About | HeinOnline Law Journal Library | HeinOnline Law Journal Library | HeinOnline

GAO-21-572PR 1 (2021-06-15)

handle is hein.gao/gaolvn0001 and id is 1 raw text is: O1O    o    U.S. GOVERNMENT ACCOUNTABILITY OFFICE
A Century of Non-Partisan Fact-Based Work
441 G St. N.W.                                               Comptroller General
Washington, DC 20548                                         of the United States
June 15, 2021
The Honorable Gina M. Raimondo
Secretary
U.S. Department of Commerce
1401 Constitution Ave. NW
Washington, D.C. 20230
Priority Open Recommendations: Department of Commerce
Dear Madam Secretary:
The purpose of this letter is to provide an update on the overall status of the U.S. Department of
Commerce's (Commerce) implementation of GAO's recommendations and to call your personal
attention to areas where open recommendations should be given high priority.1 In November
2020, we reported that, government-wide, 77 percent of our recommendations made 4 years
ago were implemented.2 Commerce's recommendation implementation rate was 87 percent. As
of June 2021, Commerce had 89 open recommendations. Fully implementing these open
recommendations could significantly improve Commerce's operations.
Since our April 20, 2020, letter, Commerce has implemented nine of our 20 open priority
recommendations.
 Commerce addressed three recommendations related to the Decennial Census. We
found Commerce took significant steps to improve the risk management of the decennial
census by ensuring identified risks had the required mitigation and contingency plans. It
also took steps to improve control over how risk and uncertainty are accounted for in the
Census Bureau's (Bureau) decennial cost estimation process. Further, Commerce
implemented a formal process for tracking and executing appropriate corrective actions
to remediate cybersecurity weaknesses identified by the Department of Homeland
Security, expeditiously addressing identified deficiencies. As a result of these efforts,
Commerce improved its oversight of the decennial census by better positioning itself to
manage and mitigate risks as well as cybersecurity weaknesses identified by federal
partners.
 Commerce established a process for conducting an organization-wide cybersecurity risk
assessment. Establishing a process for aggregating information from sources such as
system-level risk assessments, continuous monitoring, and any relevant strategic risk
considerations allows the agency to consider the totality of risk derived from the
operation and the use of its information systems.
1Priority recommendations are those that GAO believes warrant priority attention from heads of key departments or
agencies. They are highlighted because, upon implementation, they may significantly improve government
operations, for example, by realizing large dollar savings; eliminating mismanagement; or making progress toward
addressing a high-risk or fragmentation, overlap, or duplication issue.
2GAO, Performance and Accountability Report: Fiscal Year 2020, GAO-21-4SP (Washington, D.C.: Nov. 16, 2020).

GAO-21-572PR Commerce Priority Recommendations

Page 1

What Is HeinOnline?

HeinOnline is a subscription-based resource containing thousands of academic and legal journals from inception; complete coverage of government documents such as U.S. Statutes at Large, U.S. Code, Federal Register, Code of Federal Regulations, U.S. Reports, and much more. Documents are image-based, fully searchable PDFs with the authority of print combined with the accessibility of a user-friendly and powerful database. For more information, request a quote or trial for your organization below.



Contact us for annual subscription options:

Already a HeinOnline Subscriber?

profiles profiles most