NCJ Number
29281
Date Published
1975
Length
21 pages
Annotation
THIS PUBLICATION ESTABLISHES THE GROUNDWORK FOR FEDERAL AUTOMATED DATA PROCESSING ORGANIZATIONS TO ASSESS THE RISKS OF UNAUTHORIZED DISCLOSURES OF PERSONAL DATA AND TO DEVELOP A SET OF SAFEGUARDS TO MINIMIZE THOSE RISKS.
Abstract
A WIDE VARIETY OF TECHNICAL AND RELATED PROCEDURAL SAFEGUARDS ARE DESCRIBED. THESE FALL INTO THREE BROAD CATEGORIES: PHYSICAL SECURITY, INFORMATION MANAGEMENT PRACTICES, AND COMPUTER SYSTEM/NETWORK SECURITY CONTROLS. THE MAJOR PROVISIONS OF THE PRIVACY ACT WHICH MOST DIRECTLY INVOLVE THE USE OF COMPUTER SYSTEM/NETWORK CONTROLS ARE: SUBSECTION (B) OF 5 U.S.C. SECTION 552A WHICH LIMITS THE DISCLOSURE OF PERSONAL INFORMATION TO AUTHORIZED PERSONS AND AGENCIES; SUBSECTION (E) (5) WHICH REQUIRES THE MAINTENANCE OF ACCURATE, RELEVANT, TIMELY, AND COMPLETE RECORDS; AND SUBSECTION (E) (10) WHICH REQUIRES THE USE OF SAFEGUARDS TO INSURE THE SECURITY AND INTEGRITY OF RECORDS. (AUTHOR ABSTRACT)