DFC Generally Implemented an Effective Information Security Program for Fiscal Year 2020 in Support of FISMA
Recommendations
DFC's Chief Information Officer take the following actions: Review and update privacy policies and breach response procedures to accurately reflect the Corporation's operating environment.
DFC's Chief Information Officer take the following actions: Implement a process to validate completion of rules of behavior and security and privacy awareness training prior to providing system access.
DFC's Chief Information Officer take the following actions: Implement multifactor authentication for network access for privileged accounts.
DFC's Chief Information Officer take the following actions: Implement session disconnect for virtual private network connections to comply with DFC requirements.