The Offices of Audit and Evaluation supervise and conduct independent and objective audits, evaluations, and other reviews of U.S. Department of Housing and Urban Development (HUD) programs and activities to ensure they operate economically, efficiently, and effectively. This page contains links to our audit and evaluation reports and memoranda.
The OIG evaluated the U.S. Department of Housing and Urban Development (HUD) Office of Housing’s (Housing) progress in applying zero trust security principles to protect personally identifiable information (PII) within the Federal Housing Administration (FHA) Catalyst system.HUD was in the beginning stages of implementing zero trust requirements for the data and identity pillars. HUD Office of Housing systems, including FHA Catalyst,…
October 31, 2024
Report
#2023-OE-0007a
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation to…
October 29, 2024
Report
#2024-OE-0002
We audited the U.S. Department of Housing and Urban Development (HUD), Office of Fair Housing and Equal Opportunity’s (FHEO) challenges in completing housing discrimination investigations within 100 days. We initiated the audit due to the number of investigations reported in FHEO’s annual reports to Congress that exceeded 100 days. Our objective was to survey and assess the challenges FHEO faces in completing investigations…
September 24, 2024
Report
#2024-BO-0005
We audited the U.S. Department of Housing and Urban Development’s (HUD or Department) Office of Fair Housing and Equal Opportunity’s (FHEO) process for conducting civil rights compliance reviews. FHEO’s operational readiness to carry out robust compliance reviews is critical to HUD’s goals to advance equity and support underserved communities. Our objective was to survey and assess challenges FHEO faced in conducting…
September 13, 2024
Report
#2024-BO-0004
We audited the U.S. Department of Housing and Urban Development (HUD), Office of Fair Housing and Equal Opportunity’s, implementation of Executive Order 13988, which President Biden issued to prevent and combat discrimination on the basis of gender identity or sexual orientation. We performed this audit to assess HUD’s progress in developing an action plan to implement the executive order. Our audit objective was to…
June 05, 2024
Report
#2024-BO-0003
We audited the Kentucky Commission on Human Rights’ fair housing complaint intake process. We initiated this audit based on an internal risk assessment of Fair Housing Assistance Program agencies’ challenges. Our audit objectives were to (1) determine the extent to which the Commission processed fair housing inquiries within 30 days and (2) evaluate its reasons for closing fair housing inquiries.We were unable to determine…
February 15, 2024
Report
#2024-BO-1001
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation to…
January 29, 2024
Report
#2023-OE-0001
We conducted this evaluation to assess the maturity of HUD’s Robotic process automation (RPA) activities and determine whether HUD had implemented related controls to address technology and program management risks. RPA is a software technology used to emulate human actions on a computer. RPA software programs, referred to as “bots,” can complete repetitive tasks quickly and consistently, freeing up employees to work on…
February 17, 2023
Report
#2021-OE-0007
We audited the U.S. Department of Housing and Urban Development’s (HUD) information technology (IT) infrastructure to support mandatory telework. During mandatory telework, more employees simultaneously needed remote access to HUD’s network and agency resources for an extended period, which presented unique risks and security requirements. While HUD is no longer operating under mandatory telework, understanding the challenges it faced…
January 24, 2023
Report
#2023-FO-0008
We determined that FHEO could provide more guidance related to FHEO’s performance assessment process to improve its oversight of State and local fair housing enforcement agencies participating in FHAP. The FHAP Division has provided guidance that FHEO regional staff responsible for monitoring and overseeing FHAP agency performance (HUD reviewers) does not consistently follow. Additionally, although all HUD reviewers work…
November 15, 2022
Report
#2021-OE-0008
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation…
September 30, 2022
Report
#2022-OE-0001
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation…
February 17, 2022
Report
#2021-OE-0001
The Federal Information Security Modernization Act of 2014 (FISMA) requires all federal agencies to conduct independent security technical verification testing on a sampling of information systems annually. In conjunction with our fiscal year 2021 FISMA evaluation (2021-OE-0001), we conducted a targeted security testing assessment of sample systems that resulted in a Topic Brief. The objective of this application…
February 15, 2022
Topic Brief
#2021-OE-0001a
We reviewed the U.S. Department of Housing and Urban Development’s (HUD) ability to effectively complete information technology (IT) acquisitions. HUD’s IT systems and its modernization plans depend heavily on contractors, yet HUD has historically faced significant challenges with implementing effective acquisition processes. Therefore, HUD’s acquisition capacity represents a key potential risk within HUD’s IT environment. We…
November 17, 2021
Report
#2020-OE-0004
The brief provides an update to the original 2018 topic brief, and highlights key challenges faced by HUD in managing and improving its IT program. The brief is not based on new work, but is a summary of 83 reports and 788 recommendations from past HUD OIG and GAO reports. It discusses the present IT environment at HUD, previously identified and new IT-related challenges, and HUD’s efforts and progress in addressing these…
August 09, 2021
Topic Brief
#2021-OE-0004
We reviewed the U.S. Department of Housing and Urban Development’s (HUD) information technology (IT) modernization roadmap. A significant number of HUD’s mission-essential applications have not been modernized, which presents multiple sources of risk. These applications are hosted on legacy information systems and mainframe platforms, which are operationally inefficient, increasingly difficult to secure, and costly to…
June 29, 2021
Report
#2021-OE-0003
We audited information systems controls over the U.S. Department of Housing and Urban Development’s (HUD) computing environment as part of the internal control assessments for the fiscal year 2019 financial statements audit under the Chief Financial Officer’s Act of 1990. Our objective was to assess general controls over HUD’s computing environment for compliance with HUD information technology policies and Federal information system…
December 17, 2020
Report
#2021-DP-0001
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation…
November 30, 2020
Report
#2020-OE-0001
We audited selected controls of U.S. Department of Housing and Urban Development’s New Core Interface Solution application as part of the internal control assessments for the fiscal year 2019 financial statement audit. Our objective was to review the controls for compliance with Federal information system security and financial management requirements.
The OIG has determined that the contents of this audit report would not be…
September 22, 2020
Report
#2020-DP-0002
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation…
June 25, 2020
Report
#2019-OE-0002