U.S. flag

An official website of the United States government

Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock () or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Breadcrumb

Results of the Audit of the United States Nuclear Regulatory Commission's Financial Statements for Fiscal Year 2021

Report Information

Date Issued
Report Number
OIG-22-A-03
Report Type
Audit
Joint Report
No
Agency Wide
No (location specific)
Questioned Costs
$0
Funds for Better Use
$0

Recommendations

Implement the technical capability to disable or remove users who are inactive for greater than the organizationally defined threshold of 90 days.

Enhance the periodic recertification of access by ensuring that managers review the access privileges of their staff against the most current segregation of duties matrix to ensure the roles currently assigned conform to policy. In addition, we recommend the help desk documents the removal of roles that management has noted as unnecessary and communicates the confirmation with management that the user’s roles were removed.

Enhance the process to help ensure that STAQS Access Request Forms are completed and retained.

Enhance the process to help ensure that NRC Form 270 is completed and retained for each employee that is separated from the NRC.