• DocumentCode
    744233
  • Title

    Government Risk Management Lags behind Vendor Practices

  • Author

    Anderson, Julie M.

  • Author_Institution
    Civitas Group
  • Volume
    15
  • Issue
    2
  • fYear
    2013
  • Firstpage
    5
  • Lastpage
    7
  • Abstract
    Current US law and government IT policy take a limited a view of the potential conflicts between existing government information privacy and security standards and actual vendor data collection practices. As a result, procurement requirements lack appropriate risk-management and enforcement mechanisms. Given the proliferation of data collection practices in Internet services companies, government IT leaders should more directly define the parameters of government data ownership in government IT policy and procurement guidance. Government should also better educate employees and govern the use of Internet-based services on government-owned systems.
  • Keywords
    Contracts; Government policies; Privacy; Procurement; Risk management; Security; government IT; information privacy; information technology; privacy and security; procurement requirements; risk management;
  • fLanguage
    English
  • Journal_Title
    IT Professional
  • Publisher
    ieee
  • ISSN
    1520-9202
  • Type

    jour

  • DOI
    10.1109/MITP.2013.29
  • Filename
    6487335