AIRLINK 72.59 Increased By ▲ 3.39 (4.9%)
BOP 4.99 Increased By ▲ 0.09 (1.84%)
CNERGY 4.29 Increased By ▲ 0.03 (0.7%)
DFML 31.71 Increased By ▲ 0.46 (1.47%)
DGKC 80.90 Increased By ▲ 3.65 (4.72%)
FCCL 21.42 Increased By ▲ 1.42 (7.1%)
FFBL 35.19 Increased By ▲ 0.19 (0.54%)
FFL 9.33 Increased By ▲ 0.21 (2.3%)
GGL 9.82 Increased By ▲ 0.02 (0.2%)
HBL 112.40 Decreased By ▼ -0.36 (-0.32%)
HUBC 136.50 Increased By ▲ 3.46 (2.6%)
HUMNL 7.14 Increased By ▲ 0.19 (2.73%)
KEL 4.35 Increased By ▲ 0.12 (2.84%)
KOSM 4.35 Increased By ▲ 0.10 (2.35%)
MLCF 37.67 Increased By ▲ 1.07 (2.92%)
OGDC 137.75 Increased By ▲ 4.88 (3.67%)
PAEL 23.41 Increased By ▲ 0.77 (3.4%)
PIAA 24.55 Increased By ▲ 0.35 (1.45%)
PIBTL 6.63 Increased By ▲ 0.17 (2.63%)
PPL 125.05 Increased By ▲ 8.75 (7.52%)
PRL 26.99 Increased By ▲ 1.09 (4.21%)
PTC 13.32 Increased By ▲ 0.24 (1.83%)
SEARL 52.70 Increased By ▲ 0.70 (1.35%)
SNGP 70.80 Increased By ▲ 3.20 (4.73%)
SSGC 10.54 No Change ▼ 0.00 (0%)
TELE 8.33 Increased By ▲ 0.05 (0.6%)
TPLP 10.95 Increased By ▲ 0.15 (1.39%)
TRG 60.60 Increased By ▲ 1.31 (2.21%)
UNITY 25.10 Decreased By ▼ -0.03 (-0.12%)
WTL 1.28 Increased By ▲ 0.01 (0.79%)
BR100 7,566 Increased By 157.7 (2.13%)
BR30 24,786 Increased By 749.4 (3.12%)
KSE100 71,902 Increased By 1235.2 (1.75%)
KSE30 23,595 Increased By 371 (1.6%)

ISLAMABAD: In line with the recommendations of the Federal Tax Ombudsman (FTO) Dr Asif Mahmood Jah, the Federal Board of Revenue’s (FBR’s) Information Technology Wing (IT-Wing) shall be audited by a security firm to conduct a security audit of data centres.

This has been concluded in an investigation conducted by the FTO who has unearthed systematic flaws in security of confidential/ classified data of taxpayers, and directed the FBR to develop security policies/ infrastructure and implement international standards for protection against future cyber attacks on FBR website.

It is learnt that the FTO in a landmark investigation found that the confidential/ classified data of FBR Web portal was hacked, as the PRAL has not properly discharged its duties.

According to details, tax lawyer Waheed Shahzad Butt has filed a public interest complaint against the FBR/ PRAL key position holders, wherein after a comprehensive investigation, FTO Dr Asif Jah concluded that FBR/ PRAL is not using any software to manage its Network Security policies and FBR has filed a false/ wrong statement regarding the system disrupted period which is also contrary to the Finance Minister’s stance and using expired certification.

Daily wagers: FTO asks FBR to fix income limit for tax exemption

FTO order stated that the said analysis clearly reflects maladministration oozing out of neglect, inattention, delay, incompetence and ineptitude of FBR & PRAL’s functionaries, in the administration and discharge of assigned duties and responsibilities. PRAL data centre is not equipped with any Instruction Prevention/ Intrusion Detection system, a material systematic flaw exposing security of its database. PRAL data centre is not compliant to some credible International Standard and its certification was also expired in December 2020.

When contacted Waheed Shahzad Butt told this correspondent that cyber attack on key data websites, data and data centres of FBR/PRAL pose a threat that can undermine the security capabilities of the state.

FBR has submitted a compliance report to FTO which stated that the “PRAL has reinforced ‘ISMS’ policies and procedures in lieu of the ISO 27001 framework. However, they are awaiting security infrastructure, for which procurements has already been initiated.

The process of procurement of security infrastructure is already under way, which also consists of SIEM. Once the procurement is completed, PRAL will deploy SIEM at the data centres which enhanced security features. The FBR (IT Wing) has recently awarded a three years contract to a reputable security firm to conduct a security audit of data centres. After the completion of the audit, FBR Data Centres will be ISO-27001 certified”.

Copyright Business Recorder, 2022

Comments

Comments are closed.