AGL 40.00 Decreased By ▼ -0.16 (-0.4%)
AIRLINK 129.53 Decreased By ▼ -2.20 (-1.67%)
BOP 6.68 Decreased By ▼ -0.01 (-0.15%)
CNERGY 4.63 Increased By ▲ 0.16 (3.58%)
DCL 8.94 Increased By ▲ 0.12 (1.36%)
DFML 41.69 Increased By ▲ 1.08 (2.66%)
DGKC 83.77 Decreased By ▼ -0.31 (-0.37%)
FCCL 32.77 Increased By ▲ 0.43 (1.33%)
FFBL 75.47 Increased By ▲ 6.86 (10%)
FFL 11.47 Increased By ▲ 0.12 (1.06%)
HUBC 110.55 Decreased By ▼ -1.21 (-1.08%)
HUMNL 14.56 Increased By ▲ 0.25 (1.75%)
KEL 5.39 Increased By ▲ 0.17 (3.26%)
KOSM 8.40 Decreased By ▼ -0.58 (-6.46%)
MLCF 39.79 Increased By ▲ 0.36 (0.91%)
NBP 60.29 No Change ▼ 0.00 (0%)
OGDC 199.66 Increased By ▲ 4.72 (2.42%)
PAEL 26.65 Decreased By ▼ -0.04 (-0.15%)
PIBTL 7.66 Increased By ▲ 0.18 (2.41%)
PPL 157.92 Increased By ▲ 2.15 (1.38%)
PRL 26.73 Increased By ▲ 0.05 (0.19%)
PTC 18.46 Increased By ▲ 0.16 (0.87%)
SEARL 82.44 Decreased By ▼ -0.58 (-0.7%)
TELE 8.31 Increased By ▲ 0.08 (0.97%)
TOMCL 34.51 Decreased By ▼ -0.04 (-0.12%)
TPLP 9.06 Increased By ▲ 0.25 (2.84%)
TREET 17.47 Increased By ▲ 0.77 (4.61%)
TRG 61.32 Decreased By ▼ -1.13 (-1.81%)
UNITY 27.43 Decreased By ▼ -0.01 (-0.04%)
WTL 1.38 Increased By ▲ 0.10 (7.81%)
BR100 10,407 No Change 0 (0%)
BR30 31,713 No Change 0 (0%)
KSE100 97,328 No Change 0 (0%)
KSE30 30,192 No Change 0 (0%)

ISLAMABAD: In line with the recommendations of the Federal Tax Ombudsman (FTO) Dr Asif Mahmood Jah, the Federal Board of Revenue’s (FBR’s) Information Technology Wing (IT-Wing) shall be audited by a security firm to conduct a security audit of data centres.

This has been concluded in an investigation conducted by the FTO who has unearthed systematic flaws in security of confidential/ classified data of taxpayers, and directed the FBR to develop security policies/ infrastructure and implement international standards for protection against future cyber attacks on FBR website.

It is learnt that the FTO in a landmark investigation found that the confidential/ classified data of FBR Web portal was hacked, as the PRAL has not properly discharged its duties.

According to details, tax lawyer Waheed Shahzad Butt has filed a public interest complaint against the FBR/ PRAL key position holders, wherein after a comprehensive investigation, FTO Dr Asif Jah concluded that FBR/ PRAL is not using any software to manage its Network Security policies and FBR has filed a false/ wrong statement regarding the system disrupted period which is also contrary to the Finance Minister’s stance and using expired certification.

Daily wagers: FTO asks FBR to fix income limit for tax exemption

FTO order stated that the said analysis clearly reflects maladministration oozing out of neglect, inattention, delay, incompetence and ineptitude of FBR & PRAL’s functionaries, in the administration and discharge of assigned duties and responsibilities. PRAL data centre is not equipped with any Instruction Prevention/ Intrusion Detection system, a material systematic flaw exposing security of its database. PRAL data centre is not compliant to some credible International Standard and its certification was also expired in December 2020.

When contacted Waheed Shahzad Butt told this correspondent that cyber attack on key data websites, data and data centres of FBR/PRAL pose a threat that can undermine the security capabilities of the state.

FBR has submitted a compliance report to FTO which stated that the “PRAL has reinforced ‘ISMS’ policies and procedures in lieu of the ISO 27001 framework. However, they are awaiting security infrastructure, for which procurements has already been initiated.

The process of procurement of security infrastructure is already under way, which also consists of SIEM. Once the procurement is completed, PRAL will deploy SIEM at the data centres which enhanced security features. The FBR (IT Wing) has recently awarded a three years contract to a reputable security firm to conduct a security audit of data centres. After the completion of the audit, FBR Data Centres will be ISO-27001 certified”.

Copyright Business Recorder, 2022

Comments

Comments are closed.