Electronic Authentication Security Controls Have Improved, but Continued Progress Is Needed to Ensure the Protection of Public-Facing Applications
Report Information
Date Issued
April 19, 2019
Report Number
2019-20-017
Report Type
Audit
Joint Report
Yes
Participating OIG
Treasury Inspector General for Tax Administration
Agency Wide
Yes (agency-wide)
Questioned Costs
$0
Funds for Better Use
$0
Recommendations
The Chief Information Officer should ensure that public-facing legacy applications are complying with NIST SP 800-63-3 and that an implementation plan includes specific timelines for accomplishing full compliance of legacy applications.
