Feds blast Health Net for refusing to comply with vulnerability testing
Health Net, a member of the Federal Employees Health Benefits Program, is refusing to cooperate with a request for a flash audit of its vulnerabilities, putting the company in breach of contract, according to a report from the Office of Personnel Management’s Inspector General. The report states that Health Net’s actions are undermining the agency’s ability to evaluate the insurer’s vulnerabilities and security configuration management testing. Additionally, it highlights the concern that control weaknesses on one system pose a threat to all other systems in the same environment.