Breadcrumb

Measurable Agreements on Security Controls Are Needed to Support the Enterprise Storage Services Solution

Report Information

Date Issued
October 30, 2015
Report Number
2016-20-002
Report Type
Audit
Joint Report
Yes
Participating OIG
Treasury Inspector General for Tax Administration
Agency Wide
Yes (agency-wide)
Questioned Costs
$0
Funds for Better Use
$0

Recommendations

The Chief Technology Officer should ensure that the ESS contract is modified to include measurable Service Level Agreements based on a complete risk assessment and security plan for the ESS Program.

The Chief Technology Officer should ensure that the ESS Program sufficiently addresses specific risks affecting IRS systems related to ESS security monitoring and incident management.