U.S. flag

An official website of the United States government

Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Breadcrumb

Firewall Administration Needs Improvement

Report Information

Date Issued
Report Number
2019-20-061
Report Type
Audit
Joint Report
Yes
Participating OIG
Treasury Inspector General for Tax Administration
Agency Wide
Yes (agency-wide)
Questioned Costs
$0
Funds for Better Use
$0

Recommendations

The Chief Information Officer and Chief, Criminal Investigation, should ensure that IRS procedures regarding the monthly Treasury Department Cybersecurity Analysis and Reporting Dashboard (CARD) input are updated and all FISMA reportable firewalls are reported.

The Chief Information Officer and the Chief, Criminal Investigation, should improve the data field accuracy for the firewall inventories in the *11* *****11*****..

The Chief Information Officer and the Chief, Criminal Investigation, should ensure that the Cybersecurity function periodically communicates its Enterprise Vulnerability Scanning Standard Operating Procedures to all relevant stakeholders and follows these procedures and other agency policies to create and maintain information technology asset groupings.

The Chief Information Officer and the Chief, Criminal Investigation, should ensure that all Criminal Investigation information systems comply with agency policies and procedures regarding security vulnerability scanning.