U.S. flag

An official website of the United States government

Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Management Alert: EXIM Did Not Appropriately Safeguard Personally Identifiable Information

Report Information

Date Issued
Report Number
OIG-O-25-02
Report Type
Other
Joint Report
No
Agency Wide
Yes (agency-wide)
Questioned Costs
$0
Funds for Better Use
$0

Recommendations

The Office of Information Management and Technology should immediately restrict access to documents containing Privacy Act information, or any other protected or restricted documentation stored on EXIM’s Information Technology (IT) systems, ensuring that…

The Senior Agency Official for Privacy, in coordination with the Office of General Counsel, should assess within the Office of Management and Budget guidance whether there is a requirement to report the incident, and potential breach, and determine if…

The Chief Information Officer and the Chief Information Security Officer should develop a report regarding the circumstances that led to the incident and the lessons learned that will prevent future incidents and/or improve agency response, as required…

The Office of Information Management and Technology should implement any changes or lessons learned identified in the incident report, to include policy changes or updated training that address the production, maintenance, and disposal of non-record…