Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Civilian

GAO Recommends Full Implementation of Risk Management Processes at NASA

by Kristen Smith
June 30, 2025
in Civilian, Cybersecurity, News
GAO evaluates NASA's cybersecurity risk management program implementation.

GAO releases report on NASA's cybersecurity risk management program implementation.

A recent report from the Government Accountability Office reveals that NASA completed some cybersecurity tasks for its major projects, but did not fully execute key elements of its cybersecurity risk management program. 

You might also like

DSCA Director Michael Miller to Retire

DSCA Director Michael Miller to Retire

HHS Grants Quality Management Office Eyes New SIN Under GSA Schedules Program

The report, released on Wednesday, is based on GAO’s evaluation of NASA’s cybersecurity policies and risk management processes for four selected systems. According to the government watchdog, the space agency has yet to conduct an organization-wide risk assessment, a vital step for identifying and mitigating high-priority cyber threats across its systems.

GAO also found that selected NASA systems did not document system-level continuous monitoring strategies due to the lack of guidance on how to do so. “Without documented strategies that are fully understood by key cyber personnel, organizations face increased risks of data breaches, delayed detection of threats, and slower responses to attacks,” the report said. 

The space agency’s cybersecurity risk management program follows guidelines from the National Institute of Standards and Technology, which outlines seven key steps for risk management: prepare, categorize systems, select controls, implement controls, assess control implementation, authorize systems, and continuously monitor security controls. The report found that while NASA had partially or fully implemented most steps, important activities within these steps remained incomplete.

NASA to Invest $80B in Space Exploration Projects

GAO said a comprehensive cybersecurity risk management program is critical to protecting NASA’s systems and information, particularly as the agency plans to invest $80 billion in developing spacecraft and systems for exploring the Earth, the moon and the solar system.

GAO issued 16 recommendations for NASA to address cybersecurity weaknesses. Among the key recommendations are conducting an organization-wide risk assessment, improving the documentation of control assessments, and ensuring that critical controls are properly applied and monitored.

NASA concurred with seven recommendations, partially concurred with four recommendations, and did not concur with the remaining five recommendations.

Share5Tweet19

Recommended For You

DSCA Director Michael Miller to Retire

by Jane Edwards
May 18, 2026
Michael Miller. The Defense Security Cooperation Agency director will retire by the end of May.

DSCA Director Michael Miller will retire after 28 years in government serviceMary Beth Morgan will assume the role of acting DSCA directorMiller previously led defense trade efforts at...

Read moreDetails

DSCA Director Michael Miller to Retire

by Jane Edwards
May 18, 2026
DSCA Director Michael Miller to Retire

Michael Miller, director of the Defense Security Cooperation Agency, will retire from federal service on May 30 after a 28-year government career. Deputy Director Mary Beth Morgan will...

Read moreDetails

HHS Grants Quality Management Office Eyes New SIN Under GSA Schedules Program

by Jane Edwards
May 18, 2026
HHS Grants Quality Management Office Eyes New SIN Under GSA Schedules Program

Health and Human Services' Grants Quality Service Management Office is working with the General Services Administration to establish a new special item number for grants management services under...

Read moreDetails

HHS Grants Quality Management Office Eyes New SIN Under GSA Schedules Program

by Jane Edwards
May 18, 2026
Andrea Sampanis. The Grants QSMO director at HHS discussed the plan to create a new SIN under the GSA Schedules program.

Grants QSMO is working with GSA to create a new SIN for grants management services The new SIN includes grants support, technology operations and audit services The 2026 FedCiv Summit...

Read moreDetails

Space Force to Advance Data-Driven Space Operations With Stanford-Based AI Accelerator

by Miles Jamison
May 18, 2026
Space Force logo. The U.S. Space Force has launched the AI Accelerator program at Stanford University.

Space Force launches Stanford-based accelerator to fast-track AI innovationProgram explores orbital computing, sensor fusion and autonomous space operationsInitiative supports the service’s long-term push for faster, AI-driven decision-making in...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • Civilian
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • DHS
  • Digital Modernization
  • DoD
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • General News
  • GovCon Expert
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence
  • Legislation
  • M&A Activity
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved.

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • DoD
    • Intelligence
    • DHS
    • Civilian
    • Space
  • Cybersecurity
  • Technology
  • Awards
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved.

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!