Our objective was to determine whether the U.S. Department of Education’s (Department) and Federal Student Aid’s (FSA) overall information technology security programs and practices were effective as they relate to Federal information security requirements. We found the Department and FSA programs were not effective in any of the five security functions—Identify, Protect, Detect, Respond, and Recover. We also identified findings in all eight metric domains, which included findings with the same or similar conditions contained in prior Office of Inspector General reports.
Report File
Date Issued
Submitting OIG
Department of Education OIG
Other Participating OIGs
Department of Education OIG
Agencies Reviewed/Investigated
Department of Education
Components
Office of Deputy Secretary
Report Number
A11T0002
Report Description
Report Type
Audit
Agency Wide
Yes
Number of Recommendations
37
Questioned Costs
$0
Funds for Better Use
$0
Additional Details