Item - 2022.AU12.5

Tracking Status

  • City Council adopted this item on June 15, 2022 without amendments and without debate.
  • This item was considered by Audit Committee on June 6, 2022 and was adopted with amendments. It will be considered by City Council on June 15, 2022.

AU12.5 - Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management

Decision Type:
ACTION
Status:
Adopted on Consent
Wards:
All

City Council Decision

City Council on June 15 and 16, 2022, adopted the following:

 

1.  City Council direct that Confidential Attachment 1 to the report (March 22, 2022) from the Auditor General be released publicly at the discretion of the Auditor General, after discussions with the appropriate Toronto Transit Commission and City Officials.

 

Confidential Attachment 1 to the report (March 22, 2022) from the Auditor General remains confidential at this time in accordance with the provisions of the City of Toronto Act, 2006, as it pertains to the security of the property of the municipality or local board.  Confidential Attachment 1 to the report (March 22, 2022) from the Auditor General will be made public at the discretion of the Auditor General, after discussions with the appropriate Toronto Transit Commission and City Officials.

Confidential Attachment - The security of the property of the municipality or local board

Background Information (Committee)

(April 20, 2022) Letter from the Director, Commission Services, Toronto Transit Commission on Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management
https://www.toronto.ca/legdocs/mmis/2022/au/bgrd/backgroundfile-226225.pdf
(March 22, 2022) Report from the Auditor General on Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management
https://www.toronto.ca/legdocs/mmis/2022/au/bgrd/backgroundfile-226226.pdf
Confidential Attachment 1 - Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management

AU12.5 - Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management

Decision Type:
ACTION
Status:
Amended
Wards:
All

Confidential Attachment - The security of the property of the municipality or local board

Committee Recommendations

The Audit Committee recommends that:

 

1.  City Council direct that Confidential Attachment 1 to the report (March 22, 2022) from the Auditor General be released publicly at the discretion of the Auditor General, after discussions with the appropriate Toronto Transit Commission and City Officials.

Origin

(April 20, 2022) Letter from the Director, Commission Services, Toronto Transit Commission

Summary

At its meeting on Thursday, April 14, 2022, the TTC Board considered the attached report entitled “Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management”.

 

The Board adopted the recommendations in the staff report, as follows:

 

The Auditor General recommends that:

 

1.  The Toronto Transit Commission Board adopt the confidential instructions to staff in Confidential Attachment 1 to this report from the Auditor General.

 

2.  The Toronto Transit Commission Board forward this report to City Council for information through the City's Audit Committee.

 

3.  The Toronto Transit Commission Board direct that Confidential Attachment 1 to this report from the Auditor General be released publicly at the discretion of the Auditor General, after discussions with the appropriate Toronto Transit Commission and City Officials.

 

The recommendations of the Toronto Transit Commission Board as set out above are submitted for City Council consideration through the Audit Committee.

Background Information

(April 20, 2022) Letter from the Director, Commission Services, Toronto Transit Commission on Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management
https://www.toronto.ca/legdocs/mmis/2022/au/bgrd/backgroundfile-226225.pdf
(March 22, 2022) Report from the Auditor General on Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management
https://www.toronto.ca/legdocs/mmis/2022/au/bgrd/backgroundfile-226226.pdf
Confidential Attachment 1 - Toronto Transit Commission Cybersecurity Audit Phase 1: Critical IT Assets and User Access Management

Motions

1 - Motion to Amend Item moved by Councillor Frances Nunziata (Carried)

That City Council direct that Confidential Attachment 1 to the report (March 22, 2022) from the Auditor General be released publicly at the discretion of the Auditor General, after discussions with the appropriate Toronto Transit Commission and City Officials.


Motion to Adopt Item as Amended moved by Councillor Stephen Holyday (Carried)
Source: Toronto City Clerk at www.toronto.ca/council