Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news
No Result
View All Result
Executive Gov
No Result
View All Result
Home Federal Civilian

VA FISMA Audit Flags Security Gaps, Issues 19 Recommendations

by Miles Jamison
July 30, 2026
in Federal Civilian, Healthcare IT, News
VA seal. The Department of Veterans Affairs has yet to meet all Federal Information Security Modernization Act requirements.

The Department of Veterans Affairs has yet to fully meet Federal Information Security Modernization Act requirements, according to an audit.

  • A fiscal 2025 audit has found that the VA is still struggling to meet FISMA cybersecurity requirements
  • The review has identified persistent weaknesses in access controls, configuration management, security management and service continuity
  • Auditors have cited deficiencies involving patch management, system upgrades, configurations and security monitoring

The Department of Veterans Affairs continues to face challenges meeting Federal Information Security Modernization Act, or FISMA, requirements, according to a fiscal 2025 audit conducted by the VA Office of Inspector General.

Table of Contents

    • You might also like
    • DHS S&T Opens AI Prize Challenge to Detect Biological Threats
    • GSA, OpenAI Reach OneGov Deal for Discounted ChatGPT Access
    • Department of War Seeks AI Tools to Track Space & Missile Threats
  • What Did the FY 2025 FISMA Audit Evaluate?
  • What Recommendations Did the Audit Provide?

You might also like

DHS S&T Opens AI Prize Challenge to Detect Biological Threats

GSA, OpenAI Reach OneGov Deal for Discounted ChatGPT Access

Department of War Seeks AI Tools to Track Space & Missile Threats

In a report released Monday, the OIG said it contracted CliftonLarsonAllen to evaluate VA’s information security program and assess compliance with FISMA requirements.

What Did the FY 2025 FISMA Audit Evaluate?

The audit reviewed 24 applications and general support systems hosted at 11 VA facilities and on the VA Enterprise Cloud. Access controls, configuration management controls, security management controls and service continuity practices all showed persistent shortcomings, according to the assessment. These weaknesses affect safeguards that are intended to prevent unauthorized access, alteration or destruction of mission-critical systems.

The audit also identified areas where VA could address deficiencies, including security patch deployment, system upgrades, system configurations, performance monitoring and communication of security issues to appropriate personnel.

VA FISMA Audit Flags Security Gaps, Issues 19 RecommendationsCybersecurity, data protection and IT modernization remain critical priorities for federal health agencies as they work to secure mission systems and patient information. Learn how government leaders are addressing these challenges at the Potomac Officers Club’s 2026 Healthcare Summit on Dec. 3. Sign up now.

What Recommendations Did the Audit Provide?

The audit resulted in 19 recommendations, including two new ones. A number of the outstanding recommendations were traced back to repeat deficiencies flagged in earlier FISMA reports. VA did not concur with the recommendations.

Six prior recommendations were closed after CliftonLarsonAllen found the related issues had been resolved. The firm said it plans to monitor the unresolved recommendations and gauge whether corrective actions taken are adequate as part of its fiscal 2026 audit of VA’s information security program.

FISMA requires agencies, chief information officers and inspectors general to conduct this kind of annual evaluation of federal information security programs and submit compliance findings to the Department of Homeland Security and Congress.

Stay connected via Google News
Follow us for the latest travel updates and guides.
Add as preferred source on Google
Share5Tweet19
Previous Post

Commerce Department Signs $874M in CHIPS Act R&D Incentives

Next Post

Army PAE Fires Launches ‘Reveille Forge’ to Accelerate Capability Deployment

Recommended For You

Final Flight of Delta IV Heavy Launches NROL-70 Into Space

by Jerry Petersen
April 16, 2024
ULA's Delta IV Heavy rocket launch_272x270

The NROL-70 mission was launched on April 9 by the National Reconnaissance Office, which partnered with United Launch Alliance, the Space Systems Command and U.S. Space Force Space...

Read moreDetails

Air Force Develops Prototype of Next-Gen Fighter Aircraft; Will Roper Quoted

by Jane Edwards
September 16, 2020
Will Roper

The U.S. Air Force has built and flown a prototype of a new fighter aircraft using virtual tools as part of the Next Generation Air Dominance program. The...

Read moreDetails

Symantec Exec Jeff Greene Named NCCoE Director

by Brenda Marie Rivers
August 5, 2020
Symantec Exec Jeff Greene Named NCCoE Director

Jeff Greene, vice president of global government affairs and policy at Symantec, has been appointed director of the National Cybersecurity Center of Excellence, Inside Cybersecurity reported Tuesday.

Read moreDetails

DHS Incorporates Cybersecurity Principles Into Positioning, Timing & Navigation Tech Guide

by Mary-Louise Hoffman
June 15, 2022
DHS Incorporates Cybersecurity Principles Into Positioning, Timing & Navigation Tech Guide

The Department of Homeland Security has released a document meant to help companies design positioning, navigation and timing systems with cybersecurity features such as zero trust.DHS' science and...

Read moreDetails

IG Report: DOD Uses Middle Tier of Acquisition Pathways to Rapidly Deliver Capabilities to Warfighters

by Jane Edwards
October 5, 2021
IG Report: DOD Uses Middle Tier of Acquisition Pathways to Rapidly Deliver Capabilities to Warfighters

The Department of Defense’s (DOD) office of inspector general (OIG) conducted an audit of DOD's use of the middle tier of acquisition pathway and found that acquisition personnel...

Read moreDetails
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Sponsors

About ExecutiveGov

ExecutiveGov, published by Executive Mosaic, is a site dedicated to the news and headlines in the federal government. ExecutiveGov serves as a news source for the hot topics and issues facing federal government departments and agencies such as Gov 2.0, cybersecurity policy, health IT, green IT and national security. We also aim to spotlight various federal government employees and interview key government executives whose impact resonates beyond their agency.

CATEGORIES

  • Acquisition & Procurement
  • Announcements
  • Articles
  • Artificial Intelligence
  • Australia
  • Awards
  • Big Data & Analytics News
  • C4ISR
  • C5ISR
  • Cloud
  • Contract Awards
  • Cybersecurity
  • Defense And Intelligence
  • Defense Security Cooperation
  • Department of War
  • DHS
  • Digital Assets
  • Digital Modernization
  • Events
  • Executive Moves
  • Executive Spotlights
  • Federal Civilian
  • Financial Reports
  • Foreign Military Sales
  • General News
  • GovCon Expert
  • Government Cloud
  • Government Technology
  • GSA
  • Healthcare IT
  • Industry News
  • Intelligence Community
  • Legislation
  • M&A Activity
  • Middle East
  • National Security
  • News
  • Policy Updates
  • Press Releases
  • Profiles
  • Space
  • Technology
  • Videos
  • Wash100
Sign Up For Our Newsletter
Subscribe to our mailing list to receives daily updates direct to your inbox!
Invalid email address
Your privacy is guranteed.
Thanks for subscribing!

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

No Result
View All Result
  • Home
  • Acquisition & Procurement
  • Agencies
    • Department of War
    • Intelligence Community
    • DHS
    • Federal Civilian
    • Space
  • Cybersecurity
  • Technology
  • News
  • About
  • Wash100
  • Contact Us
    • Advertising
    • Submit your news

Copyright 2026 Executive Mosaic. All Rights Reserved. Site Archive

Get your free GovCon news!

Get your latest GovCon news and insights. Become a VIP and subscribe to the GovConWire Daily News.

Invalid email address
We promise not to spam you. You can unsubscribe at any time.
Thanks for subscribing!