U.S. flag

An official website of the United States government

Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Breadcrumb

Assessment of NRC’s Wireless Devices

Report Information

Date Issued
Report Number
OIG-10-A-18
Report Type
Audit
Joint Report
No
Agency Wide
No (location specific)
Questioned Costs
$0
Funds for Better Use
$0

Recommendations

Develop and implement a technical process for isolation verification of SLES from all other connected networks, and provide refresher training to SLES security administrators on organizational responsibility for system configuration and management of SLES security controls for network isolation.

Provide refresher training for SLES security and system administrators on separation of duties.

Evaluate, select, and implement an automated audit log reduction and analysis system for SLES. This system should include both technology and process/procedure elements.

Evaluate, select, and implement an automated configuration control and baseline documentation system for SLES.

Implement improved technologies and procedures for detection and management of unauthorized network-disconnected wireless systems. These improvements should include selection and deployment of a wireless intrusion detection system, proactive management of detected wireless systems including wireless printers and audio-visual control systems, policy development and security awareness training for users and administrators related to personal area network devices, and refresher training about restrictions on wireless networking systems.