Office of the Inspector General Information System Security Evaluation of Region III, Lisle, IL
Report Information
Recommendations
Fully document backup procedures to include the tape rotation schedule, the procedures for sending and receiving backup tapes to the offsite storage location, and the procedures for periodically testing the backups.
Develop and implement procedures for storing backup tapes onsite in a waterproof and fireproof cabinet or safe.
Develop and document a contingency plan for the Region III seat-managed infrastructure servers.
Develop and document a contingency plan for the Region III NRC-managed servers.
Evaluate the vulnerabilities identified by the network vulnerability assessment and develop a plan and schedule to identify any false positives and to resolve the remaining vulnerabilities.