| Text of Recommendation | FHFA’s Chief Information Officer should identify and secure the resources necessary to remediate identified internal critical, high, and medium exploitable vulnerabilities on the FHFA servers, workstations, and other devices in compliance with Cybersecurity and Infrastructure Security Agency Binding Operational Directive 22-01 and FHFA’s Office of Technology and Information Management Vulnerability Management Process, Revision 2.7 (September 7, 2022). |
|---|---|
| Recommendation Number | AUD-2024-007-16 |
| Recommendation Status | Open |
| Significant Recommendation | No |
| Submitting OIG | |
|---|---|
| Linked Report |
