HUD PRIVACY PROGRAM EVALUATION
Finalize and approve the draft privacy program strategic plan
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Ensure the privacy program is integrated with the enterprise risk program and that privacy risks are incorporated into the agency risk management process
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Establish an executive leadership dashboard to communicate continuous monitoring of key program risks and issues
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
A. Develop an internal privacy program communication plan to describe how privacy issues will be disseminated and best practices will be shared. B. Implement the communication plan
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Develop a dedicated budget to address Privacy Office training needs and initiatives
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Update all privacy guidance to reflect current Federal requirements and processes.
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Implement a formal process for the Privacy Office to issue and communicate privacy guidance, requirements, and deadlines.
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Update and continue to maintain a central collaboration area to include all current privacy program policies, procedures, and guidance
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Establish standard processes to ensure consistent work flow and communications between program office and Privacy Office personnel
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Ensure role-based privacy training is provided to all personnel with privacy responsibilities
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Ensure privacy awareness training is provided to all contractor and third party personnel
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Provide personnel tasked with handling Privacy Act requests with recurring training on Privacy Act exceptions
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Establish documentation procedures for accounting of disclosures made under the Privacy Act, as required by 5 USC 552a(c)
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Establish an annual computer matching activity reporting process to meet the requirements of OMB Circular A-108
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Determine if general support system privacy threshold assessments or privacy impact assessments should be completed; if not, document the rationale
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Develop the technical capability to identify, inventory, and monitor the existence of PII within the HUD environment
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Develop and implement a process to inventory all agency PII holdings not less than annually.
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Renew the PII minimization effort, to include a prioritization by the SAOP of specific minimization initiatives
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
Require all system owners to review the records retention practices for each information system and take any corrective actions necessary to ensure adherence to the applicable records retention schedule
Open Recommendation
HUD PRIVACY PROGRAM EVALUATION
A. Issue a clean desk policy prohibiting unattended and unsecured sensitive data in workplaces. B. Implement procedures to enforce the clean desk policy.
Open Recommendation