Ads by TechWords

See your link here
Receive the latest technology news and information.
Security
Security: Issues & Trends
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
Cloud Computing
View all newsletters




Privacy Policy
 

Criminal negligence: The state of law enforcement data sharing

Nearly seven years after 9/11, information-sharing problems that hobble law enforcement are just beginning to be solved.

May 26, 2008 12:00 PM ET

Computerworld - U.S. Border Patrol agents intercept a man trying to enter the U.S. illegally from Mexico. Unaware that he is wanted by the FBI for three murders, they return him to Mexico. The man returns to the U.S. and murders several more people before being caught.

A team of investigators works for 20 years to bring down an international drug-trafficking organization. Had they known about related information in other law enforcement databases scattered across the U.S., the case might have been closed in three.

True stories like these have highlighted the critical need to improve information sharing among law enforcement organizations, but it wasn't until the 9/11 attacks, the subsequent 9/11 Commission Report and a presidential mandate that better information sharing became a top priority.

The initiatives that arose from that mandate are finally beginning to open up stovepiped data repositories by transforming how law enforcement agencies at the federal, state and local levels capture, store and share data.

The biggest changes have come in two areas: how law enforcement identifies bad guys, and how investigators gain access to incident reports documented by more than 20 federal agencies and 20,000 state, county, local and tribal law enforcement organizations nationwide. "You'll be able to search data that you never had access to before," says Tom Bush, assistant director in the FBI's Criminal Justice Information Services (CJIS) division.

Most of the improvements in data sharing flow from the development of the Global Justice XML Data Model, a standard that provides a common vocabulary and structure for the exchange of data among law enforcement databases. Initiated by the U.S. Department of Justice, GJXDM was released in 2003. "By 2004, there were projects all across the country using it," says Paul Wormeli, executive director of the Integrated Justice Information System Institute, a public-private partnership that helped develop the standard.

In 2005, CIOs at the DOJ and the U.S. Department of Homeland Security agreed to build the National Information Exchange Model (NIEM), an extension of GJXDM that facilitates data sharing beyond law enforcement to the areas of justice, public safety, intelligence, homeland security, and emergency and disaster management. Work is also beginning on direct computer-to-computer data exchanges using Web services. "This field is waking up to service-oriented architectures," says Wormeli, noting that some reference architectures are already in place.

These standards are designed to solve the problem of proprietary and incompatible law enforcement record management systems without requiring every organization to throw out what they have and start over. "The beauty of NIEM is that it preserves the legacy systems. We're building middleware," says Wormeli.

Text about this image
Law Enforcement Databases
Click to view larger image

Most of the identity databases at the federal level aren't yet NIEM-compliant, but agencies are planning upgrades to those systems and have already taken steps to facilitate data sharing. Although federal agencies use many databases for law enforcement, the three primary identity databases are the FBI's Integrated Automated Fingerprint ID System (IAFIS); the DHS's IDENT fingerprint database of 90 million foreign nationals, gathered from visa applications and used at all points of entry; and the U.S. Department of Defense's Automated Biometric Identification System (ABIS), currently used to monitor foreign nationals entering and leaving U.S. military bases in Iraq and Afghanistan.

IDENT, IAFIS and ABIS are all capable of some data exchanges by way of GJXDM today, but each is being reworked to natively support the NIEM standard and allow data exchanges with databases in fields outside of law enforcement, such as emergency management. IDENT is in the process of being updated, and contracts to develop the next generations of IAFIS and ABIS, which will add facial and iris image-recognition capabilities, were awarded in February.



Jump to comments

government

Additional Resources

WHITE PAPER
Approximately 60 percent of data migration projects overrun time or budget, while some fail completely. Download this white paper, "Enhancing Your Chance for Successful Data Migration," to learn the critical steps you need to take to execute a data migration project with minimum cost and risk to your business.
WHITE PAPER
Read the Gartner research note to learn why the TCO of a server-based computing deployment used to deliver all applications to users is around 50% lower than that of an unmanaged desktop deployment.
WHITE PAPER
Economic downturns have a tendency to accelerate emerging technologies, boost the adoption of effective solutions, and punish solutions that are not cost competitive or that are out of synch with industry trends. This IDC White Paper presents the results of an IDC survey of 330 companies in Western Europe, Asia/Pacific and the Americas that measures the receptiveness to Linux and takes into consideration changing views driven by the disruptive economic environment that businesses face today.

What People Are Saying

White Papers & Webcasts

The Tripwire HIPAA Solution: Meeting the Security Standards Set Forth in Section 164
Learn how you can meet the detailed technical requirements of HIPAA and delivers continuous compliance.  

Confidently Meet Compliance Requirements
Download this Resource Now!  

Getting in Compliance with Government Data Regulations
Learn about various regulations and how to comply with them when you read this white paper from VeriSign.  

Maximizing Site Visitor Trust Using Extended Validation SSL
Provide site visitors visual cues that indicate your site is legitimate with Extended Validation (EV) SSL available from VeriSign.  

Authentication as a Service by Forrester Research
Learn more about Authentication-as-a-Service today!  

The Commercialization of ITIL: Lessons Learned
Register for this event today!