Sunday, December 14, 2025

HHS OIG: Review of HHS Compliance with FISMA act for Fiscal Year 2017

“Overall, the Department has made improvements and continues to implement changes to strengthen its enterprise-wide information security program including adhering to security training procedures and updating policies and procedures. Further, the Department continues to work towards implementing a Department-wide Continuous Diagnostics and Mitigation program, coordinating with the Department of Homeland Security.”

“While the Department continue to improve its information security program, opportunities to strengthen the overall information security program were identified, which should allow the Department to achieve a higher level of maturity for its information security program. We continued to identify weaknesses in the following areas: risk management, configuration management, identity and access management, security training, information security continuous monitoring…” Access the full report here.

Source: Review of the Department of Health and Human Services’ Compliance with the Federal Information Security Modernization Act of 2014 for Fiscal Year 2017 – March 2018. Office of Inspector General.

[related-post]

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Innovation in Action: Advancing Government Health with Philips

FORUM is proud to partner with Philips for a series of articles on their groundbreaking innovations in health technology that serve public- and private sector citizens and service members. Please take a look to learn more about how Philips is advancing modern and efficient health care, while improving lives for generations to come.

Don’t Miss A Thing

Jackie Gilbert
Jackie Gilbert
Jackie Gilbert is a Content Analyst for FedHealthIT and Author of 'Anything but COVID-19' on the Daily Take Newsletter for G2Xchange Health and FedCiv.

Subscribe to our mailing list

* indicates required