Implementation of Information Technology Security Requirements; GSAR Sections Affected: 511.170, 511.171
Extension without change of a currently approved collection
No
Regular
Approved without change
03/11/2024
01/23/2024
table that charts list comparision
Inventory as of this Action
Requested
Previously Approved
03/31/2027
36 Months From Approved
03/31/2024
234
0
182
1,170
0
910
85,270
0
51,652
This information collection applies to General Services Administration (GSA) contracts requiring contractors accessing information systems that support the operations and assets of GSA, another agency, contractor, or other source, to comply with GSAâs IT security policies and procedures to adhere to applicable Federal laws that include, but are not limited to:
â 40 U.S.C. 11331 (Responsibilities for Federal Information Systems Standards),
â Federal Information Security Modernization Act (FISMA) of 2014,
â Various National Institute of Standards and Technology (NIST) publications (i.e., FIPS PUB 199 - Standards for Security Categorization of Federal Information and Information Systems, FIPS Pub 200 - Minimum Security Requirements for Federal Information and Information Systems, NIST 800-53 - Security and Privacy Controls for Information Systems and Organizations) and the E-Government Act of 2002.
The following General Services Administration Acquisition Regulation (GSAR) sections are covered by this information collection:
â 511.170 Information Technology Coordination and Standards
â 511.171 Requirements for GSA Information Systems
â The hourly rate (plus fringe) was updated to reflect the rates effective January 2023, as opposed to January 2020.
â The personnel equivalent was updated from a GS-12 Step 5 salary (Base Pay and Rest of US Locality Pay, plus fringe)($56.76) to a GS-13 Step 5 salary (Base Pay and Rest of US Locality Pay, plus fringe)($72.88) for both public costs and Government costs to reflect updated knowledge, skills, and abilities used to complete such security assessments.
â The average number of documents submitted to GSAâs contracting officer or CIO representative per contract per year was increased by two (2), from five (5) to seven (7), to reflect updated data.
â The average number of respondents per year increased by 26, from 91 to 117, to reflect updated data.
On behalf of this Federal agency, I certify that the collection of information encompassed by this request complies with 5 CFR 1320.9 and the related provisions of 5 CFR 1320.8(b)(3).
The following is a summary of the topics, regarding the proposed collection of information, that the certification covers:
(i) Why the information is being collected;
(ii) Use of information;
(iii) Burden estimate;
(iv) Nature of response (voluntary, required for a benefit, or mandatory);
(v) Nature and extent of confidentiality; and
(vi) Need to display currently valid OMB control number;
If you are unable to certify compliance with any of these provisions, identify the item by leaving the box unchecked and explain the reason in the Supporting Statement.