欢迎来到天天文库
浏览记录
ID:51095744
大小:1.81 MB
页数:36页
时间:2020-03-18
《Report to the Commissioner of InternalRevenue向内部专员归纳总结报告 收入.pdf》由会员上传分享,免费在线阅读,更多相关内容在应用文档-天天文库。
1、UnitedStatesGovernmentAccountabilityOfficeReporttotheCommissionerofInternalRevenueJuly2018INFORMATIONSECURITYIRSNeedstoRectifyControlDeficienciesThatLimitItsEffectivenessinProtectingSensitiveFinancialandTaxpayerDataGAO-18-391July2018INFORMATIONSECURITYIRSNeedstoRectifyControlDeficie
2、nciesThatLimitItsEffectivenessinProtectingSensitiveFinancialandTaxpayerDataHighlightsofGAO-18-391,areporttotheCommissionerofInternalRevenueWhyGAODidThisStudyWhatGAOFoundTheIRShasademandingTheInternalRevenueService(IRS)hasmadeprogressinresolvinganumberofresponsibilitytocollecttaxes,p
3、rocesspreviouslyreportedcontroldeficiencies.Duringfiscalyear2017,theagencytaxreturns,andenforcethenation’smadeimprovementsinaccesscontrolsby,forexample,restrictingunnecessarytaxlaws.Itreliesextensivelyonuseraccesstocertainapplicationsandenforcingstrongencryptiononcertaincomputerized
4、systemstosupportitssystems.IRSalsocorrectedapreviouslyidentifiedcontingencyplanningfinancialandmission-relatedweaknessforonesystem.operationsandoninformationsecuritycontrolstoprotectthesensitiveNevertheless,continuingandnewlyidentifiedcontroldeficiencieslimitedthefinancialandtaxpaye
5、rinformationthateffectivenessofsecuritycontrolsforprotectingtheconfidentiality,integrity,andresideonthosesystems.availabilityofIRS’sfinancialandtaxprocessingsystems.Forexample,IRSdidnotconsistently(1)implementaccesscontrolsbyenforcingpasswordexpirationsAspartofitsauditofIRS’sfiscaly
6、earandminimumpasswordlengthsorbyupdatingexpirationdatesforcontractor2017and2016financialstatements,passwords;(2)applyconfigurationmanagementcontrolsbydocumentingGAOassessedwhethercontrolsoverauthorizationsandapprovalsforchangestomainframedataandprocessing,orfinancialandtaxprocessing
7、systemswereeffectiveinensuringthebyinstallingcriticalsecuritypatchesonmultipledevices;and(3)implementconfidentiality,integrity,andavailabilitycertaincomponentsofitssecurityprogrambycorrectingweaknessesinoffinancialandsensitivetaxpayerproceduresorbyupdatingsystemsecurityplans.GAOhasm
8、adeinformation.Todo
此文档下载收益归作者所有