Safeguarding Covered Defense
Information, Cyber Incident Reporting, and Cloud Computing
Revision of a currently approved collection
No
Regular
09/01/2022
Requested
Previously Approved
36 Months From Approved
09/30/2022
16,760
34,974
7,695
10,071
638,685
765,396
This collection implements mandatory
tracking and reporting of intrusions on unclassified networks or
contractor information technology systems that process DoD
information or those contractors designated as providing
operationally critical support. DoD is required by statute to
establish programs and activities to protect DoD information and
DoD information systems, including information and information
systems operated and maintained by contractors or others in support
of DoD activities. Offerors and contractors must report cyber
incidents on unclassified networks or information systems, within
cloud computing services, and when they affect contractors
designated as providing operationally critical support, as required
by statute.
The burden has a net decrease
due to a decrease in the estimated number of respondents. The
number of respondents is based on the number of contract awards for
information technology services, which has decreased in the last 3
fiscal years.
On behalf of this Federal agency, I certify that
the collection of information encompassed by this request complies
with 5 CFR 1320.9 and the related provisions of 5 CFR
1320.8(b)(3).
The following is a summary of the topics, regarding
the proposed collection of information, that the certification
covers:
(i) Why the information is being collected;
(ii) Use of information;
(iii) Burden estimate;
(iv) Nature of response (voluntary, required for a
benefit, or mandatory);
(v) Nature and extent of confidentiality; and
(vi) Need to display currently valid OMB control
number;
If you are unable to certify compliance with any of
these provisions, identify the item by leaving the box unchecked
and explain the reason in the Supporting Statement.