AGL 40.21 Increased By ▲ 0.18 (0.45%)
AIRLINK 127.64 Decreased By ▼ -0.06 (-0.05%)
BOP 6.67 Increased By ▲ 0.06 (0.91%)
CNERGY 4.45 Decreased By ▼ -0.15 (-3.26%)
DCL 8.73 Decreased By ▼ -0.06 (-0.68%)
DFML 41.16 Decreased By ▼ -0.42 (-1.01%)
DGKC 86.11 Increased By ▲ 0.32 (0.37%)
FCCL 32.56 Increased By ▲ 0.07 (0.22%)
FFBL 64.38 Increased By ▲ 0.35 (0.55%)
FFL 11.61 Increased By ▲ 1.06 (10.05%)
HUBC 112.46 Increased By ▲ 1.69 (1.53%)
HUMNL 14.81 Decreased By ▼ -0.26 (-1.73%)
KEL 5.04 Increased By ▲ 0.16 (3.28%)
KOSM 7.36 Decreased By ▼ -0.09 (-1.21%)
MLCF 40.33 Decreased By ▼ -0.19 (-0.47%)
NBP 61.08 Increased By ▲ 0.03 (0.05%)
OGDC 194.18 Decreased By ▼ -0.69 (-0.35%)
PAEL 26.91 Decreased By ▼ -0.60 (-2.18%)
PIBTL 7.28 Decreased By ▼ -0.53 (-6.79%)
PPL 152.68 Increased By ▲ 0.15 (0.1%)
PRL 26.22 Decreased By ▼ -0.36 (-1.35%)
PTC 16.14 Decreased By ▼ -0.12 (-0.74%)
SEARL 85.70 Increased By ▲ 1.56 (1.85%)
TELE 7.67 Decreased By ▼ -0.29 (-3.64%)
TOMCL 36.47 Decreased By ▼ -0.13 (-0.36%)
TPLP 8.79 Increased By ▲ 0.13 (1.5%)
TREET 16.84 Decreased By ▼ -0.82 (-4.64%)
TRG 62.74 Increased By ▲ 4.12 (7.03%)
UNITY 28.20 Increased By ▲ 1.34 (4.99%)
WTL 1.34 Decreased By ▼ -0.04 (-2.9%)
BR100 10,086 Increased By 85.5 (0.85%)
BR30 31,170 Increased By 168.1 (0.54%)
KSE100 94,764 Increased By 571.8 (0.61%)
KSE30 29,410 Increased By 209 (0.72%)

imageBOSTON: The security of the Obama administration's healthcare website was at "high risk" because of lack of testing before it opened for enrollment on Oct. 1, according to a government memorandum reviewed by Reuters on Wednesday.

The HealthCare.gov site collects a trove of sensitive data, such as Social Security numbers, email addresses, phone numbers and birth dates that could be used by criminals in an array of schemes. A government spokeswoman said on Wednesday that steps to mitigate security concerns have been implemented since the memo was written on Sept. 27 and that consumer data is secure.

"From a security perspective, the aspects of the system that were not tested due to the ongoing development exposed a level of uncertainty that can be deemed as a high risk," said the memo from Department of Health and Human Services officials James Kerry and Henry Chao.

The memo recommended the creation of a dedicated security team, weekly testing of servers, daily scans and a full security assessment within 60 to 90 days of launch. It provided for a temporary, six-month authority to operate the system.

According to the document, the recommendation was approved by Marilyn Tavenner, administrator of the Centers for Medicare and Medicaid Services, the lead agency at HHS managing the 2010 Affordable Care Act, commonly called Obamacare.

The law, Obama's signature domestic policy, was passed in his first term and upheld by the US Supreme Court last year. It mandates everyone have health insurance or pay a fine and created online marketplaces for people to choose plans.

The Sept. 27 memo came up during a US House of Representatives hearing on Wednesday to question HHS Secretary Kathleen Sebelius about technical problems that have stalled access to the website for millions of consumers. Sebelius confirmed its main points and said the plan to ensure security was underway.

Sebelius said that the site had a temporary certificate, known as an "authority to operate" and that the agency would issue a permanent certificate once security concerns were alleviated.

Yet HHS spokeswoman Joanne Peters said that during the interim the public need not worry about the security of data entered on the site, which helps them identify and enroll in health insurance plans.

"When consumers fill out their online Marketplace applications, they can trust that the information they're providing is protected by stringent security standards and that the technology underlying the application process has been tested and is secure," she said.

Meanwhile, Connecticut's state-run online exchange disclosed on Wednesday that it had experienced five attempted cyber attacks, including two from a foreign country.

"We had to get the NSA involved," Kevin Counihan, executive director of the exchange that is known as Access Health CT, told reporters on a conference call. A spokeswoman for the National Security Agency declined comment. Counihan said the exchange had passed cybersecurity tests before it opened on Oct. 1.

Comments

Comments are closed.