You are here: silicon.com > Management > Law & Policy

Law & Policy

Homeland department gets 'F' for computer security

Must do better...

By Robert Lemos

Published: 10 December 2003 09:20 GMT

US federal departments and agencies are showing some improvement in protecting their computer networks, but many - including the Department of Homeland Security - are failing, according to a US government report released on Tuesday.

The report, prepared for the House of Representatives' Committee on Government Reform, found that almost all agencies had improved their computer-security grade since last year. However, several key federal departments continued to fail to adequately protect their networks and earned an "F."

"For too long now information security has taken a back seat in the collective conscience (sic) of our nation," said a statement from Tom Davis, the committee chairman. "We must come to the stark realisation that a major Achilles heel is our computer networks."

Overall, the government earned a "D" on this year's report card. In 2002, it was given an "F."

Two agencies, the Department of Health and Human Services and the National Aeronautics and Space Administration, slipped in the rankings since 2002. The newest department in the federal government, the Department of Homeland Security, got off to a bad start with an overall "F" for its computer security, despite the fact that securing the nation's network is part of its mission.

Davis took the private sector to task for poor security overall as well.

"The culture of our top-level chief executives in the private sector, and top executives in government, must be changed," he said in the statement. "We must get those at the very top, the decision makers, the ones accountable to the shareholders, the customers or the electorate, to recognise that lack of network security in an organisation is a material weakness and one that deserves necessary resources and immediate action."

This year, two agencies earned an "A": the Nuclear Regulatory Commission and the National Science Foundation. Ironically, a privately maintained nuclear reactor under the NRC's jurisdiction suffered an attack by the Slammer worm in early 2003.

The agencies' rankings can be found on the Committee on Government Reform's website.

Robert Lemos writes for CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

Peter Cochrane Peter Cochrane's Blog: Quality by design Why do picky people settle for poor design at work?

Naked CIO The Naked CIO: Service level disagreements SLAs - not worth the paper they're written on?


  • Jobs
Market Risk Specialist AAA Investment Bank

You will further develop risk methodologies to support the strategic decisions made by the Executive Committee. As a member of the market risk team ...

Java / J2EE Developer - Government / Public Sector - 40 - 60k

The government practice works for major government departments and agencies across Central Government. IT consultancy based in Central London are ...

Health & Safety Advisor - Leicester - 25k

Proactively support and facilitate the delivery of the Health and Safety Strategy and to work in partnership with agencies, individuals and other ...

CIO50 2008
The silicon.com CIO50 2008 profiles the most influential and innovative tech chiefs in the UK across all industries and organisation size, from the biggest FTSE100 companies to high growth dot-com start ups and the public sector. The list was voted on by the UK CIO community and a panel of experts. Find out more in our latest special report.





Quick Sitemap Links: