Follow us! >

USPS OIG – Security of Postal Service Smartphones

Background

The U.S. Postal Service issued approximately 27,000 smartphones to its employees to provide telecommunication and connectivity to its information systems and work-related applications. Although smartphones offer opportunities to improve business productivity, they also introduce the risk of cyber threats that could compromise sensitive Postal Service data. Given the level of access a smartphone offers to its internal network, it is imperative the Postal Service appropriately secures its smartphones to mitigate the risk to its data and systems.

What We Did

Our objective was to assess the security of the Postal Service’s smartphones. For this audit, we used a combination of data analytics, interviews, and control tests to determine if appropriate controls were in place and functioning as intended to protect the smartphones and Postal Service data.

What We Found

The Postal Service’s mobile device management platform (MDM) allows information technology staff to control, secure, and enforce policies on applications and operating systems installed on smartphones. The Postal Service did not fully utilize the MDM to adequately restrict the installation of or remove unapproved applications from its smartphones. Additionally, the Postal Service did not force operating system updates or quarantine smartphones without current operating systems. These issues occurred because the Postal Service did not monitor smartphones for unapproved applications or outdated operating systems, nor did it have a policy to do so. The underutilization of the MDM has led to about $4.7 million in questioned cost and funds put to better use.

Recommendations and Management’s Comments

We made three recommendations to address the security of applications and operating systems installed on the Postal Service’s smartphones. Postal Service management agreed with all recommendations. The U.S. Postal Service Office of Inspector considers management’s comments responsive to all three recommendations, as corrective actions should resolve the issues identified in the report.

Sign up to receive our Daily Postal News blast

Related Articles

Tell us what you think below!

Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Hot this week

NPMHU Treasurer Charged with Wire Fraud and Embezzlement of Labor Organization Funds

A former treasurer of a New Mexico labor organization is facing federal charges for allegedly abusing his position of trust within a union to misuse union funds and conceal that conduct through false financial reporting.

Mail truck catches fire on I-75 south in Monroe County, lanes since reopened

A mail truck caught on fire Thursday morning on Interstate 75 south in Monroe County, which temporarily closed all lanes of the interstate and causing serious congestion on the interstate.

USPS OIG – FY 2025 Selected Financial Activities and Accounting Records

The Postal Service fairly stated selected accounting transactions in the general ledger and controls over those transactions were operating effectively.

Warner, Kaine & Democratic Colleagues Join Effort Challenging Attempts to Suppress Mail-In Voting

U.S. Senators Mark R. Warner and Tim Kaine, a former civil rights lawyer, (both D-VA), joined their Senate Democratic colleagues in filing an amicus brief in the case of Watson v. Republican National Committee

This USPS employee monitors nest boxes as a citizen scientist

My name is Stacy Shuda and I’m a solutions architect for the Postal Service’s architecture, strategy and innovation group, which is part of the chief information officer’s organization in Eagan, MN.
spot_img

Related Articles

Popular Categories

Secret Link
0
Would love your thoughts, please comment.x
()
x
Send this to a friend