Board Report: 2016-IT-B-013 November 10, 2016
The Federal Information Security Modernization Act of 2014 requires that we review the Board’s information security program.
We determined that the Board continues to mature its program to ensure consistency with FISMA requirements for risk management, contractor systems, configuration management, identity and access management, security and privacy training, information security continuous monitoring, incident response, and contingency planning.
We also recommended ways for the Board to further strengthen its information security program.