Open Recommendations
Recommendation Number | Significant Recommendation | Recommended Questioned Costs | Recommended Funds for Better Use | Additional Details | |
---|---|---|---|---|---|
AUD-2025-006-1 | No | $0 | $0 | ||
FHFA’s SAOP in coordination with the System Owner, should conduct a review of all current privileged user accounts in the FHFA.gov production environment to ensure that each privileged user account has documented access requests and approvals. | |||||
AUD-2025-006-2 | No | $0 | $0 | ||
FHFA’s SAOP in coordination with the System Owner, should update FHFA’s FHFA.gov Customer Controls to document account management requirements for non-privileged users to include account creation and authorization procedures. | |||||
AUD-2025-006-3 | No | $0 | $0 | ||
FHFA’s SAOP in coordination with the System Owner, should evaluate and implement additional FHFA.gov audit logging capabilities to ensure the FHFA.gov audit logs captures access and deactivation events for all user accounts. |