The Nation's #1 Independent Veterans Web Site
                                                   Click here to make VA Watchdog dot Org your homepage


                  VA NEWS FLASH
from Larry Scott at VA Watchdog dot Org -- 03-02-2007 #2
 


 

VA Medical Malpractice Lawyer -  Malpractice Cases for Veterans Against the VA - The Law Offices of W. Robb Graham, L.L.C. - Former Navy Judge Advocate

click for more info


 
 

 

 



VA Watchdog Stuff
cups, hats, shirts
click here to
support the site






Be sure to get all four
VA Watchdog dot Org
RSS feeds --
Daily VA
News Flashes
House CVA
Veterans' News

Senate CVA
Veterans' News

VA Press
Releases

 


 

Bookmark this page: 

Printer Friendly Page

GAO TESTIMONY: VA NEEDS TO ADDRESS LONG-STANDING

INFORMATION SECURITY WEAKNESSES -- Sensitive

information has remained vulnerable to inadvertent or

deliberate misuse, loss, or improper disclosure.

 

 

Full testimony here... http://www.gao.gov/new.items/d07532t.pdf

Highlights here... http://www.gao.gov/highlights/d07532thigh.pdf

Highlights below:

---------------

INFORMATION SECURITY

Veterans Affairs Needs to Address Long-Standing Weaknesses

 

WHY GAO DID THIS STUDY

Security breaches at the Department of Veterans Affairs (VA) and other public and private organizations have highlighted the importance of well-designed and implemented information security programs. GAO was asked to testify on its past work on VA’s information security program, as well as ongoing reviews that it is conducting at VA.

In developing its testimony, GAO drew on over 15 of its previous reports and testimonies, as well as reports by the department’s inspector general (IG).

 

WHAT GAO FOUND

For many years, GAO has raised significant concerns about VA’s information security—particularly its lack of a comprehensive information security program, which is vital to safeguarding government information. The figure below details information security weaknesses that GAO identified from 1998 to 2005. As shown, VA had not consistently implemented appropriate controls for (1) limiting, preventing, and detecting electronic access to sensitive computerized information; (2) restricting physical access to computer and network equipment to authorized individuals; (3) segregating incompatible duties among separate groups or individuals; (4) ensuring that changes to computer software were authorized and timely; or (5) providing continuity of computerized systems and operations. The department’s IG has also reported recurring weaknesses throughout VA in such areas as access controls, physical security, and segregation of incompatible duties. In response, the department has taken actions to address these weaknesses, but these have not been sufficient to establish a comprehensive information security programs. As a result, sensitive information has remained vulnerable to inadvertent or deliberate misuse, loss, or improper disclosure. Without an established and implemented security program, the department will continue to have major challenges in protecting its systems and information from security breaches.

GAO has several ongoing engagements to review the department’s efforts in improving its information security and information technology management. These engagements address:

• data breach notification;
• actions to strengthen information security controls;
• controls over information technology equipment; and
• VA’s information technology realignment effort.

 

WHAT GAO RECOMMENDS

To ensure that security issues are adequately addressed, GAO has previously made over 150 recommendations to VA on implementing effective controls and developing a robust information security program.

---------------

Larry Scott  --

Don't forget to read all of today's VA News Flashes (click here)

Click here to make VA Watchdog dot Org your homepage

email Larry  PGP key on request

Send this page to a friend:    

(go back to VA Watchdog dot Org Home Page)


 

The Order of the
Silver Rose


Honoring Victims of Agent Orange Illnesses & Deaths with Gratis Medal - Vietnam Veterans get a Yearly Full Physical - Your Life May Be Saved
click for more info

 

If you're military, you need to know VA Joe. Active military forum and comedy contests along with updates on VA benefits through the GI Bill program, all from Joe -- Sign up today.

 



VA Watchdog Stuff
cups, hats, shirts
click here to
support the site








Be sure to get all four
VA Watchdog dot Org
RSS feeds --
Daily VA
News Flashes
House CVA
Veterans' News

Senate CVA
Veterans' News

VA Press
Releases




 

   
Google
 
Web www.vawatchdog.org


FAIR USE NOTICE: This site contains copyrighted material the use of which has not always been specifically authorized by the copyright owner. We are making such materials available in an effort to advance understanding of veterans' issues. We believe this constitutes a 'fair use' of any such copyrighted material as provided for in section 107 of the US Copyright Law. In accordance with Title 17 U.S.C. Section 107, the material on this site is distributed without profit to those who have expressed an interest in receiving the included information for educational purposes. For more information go to: http://www.law.cornell.edu/uscode/17/107.shtml   If you wish to use copyrighted material from this site for purposes of your own that go beyond 'fair use', you must obtain permission from the copyright owner.