Audit: State IT System Vulnerable To Security Breaches | Eastern North Carolina Now

A newly released state audit has revealed shortcomings in the state government information technology system that could compromise security.

ENCNow
    Publisher's note: The author of this post is Barry Smith, who is an associate editor for the Carolina Journal, John Hood Publisher.

Auditor cites potential security gaps, praises CIO for working to address vulnerabilities


    RALEIGH     A newly released state audit has revealed shortcomings in the state government information technology system that could compromise security.

    "There have not been breaches," State Auditor Beth Wood said. "There have been a lot of instances where people were trying to get in." Wood added that the state took too much time reacting to the vulnerabilities.

    "The state's [chief information officer's] office doesn't have a plan for risk management," Wood said. "You really don't have them setting performance metrics to make sure our data can't be breached."

    The auditor's office recommends that the state CIO direct the department's Enterprise Security and Risk Management Office to adopt a comprehensive and well-documented risk management framework. It also recommends the CIO direct ESRMO to establish and post performance measures on the department's website as required by law.

    Other recommendations request the state CIO to direct:

  • the risk management office to begin annual assessments of each agency and each vendor to determine compliance with state security standards;
  • the risk management office to complete a comprehensive strategy for agencies to conduct security assessments and communicated that strategy to all agencies;
  • personnel to address and resolve immediately vulnerabilities detected during scans of systems within established deadlines.

    The auditor's office also suggests that the General Assembly consider modernizing the state's IT security law.

    Wood said that the state CIO has no authority over a lot of local organizations with information systems that are tied into the state's system. Those include local school systems connected to the state Department of Public Instruction's system, local clerks of court offices linked with the state Administrative Office of the Courts, and county agencies tied into the Department of Health and Human Services.

    The lack of sufficient safeguards puts state and personal information at risk, Wood said. That includes Social Security numbers, bank accounts, medical information, criminal records, and tax information, she said.

    "There is a lot of our private personal stuff that could be used to either steal money or steal our identities," Wood said.

    Keith Werner, state chief information officer, generally agreed with the auditor's findings and recommendations. In an eight-page letter to Wood, Werner laid out measures his office is taking or will take to address the shortcomings of the state IT system.

    Werner noted that many of the issues began at a time the IT system was divided among a host of state agencies. Last year, the General Assembly established a Cabinet-level Department of Information Technology in an attempt to centralize IT efforts and modernization.

    Wood said she was pleased with Werner's response.

    "The new CIO is very appreciative of the work," Wood said. "He was on to some of this before our audit started. ... This is good news for me as a taxpayer."
Go Back


Leave a Guest Comment

Your Name or Alias
Your Email Address ( your email address will not be published)
Enter Your Comment ( no code or urls allowed, text only please )




Missouri Attorney General And Democrat Candidate For Governor Calls Obama's Directive To Schools "Wrong" Statewide, Government, State and Federal Online Driver License Renewal Hits Major Milestone


HbAD0

Latest State and Federal

At least one person was shot and killed during an assassination attempt on former President Donald Trump on Saturday at a political rally in Pennsylvania in which the suspected gunman was also “neutralized,” according to the U.S. Secret Service.
The State Board of Elections will hold a remote meeting at 10:30 a.m. Tuesday, July 16, 2024.
President Joe Biden formally rejected on Monday a bill in Congress that would require individuals to show proof of U.S. citizenship to register to vote in elections for federal office.
Those with access to President Joe Biden behind closed doors say that his condition is deteriorating at an accelerated rate
Republican lawmakers slammed President Joe Biden this week after an explosive report revealed that an ISIS-affiliated human smuggling network has brought more than 400 illegal aliens into the U.S.
Former President Donald Trump’s legal team filed documents in court on Thursday seeking to have Judge Arthur Engoron thrown off the civil fraud case against Trump in New York after they discovered that he allegedly engaged in “prohibited communications” with an outside party about the case.
Parts of the gag order against former President Donald Trump in his New York hush money case were lifted by Judge Juan Merchan on Tuesday, just two days before Trump is set to square off against President Joe Biden in the first debate of the election season.
'I am a white male and that’s not who they’re looking to promote at the moment,' the man told an undercover journalist.

HbAD1

Viral clips showing President Joe Biden in situations in which he looks to be frail or confused are being dismissed as “cheap fakes” by the White House.
As the first presidential debate between President Joe Biden and Donald Trump nears, the Biden campaign is ratcheting up its attacks on the presumptive Republican nominee’s 34 felony convictions.
Approximately 6,800 people in North Carolina have sickle cell disease, of which approximately 95% are Black or African American.
President Joe Biden delivered remarks on Tuesday at gun control advocacy group Everytown’s annual conference, Gun Sense University — and as is often the case when Biden speaks about guns, critics were quick to point out a series of factual errors.
Democrat strategist James Carville raged against the legacy media this week, demanding that they take an even more biased approach when reporting on former President Donald Trump.
Republican congressman Byron Donalds said it would be a “great honor” if former President Donald Trump were to ask him to be his running-mate for 2024, saying the ultimate goal is for Trump to win and he’ll do whatever he’s asked to help him do that.
Voters in Arizona will have the opportunity to enact broad border security measures in November as the state faces a flood of illegal immigration after the Republican-led state legislature passed a resolution that will put the measures on the general election ballot.
The former White House physician for Presidents Barack Obama and Donald Trump says that a new report this week about how President Joe Biden is struggling to function behind closed doors represents a serious threat to the U.S.
The Tikva Forum for Families of Hostages, an Israeli group created to represent the families of those taken during Hamas’ October 7 terrorist attack, urged President Joe Biden to stop interfering with Israel’s campaign to destroy the terrorist group.

HbAD2

 
Back to Top