News: 1674639012

  ARM Give a man a fire and he's warm for a day, but set fire to him and he's warm for the rest of his life (Terry Pratchett, Jingo)

Defra 'confident' it has 'handle' on risk for 30% of apps out of support

(2023/01/25)


The UK's department for farming and agriculture has said it is "confident" it is managing the risk related to a whopping 30 percent of its applications being out of vendor support.

The Department for Environment Food and Rural Affairs (Defra) has one of the biggest problems with legacy IT across all UK government departments, according to the National Audit Office (NAO).

The public spending watchdog found the £2.2-billion ($2.71 billion) budget department estimated that it needed to spend £726 million ($894 million) on legacy over the four-year period from 2021-22, the second largest legacy spend requirement after the Home Office. In a [1]report published in December 2022 [PDF], the NAO also found 30 percent of these applications unsupported by the vendor.

[2]

Speaking to MPs last week, Tamara Finkelstein, the department's most senior civil servant, said that 20 percent of applications were in direct support, 50 percent in extended vendor support and 30 percent unsupported.

[3]

[4]

"[They are] out of support and therefore we have been unable to extend the support. We've got to monitor it and keep a much closer eye on it. We've got other suppliers supporting us to ensure that we can be supported if things go wrong. It is a really difficult position," she explained to the Public Accounts Committee, Parliament's spending watchdog.

She said that because the department had inherited so many satellite agencies, the situation may be worse than the NAO revealed, because there was "gray" IT the department's central function was unaware of.

[5]

"We've got some money to identify those and bring them into the fold. It's possibly slightly worse than described, but I feel confident that, by using our group approach and investing, we've got a handle on it, which is allowing us to manage the risk," she told MPs.

Chris Howes, Defra's chief digital and information officer, explained that internal tech teams, plus service providers including Capgemini and IBM were available if anything went wrong with an application. "As part of that 'hypercare', we carry out additional routine monitoring of those services. We're more acutely aware if there is an issue, and then we're able to quickly stand up support in the event of something happening to one of those applications."

The department has also received investment to upgrade its applications, although questions remain over whether it is enough.

[6]

Defra estimated that it needed to spend £726 million ($894 million) on legacy over the four-year period from 2021-22 and that it would take until 2030 to resolve all its legacy issues, according to the NAO.

[7]Software devs targeted as British tax authority makes fraud allegations

[8]University of Texas latest US school to ban TikTok

[9]We're just shouting into the void, says US watchdog offering cybersecurity advice

[10]Indian official reveals 'plan' to build a national mobile OS

However, in the spending review, HM Treasury agreed funding of £366 million ($450 million) for general digital investment across Defra Group for the three-year period.

Howes said: "The important difference is that while the legacy applications programme will bring things up to a supportable standard — hopefully, they won't fall over and won't be subject to [a] risk of cyber-attack — what that doesn't invest in is kind of broad or transformational change in those activities, such as removing paper forms, or, for example making applications available on mobile devices rather than on laptops."

The Animal health Agency's [11]SAM , the system that records bovine TB, has only recently been upgraded. Prior to the upgrade, vets resorted to buying old laptops on eBay as it was the only way to log on to the system, Finkelstein, Defra's permanent secretary, admitted. ®

Get our [12]Tech Resources



[1] https://www.nao.org.uk/wp-content/uploads/2022/12/Modernising-ageing-digital-services.pdf

[2] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_specialfeatures/governmenttechweek&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=2&c=2Y9EL0T2E3j9l7rE33mxtogAAAEY&t=ct%3Dns%26unitnum%3D2%26raptor%3Dcondor%26pos%3Dtop%26test%3D0

[3] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_specialfeatures/governmenttechweek&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y9EL0T2E3j9l7rE33mxtogAAAEY&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0

[4] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_specialfeatures/governmenttechweek&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Y9EL0T2E3j9l7rE33mxtogAAAEY&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0

[5] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_specialfeatures/governmenttechweek&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=4&c=44Y9EL0T2E3j9l7rE33mxtogAAAEY&t=ct%3Dns%26unitnum%3D4%26raptor%3Dfalcon%26pos%3Dmid%26test%3D0

[6] https://pubads.g.doubleclick.net/gampad/jump?co=1&iu=/6978/reg_specialfeatures/governmenttechweek&sz=300x50%7C300x100%7C300x250%7C300x251%7C300x252%7C300x600%7C300x601&tile=3&c=33Y9EL0T2E3j9l7rE33mxtogAAAEY&t=ct%3Dns%26unitnum%3D3%26raptor%3Deagle%26pos%3Dmid%26test%3D0

[7] https://www.theregister.com/2023/01/23/software_companies_targeted_by_hmrc/

[8] https://www.theregister.com/2023/01/19/texas_university_bans_tiktok/

[9] https://www.theregister.com/2023/01/24/gao_cybersecurity_recommendations/

[10] https://www.theregister.com/2023/01/19/india_mobile_os_indos/

[11] https://www.data.gov.uk/dataset/a553b50e-60ab-45f7-9b6c-90d0c21ada80/sam

[12] https://whitepapers.theregister.com/



Hope as a strategy!

Eccella

"hopefully, they won't fall over and won't be subject to [a] risk of cyber-attack"

Re: Hope as a strategy!

AMBxx

It'll be all those ActiveX plugins in IE!!

"It's possibly slightly worse than described"

Pascal Monett

No my dear, it's much, much worse than described.

We'll be hearing about this again, I wager, and the picture will not be so rosy.

Anonymous Coward

Depressingly common.

The bean counters/C-Suite routinely ignore warnings of systems/software coming up to their end-of-life, yet decide to do nothing about modernising it. All too often the belief is that, as it's not broken, it's not worth spending money on.

I've lost count of the number of times I've raised issues with stuff going end-of-life, raising risks when it *does* go end of life, yet still can't make those at the top commit to doing something about it.

What is especially annoying is that these idiots still expect platinum support on systems that should have been retired years ago, then get all arsy when they don't get it!

It will be advantageous to cross the great stream ... the Dragon is on
the wing in the Sky ... the Great Man rouses himself to his Work.