Area Access Manager
The OIG audited the Area Access Manager (AAM) application to determine the adequacy of: (1) data processing and application controls to ensure data integrity and reliability, (2) logical security controls to ensure only authorized access to system resources and protection of sensitive information, and (3) automated controls for granting physical access to sensitive TVA locations. In summary, we determined logical security controls were generally operating effectively and controls around granting physical access to sensitive TVA locations were operating in accordance with TVA policy.