Text of Recommendation | Update the agency‟s information management and security policies to include social media
A) Include social media policy guidance in the revised MD 3.2, Privacy Act in accordance with guidance provided in OMB Memorandum 10-23, Guidance for Agency Use of Third Party Web Sites and Applications.
B) Revise MD 3.53, Records and Document Management Program and include social media in accordance with the guidance provided in NARA Bulletin 2011-02, Guidance on Managing Records in Web2.0/Social Media Platforms.
C) Revise the existing PII Breach Notification Policy and Computer Security Incident Response Policy to include the following statement: All of the information contained in this policy applies to the use of social media. |
---|---|
Recommendation Number | 25 |
Recommendation Status | Closed |
Significant Recommendation | Yes |
Submitting OIG | |
---|---|
Linked Report |