The Internal Revenue Service (IRS) and its Security Summit partners have launched their annual "Protect Your Clients; Protect Yourself" campaign, a five-week initiative to equip tax professionals with crucial strategies against evolving tax-related identity theft threats. Now in its 11th year, this collaboration brings together the IRS, state tax agencies, and the tax industry to combat pervasive schemes.
This year's campaign focuses on emerging scams, essential security safeguards, and data theft response steps. It coincides with the 2026 IRS Nationwide Tax Forums, featuring security tips in Chicago, New Orleans, New York City, Orlando, and San Diego, with registration deadlines approaching.
IRS Chief Executive Officer Frank J. Bisignano said, "Tax professionals play a critical role in the line of defense against tax-related identity theft and attacks on the integrity of the tax system. The 2026 summer series gives tax pros practical steps they can take now to protect client data, strengthen their businesses, and to stay ahead of scam artists." Taylor Rodier, Security Summit partner at Drake Software, added that "Practical security steps, early reporting, and continued collaboration are among the best tools we have to fight tax-related identity theft."
The first week highlights new scams, including IRS impersonation via email, text, and phone; misleading social media tax advice; "new client" spear phishing schemes; and attempts to steal Electronic Filing Identification Numbers (EFINs), Preparer Tax Identification Numbers (PTINs), and Centralized Authorized File (CAF) numbers.
Tax professionals discovering a data breach should promptly contact their local IRS Stakeholder Liaison to report the theft, allowing the IRS to potentially block fraudulent returns. Incidents should also be reported to the appropriate state tax agency, and Federal Trade Commission’s Data Breach Response requirements should be reviewed for security planning.
Upcoming weeks will cover phishing and "Security Six" protections, creating a Written Information Security Plan, tools like multi-factor authentication and Identity Protection PINs, and identifying and reporting signs of identity theft.