Department of Labor

Jump To:

Open Recommendations (83 total)

Cloud Security: Selected Agencies Need to Fully Implement Key Practices

Show
9 Open Recommendations
Agency Affected Recommendation Status
Department of Labor The Secretary of Labor should ensure that the agency fully implements continuous monitoring for its selected PaaS system, to include reviewing the continuous monitoring deliverables from the CSP. (Recommendation 18)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency fully implements the FedRAMP requirements, to include issuing an authorization for each of the cloud services and performing a review and risk analysis of the CSPs' FedRAMP security packages for its selected SaaS system 2. (Recommendation 23)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency fully implements the FedRAMP requirements, to include issuing an authorization for the cloud service for its selected PaaS system. (Recommendation 21)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency's service level agreements with CSPs define performance metrics, including how they are measured and the enforcement mechanisms. (Recommendation 19)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency provides authorization letters to the FedRAMP PMO upon issuance of the authorization. (Recommendation 24)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency fully implements continuous monitoring for its selected IaaS system, to include implementing its plans for continuous monitoring of the security controls that are the agency's responsibility. (Recommendation 17)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency fully implements the FedRAMP requirements, to include issuing an authorization for the cloud service for its selected SaaS system 1. (Recommendation 22)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency fully implements the FedRAMP requirements, to include performing a review and risk analysis of the CSPs' FedRAMP security packages for its selected IaaS system. (Recommendation 20)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.
Department of Labor The Secretary of Labor should ensure that the agency's contracts with CSPs include requirements for the service providers to comply with FedRAMP security authorization requirements. (Recommendation 25)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.

Unemployment Insurance: Data Indicate Substantial Levels of Fraud during the Pandemic; DOL Should Implement an Antifraud Strategy

Show
1 Open Recommendations
Agency Affected Recommendation Status
Department of Labor The Secretary of Labor should design and implement an antifraud strategy for UI based on a fraud risk profile consistent with leading practices as provided in the Fraud Risk Framework. (Recommendation 1)
Open

 Actions to satisfy the intent of the recommendation have not been taken or are being planned.

When we confirm what actions the agency has taken in response to this recommendation, we will provide updated information.