Most Popular Stories
- Top FAA execs lack institutional knowledge, says official; agency must be prepared for cuts
- Air traffic control training gaps will be exacerbated by NextGen, says OIG
- Agencies plan for governmentwide FOIA portal
- FAA reauthorization would create NextGen czar UPDATED
- Obama administration announces immigrant visa waiver change
Events
- IBM Global Business Services Career Expo
February 16, 2012 — Huntsville, AL 11am - 8pm - IBM Global Business Services Career Expo
February 16, 2012 — Linthicum Heights, MD 10am - 3pm - Learn With Your Peers at the Federal Senior Management Conference
April 15-18 — Cambridge, MD - V2X for Auto Safety and Mobility USA 2012
March 20-21, 2012 — Novi, MI
Sponsored Links
HOT TOPICS >> Cloud computing | Cybersecurity | Gov 2.0 | Fiscal 2012 | Mobile | Transparency | GAO reports
AGENCY NEWS >> Defense | NASA | Homeland Security | NIST | OMB | Veterans Affairs | NARA | GSA
Latest News
Free Newsletter
About | View Sample | Privacy
Popular Topics
Whitepapers
- Business Intelligence: It's All in the Data
- End-of-life solution management for mobile devices reduces MNCs' security, compliance and sustainability risks
- The Top 4 Reasons Your Telecom Expense Management Provider Shouldn't Manage Your Wireless
- IMPROVING THE MANAGEMENT OF FEDERAL GOVERNMENT IT ASSETS THROUGH BETTER COMMUNICATION WITH THE IT INDUSTRY
- Migrating enterprise digital communication to the Cloud
- The Data Center in Your Future
Agencies meet FISMA rules, but still face cyber threats
The Federal Information Security Management Act (FISMA) is the main law governing federal information security practices, and most agencies complied with its requirements in 2008. Unfortunately, compliance with this law is hardly enough to ensure the security of the federal government computer systems, with many experts believing it is little more than a paperwork exercise that does not really stop cyber attacks.
The Office of Management and Budget's FISMA implementation report for fiscal 2008 found that 92 percent of the federal agencies had satisfactory or better grades for the quality of their certification and accreditation processes. It said 84 percent of major agencies had "effective" cybersecurity plans, yet the number of attacks continues to grow--reaching 18,050 in fiscal 2008.
The Government Accountability Office has found that while most agencies comply with FISMA, the effectiveness of those efforts is unclear. Others say it is more an exercise of checking boxes to get a good grade, when IT staffing should be doing much more, including more closely monitoring systems in real time to detect intrusions.
Congress is considering revamping FISMA and making changes in the entire government cybersecurity arena. President Obama also has made the issue a priority, and is expected to soon release a new framework for government information security.
For more on FISMA:
- see this InformationWeek article
Related Stories
- OMB: Reported cyber attacks up 39 percent
- OMB's contracting efficiencies savings overstated, says GAO
- WikiLeaks inspires new White House cybersecurity policy
- Privacy controls to be included in NIST cybersecurity guidance
- White House unveils proposed cybersecurity legislation
- US CERT authorities remain fuzzy
- SEC slow with patch management, says IG report
- IRS has cybersecurity material weakness, says GAO
- GAO finds wireless network cybersecurity vulnerabilities
- GAO: Only two of Obama administration's 22 cyber policy items are complete
Home
| Subscribe | Advertise | Mobile Edition | RSS |
Privacy
| Site Map
| EditorsTHE FIERCEMARKETS NETWORKFierceEnergy | FierceSmartGrid | FierceFinance | FierceFinanceIT | FierceComplianceIT | FierceHealthcare | FierceHealthFinance | FierceHealthIT | Hospital Impact | FierceMobileHealthcare | FierceHealthPayer | FiercePracticeManagement | FierceEMR | FierceCIO | FierceCIO:TechWatch | FierceContentManagement | FierceMobileIT | FierceGovernmentIT | FierceGovernment | FierceHomelandSecurity | FierceBiotech | FierceBiotech Research | FiercePharma | FierceVaccines | FierceBiotechIT | FiercePharma Manufacturing | FierceMedicalDevices | FierceDrugDelivery | FierceIPTV | FierceOnlineVideo | FierceTelecom | FierceEnterpriseCommunications | FierceBroadbandWireless | FierceDeveloper | FierceMobileContent | FierceWireless | FierceWireless:Europe | FierceCable© 2011 FierceMarkets. All rights reserved. |
![]() |


