We use cookies to provide you with a better experience. If you continue to use this site, we'll assume you're happy with this. Alternatively, click here to find out how to manage these cookies

hide cookie message
80,259 News Articles

IRS criticized by federal government watchdog agency for lax IT security

The Internal Revenue Service isn't doing such a great job of protecting its key financial and tax-processing systems, according to the government's watchdog agency, the GAO.

"Specifically, the [IRS] continues to face challenges in controlling access to its information resources," states the Government Accountability Office in its report published Friday. "For example, it had not always (1) implemented controls for identifying and authenticating users, such as requiring users to set new passwords after a prescribed period of time; (2) appropriately restricted access to certain servers; (3) ensured that sensitive data were encrypted when transmitted; (4) audited and monitored systems to ensure that unauthorized activities would be detected; or (5) ensured management validation of access to restricted areas."

BACKGROUND: 40% of government websites fail security tests

The GAO also notes its audit found the IRS did not always "promptly correct known vulnerabilities" in its systems, saying that "76 out of 105 previously reported weaknesses open at the end of the GAO's prior year audit had not yet been corrected."

Taken collectively, these failings "impair IRS's ability to ensure that its financial and taxpayer information is secure from internal threats," or that it's being "safeguarded from unauthorized disclosure or modification."

The GAO handed the IRS a list of six recommended actions for improvement that include monitoring access control and ensuring appropriate security patches have been applied, saying it would be looking at actions taken and reporting back to Congress on it in the future.

Ellen Messmer is senior editor at Network World, an IDG publication and website, where she covers news and technology trends related to information security.

Read more about wide area network in Network World's Wide Area Network section.


IDG UK Sites

Nexus 6 vs Sony Xperia Z3 comparison: Lollipop phablet takes on KitKat flagship smartphone

IDG UK Sites

Why people aren't upgrading to iOS 8: new features are for power users, not the average Joe

IDG UK Sites

Free rocket & space sounds: NASA launches archive of interstellar audio on SoundCloud

IDG UK Sites

iPad Air 2 review: Insanely fast and alarmingly thin. Speed tests, camera tests, beautiful...