Date Issued
|
Report Number
16-00623-306
No. 1
to Information and Technology (OIT)
Closure Date: 9/15/2016
We recommended the VA Assistant Secretary for Information and Technology improve VA’s email security filtering software configuration controls to effectively flag improper transmissions of veterans’ personally identifiable information over the VA network.
No. 2
to Information and Technology (OIT)
Closure Date: 9/15/2016
We recommended the VA Assistant Secretary for Information and Technology establish Memoranda of Understandings with third party organizations that define network responsibilities, processes and procedures for handling sensitive veterans’ information, and require information security controls are implemented commensurate with VA’s information security standards.
No. 3
to Information and Technology (OIT)
Closure Date: 9/15/2016
We recommended the VA Assistant Secretary for Information and Technology evaluate whether permanent encryption controls are needed for non-VA employees who maintain VA accounts for conducting business on behalf of veterans.
No. 4
to Information and Technology (OIT)
Closure Date: 9/15/2016
We recommended the VA Assistant Secretary for Information and Technology conduct reviews of processes, procedures, and controls in place at VA regional offices that collaborate with third party organizations to ensure security of sensitive veterans’ information.