U.S. flag

An official website of the United States government

Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Breadcrumb

Independent Evaluation of NRC’s Implementation of the Federal Information Security Management Act (FISMA) for Fiscal Year 2012

Report Information

Date Issued
Report Number
OIG-13-A-03
Report Type
Inspection / Evaluation
Joint Report
No
Agency Wide
No (location specific)
Questioned Costs
$0
Funds for Better Use
$0

Recommendations

Update all procedures, guides, and user manuals that provide guidance for maintaining system inventory records within NSICD [Nuclear Regulatory Commission System Information Control Database] to clearly define which organizations(s) are responsible for adding new system inventory records in NSICD.

Update the instructions included with the biannual inventory update to require system owners to notify the agency of any new systems that are not reflected in the data call.

Include all systems in NSICD, including all independent standalone hardware that has an NSICD system inventory number, in future biannual inventory update data calls.

Assign responsibility for ensuring each NRC remote location maintains a consolidated inventory of all the IT system components located in that location, associated rack diagrams are kept up-to-date, and the inventory meets NRC requirements.

Create a consolidated inventory that meets NRC requirements of all the IT system components located in each NRC remote location.