<mods xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.loc.gov/mods/v3" version="3.3" xsi:schemaLocation="http://www.loc.gov/mods/v3 http://www.loc.gov/standards/mods/v3/mods-3-3.xsd" ID="P0b002ee1803a37d1">
<name type="corporate">
 <namePart>United States Government Publishing Office</namePart>
 <role>
  <roleTerm authority="marcrelator" type="text">publisher</roleTerm>
  <roleTerm authority="marcrelator" type="code">pbl</roleTerm>
</role>
 <role>
  <roleTerm authority="marcrelator" type="text">distributor</roleTerm>
  <roleTerm authority="marcrelator" type="code">dst</roleTerm>
</role>
</name>
<name type="corporate">
 <namePart>United States</namePart>
 <namePart>Government Accountability Office</namePart>
 <role>
  <roleTerm authority="marcrelator" type="text">author</roleTerm>
  <roleTerm authority="marcrelator" type="code">aut</roleTerm>
</role>
 <description>Government Organization</description>
</name>
<typeOfResource>text</typeOfResource>
<genre authority="marcgt">government publication</genre>
<language>
 <languageTerm type="code" authority="iso639-2b">eng</languageTerm>
</language>
<extension>
 <collectionCode>GAOREPORTS</collectionCode>
 <category>Legislative Agency Publications</category>
 <waisDatabaseName>gao</waisDatabaseName>
 <branch>legislative</branch>
 <dateIngested>2010-08-12</dateIngested>
</extension>
<originInfo>
 <publisher>U.S. Government Printing Office</publisher>
 <dateIssued encoding="w3cdtf">2004-03-16</dateIssued>
 <issuance>monographic</issuance>
</originInfo>
<physicalDescription>
 <note type="source content type">deposited</note>
 <digitalOrigin>born digital</digitalOrigin>
 <extent>45 p.</extent>
</physicalDescription>
<classification authority="sudocs">GA 1.13:GAO-04-483T</classification>
<identifier type="uri">https://www.govinfo.gov/app/details/GAOREPORTS-GAO-04-483T</identifier>
<identifier type="local">P0b002ee1803a37d1</identifier>
<identifier type="former package identifier">f:d04483t</identifier>
<recordInfo>
 <recordContentSource authority="marcorg">DGPO</recordContentSource>
 <recordCreationDate encoding="w3cdtf">2010-08-12</recordCreationDate>
 <recordChangeDate encoding="w3cdtf">2011-03-28</recordChangeDate>
 <recordIdentifier source="DGPO">GAOREPORTS-GAO-04-483T</recordIdentifier>
 <recordOrigin>machine generated</recordOrigin>
 <languageOfCataloging>
  <languageTerm type="code" authority="iso639-2b">eng</languageTerm>
</languageOfCataloging>
</recordInfo>
<accessCondition type="GPO scope determination">fdlp</accessCondition>
<extension>
 <docClass>REPORT</docClass>
 <accessId>GAOREPORTS-GAO-04-483T</accessId>
 <reportNumber>GAO-04-483T</reportNumber>
 <subject>Accountability</subject>
 <subject>Computer security</subject>
 <subject>Information resources management</subject>
 <subject>Information systems</subject>
 <subject>Information technology</subject>
 <subject>Performance measures</subject>
 <subject>Reporting requirements</subject>
 <subject>Standards and standardization</subject>
 <subject>Risk assessments</subject>
 <type>Testimony</type>
 <accountNo>A09501</accountNo>
 <law congress="106" isPrivate="false" number="398"></law>
 <law congress="107" isPrivate="false" number="347"></law>
</extension>
<titleInfo>
 <title>Information Security: Continued Efforts Needed to Sustain Progress in Implementing Statutory Requirements</title>
</titleInfo>
<abstract>For many years, GAO has reported on the widespread negative
impact of poor information security within federal agencies and  
has identified it as a governmentwide high-risk issue since 1997.
Legislation designed to improve information security was enacted 
in October 2000. It was strengthened in December 2002 by new	 
legislation, the Federal Information Security Management Act of  
2002 (FISMA), which incorporated important new requirements. This
testimony discusses (1) the Office of Management and Budget&apos;s	 
(OMB) recent report to the Congress required by FISMA on the	 
government&apos;s overall information security posture, (2) the	 
reported status of efforts by 24 of the largest agencies to	 
implement federal information security requirements, (3)	 
opportunities for improving the usefulness of performance	 
measurement data, and (4) progress by the National Institute of  
Standards and Technology (NIST) to develop related standards and 
guidance.</abstract>
<location>
 <url displayLabel="HTML rendition" access="raw object">https://www.govinfo.gov/content/pkg/GAOREPORTS-GAO-04-483T/html/GAOREPORTS-GAO-04-483T.htm</url>
 <url displayLabel="PDF rendition" access="raw object">https://www.govinfo.gov/content/pkg/GAOREPORTS-GAO-04-483T/pdf/GAOREPORTS-GAO-04-483T.pdf</url>
</location>
<identifier type="preferred citation">GAO-04-483T</identifier>
<location>
 <url displayLabel="Content Detail" access="object in context">https://www.govinfo.gov/app/details/GAOREPORTS-GAO-04-483T</url>
</location>
<note>Testimony</note>
<extension>
 <searchTitle>GAO-04-483T; Information Security: Continued Efforts Needed to Sustain Progress in Implementing Statutory Requirements;
            </searchTitle>
</extension>
<subject>
 <topic>Accountability</topic>
 <topic>Computer security</topic>
 <topic>Information resources management</topic>
 <topic>Information systems</topic>
 <topic>Information technology</topic>
 <topic>Performance measures</topic>
 <topic>Reporting requirements</topic>
 <topic>Standards and standardization</topic>
 <topic>Risk assessments</topic>
</subject>
<relatedItem type="isReferencedBy">
 <titleInfo>
  <title>United States Public Law 398 (106th Congress)</title>
</titleInfo>
 <identifier type="public law citation">Public Law 106-398</identifier>
</relatedItem>
<relatedItem type="isReferencedBy">
 <titleInfo>
  <title>United States Public Law 347 (107th Congress)</title>
</titleInfo>
 <identifier type="public law citation">Public Law 107-347</identifier>
</relatedItem>
</mods>