1. Home
  2. |Insights
  3. |IG Report Whacks DCMA's Oversight of Contractors' Business Systems

IG Report Whacks DCMA's Oversight of Contractors' Business Systems

Client Alert | less than 1 min read | 10.13.15

On October 1, the DoD IG released a report entitled, "Evaluation of Defense Contract Management Agency Actions on Reported DoD Contractor Business System Deficiencies," asserting that DCMA contracting officers "repeatedly" failed to comply with DFARS requirements involving reported business system deficiencies. The report, which is similar to one issued on June 29 regarding DCMA's treatment of estimating system deficiencies (available here), focused its criticisms on DCMA, despite DCMA's comments noting that DCAA, rather than DCMA, is responsible for determining whether a "significant" business system deficiency exists.

 

Insights

Client Alert | 7 min read | 08.17.26

Delayed Notification of Cyberattacks May Trigger HIPAA Breach Notification Rule

After identifying a ransomware attack in 2021, OSF Healthcare System waited until its forensic investigation had concluded before notifying the U.S. Department of Health and Human Services (HHS) — and the affected individuals — of the breach. The 110-day delay (nearly double the 60-calendar-day notification deadline mandated by the HIPAA Breach Notification Rule) triggered an investigation from HHS’s Office for Civil Rights (OCR). The health system’s investigation determined that protected health information (PHI) had been stolen....