2024 Federal Information Security Modernization Act
Report Information
Recommendations
We recommend the Vice President and Chief Information and Digital Officer, Technology and Innovation, implement automated monitoring via DHS’ Continuous Diagnostics and Mitigation program for components applicable to TVA’s information security continuous monitoring strategy and update processes for developing and maintaining an accurate and complete inventory of TVA’s information systems to include automation and near real-time updates.
We recommend the Vice President and Chief Information and Digital Officer, Technology and Innovation, implement, assess, and maintain common secure configuration settings for all information systems.
We recommend the Vice President and Chief Information and Digital Officer, Technology and Innovation, define, consistently implement, and communicate qualitative and quantitative performance measures on the effectiveness of its configuration management plan.
We recommend the Vice President and Chief Information and Digital Officer, Technology and Innovation, perform the configuration management roles and responsibilities that have been defined for common secure configurations, enterprise-wide configuration management plans, and flaw remediation processes.