# TSA Strengthens IT Access Controls

A Department of Homeland Security Office of Inspector General audit found weaknesses in the Transportation Security Administration’s privileged-account approvals and reviews, and delays removing access when employees leave. TSA concurred with all five recommendations and has begun remediation, including monthly access-control reviews and a ServiceNow-based offboarding request process launched July 24, 2026. The signals identify no solicitation or contract value, but the remediation points to potential demand for identity and access management, account governance, audit remediation, and cybersecurity support. The 2026 Homeland Security Summit in McLean, Virginia, on November 10 offers an industry engagement opportunity.

- Contractors providing identity and access management or cybersecurity services can align offerings with TSA’s stated remediation areas: privileged-account controls, recurring access reviews, and prompt offboarding.
- TSA’s concurrence with all five OIG recommendations makes the audit findings and remediation steps relevant to firms supporting security-control improvement, though no procurement has been announced.
- Industry stakeholders can use the November 10, 2026, Homeland Security Summit in McLean to engage; the event is 38 days away.

**Jurisdictions:** federal
**Industries:** Information Technology, Public Safety
**Topics:** Cybersecurity
**Published:** October 02, 2026

### Government Entities
- Transportation Security Administration (TSA)
- Department of Homeland Security Office of Inspector General (DHS OIG)
- Department of Homeland Security (DHS)

### Sources
- [TSA’s weak IT access controls increased likelihood of ‘catastrophic damage,’ watchdog finds | FedScoop](https://fedscoop.com/tsa-tech-access-control-oig-report) - FedScoop
- [TSA Tightens IT Access Controls After DHS OIG Audit](https://www.executivegov.com/articles/tsa-it-access-controls-dhs-oig-audit) - ExecutiveGov