Audit of the U.S. Nuclear Regulatory Commission’s Web-Based Licensing System
Report Information
Recommendations
The OIG recommends that the Executive Director for Operations update the inactivity control in the Nuclear Material FISMA Systems-system security plan to include references to the 30-minute deviation request and approval.
The OIG recommends that the Executive Director for Operations update the Web-Based Licensing System User Guide’s instructions on clearing the cache to access the system without closing the browser.
The OIG recommends that the Executive Director for Operations evaluate and update the Web-Based Licensing System to ensure users assigned to multiple roles may perform tasks associated with the highest access rights.
The OIG recommends that the Executive Director for Operations update the Web-Based Licensing System’s user role descriptions to ensure users’ capabilities in the system are properly defined.
The OIG recommends that the Executive Director for Operations develop and implement a process to periodically update user roles in the Web-Based Licensing System to ensure users may perform tasks commensurate with their assigned NRC responsibilities.