Information Security: Evaluation of GAO's Information Security Program and Practices for Fiscal Year 2009
OIG-10-3
Published: Jan 04, 2010. Publicly Released: Jan 04, 2010.
Skip to Highlights
Highlights
This is a publication by GAO's Inspector General that concerns internal GAO operations. Although not obligated by law to comply, GAO has adopted the requirements of the Federal Information Security Management Act of 2002 (FISMA) to strengthen its information security program and demonstrate its ongoing commitment to lead by example. GAO's Office of Inspector General (OIG) conducted an evaluation to assess (1) the effectiveness of the agency's information security policies, procedures, and practices, and (2) agency compliance with the information security requirements of FISMA and other federal information security policies, procedures, standards, and guidelines.