FierceGovernmentFierceGovernmentITFierceHomelandSecurity
Syndicate content

FISMA news from FierceGovernmentIT

The Federal Information Security Management Act of 2002 (FISMA) is Title III of the E-Government Act of 2002. FISMA assigns responsibilities to agencies such as the National Institute of Standards and Technology (NIST) and the Office of Management and Budget (OMB) to strengthen the security of information systems used by government offices, employees and contractors.

FISMA recognized the need of governmental agencies to instill strict information security programs and guidelines. The act requires federal agencies to develop and implement a documented, enterprise-wide, supportive program to provide security within the information systems. FISMA has been instrumental in bringing federal attention to issues of cybersecurity, although many have criticized it for promoting a rote, paper-based approach to systems security.

 

News

Survey: Federal IT skeptical of cloud computing benefits

Seventy one percent of federal IT workers say pressure to rapidly adopt cloud-computing technology creates security risks for their organizations, according to a survey from Ponemon Institute, Read more...

NRC cybersecurity hole remediation needs work, says audit firm

Remediation of cybersecurity vulnerabilities continues to remain a problem at the Nuclear Regulatory Commission, says a recently released annual audit of agency systems conducted under the Federal Read more...

Security system planning, testing lapses due to budget constraints, says SSA

Social Security Administration officials say lack of money prevented them from updating and testing security controls on two major systems, says an SSA office of inspector general audit (.pdf) Read more...

FERC: $3.8M not enough for FISMA compliance

The Federal Energy Regulatory Commission has not fully implemented cybersecurity policies and procedures due to budget and resource constraints, FERC officials told auditors performing a fiscal 2011 Read more...

DOT continues to lag on resolving cybersecurity problems

The Transportation Department continues to have difficulty remediating cybersecurity vulnerabilities, the departmental inspector general says in an annual assessment on Federal Information Security Read more...

Treasury valued AT&T as provider more than it valued competence, says IG

It was more important for the Treasury Department to keep AT&T (NYSE: T) as its tele-communications contractor than "to take the proper steps to either obtain satisfactory performance from the Read more...

Privacy controls to be included in NIST cybersecurity guidance

Privacy controls will become an explicit part of agency cybersecurity guidance issued by the National Institute of Standards and Technology with the addition later this year of a new appendix to NIST Read more...

Continuous monitoring part of fiscal 2011 FISMA metrics

Federal agencies preparing their annual Federal Information Security Management Act reports for Homeland Security Department scrutiny later this year now know what metrics DHS wants agencies to use. Read more...

Federal agencies uncertain how to respond to 'cloud first'

Security remains the largest concern to public cloud adoption among government and higher education officials, according to an online survey of 646 information technology professionals. The survey, Read more...

NIST: Cloud computing has a number of technical issues

Cloud computing is not for everyone, say draft National Institute of Standards and Technology guidelines. The draft, published online May 12, outlines various cloud computing models and discusses Read more...

Press Releases

With Help from Unisys, GSA Becomes First Federal Agency to Transition to Cloud-Based Google Apps for Government Solution

Unisys announces Collaborative Office Solutions - Google Apps for Government, based on successful GSA migration of 17,000 usersBLUE BELL, Pa., July 26, 2011 /PRNewswire/ -- Unisys Corporation (NYSE: Read more >>

CompTIA Welcomes Administration’s Proposed Cybersecurity Reforms

Supports FISMA, Data Breach and Cloud Overhaul WASHINGTON--(BUSINESS WIRE)-- The President recently released his plans for comprehensive cybersecurity reforms across federal agencies and networks. As Read more >>

Google's Misrepresentations to Government About Cloud Computing Service Warrant House Oversight Committee Investigation, Consume

WASHINGTON, April 14, 2011 /PRNewswire-USNewswire/ -- Consumer Watchdog today asked the House Oversight & Government Reform Committee to investigate Google's misrepresentations about its "cloud Read more >>

CAGW’s Questions on Google Certification Causes Controversy

WASHINGTON--(BUSINESS WIRE)-- The nation’s premier watchdog group, Citizens Against Government Waste (CAGW), yesterday raised questions for members of the Senate Subcommittee on Federal Financial Read more >>

Lunarline and SAC Announce Integration Partnership in Realizing Near Real Time Continuous Monitoring by Completing the CCMR Solu

ARLINGTON, Va., Jan. 27, 2011 /PRNewswire/ -- Lunarline and Security Associates Corp. (SAC) announce the availability of the Continuous Compliance Monitoring & Reporting (CCMR) platform designed Read more >>