MAC > Summary Report

Report 3/2022

No./Ref. Summary of Audit Findings Management Responses/Action Plans Current Status Status Remarks/Decision
3.1.2 Quite a number of staff were unable to comprehend between SEDC Portal and Website and how to access the portal, thus not aware of the existence of the various ICT security policies and guidelines in the SEDC Portal

Recommendations:
  1. ICT to circulate the user name and passwordsto access the SEDC Portal to all authorisedstaff.
  2. ICT to conduct briefing during SEDC Get-Together monthly gathering.
  1. ICT noted on the recommendation and wouldrecirculate the user name and passwords to allauthorised staff by end of February 2019.
  2. ICT would conduct briefing during SEDC Get-Together monthly gathering in March 2019.

  3. MAC’s Decision 67th MAC Meeting on26 February 2019
    ICT to update the status in the next MAC meeting.


3.5.1 ICT has developed and compiled IT Disaster Recovery Plan to migitate possible disaster that renders the Corporation's computer systems not operating effectively however disaster recovery plan exercise or drill for the new servers and backup processes at the new Menara has yet to be done

Recommendations:
  1. To initiate awareness programme that willencourage and remind staff to always scandevices before opening and sharingof files.
ICT noted on the recommendation and planned tohave three Disaster Recovery exercises in year 2019and the first exercise to be conducted in March 2019to further improve on the effectiveness of the DisasterRecovery process.

MAC’s Decision 67th MAC Meeting on 26 February 2019
ICT to update the status in the next MAC meeting.


Report 4/2022

No./Ref. Summary of Audit Findings Management Responses/Action Plans Current Status Status Remarks/Decision
4.1 SEDC SECURITY POLICY
4.1.1 Quite a number of staff were unable to comprehend between SEDC Portal and Website and how to access the portal, thus not aware of the existence of the various ICT security policies and guidelines in the SEDC Portal

Recommendations:
  1. ICT to circulate the user name and passwordsto access the SEDC Portal to all authorisedstaff.
  2. ICT to conduct briefing during SEDC Get-Together monthly gathering.
ICT noted on the recommendation and would includeit as one of the topics in the upcoming SEDC Get-Together monthly gathering in March 2019.

4.3 SECURITY THREAT TO COMPUTER SYSTEM
4.3.1 ICT has developed and compiled IT Disaster Recovery Plan to migitate possible disaster that renders the Corporation's computer systems not operating effectively however disaster recovery plan exercise or drill for the new servers and backup processes at the new Menara has yet to be done

Recommendations:
  1. To initiate awareness programme that willencourage and remind staff to always scandevices before opening and sharingof files.
ICT noted on the recommendation and planned tohave three Disaster Recovery exercises in year 2019and the first exercise to be conducted in March 2019 to further improve on the effectiveness of the DisasterRecovery process.