Skip to main content

Lapse in Appropriations

Please note that a lapse in appropriations has caused GAO to shut down its operations. Therefore, GAO will not be able to publish reports or otherwise update this website until GAO resumes operations. In addition, the vast majority of GAO personnel are not permitted to work. Consequently, calls or emails to agency personnel may not be returned until GAO resumes operations. For details on how the bid protest process will be handled during the shutdown, please see the legal decisions page. For information related to the GAO Personnel Appeals Board (PAB), please see the PAB webpage.

Priority Open Recommendations: Office of the National Cyber Director (ONCD)

GAO-25-107943 Published: Sep 02, 2025. Publicly Released: Sep 09, 2025.
Jump To:
Skip to Highlights

Highlights

What GAO Found

In June 2025, GAO identified three priority recommendations for the Office of the National Cyber Director (ONCD). These three recommendations involve the following area:

  • Improving cybersecurity.

Implementing these priority recommendations could help ONCD more effectively carry out its leadership responsibilities needed to ensure the cybersecurity of the nation.

Why GAO Did This Study

Priority recommendations are the GAO recommendations that have not been implemented and warrant attention from heads of key departments or agencies because their implementation could save large amounts of money; improve congressional or executive branch decision-making on major issues; eliminate mismanagement, fraud, and abuse; or ensure that programs comply with laws and funds are legally spent, among other benefits. Since 2015, GAO has sent letters to selected agencies to highlight the importance of implementing such recommendations.

For more information, contact Nick Marinos at marinosn@gao.gov.

Full Report

GAO Contacts

Nick Marinos
Managing Director
Information Technology and Cybersecurity

Media Inquiries

Sarah Kaczmarek
Managing Director
Office of Public Affairs

Public Inquiries

Topics

Critical infrastructureCritical infrastructure protectionCybersecurityGovernment operationsHigh-risk issuesInformation technologyPerformance measurementCost estimatesHigh-risk listLegislation