Finding 2023-005
CHAMPS General Controls
Management Views
Although MDHHS and DTMB delayed the implementation of the State of Michigan (SOM) tailored configurations, DTMB disagrees that during the audit period the system contained potentially vulnerable database configurations and disagrees that DTM...
Finding 2023-005
CHAMPS General Controls
Management Views
Although MDHHS and DTMB delayed the implementation of the State of Michigan (SOM) tailored configurations, DTMB disagrees that during the audit period the system contained potentially vulnerable database configurations and disagrees that DTMB cannot ensure the security of the data.
DTMB has implemented and continues to implement the manufacturer’s recommendations regarding security configurations and performs regular database and operating system patching. Additionally, the databases reside in restricted trusted internal security zones, protected by firewalls, which are specific to each application and database, in conjunction with intrusion protection, antivirus software, and SOM standard security safeguards.
Planned Corrective Action
DTMB will implement the SOM tailored configurations by July 31, 2024.
Anticipated Completion Date
July 31, 2024
Responsible Individual(s)
Nathan Buckwalter, DTMB