Health Breach Notification Rule

ICR 200909-3084-002

OMB: 3084-0150

Federal Form Document

Forms and Documents
Document
Name
Status
Supporting Statement A
2009-09-22
IC Document Collections
ICR Details
3084-0150 200909-3084-002
Historical Active 200904-3084-002
FTC
Health Breach Notification Rule
New collection (Request for a new OMB Control Number)   No
Regular
Approved without change 09/23/2009
Retrieve Notice of Action (NOA) 09/22/2009
  Inventory as of this Action Requested Previously Approved
09/30/2012 36 Months From Approved
22 0 0
34,837 0 0
260,657 0 0

The American Recovery and Reinvestment Act of 2009 ("Recovery Act") requires the Department of Health and Human Services to study, in consultation with the FTC, potential privacy, security, and breach notification requirements and submit a report to Congress containing recommendations within one year of enactment of the Recovery Act. Until Congress enacts new legislation implementing any recommendations contained in the HHS/FTC report, the Recovery Act contains temporary requirements, to be enforced by the FTC, that such entities notify customers in the event of a security breach. The proposed rule implements these requirements.

PL: Pub.L. 111 - 5 13407 Name of Law: American Recovery and Reinvestment Act of 2009
  
PL: Pub.L. 111 - 5 13407 Name of Law: American Recovery and Reinvestment Act of 2009

3084-AB17 Final or interim final rulemaking 74 FR 42962 08/25/2009

No

2
IC Title Form No. Form Name
Creating a toll-free line & related non-labor costs
Identifying breach, affected customers, notifying customers, etc.

  Total Approved Previously Approved Change Due to New Statute Change Due to Agency Discretion Change Due to Adjustment in Estimate Change Due to Potential Violation of the PRA
Annual Number of Responses 22 0 22 0 0 0
Annual Time Burden (Hours) 34,837 0 34,837 0 0 0
Annual Cost Burden (Dollars) 260,657 0 260,657 0 0 0
No
No
This is a new rule having provisions requiring notification to consumers and to the Commission; thus, there are "collection(s) of information" subject to the PRA.

$300,000
No
No
Uncollected
Uncollected
Yes
Uncollected
Cora Han 2023262441 [email protected]

  No

On behalf of this Federal agency, I certify that the collection of information encompassed by this request complies with 5 CFR 1320.9 and the related provisions of 5 CFR 1320.8(b)(3).
The following is a summary of the topics, regarding the proposed collection of information, that the certification covers:
 
 
 
 
 
 
 
    (i) Why the information is being collected;
    (ii) Use of information;
    (iii) Burden estimate;
    (iv) Nature of response (voluntary, required for a benefit, or mandatory);
    (v) Nature and extent of confidentiality; and
    (vi) Need to display currently valid OMB control number;
 
 
 
If you are unable to certify compliance with any of these provisions, identify the item by leaving the box unchecked and explain the reason in the Supporting Statement.
09/22/2009


© 2024 OMB.report | Privacy Policy