Inspector General: DOI Must Update Logical Access Controls to Protect Sensitive Data

cybersecurityThe Interior Department‘s Office of Inspector General has recommended that DOI update its logical access control policies in order to meet current sensitive data protection requirements established by the National Institute of Standards and Technology.

DOI OIG said in an Aug.8 audit report it reviewed the department’s security policies and procedures that apply to its computer networks and systems related to logical access control practices, multifactor verification, software inventory, threat prevention and contract oversight.

The inspector general found that the department implemented multifactor authentication to protect its sensitive systems and software inventory management from unauthorized access.

DOI should implement measures to prevent unauthorized access to privileged functions as well as audit trails to monitor user access and prevent insider threats, the IG added.

The IG also urged the department to encrypt its mobile devices to protect sensitive data from theft when a device is lost or stolen.

Check Also

SAP

TAH Leverages SAP Digital Solutions to Support Digital Transformation; Hiroshi Nagumo, Rick Larrieu Quoted

SAP SE has announced that Terumo Americas Holding (TAH) has integrated SAP S/4HANA and several other solutions across multiple sites, as part of a digital transformation initiative to assist with healthcare operations.TAH implemented has SAP offerings including SAP S/4HANA, the SAP Master Data Governance application and SAP Ariba solutions. 

Leave a Reply

Your email address will not be published. Required fields are marked *