HUD FY 2024 Federal Information Security Modernization Act (FISMA) Evaluation Report
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation to assess the…
October 29, 2024
Report
#2024-OE-0002
HUD FY 2022 Federal Information Security Modernization Act (FISMA) Evaluation Report
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation to assess…
September 30, 2022
Report
#2022-OE-0001
HUD IT Modernization Roadmap Evaluation Report
We reviewed the U.S. Department of Housing and Urban Development’s (HUD) information technology (IT) modernization roadmap. A significant number of HUD’s mission-essential applications have not been modernized, which presents multiple sources of risk. These applications are hosted on legacy information systems and mainframe platforms, which are operationally inefficient, increasingly difficult to secure, and costly to maintain.…
June 29, 2021
Report
#2021-OE-0003
Fiscal Year 2019 Review of Information Systems Controls in Support of the Financial Statements Audit
We audited information systems controls over the U.S. Department of Housing and Urban Development’s (HUD) computing environment as part of the internal control assessments for the fiscal year 2019 financial statements audit under the Chief Financial Officer’s Act of 1990. Our objective was to assess general controls over HUD’s computing environment for compliance with HUD information technology policies and Federal information system security…
December 17, 2020
Report
#2021-DP-0001
HUD Fiscal Year 2020 Federal Information Security Modernization Act of 2014 (FISMA) Evaluation Report
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation to assess…
November 30, 2020
Report
#2020-OE-0001
Review of Selected Controls of New Core Interface Solution
We audited selected controls of U.S. Department of Housing and Urban Development’s New Core Interface Solution application as part of the internal control assessments for the fiscal year 2019 financial statement audit. Our objective was to review the controls for compliance with Federal information system security and financial management requirements.
The OIG has determined that the contents of this audit report would not be appropriate…
September 22, 2020
Report
#2020-DP-0002
Telework Impact on HUD’s Operations Due to the COVID-19 Pandemic
This memorandum report summarizes survey and interview results on the impact mandatory telework is having on U.S. Housing and Urban Development’s (HUD) operations. The HUD Office of Inspector General (OIG) conducted surveys and interviews to evaluate HUD’s use of agency-wide telework in response to the novel coronavirus disease of 2019 (COVID-19) pandemic. The study was designed to provide insights into the types of obstacles that impeded HUD…
June 01, 2020
Report
#2020-OE-0006
Topic Brief: Open Information Technology and Privacy Program Recommendations Issued to the U.S. Department of Housing and Urban Development (HUD) by the Office of Inspector General’s Office of Evaluation
This topic brief summarized the current status of all information technology (IT) and privacy program recommendations issued to the U.S. Department of Housing and Urban Development (HUD) by the Office of Inspector General’s Office of Evaluation, Information Technology Evaluations Division (iTED) from Fiscal Year (FY) 2014 through 2019. The report breaks down numbers of recommendations by functional areas and analyzes the progress made…
January 09, 2020
Topic brief
#2019-OE-0006
Fiscal Year 2017 Review of Information Systems Controls in Support of the Financial Statements Audit
We audited information system controls over the U.S. Department of Housing and Urban Development’s (HUD) computing environment. This review was conducted as part of our audit of HUD’s financial statements for fiscal year 2017 under the Chief Financial Officer’s Act of 1990. Our objective was to assess general controls over HUD’s computing environment for compliance with HUD information technology policies and Federal information…
March 08, 2018
Report
#2018-DP-0003
Review of Information Systems Controls Over FHA
We audited general and application controls over selected Federal Housing Administration (FHA) information systems and the credit reform estimation and reestimation process as part of the internal control assessments required for the fiscal year 2017 financial statement audit under the Chief Financial Officer’s Act of 1990. Our objective was to review the controls for compliance with U.S. Department of Housing and Urban Development (HUD)…
February 12, 2018
Report
#2018-DP-0002
Topic Brief: Persistent IT Challenges and Issues facing HUD
This briefing paper highlights challenges the Department of Housing and Urban Development (HUD) faces in managing and improving its Information Technology (IT) program. This document analyzed past HUD OIG and GAO IT related reports and recommendations to highlight key management challenges in HUD’s IT program. We are highlighting these challenges so HUD leadership is aware of and can be better prepared to address them.
The OIG has…
January 07, 2018
Report
#2017-OE-0010
E-Discovery Management System’s Capacity To Meet Customer Demand for Electronic Data
HUD has a contract with Leidos Innovations Corporation for E-Discovery services using the E-Discovery Management System. The process for collecting electronically stored information (ESI) and delivering it to customers has two major subprocesses: (1) an initial ESI collection and (2) a keyword search to refine the initial collection results. OGC’s and Leidos’ collection of ESI does not meet customer demand because processing ESI…
December 05, 2017
Report
#2017-OE-0008
DATA Act Compliance Audit of the U.S. Department of Housing and Urban Development
In accordance with the statutory requirements of the Digital Accountability and Transparency Act of 2014 (DATA Act) and standards established by the Office of Management and Budget (OMB), we audited the U.S. Department of Housing and Urban Development’s (HUD) Office of the Chief Financial Officer’s (OCFO) compliance with the DATA Act for the second quarter of fiscal year 2017.
In the DATA Act Compliance Audit of the U.S. Department of Housing…
November 03, 2017
Report
#2018-FO-0001
HUD Fiscal Year 2017 Federal Information Security Modernization Act Of 2014 (FISMA) Evaluation Report
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation to assess…
October 31, 2017
Report
#2017-OE-0007
HUD Web Application Security Evaluation Report
Enforce the requirement for all HUD web applications and services to be approved and authorized by OCIO. The OIG has determined that the contents of this recommendation would not be appropriate for public disclosure and has therefore limited its distribution to selected officials.
Corrective Action Taken
In January 2023, HUD's Office of the Chief Information Officer developed and released a Web Applications Directive to all HUD program…
July 06, 2017
Report
#2016-OE-0002
Independent Attestation Review: U.S. Department of Housing and Urban Development, DATA Act Implementation Efforts
The Digital Accountability and Transparency Act of 2014 (DATA Act) and implementation guidance provided in the Office of Management and Budget Memorandum M-15-12 mandates that Federal agencies must report their financial, budgetary and programmatic information to the USASpending.gov web site by the statutory May 2017 deadline.
In our second of two Data Act Readiness Reviews, OIG reviewed the U.S. Department of Housing and Urban Development’s (…
March 01, 2017
Memorandum
#2017-FO-0801
Review of Information Systems Controls Over FHA’s Single Family Premiums Collection Subsystem – Periodic and the Single Family Acquired Asset Management System
We reviewed the general and application controls over the Federal Housing Administration’s (FHA) Single Family Premiums Collection Subsystem – Periodic (SFPCS-P) and Single Family Acquired Asset Management System (SAMS) as part of the internal control assessments required for the fiscal year 2016 financial statement audit under the Chief Financial Officer’s Act of 1990. Our objective was to review the general and application controls over…
February 08, 2017
Report
#2017-DP-0002
Federal Information Security Modernization Act (FISMA) Fiscal Year 2016 Evaluation Report
The Federal Information Security Modernization Act of 2014 (FISMA) directs Inspectors General to conduct an annual evaluation of the agency information security program. FISMA, Department of Homeland Security (DHS), Office of Management and Budget (OMB) and National Institute of Standards and Technology (NIST) establish information technology (IT) security guidance and standards for Federal agencies. We conducted this evaluation to assess…
November 09, 2016
Report
#2016-OE-0006
Additional Review of Information System Controls Over FHA Information Systems, Washington, DC
We reviewed the general and application controls over the Federal Housing Administration’s (FHA) Single Family Insurance System (SFIS) and Single Family Insurance Claims Subsystem (Claims) as part of the internal control assessments required for the fiscal year 2015 financial statement audit under the Chief Financial Officer’s Act of 1990. Our objective was to assess the general and application controls over SFIS and Claims for compliance with…
August 31, 2016
Report
#2016-DP-0003
Independent Attestation Review: U.S. Department of Housing and Urban Development, DATA Act Readiness Review
The Digital Accountability and Transparency Act of 2014 (DATA Act), and implementing guidance provided in the Office of Management and Budget Memorandum M-15-12, is a mandate that Federal agencies must follow to report their financial, budgetary and programmatic information to the USASpending.gov web site. We have reviewed the U.S. Department of Housing and Urban Development’s (HUD) compliance efforts as of July 15, 2016. To…
August 26, 2016
Memorandum
#2016-FO-0802