WASHINGTON (Sputnik) — The HHS needs to implement a five-point plan for protecting its vulnerable systems against cyber threats, the Government Accountability Office (GAO) said in a report.
“GAO is making five recommendations, including that HHS update its guidance for protecting electronic health information to address key security elements [and] improve technical assistance it provides to covered entities,” the report stated.
The GAO also recommended that the HHS provide updated guidance on the security of its computer systems and revise its policies to ensure follow-up on efforts to remedy a cybersecurity breach.
In addition, the health agency should establish performance metrics for its Office of Civil Rights audit program and ensure that the office shares investigative findings with the HHS Centers for Medicare and Medicaid Services, the report added.