We recommend that the Chief Privacy Officer, DHS Privacy Office ensure compliance with its privacy policies or revise them to include the guidance necessary for program offices to meet the intent of the privacy requirements when, with due diligence, the technology needs to be procured and tested to complete the Privacy Impact Assessment process. The additional guidance, if developed, should address justification for deviating from Privacy Impact Assessment–related privacy policies and restrictions on the operational use of privacy-sensitive information; the guidance should also ensure Privacy Impact Assessments are completed before privacy-sensitive information is collected and used operationally.
Questioned Costs
$0
Funds for Better Use
$0
Recommendation Status
Open
Source UUID
c9c5daef-067c-4a3d-893d-e03e383a8207-7
Recommendation Number
7
Significant Recommendation
No