U.S. flag

An official website of the United States government

Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Breadcrumb

U.S. Department of Agriculture, Office of the Chief Information Officer, Fiscal Year 2020 Federal Information Security Modernization Act

Report Information

Date Issued
Report Number:
50503-0003-12
Report Type
Audit
Component
USDA - Multi Agency
Description
As required by FISMA, OIG reviewed USDA’s ongoing efforts to improve its information technology security program and practices during FY 2020.
Joint Report
No
Agency Wide
Yes (agency-wide)

Recommendations

We recommend the Department implement an improved patch and upgraded process to address security deficiencies identified by the independent OIG scans and SIEM.

We recommend the Department incorporate tools from DHS CDM Phase 2 and establish an ICAM steering committee to oversee the enterprise level ICAM approach.

We recommend the Department implement the policy and procedures related to media sanitization. In addition, the Department should consistently perform sanitization of decommissioned hardware devices and maintain the sanitization certifications.

We recommend the Department design and implement the necessary oversight and enforcement mechanisms and controls to ensure all system contingency plans are tested annually. The results of all tests should be reviewed annually to ensure corrective actions can be initiated, as necessary.