 
|
|
Cyber Security Vulnerabilities
Cyber security vulnerabilities are defined as "...weaknesses in
the protection measures that are employed to prevent unauthorized access
to systems and data." Ways to mitigate specific vulnerabilities
include:
- Ensure that passwords comply with LANL and DOE password policies.
- Ensure
that security components in operating systems are configured correctly
and maintained.
- Implement minimal physical security requirements that
support the cyber security environment, such as screen savers, virus
protection, etc.
- Ensure that classified systems are located in security
areas (classified operations are not permitted in an open environment).
- Orient
computer monitors to prevent casual viewing from those that do not
have an appropriate need-to-know.
- Maintain proper vigilance when uncleared
or inappropriately cleared workers (L-cleared if you are processing
SRD) are in the work area.
- Ensure that unattended classified processing
does not occur.
- Ensure that classified printed output is immediately
picked up and secured to prevent unauthorized access.
- Ensure that
all removable media is properly marked and secured in an approved
container.
- Ensure that the work area rules are being followed.
- Ensure you and
your work area are fully "fit" to handle tasks.
- Ensure that a proper Form 982 and
Form 982CA are completed if a foreign
national is using the computer.
|
|
|