GAO raps FAA security

The General Accounting Office pressed the Federal Aviation Administration last week to clean up its computer security with a report detailing recommendations and pushing a response from the agency on actions it has taken.

The report to Transportation Secretary Rodney Slater, "FAA Computer Security: Recommendations to Address Continuing Weaknesses," addresses "serious, pervasive problems" that GAO revealed in testimony Sept. 27 before the House Science Committee. GAO said the FAA failed to conduct background checks on contractor personnel who were remediating Year 2000 problems and who were hired to conduct vulnerability testing at the FAA.

The Dec. 6 report insists that the FAA address those critical weaknesses and reminded Slater that the head of a federal agency is required to submit a written response to the GAO's recommendations within 60 days. Another written statement also is due to House and Senate appropriators with the agency's first budget request following the report.

GAO's recommendations were not formally transmitted at the September hearing, said Colleen Phillips, GAO's assistant director of information technology issues. However, GAO officials were pleased that the FAA was committed to working on its personnel, facility, systems, management, policy and intrusion-detection security flaws.

"The FAA agrees with the recommendations and is aggressively pursuing them under our new Office of Information Systems Security," an FAA spokeswoman said. "We have worked closely with GAO on the recommendations and believe the programs we've put into place do address the concerns."

The GAO recommendations can be found in Portable Document Format at www.gao.gov/new.items/d01171.pdf.

Featured

  • Defense
    Ryan D. McCarthy being sworn in as Army Secretary Oct. 10, 2019. (Photo credit: Sgt. Dana Clarke/U.S. Army)

    Army wants to spend nearly $1B on cloud, data by 2025

    Army Secretary Ryan McCarthy said lack of funding or a potential delay in the JEDI cloud bid "strikes to the heart of our concern."

  • Congress
    Rep. Jim Langevin (D-R.I.) at the Hack the Capitol conference Sept. 20, 2018

    Jim Langevin's view from the Hill

    As chairman of of the Intelligence and Emerging Threats and Capabilities subcommittee of the House Armed Services Committe and a member of the House Homeland Security Committee, Rhode Island Democrat Jim Langevin is one of the most influential voices on cybersecurity in Congress.

Stay Connected

FCW INSIDER

Sign up for our newsletter.

I agree to this site's Privacy Policy.