Assess and streamline the processes for preparing, reviewing, and approving the reports as appropriate to ensure that the reports are submitted to Congress on or before the required due date.
2024-CH-0001 | February 13, 2024
HUD Lacked Adequate Oversight of Multifamily Housing Properties With Failing REAC Scores or Life-Threatening Deficiencies
Housing
2024-CH-0001-003-B
2024-CH-0001-003-C
Implement adequate procedures and controls to ensure that documentation is maintained to support that the reports were submitted to Congress.
2024-FO-0004 | February 09, 2024
Financial Information Collected from CDBG Grantees Needs Improvement
Community Planning and Development
2024-FO-0004-001-A
Develop comprehensive guidance and training for grantees on how to prepare the PR 29 report to ensure that the information collected is reliable, accurate, timely, and in compliance with the Uniform Administrative Guidance for Grants and Cooperative Agreements, specifically 2 CFR 200.302(a)(b) and 2 CFR 200.303
2024-FO-0004-001-B
Closed on February 09, 2024Determine whether the funds that were drawn in error need to be repaid to HUD and whether other remediation actions are appropriate.
2024-FO-0004-001-C
Follow up with the four grantees without adequate supporting documentation and assess their compliance with the financial management requirements in 2 CFR 200.302(b)(3), which require the financial management system of each non-Federal entity to provide for records that adequately identify the source and application of funds for federally funded activities.
2024-FO-0004-001-D
Update the CPD Monitoring Handbook to incorporate the review of the PR 29 report when performing financial monitoring reviews.
2024-FO-0004-001-E
Develop written procedures on how to review PR 29 report submissions and monitor resubmissions, late submissions, and nonsubmissions.
2024-FO-0004-001-F
Evaluate and update IDIS to ensure that resubmissions of PR 29 reports are tracked and prior submissions are preserved and correct the system’s misclassification of unsubmitted and uncertified draft PR 29 reports as submitted.
2024-FO-0004-002-A
Determine how often grantees’ requests for reimbursement contain cost outside the quarter and in coordination with OCFO, evaluate CPD’s grant accrual methodology and assumptions to ensure that it adequately considers the impact of these late cost reimbursements.
2024-FO-0004-002-B
Develop guidance that encourages grantees to draw down funds for reimbursement on a regular schedule, not less than quarterly.
2024-FO-0004-002-C
Work with OCFO to ensure that CPD collects and reports to OCFO all of the information needed to properly account for all CPD activities in HUD’s financial statements in accordance with Federal financial reporting requirements and accounting standards.
2024-FO-0004-002-D
Update Line 4 - Cash (grant funds) disbursed during the reporting period in the PR 29 report to allow grantees to report all CDBG grant funds disbursed, including funds that have not yet been drawn down from HUD for reimbursement.
2024-FO-0004-003-A
Obtain the required approvals under PRA for the PR 29 report.
2023-OE-0001 | January 29, 2024
HUD FY 2023 Federal Information Security Modernization Act (FISMA) Evaluation Report
Office of Administration
2023-OE-0001-20
Closed on October 04, 2024HUD’s Office of Administration, in coordination with OCIO, should update and communicate its PII minimization plan. The plan should include detailed procedures to regularly review and remove unnecessary PII collections in accordance with OMB Circular A-130 (IG FISMA metric 35).
Chief Financial Officer
2023-OE-0001-08
HUD’s Office of the Chief Financial Officer (OCFO), in coordination with other appropriate program offices, should define and implement a risk-based process to assess and document IT risk management personnel resourcing needs and that those personnel are allocated effectively to support HUD’s risk management program (IG FISMA metric 7).
2023-OE-0001-09
HUD OCFO, in coordination with other appropriate program offices, should define and implement a process to document and allocate non-personnel risk management resources in a risk-based manner, to include but not limited to funding, processes, and technology (IG FISMA metric 7).
Chief Information Officer
2023-OE-0001-01
HUD OCIO should implement a process to consistently update and maintain its inventory of hardware assets and ensure that the inventory is consistent with the automated discovery scans used to perform vulnerability, configurations, and continuous diagnostics and mitigation scans and use this inventory to consistently remove unauthorized hardware assets from the HUD network (IG FISMA metrics 2, 20, and 21).
2023-OE-0001-02
Closed on August 26, 2024HUD OCIO should report at least 80 percent of its government-furnished equipment through the DHS CDM program (IG FISMA metric 2).
2023-OE-0001-03
HUD OCIO should implement a process to consistently update and maintain its inventory of software assets and ensure that the inventory is consistent with the automated discovery scans used to perform vulnerability, configurations, and continuous diagnostics and mitigation scans and use this inventory to consistently remove unauthorized software assets from the HUD network (IG FISMA metrics 2, 20, and 21).
2023-OE-0001-04
HUD OCIO should update its software inventory policies and procedures to account for critical software as defined by EO 14028 (IG FISMA metrics 3 and 21).