OMB control number
Computer-Security Incident Notification
OMB 7100-0384 · FRS.
OMB 7100-0384
A banking organization is required to notify its primary Federal banking regulator of any “computer-security incident” that rises to the level of a “notification incident,” as soon as possible and no later than 36 hours after the banking organization determines that a notification incident has occurred. A bank service provider is required to notify each affected banking organization customer as soon as possible when the bank service provider determines that it has experienced a computer-security incident, that has caused, or is reasonably likely to cause, a material service disruption or degradation for four or more hours.
The latest form for Computer-Security Incident Notification expires 2028-05-31 and is listed under ICR 202505-7100-003.
Latest Forms, Documents, and Supporting Material
| Document | Type |
|---|---|
| Supporting Statement A | |
| Information collection | |
| Information collection |
All Historical Document Collections
| Reference | Filing | Received | Concluded | Action |
|---|---|---|---|---|
| 202505-7100-003 | Extension without change of a currently approved collection | 2025-05-13 | Approved without change | |
| 202408-7100-002 | No material or nonsubstantive change to a currently approved collection | 2025-05-13 | Approved without change | |
| 202204-7100-005 | New collection (Request for a new OMB Control Number) | 2022-05-18 | Approved without change |
OMB Details
Reporting Section 225.302
Federal Enterprise Architecture: Economic Development - Financial Sector Oversight