Gov't CIO survey: IT security is top concern
Progress has been made, but major challenges remain
March 7, 2006 12:00 PM ETIDG News Service - Chief information officers at U.S. government agencies say they've made progress on several key issues, including IT security and modernizing their IT infrastructure, but still face major challenges in security and other areas, according to a survey released Tuesday.
Government CIOs told interviewers sent by the Information Technology Association of America (ITAA) they've made progress in establishing IT security as a priority, expanding security awareness among staff and, in several cases, appointing a chief security officer, according to the survey. But IT security and privacy remain federal CIOs' top concerns, said Paul Wohlleben, a partner at Grant Thornton LLP, which compiled the survey for the ITAA.
"They want to move to a state where they're taking a view of their risk ... on an ongoing basis, supported by technology," Wohlleben said. "Today, you hear them talking about too much manual intervention. They want to see more tools emerge that they can hook onto their networks, onto their applications, that will perform the monitoring for them."
Federal CIOs want more mature IT security tools, Wohlleben added.
"We're talking about a vast space they have to protect, and some very sophisticated perpetrators," he added. "Some of the [security] technology is just now evolving."
Although many CIOs reported making progress with IT security, fewer said they were moving forward with privacy initiatives, he said. And while some high-profile agencies have addressed privacy issues, "privacy is a much less mature concern in government" than security, Wohlleben said.
The 16th annual ITAA survey of U.S. government CIOs included interviews with 36 CIOs or assistant CIOs and three government oversight officials between August and December 2005. As in past years, this year's survey focuses more on general trends than hard data points.
In addition to security concerns, federal CIOs also identified as key priorities standardizing and consolidating their IT infrastructure, improving project management and examining ways to use managed services from outside vendors, according to the survey.
One general theme in the interviews was concern about executing long-term plans, Wohlleben said. While federal CIOs see themselves as agents of change in coming years, shifting priorities within government can make it difficult to carry through long-term IT plans, he added.
Several government IT projects, including a U.S. Federal Bureau of Investigation case management project, have not met deadlines in recent years. The four-year-old FBI Virtual Case File project was scrapped last March, but the FBI announced in June it had rolled pieces of the project into a new case management plan.
Many CIOs see execution as a concern especially when trying to carry out IT modernization plans, Wohlleben said.
"The real issue is executing those plans over a dynamic period of time," Wohlleben said. "Most of these systems, you don't implement in a week, you don't implement in a year. They're multiyear implementations in a political environment where laws are being changed, in a budgetary environment where budgets are being changed."
Reprinted with permission from
Story copyright 2009 International Data Group. All rights reserved.
Additional Resources



Learn the important issues you must consider before starting your next mobility initiative. Get your mobility white paper from IDC now, compliments of Sybase.
White Papers & Webcasts
Centralized Data Backup and Your WAN
Is your organization prepared to tackle the massive challenge of protecting your data in a cost effective and timely manner? With a growing...
Why Compliance Pays
This OnDemand webcast explores the relationship that firms with best compliance records have higher revenue, greater customer retention, lower financial losses from data...
An All-in-One Approach to Web Security
Granting web access to employees poses challenges to IT administrators and introduces unique security risks. Even as companies have perfected their security techniques...
Best Practices for Managing Business Risks from the Use of IT
(Source: Symantec) Based on exhaustive benchmarks conducted by the IT Policy Compliance, this session highlights the relationship between business risks and use of...
The Hidden Dangers of Spam
Beyond the well-understood productivity drain that spam inflicts on businesses, threats posed by illicit email circulating through a network are causing many security...
Managing And Protecting Your Ever Increasing Mobile Assets
(Source: Absolute Software) Your users are becoming more mobile each day. This is great for productivity - yet challenging for IT control. Natalie...
Open Source Security Myths Dispelled
(Source: Astaro) Open Source Software is computer software whose source code is available to the general public. This openly viewable nature...
Sun OpenSSO Enterprise Webinar
(Source: Sun) This webinar replay discusses Sun OpenSSO Enterprise innovation--the single, open-source solution that helps your business solve the challenges around internal access...
Best Practices for Backing Up VMware® with Veritas NetBackup™
VMware® is used by enterprises large and small to increase the efficiency and cost-effectiveness of their IT operations. With this in mind, Symantec...
Agile Enterprise Content Management (ECM) for Rapid ROI
(Source: IBM) Content rich business processes are a core feature of daily operations at just about any organization today. Very often these essential...
Subscribe to Computerworld
