
192

CYBERSECURITY

Senate turns up a decade of federal cybersecurity failure

HHS tightens FISMA compliance, but risks remain

Some of the biggest civilian agencies in the federal government have failed to act on internal cybersecurity audits dating back multiple years, a Senate report found.

The Senate Homeland Security and Governmental Affairs Subcommittee on Investigations

dug through a decade of inspector general reports for eight federal agencies that rated lowest for compliance with the National Institute of Standards and Technology’s Cybersecurity Framework in 2017: the Departments of Homeland Security, State, Transportation, Housing and Urban Development, Agriculture, Health and Human Services and Education as well as the Social Security Administration.

The primary finding was an overall failure to keep pace with even basic federal cybersecurity standards.

Seven of the eight agencies weren’t properly protecting personally identifiable information, and six failed to regularly patch their machines and systems. Five agencies (DOT, HUD, HHS, State and SSA) weren’t even able to keep an accurate inventory of their…

Read More…