OMB is approving
this collection for 36 months with the condition that SSA will
conduct a new E-Authentication risk assessment each year, as is
required by OMB Memorandum 04-04, and again after 36 months before
seeking re-approval. These risk assessments should analyze the
agencys authentication processes in light of current standards and
induce any changes that are appropriate. A written summary of the
results of the risk assessments should be shared with OMB as part
of any future requests for approval. In performing these risk
assessments, SSA should comply with all OMB guidance and National
Institute of Standards and Technology standards. The agency should
also consult any guidance from the Chief Information Officers
Inventory as of this Action
Previously Approved
36 Months From Approved
The IRES System registers and
authenticates individuals, businesses, organizations, entities and
government agencies to use the eService Internet and telephone
applications for requesting and exchanging business data with SSA,
and issues them a User Identification Number (User ID) and a
Password. This process will verify the identity of individuals who
use SSAs Business Services Online. Respondents are employers and
third party submitters of wage data, business entities providing
tax payer identification information and data exchange partners
conducting business in support of SSA programs.
The increase in the annual
reporting burden is due to the addition of the CSA telephone
application, and the new Appointed Representative users for IRES
conducting business in support of SSA programs and other government
agencies and due to new functionality resulting in additional
screens needed for completion. These changes have also increased
the amount of time needed to complete the process.
On behalf of this Federal agency, I certify that
the collection of information encompassed by this request complies
with 5 CFR 1320.9 and the related provisions of 5 CFR
The following is a summary of the topics, regarding
the proposed collection of information, that the certification
(i) Why the information is being collected;
(ii) Use of information;
(iii) Burden estimate;
(iv) Nature of response (voluntary, required for a
benefit, or mandatory);
(v) Nature and extent of confidentiality; and
(vi) Need to display currently valid OMB control
If you are unable to certify compliance with any of
these provisions, identify the item by leaving the box unchecked
and explain the reason in the Supporting Statement.