Security Magazine logo
search
cart
facebook twitter linkedin youtube
  • Sign In
  • Create Account
  • Sign Out
  • My Account
Security Magazine logo
  • NEWS
    • Security Newswire
    • Technologies & Solutions
  • MANAGEMENT
    • Leadership Management
    • Enterprise Services
    • Security Education & Training
    • Logical Security
    • Security & Business Resilience
    • Profiles in Excellence
  • PHYSICAL
    • Access Management
    • Fire & Life Safety
    • Identity Management
    • Physical Security
    • Video Surveillance
    • Case Studies (Physical)
  • CYBER
    • Cybersecurity News
    • More
  • BLOG
  • COLUMNS
    • Career Intelligence
    • Cyber Tactics
    • Cybersecurity Education & Training
    • Leadership & Management
    • Security Talk
  • EXCLUSIVES
    • Annual Guarding Report
    • Most Influential People in Security
    • The Security Benchmark Report
    • Top Guard and Security Officer Companies
    • Top Cybersecurity Leaders
    • Women in Security
  • SECTORS
    • Arenas / Stadiums / Leagues / Entertainment
    • Banking/Finance/Insurance
    • Construction, Real Estate, Property Management
    • Education: K-12
    • Education: University
    • Government: Federal, State and Local
    • Hospitality & Casinos
    • Hospitals & Medical Centers
    • Infrastructure:Electric,Gas & Water
    • Ports: Sea, Land, & Air
    • Retail/Restaurants/Convenience
    • Transportation/Logistics/Supply Chain/Distribution/ Warehousing
  • EVENTS
    • Industry Events
    • Webinars
    • Solutions by Sector
    • Security 500 Conference
  • MEDIA
    • Interactive Spotlight
    • Photo Galleries
    • Podcasts
    • Polls
    • Videos
      • Cybersecurity & Geopolitical Discussion
      • Ask Me Anything (AMA) Series
  • MORE
    • Call for Entries
    • Classifieds & Job Listings
    • Newsletter
    • Sponsor Insights
    • Store
    • White Papers
  • EMAG
    • eMagazine
    • This Month's Content
    • Advertise
  • SIGN UP!
Security NewswireCybersecurity News

Federal Agencies Lagging on FISMA Compliance

March 16, 2012

Federal agencies are having a difficult time meeting the cybersecurity requirements of the Federal Information Security Management Act (FISMA), according to a recently released Office of Management and Budget (OMB) report. 

According to an article from Information Week, half of the 24 agencies reviewed slipped past their compliance rating from last year. Only seven agencies achieved more than 90 percent compliance. 

Inspector generals were asked to assess IT security programs in 11 areas, including risk management, configuration management, security training, contingency planning and identity and access management, the article says. 

The National Science Foundation topped the list with 98.8 percent compliance, which is still a slight slip from last year's 98.9 percent, the article reports. Other high-achieving organizations include the Social Security Administration, the Environmental Protection Agency, the Nuclear Regulatory Commission, the Department of Homeland Security, NASA and the Department of Justice, all of which scored above 90 percent. 

Eight agencies achieved 66 percent or higher compliance, but nine scored at a 65 percent or less. The Department of Transportation (44.2 percent), the Department of Interior (44.2 percent) and the Department of Agriculture (32.5 percent) were all at the bottom of the list. The Department of Defense was not even included in the OMB report because it did not provide enough detail for FISMA compliance scoring, according to the article. 

Despite the low scores, more than 75 percent of the agencies can now provide automated data feeds through Cyberscope, an online compliance tool. According to the article, only 17 percent could use it in 2010. The DHS plans to analyze the Cyberscope data to help mitigate risks across agencies.

Three priorities have also been identified in the report: trusted Internet connections, continuous monitoring and HSPD-12, which requires agencies to upgrade their physical and logical access control infrastructure to require HSPD-12 PIV credentials to access IT systems and facilities, the article says. 

Agencies are already making progress against these priorities, as 89 percent of employees and contractors requiring PIV credentials have received them. Sixty-six percent of government user accounts are also configured to require PIV cards to authenticate to agencies' networks, an increase from fiscal year 2010's 55 percent, according to Information Week.

KEYWORDS: cyber security Federal agencies FISMA security compliance

Share This Story

Looking for a reprint of this article?
From high-res PDFs to custom plaques, order your copy today!

Recommended Content

JOIN TODAY
To unlock your recommendations.

Already have an account? Sign In

  • Cyber tech background

    Security’s Top Cybersecurity Leaders 2026

    Security magazine’s Top Cybersecurity Leaders 2026 award...
    Top Cybersecurity Leaders
  • Iintegration and use of emerging tools

    Future Proof Your Security Career with AI Skills

    AI’s evolution demands security leaders master...
    Career Intelligence
    By: Jerry J. Brennan and Joanne R. Pollock
  • The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report

    The 2025 Security Benchmark Report surveys enterprise...
    The Security Benchmark Report
    By: Rachelle Blair-Frasier
Manage My Account
  • Security Newsletter
  • eMagazine Subscriptions
  • Manage My Preferences
  • Online Registration
  • Mobile App
  • Subscription Customer Service

More Videos

Popular Stories

Opened padlock on computer keyboard

10 Data Breaches to Know About (April 2026)

Laptop with desktop screen showing

Research: Microsoft Edge Loads Stored Passwords in Cleartext

SEC Podcast Header Podcast

Credential Management in High Turnover Environments

Glowing police siren

Security Isn’t a Commodity. Neither Is Off-Duty Law Enforcement

Laptop in darkness

Reframing MFA Bypass: Four Identity Gaps Attackers Exploit

SEC 2026 Benchmark Banner

Events

June 10, 2026

Applying Agentic AI in Security Operations for Faster Decisions & Better Outcomes

Security teams have never had more visibility. We’ll explore how a new decision layer is helping security teams move from detection to decision. Turn alerts into decision-ready context, reducing reliance on manual triage and enabling faster action.

View All Submit An Event

Products

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

Security Culture: A How-to Guide for Improving Security Culture and Dealing with People Risk in Your Organisation

See More Products


Alertmedia sponsored webinar

Related Articles

  • keys-cyber-enews

    GAO: Federal Agencies Need to Coordinate on Requirements and Assessments of States

    See More
  • industrial

    FBI, Federal Agencies Brief Energy Sector on Data Breaches, Cyberattacks

    See More
  • Percentage of Agencies with a Formal Prevention Program

    Federal Agencies Increasing Their Focus on Insider Threats

    See More

Related Products

See More Products
  • Security of Information and Communication Networks

See More Products
×

Sign-up to receive top management & result-driven techniques in the industry.

Join over 20,000+ industry leaders who receive our premium content.

SIGN UP TODAY!
  • RESOURCES
    • Advertise
    • Contact Us
    • Store
    • Want More
  • SIGN UP TODAY
    • Create Account
    • eMagazine
    • Newsletter
    • Customer Service
    • Manage Preferences
  • SERVICES
    • Marketing Services
    • Reprints
    • Market Research
    • List Rental
    • Survey/Respondent Access
  • STAY CONNECTED
    • LinkedIn
    • Facebook
    • YouTube
    • X (Twitter)
  • PRIVACY
    • PRIVACY POLICY
    • TERMS & CONDITIONS
    • DO NOT SELL MY PERSONAL INFORMATION
    • PRIVACY REQUEST
    • ACCESSIBILITY

Copyright ©2026. All Rights Reserved BNP Media, Inc. and BNP Media II, LLC.

Design, CMS, Hosting & Web Development :: ePublishing