We determined that USDA has not fully implemented cybersecurity and governance controls within Artificial Intelligence systems in compliance with federal standards, leaving the agency at risk of data breaches or reputational harm.
Open Recommendations
| Recommendation Number | Significant Recommendation | Recommended Questioned Costs | Recommended Funds for Better Use | Additional Details | |
|---|---|---|---|---|---|
| 1 | Yes | $0 | $0 | ||
| Implement controls and Department-wide regulations to ensure high-impact assessments of AI use cases are conducted in compliance with OMB requirements | |||||
| 2 | Yes | $0 | $0 | ||
| Review and update all applicable policies and procedures to incorporate AI in compliance with OMB requirements. | |||||
| 3 | Yes | $0 | $0 | ||
| Develop and implement a process to continually review and update USDA’s AI inventory. | |||||
| 4 | Yes | $0 | $0 | ||
| Develop and implement a process to ensure a risk assessment, ATO determination, and an overall system impact analysis is conducted prior to AI technologies being permitted on the USDA network. | |||||