Wizer Free Security Awareness Blog

IRS 1075 Security Requirements Start in 2025. Here’s How to Stay Compliant (Without the Headache)

Written by Ayelet HaShachar Penrod | Jul 14, 2025 8:00:41 PM

If you’re an organization that deals with Federal Tax Information (FTI), take note: the IRS has raised the bar for cybersecurity and compliance. New rules are coming.

Starting January 1, 2025, IRS Publication 1075 introduces stricter security and privacy requirements for any entity that accesses, stores, processes, or transmits FTI. This includes CPAs, tax professionals, local governments, courts, and contractors.

The goal is simple: protect taxpayer data across systems, teams, and vendors.

What’s Required Under IRS 1075?

Organizations must take action across several areas:

  • Role-based security awareness training, updated annually
  • Ongoing security reminders for employees
  • Insider threat training and awareness
  • Physical and system security safeguards
  • Clear incident response plans
  • Defined accountability and access controls

Phishing simulations aren’t listed as a strict requirement, but they’re a smart way to test awareness and strengthen defenses. They support the broader goals outlined in Section 9.3.8.

Skipping these steps could lead to audits, penalties, or worse: data exposure.

IRS 1075 Compliance Doesn’t Have to Be Complicated

Security compliance often sounds like:

  • New software systems
  • Manual tracking
  • Dry, ineffective training

But it doesn’t have to be this way.

How Wizer Helps Meet IRS 1075 Security Requirements

Wizer offers an easy, user-friendly platform with training that’s fun to watch. It’s designed to help CPAs stay compliant, without adding more work to your already full plate.

1. Insider Threat Coverage

Wizer Boost features a number of courses with content on insider risks, access misuse, and behavioral warning signs.

2. Automated Quarterly Security Reminders

Your team receives brief, relevant updates that reinforce cybersecurity best practices. Delivered automatically, no manual follow-up needed.

3. Engaging Annual Role-Based Training

Whether for administrators or accounting professionals, our short videos are engaging, role-specific, and meet the IRS 1075 criteria.

Bonus Benefits for Firms Who Use Wizer

  • Fully automated compliance tracking and reporting
  • Regularly updated training content with real-world relevance
  • Extend training access to employees’ family members

Want IRS 1075 Compliance Fully Managed?

Wizer Managed is a white-glove service where our experts handle setup, scheduling, reminders, reporting, and more. Your security awareness program runs on autopilot, without requiring an in-house team to run security awareness.

Why This Matters

RS 1075 isn’t just about checking boxes. It’s about protecting sensitive data, reducing risk, and building trust with those you serve.

If your team handles FTI—even indirectly—now is the time to get ahead.

Start Preparing Now

The IRS compliance deadline is approaching fast. Get ahead of the curve and protect your firm with a security awareness program that works.

Let’s chat about a solution for your firm.