Follow us! >

Review of the Postal Regulatory Commission’s Compliance With the Federal Information Security Modernization Act of 2014 for Fiscal Year 2024

Background

This report presents a review of the United States Postal Regulatory Commission’s (PRC) information security program and practices for fiscal year (FY) 2024. The Federal Information Security Modernization Act of 2014 (FISMA) requires agencies to develop, implement, and document agencywide information security programs and practices. FISMA also requires inspectors general to conduct annual reviews of their agencies’ information security programs and report the results to the Office of Management and Budget.

What We DId

To meet the annual review requirement, we contracted with KPMG LLP (KPMG) to conduct this audit subject to our oversight. The audit objective was to determine the effectiveness of the PRC’s information security program and practices in five framework function areas: Identify, Protect, Detect, Respond, and Recover.

What We Found

The PRC has opportunities to improve its information security program. Specifically, the PRC began to draft and implement policies, procedures, and processes to manage its information security program. However, KPMG determined that these initiatives were not completed. As a result, the Core Metrics and Supplemental Group 2 Metrics were rated an Ad-Hoc (Level 1) maturity level for the five framework functions. KPMG identified one finding (see Section III) pertaining to the functions and their respective nine metric domains.

Recommendations and Management’s Comments

KPMG made nine recommendations to address the issues identified in the report across the nine FISMA metric domains. The PRC agreed with all recommendations. KPMG considers management’s comments responsive to all recommendations, as corrective actions should resolve the issues identified in the report.

Sign up to receive our Daily Postal News blast

Related Articles

Tell us what you think below!

Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Hot this week

USPS OIG – Top 10 Postal Stories of 2025

Happy New Year to all our Pushing the Envelope readers! Now that 2026 has started, we want to take some time to reflect on 2025, the Postal Service’s 250th anniversary

Are your duties in conflict with your financial interests?

The Postal Service is reminding employees of the importance of identifying and avoiding financial conflicts of interest.

DOJ: Ban on mailing concealable firearms unconstitutional, can’t be enforced

A nearly 100-year-old federal ban on mailing handguns through the U.S. Postal Service is unconstitutional and cannot be enforced, according to an opinion released Thursday by the Department of Justice (DOJ).

Warner, Kaine & Democratic Colleagues Join Effort Challenging Attempts to Suppress Mail-In Voting

U.S. Senators Mark R. Warner and Tim Kaine, a former civil rights lawyer, (both D-VA), joined their Senate Democratic colleagues in filing an amicus brief in the case of Watson v. Republican National Committee

Signals of a slowdown: What federal employees should do with their TSP right now

With some economic signs raising the caution flag, now is a key moment for federal employees to take a calm, strategic look at how their Thrift Savings Plan portfolio is positioned

Related Articles

Popular Categories

Secret Link
0
Would love your thoughts, please comment.x
()
x
Send this to a friend