ML18275A088

From kanterella
Jump to navigation Jump to search
DNFSB-16-A-07-Status of Recommendations: Cybersecurity Act of 2015 Audit for Dnfsb Dated October 2, 2018
ML18275A088
Person / Time
Issue date: 10/02/2018
From: Baker B
NRC/OIG/AIGA
To: Sklar G
- No Known Affiliation
References
DNFSB-16-A-07
Download: ML18275A088 (3)


Text

Defense Nuclear Facilities Safety Board Washington, DC 20004-2901 Office of the Inspector General October 2, 2018 MEMORANDUM TO: Glenn Sklar General Manager FROM: Dr. Brett M. Baker /RA Assistant Inspector General for Audits

SUBJECT:

STATUS OF RECOMMENDATIONS: CYBERSECURITY ACT OF 2015 AUDIT FOR DNFSB (DNFSB-16-A-07)

REFERENCE:

GENERAL MANAGER MEMORANDUM DATED SEPTEMBER 5, 2018 Attached is the Office of the Inspector Generals (OIG) analysis and status of recommendations as discussed in the Boards response dated September 5, 2018. Based on this response, recommendations 1 and 2 remain in resolved status. Please provide an updated status of the resolved recommendations by January 15, 2019.

If you have any questions or concerns, please contact me at (301) 415-5915 or Eric Rivera, Team Leader, at (301) 415-7032.

Attachment:

As stated cc: R. Howard, OGM

Audit Report CYBERSECURITY ACT OF 2015 AUDIT FOR DNFSB DNFSB-16-A-07 Status of Recommendations Recommendation 1: Revise current policies and procedures to comply with the Privacy Act of 1974 Requirements and E-Government Act of 2002, and assign responsibility for complying with those requirements.

Agency Response Dated September 5, 2018: The updated Operating Procedure and Work Practice (previously titled Handbook) are both in the official concurrence process. Publication will follow once the documents are cleared by Office Directors, and is estimated by 1st quarter FY 2019.

Implementation of this recommendation is still in progress.

OIG Analysis: The proposed corrective action of updating the Operating Procedures and Work Practice addresses the intent of OIGs recommendation to revise the policies and procedures. This recommendation will be closed when OIG receives and reviews the final, revised Operating Procedure and Work Practice and verifies they assign responsibility for complying with the Privacy Act of 1974 and E-Government Act of 2002.

Status: Resolved.

Audit Report CYBERSECURITY ACT OF 2015 AUDIT FOR DNFSB DNFSB-16-A-07 Status of Recommendations Recommendation 2: Finalize, publish, and disseminate the Draft Handbook for Safeguarding Personally Identifiable Information, dated October 2015.

Agency Response Dated September 5, 2018: The updated Operating Procedure and Work Practice (previously titled Handbook) are both in the official concurrence process. Publication will follow once the documents are cleared by Office Directors, and is estimated by 1st quarter FY 2019.

Implementation of this recommendation is still in progress.

OIG Analysis: The proposed corrective action of updating the Operating Procedures and Work Practice addresses the intent of OIGs recommendation to revise the policies and procedures. This recommendation will be closed when OIG receives and reviews the final, revised Operating Procedure and Work Practice and verifies they assign responsibility for complying with the Privacy Act of 1974 and E-Government Act of 2002.

Status: Resolved.