Implement a plan to annually survey all HUD program offices to identify nondisclosure policies, forms, and agreements issued and to determine whether they include the anti-gag provision as required by WPEA and, as necessary, to take corrective action to ensure that they include the anti-gag provision.
2024-OE-0007 | December 13, 2024
The U.S. Department of Housing and Urban Development Nondisclosure Agreements’ Incorporation of Whistleblower Protections
General Counsel
- Status2024-OE-0007-04OpenClosed
Government National Mortgage Association
- Status2024-OE-0007-06OpenClosed
Revise the Ginnie Mae Confidential Information Policy to state that in the future, (a) nondisclosure forms and agreements must include the anti-gag provision as required by law and (b) confidentiality clauses in personnel settlement agreements must include the anti-gag provision if the clause restricts disclosure of any other information beyond the terms and conditions of the agreement itself.
2024-OE-0002a | December 11, 2024
Fiscal Year 2024 Federal Information Security Modernization Act of 2014 Penetration Test
Chief Information Officer
- Status2024-OE-0002a-10OpenClosedSensitiveSensitive
Sensitive information refers to information that could have a damaging import if released to the public and, therefore, must be restricted from public disclosure.
The OIG has determined that the contents of this recommendation would not be appropriate for public disclosure and has therefore limited its distribution to selected officials.
2023-OE-0007a | October 31, 2024
FHA Catalyst Personally Identifiable Information Risk Management in a Zero Trust Environment (2023-OE-0007a) Interim Evaluation Report
Housing
- Status2023-OE-0007a-01OpenClosed
Housing should include zero trust requirements as part of the Housing Strategic Roadmap for Housing Modernization.
2024-OE-0002 | October 29, 2024
HUD FY 2024 Federal Information Security Modernization Act (FISMA) Evaluation Report
Chief Information Officer
- Status2024-OE-0002-05OpenClosed
HUD OCIO should review its security training program and determine whether it should provide general cybersecurity awareness training to external users of its systems and data (IG FISMA metric 44).
2024-OE-0004 | October 04, 2024
U.S. Department of Housing and Urban Development’s Use and Oversight of Telework and Remote Work
Office of Chief Human Capital Officer
- Status2024-OE-0004-01OpenClosed
Implement a process to identify teleworkers most at risk of receiving incorrect locality payments, verify that their official duty stations are correct and they are reporting to their official duty stations as required, and if necessary, correct their locality payments.
2023-OE-0002 | February 14, 2024
Recruitment of Individuals Who Identify as Hispanic or Latino for Employment With the U.S. Department of Housing and Urban Development
Office of Chief Human Capital Officer
- Status2023-OE-0002-01OpenClosed
Determine how to measure the impact of recruitment efforts related to individuals who identiy as Hispanic or Latino.
- Status2023-OE-0002-02OpenClosed
Implement a process to measure the impact of recruitment efforts related to individuals who identify as Hispanic or Latino.
- Status2023-OE-0002-03OpenClosed
Implement a process to collect and maintain information about recruitment efforts related to indiviuals who identify as Hispanic or Latino from all HUD program offices and their respective field offices.
2023-OE-0001 | January 29, 2024
HUD FY 2023 Federal Information Security Modernization Act (FISMA) Evaluation Report
Office of Administration
- Status2023-OE-0001-20OpenClosed
HUD’s Office of Administration, in coordination with OCIO, should update and communicate its PII minimization plan. The plan should include detailed procedures to regularly review and remove unnecessary PII collections in accordance with OMB Circular A-130 (IG FISMA metric 35).
Chief Information Officer
- Status2023-OE-0001-02OpenClosed
HUD OCIO should report at least 80 percent of its government-furnished equipment through the DHS CDM program (IG FISMA metric 2).
- Status2023-OE-0001-16OpenClosed
HUD OCIO should implement procedures to ensure that digital identity risk assessments have been performed and documented in accordance with HUD’s defined procedures and Federal guidelines (IG FISMA metrics 30 and 31).
- Status2023-OE-0001-21OpenClosed
HUD OCIO should develop and implement processes to monitor and analyze qualitative and quantitative performance measures for the effectiveness of its ISCM program (IG FISMA metric 47).
2022-OE-0008 | January 19, 2024
U.S. Department of Housing and Urban Development Employee Retention
Office of Chief Human Capital Officer
- Status2022-OE-0008-01OpenClosed
Implement a transparent process for reviewing open-ended exit survey results and sharing those results with ODEEO, as appropriate, and program offices while still protecting former employees’ confidentiality.
- Status2022-OE-0008-02OpenClosed
Assess what departing employees mean when they indicate that organizational culture is a motivation for leaving HUD.
- Status2022-OE-0008-03OpenClosed
Develop guidance for the program offices to identify the causes behind high attrition rates in governmentwide high-risk MCOs and field offices in large cities.
- Status2022-OE-0008-04OpenClosed
Develop guidance for program offices to develop program office-specific action plans to address any causes found for high attrition rates in governmentwide high-risk MCOs and field offices in large cities.
- Status2022-OE-0008-05OpenClosed
Create a single, unified agency-specific MCO list updated to reflect current progress toward closing skills gaps.
2021-OE-0010 | March 10, 2023
The Office of Community Planning and Development’s Use of Remote Monitoring
Community Planning and Development
- Status2021-OE-0010-01OpenClosed
Complete and update the system security plans for GMP and DRGR and issue an SSN justification memorandum.
- Status2021-OE-0010-02OpenClosed
Identify and provide additional role-based training, guidance, and instructions to CPD employees on how to appropriately handle and safeguard PII encountered during monitoring.