A former Accenture employee, Daniel Hilmer, has been indicted for allegedly misrepresenting the security of a cloud platform used by the Army and other agencies. The Department of Justice claims he concealed the platform’s noncompliance with essential security controls under the Federal Risk and Authorization Management Program (FedRAMP).
Although the indictment does not specify the cloud platform, Hilmer’s LinkedIn profile indicated he worked at Accenture Federal Services during the relevant period. Accenture revealed it initiated the investigation, emphasizing its cooperation with authorities and commitment to ethical standards.
The indictment states that in March 2020, Hilmer sought to upgrade the platform’s FedRAMP certification but ignored warnings about security deficiencies, such as inadequate multi-factor authentication. His actions allegedly led to the platform receiving a FedRAMP High Proton Authority to Operate (P-ATO) despite known issues.
If convicted, Hilmer faces severe penalties, including up to 20 years in prison for wire fraud. This case is part of a broader DOJ initiative to enforce federal cybersecurity requirements, signaling increased scrutiny on compliance in cloud security.
Source link


