«

»

Mar
14

OIG Compliance Audit Finds HHS Risk Management, IAM Issues Continue

From: HealthITSecurity

The Department of Health and Human Services is improving its FISMA compliance, but still has weaknesses in its information security, including in risk management.

By Elizabeth Snell

The enterprise-wide information security program within the Department of Health and Human Services (HHS) has improved, but there are still risk management weaknesses, issues with identity and access management (IAM), and problems in other areas, according to a recent HHS Office of Inspector General (OIG) report.

***

“Continued improvements were made by HHS in their enterprise-wide security program including adhering to security training procedures and updating policies and procedures,” report authors explained. “Further, HHS continues to work towards implementing a Department-wide Continuous Diagnostics and Mitigation (CDM) program coordinating with DHS.”

Read Complete Article

Leave a Reply

Please Answer: *