U.S. flag

An official website of the United States government Here’s how you know

The .gov means it’s official.

Federal government websites often end in .gov or .mil. Before sharing sensitive information, make sure you're on a federal government site.

The site is secure.

The https:// ensures that you are connecting to the official website and that any information you provide is encrypted and transmitted securely.

Export
Date Issued

Community Planning and Development

  •  
    Status
      Open
      Closed
    2024-FW-1002-002-G

    We recommend that HUD require the City to since the property updates have been completed for the 24 program participants that did not receive the green infrastructure training, provide documentation that any subsequent program participants completed the green infrastructure training workshop before the grant agreement is signed and construction begins.

Community Planning and Development

  •  
    Status
      Open
      Closed
    2024-FO-0004-001-A

    Develop comprehensive guidance and training for grantees on how to prepare the PR 29 report to ensure that the information collected is reliable, accurate, timely, and in compliance with the Uniform Administrative Guidance for Grants and Cooperative Agreements, specifically 2 CFR 200.302(a)(b) and 2 CFR 200.303

  •  
    Status
      Open
      Closed
    2024-FO-0004-001-B

    Determine whether the funds that were drawn in error need to be repaid to HUD and whether other remediation actions are appropriate.

  •  
    Status
      Open
      Closed
    2024-FO-0004-001-C

    Follow up with the four grantees without adequate supporting documentation and assess their compliance with the financial management requirements in 2 CFR 200.302(b)(3), which require the financial management system of each non-Federal entity to provide for records that adequately identify the source and application of funds for federally funded activities.

  •  
    Status
      Open
      Closed
    2024-FO-0004-001-D

    Update the CPD Monitoring Handbook to incorporate the review of the PR 29 report when performing financial monitoring reviews.

  •  
    Status
      Open
      Closed
    2024-FO-0004-001-E

    Develop written procedures on how to review PR 29 report submissions and monitor resubmissions, late submissions, and nonsubmissions.

  •  
    Status
      Open
      Closed
    2024-FO-0004-001-F

    Evaluate and update IDIS to ensure that resubmissions of PR 29 reports are tracked and prior submissions are preserved and correct the system’s misclassification of unsubmitted and uncertified draft PR 29 reports as submitted.

  •  
    Status
      Open
      Closed
    2024-FO-0004-002-A

    Determine how often grantees’ requests for reimbursement contain cost outside the quarter and in coordination with OCFO, evaluate CPD’s grant accrual methodology and assumptions to ensure that it adequately considers the impact of these late cost reimbursements.

  •  
    Status
      Open
      Closed
    2024-FO-0004-002-B

    Develop guidance that encourages grantees to draw down funds for reimbursement on a regular schedule, not less than quarterly.

  •  
    Status
      Open
      Closed
    2024-FO-0004-002-C

    Work with OCFO to ensure that CPD collects and reports to OCFO all of the information needed to properly account for all CPD activities in HUD’s financial statements in accordance with Federal financial reporting requirements and accounting standards.

  •  
    Status
      Open
      Closed
    2024-FO-0004-002-D

    Update Line 4 - Cash (grant funds) disbursed during the reporting period in the PR 29 report to allow grantees to report all CDBG grant funds disbursed, including funds that have not yet been drawn down from HUD for reimbursement.

  •  
    Status
      Open
      Closed
    2024-FO-0004-003-A

    Obtain the required approvals under PRA for the PR 29 report.

Chief Information Officer

  •  
    Status
      Open
      Closed
    2023-OE-0001-01

    HUD OCIO should implement a process to consistently update and maintain its inventory of hardware assets and ensure that the inventory is consistent with the automated discovery scans used to perform vulnerability, configurations, and continuous diagnostics and mitigation scans and use this inventory to consistently remove unauthorized hardware assets from the HUD network (IG FISMA metrics 2, 20, and 21).

  •  
    Status
      Open
      Closed
    2023-OE-0001-02

    HUD OCIO should report at least 80 percent of its government-furnished equipment through the DHS CDM program (IG FISMA metric 2).

  •  
    Status
      Open
      Closed
    2023-OE-0001-03

    HUD OCIO should implement a process to consistently update and maintain its inventory of software assets and ensure that the inventory is consistent with the automated discovery scans used to perform vulnerability, configurations, and continuous diagnostics and mitigation scans and use this inventory to consistently remove unauthorized software assets from the HUD network (IG FISMA metrics 2, 20, and 21).

  •  
    Status
      Open
      Closed
    2023-OE-0001-04

    HUD OCIO should update its software inventory policies and procedures to account for critical software as defined by EO 14028 (IG FISMA metrics 3 and 21).

  •  
    Status
      Open
      Closed
    2023-OE-0001-05

    HUD OCIO should implement policies and procedures to maintain inventories of critical software and software licenses, critical software platforms, and all software installed on critical software platforms (both critical software and noncritical software) and use the inventory of critical software platforms and all software installed on them to ensure that only supported versions of software are used on those critical software platforms (IG FISMA metrics 3 and 21).

  •  
    Status
      Open
      Closed
    2023-OE-0001-06

    HUD OCIO should in coordination with the Chief Risk Officer (CRO), document cybersecurity risk management roles and responsibilities in a consolidated list and; define procedures to hold personnel accountable to their assigned roles in the consolidated list (IG FISMA metric 7)

  •  
    Status
      Open
      Closed
    2023-OE-0001-07

    HUD OCIO should consistently implement personnel accountability procedures to ensure that assigned cybersecurity risk management roles are being performed in an effective manner (IG FISMA metric 7).

  •  
    Status
      Open
      Closed
    2023-OE-0001-10

    HUD OCIO should ensure that external systems, such as cloud systems and cloud service providers, have and maintain configuration management plans that are consistent with HUD’s defined configuration management requirements (IG FISMA metric 19).