Firm That cleared Edward Snowden Will Pay NSA $30m Damages

1019110294-Firm-That-Vetted-Edward-Snowden-Settles-With-US.jpg

United States Investigations Services strikes deal with justice department after claims it took shortcuts when vetting federal employees.

United States Investigations Services Inc, the private firm that vetted former National Security Agency contractor Edward Snowden, has agreed to a settlement worth at least $30m, resolving US claims connected to its background investigations.
The US justice department said recently that the settlement with USIS and its parent company, Altegrity Inc, will resolve claims that the firm failed to perform quality control reviews in connection with its background investigations.
The justice department said the settlement is part of a broader deal struck as part of the bankruptcy proceedings for Altegrity, which filed for Chapter 11 in February.

The deal resolves claims first asserted in a whistleblower lawsuit filed in 2011 that the justice department later joined.
The case was separate from USIS’s review of Snowden, who lives as a fugitive in Russia after leaking documents about the NSA’s surveillance programs, or Aaron Alexis, the technology contractor who killed 12 people at the Washington Navy Yard in 2014.
Nevertheless, the lawsuit came amid heightened attention to the firm, which had been the US government’s largest private provider of security checks.
“Shortcuts taken by any company that we have entrusted to conduct background investigations of future and current federal employees are unacceptable,” Benjamin Mizer, head of the justice department’s civil division, said in a statement.

The justice department said that from March 2008 through at least September 2012, USIS deliberately circumvented quality reviews of completed background investigations in order to increase its revenues and profits.
The justice department said USIS engaged in practice internally called “dumping” or “flushing” in which cases were released to the US office of personnel management and represented as complete when in fact they were not.

The justice department contended that as a result, the government made payments to USIS it otherwise would not have.
Under the settlement, the justice department said Altegrity and USIS have agreed to forgo their right to collect payments they claimed they were owed by the office of personnel management valued at least at $30m.

The justice department’s claims originated from a lawsuit filed in 2011 by a former USIS executive, Blake Percival, under the False Claims Act, the law that lets people collect rewards for blowing the whistle on fraud against the government. Percival’s share of the settlement has not been determined.

Guardian:  http://bit.ly/1MgeCFI

« Anonymous Launches Cyber-Attacks Against ISIS
JPMorgan Hires Former U.S Army Cyber Chief »

CyberSecurity Jobsite
Perimeter 81

Directory of Suppliers

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall And Why Does It Matter

ON-DEMAND WEBINAR: What Is A Next-Generation Firewall And Why Does It Matter

See how to use next-generation firewalls (NGFWs) and how they boost your security posture.

Syxsense

Syxsense

Syxsense brings together endpoint management and security for greater efficiency and collaboration between IT management and security teams.

Resecurity, Inc.

Resecurity, Inc.

Resecurity is a cybersecurity company that delivers a unified platform for endpoint protection, risk management, and cyber threat intelligence.

CYRIN

CYRIN

CYRIN® Cyber Range. Real Tools, Real Attacks, Real Scenarios. See why leading educational institutions and companies in the U.S. have begun to adopt the CYRIN® system.

XYPRO Technology

XYPRO Technology

XYPRO is the market leader in HPE Non-Stop Security, Risk Management and Compliance.

Actiphy

Actiphy

Actiphy provides a tried and proven backup and disaster recovery software solution to ensure business continuity at all times.

Intertek Group

Intertek Group

Intertek Group provides Assurance, Testing, Inspection and Certification services. Activities include cybersecurity testing and certification.

Cybellum

Cybellum

Cybellum provides software risk assessment for DevOps and security executives, by detecting vulnerabilities automatically, without source code.

National Cyber Summit (NCS)

National Cyber Summit (NCS)

The National Cyber Summit is the preeminent event for cyber training, education and workforce development aimed at protecting our nation's infrastructure from the ever-evolving cyber threat.

NAVEX Global

NAVEX Global

NAVEX Global’s compliance management system consolidates your entire GRC program onto a scalable cloud-based platform.

Rippleshot

Rippleshot

Rippleshot is a fraud analytics firm that detects mass card compromises faster, allowing issuers to execute more proactive fraud detection strategies.

Rhino Security Labs

Rhino Security Labs

Rhino Security Labs is a top penetration testing and security assessment firm, with a focus on cloud pentesting, network pentesting, web application pentesting, and phishing.

NOW Insurance

NOW Insurance

NOW Insurance provides small business owners and other professional classes with a seamless purchasing experience for general liability, professional liability, and cybersecurity insurance coverage.

SecurIT360

SecurIT360

SecurIT360 is a full-service specialized Cyber Security and Compliance consulting firm.

Core4ce

Core4ce

Core4ce is a mission-oriented company that serves as a trusted partner to the national security community.

Commission Nationale de l'Informatique et des Libertés (CNIL)

Commission Nationale de l'Informatique et des Libertés (CNIL)

The mission of CNIL is to protect personal data, support innovation, and preserve individual liberties.

Silent Circle

Silent Circle

Silent Circle is the leader in end-to-end enterprise solutions for secure mobile communications.

Pistachio

Pistachio

Pistachio is the new evolution of cybersecurity awareness training and attack simulations.

Verinext

Verinext

Verinext delivers transformative business technology, from intelligently automating time-consuming tasks and protecting data assets to securing infrastructure and improving customer experiences.

Myrror Security

Myrror Security

Myrror Security is a software supply chain security solution that aids lean security teams in safeguarding their software against breaches.

Emircom

Emircom

Emircom is one of the Middle East's leading independent providers of IT infrastructure services, helping clients to drive growth and deliver measurable outcomes.