FINDING 2022-001: 84.007 Federal Supplemental Education Opportunity Grant, 84.033 Federal Work Study Program, 84.038 Federal Perkins Loans, 84.063 Federal Pell Grant Program, 84.268 Federal Direct Loan Program, 84.379 Teacher Education Assistance for College and Higher Education Grants Recommendatio...
FINDING 2022-001: 84.007 Federal Supplemental Education Opportunity Grant, 84.033 Federal Work Study Program, 84.038 Federal Perkins Loans, 84.063 Federal Pell Grant Program, 84.268 Federal Direct Loan Program, 84.379 Teacher Education Assistance for College and Higher Education Grants Recommendation: The College should perform and document an annual risk assessment to determine the College's specific risks relevant to protecting consumer nonpublic personal information. At a minimum, the College should have at least one risk statement aligned or referenced to each of the three required areas noted in the GLBA law at 16 CFR 314.4 (b). Finally, the College should identify and document at least one safeguard (i.e., control) for each of the risks identified and document in the risk assessment. Each control should be aligned or referenced to the risk(s) to which the safeguard applies. Action To Be Taken: The College will complete a GLBA risk assessment that addresses (1) employee training and management; (2) information systems, including network and software design, as well as information processing, storage, transmission and disposal; and (3) detecting, preventing and responding to attacks, intrusions, or other systems failures and document safeguards for identified risks. The College will complete the assessment in accordance with the December 9, 2021 Federal Trade Commission (FTC) issued final regulations to amend the Standards for Safeguarding Customer Information, including ensuring the College?s written information security program includes the nine elements included in the FTC?s regulations. Responsible Individual for Corrective Action: Scott Seidman, Director of IT Services Anticipated Completion Date: June 15, 2023