Expands the main menu

Breadcrumb

Technology, Infrastructure, and Site Security Review

Audit Reports

  • Image
    cover image: illustration of digital padlock.
Mar
21
2025
Report Number:
24-133-R25
Report Type:
Audit Reports
Category: Technology

Technology, Infrastructure, and Site Security Review

The U.S. Postal Service operates more than 8,500 automated systems and equipment at 313 facilities. Its network consists of computer systems and equipment that manage, monitor, and control mail functions. Without proper technological, physical, and environmental controls, there is an increased risk of adverse impacts to essential equipment. Our objective was to determine whether the Postal Service established and implemented adequate controls over these systems.

We found the Postal Service did not always establish and implement effective information technology, physical, and environmental controls. Specifically, the Postal Service did not have a process to proactively identify or remediate information technology vulnerabilities on the network. According to Engineering Systems, a process to improve vulnerability scanning coverage on the network is in the pilot phase.

We made 14 recommendations to address the issues identified in this report. Postal Service management agreed with eight recommendations and disagreed with six. Management’s comments and our evaluation are at the end of each finding and recommendation. We consider the Postal Service responsive to recommendations one through eight, as corrective actions should resolve these issues. We will work with management through the audit resolution process on the remaining six recommendations. 

Report Recommendations

# Recommendation Status Value Initial Management Response USPS Proposed Resolution OIG Response Final Resolution
1

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
2

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
3

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
4

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
5

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
6

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
7

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
8

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Agree
9

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Disagree
10

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Disagree
11

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Disagree
12

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Disagree
13

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Disagree
14

Some or all of the recommendation is not publicly available due to concerns with information protected under the Freedom of Information Act.

Open $0 Disagree