{
 "slug": "tiered-emergency-authorization",
 "topic_id": "TOPIC-195",
 "cluster": "Government Benefits, Procurement & Public Sector Identity",
 "tier": "Tier B",
 "title": "Emergency and disaster assistance: speed versus proof when both are mandatory",
 "summary": "Disaster assistance must move within days to people who may have lost their documents, their devices and their homes. Fraudsters exploit precisely the flexibility that legitimate survivors need.",
 "lede": "Every disaster produces two mandates that point in opposite directions: get money to survivors immediately, and account for every dollar afterwards. The second mandate arrives with an inspector general six months later and judges decisions made in the first seventy-two hours.",
 "date": "2024-06-16",
 "category": "Comparison",
 "author_id": "tobias-lindqvist-rao",
 "tags": [
  "disaster assistance",
  "emergency programs",
  "FEMA",
  "fraud risk",
  "identity verification",
  "degraded conditions"
 ],
 "image_title": "Tiered Emergency Authorization",
 "schema": "Article",
 "key_takeaways": [
  "Emergency programmes relax identity requirements uniformly, which applies the relaxation equally to a $500 payment and a $30,000 one.",
  "Post-payment recoupment recovers little and imposes hardship on survivors who received assistance in good faith.",
  "The design needs a false-exclusion budget stated in advance, because the trade between exclusion and fraud is irreducible."
 ],
 "body": [
  {
   "type": "h2",
   "text": "The conditions the control must survive"
  },
  {
   "type": "diagram",
   "kind": "compare",
   "alt": "Speed and assurance as one dial versus two",
   "caption": "Treated as one trade-off, both outcomes are bad. Treated as tiers, neither is.",
   "nodes": [],
   "left": {
    "title": "One dial",
    "items": [
     "Fast → fraud",
     "Verified → exclusion",
     "Political pressure swings it",
     "Neither setting is defensible"
    ]
   },
   "right": {
    "title": "Tiered",
    "items": [
     "Immediate small payment: minimal check",
     "Larger payment: more assurance",
     "Reversible: lower bar",
     "Irreversible: higher bar"
    ]
   }
  },
  {
   "type": "p",
   "html": "Design for the actual environment rather than for a tabletop. In the days after a major event:"
  },
  {
   "type": "ul",
   "items": [
    "Applicants may have no identity documents, because the documents were in the house.",
    "Mobile networks are congested or down; power may be intermittent.",
    "People are displaced, so the address of record is wrong and mail is undeliverable.",
    "Staff are surged, including personnel unfamiliar with the programme.",
    "The applicant may be using a borrowed device or a shelter terminal."
   ]
  },
  {
   "type": "p",
   "html": "A control that assumes a smartphone, connectivity and documents has assumed away the disaster."
  },
  {
   "type": "h2",
   "text": "Why uniform relaxation is the wrong instrument"
  },
  {
   "type": "p",
   "html": "Programmes relax requirements globally when an emergency is declared, because differentiating takes time nobody has. The consequence is that the same reduced assurance applies across the value range."
  },
  {
   "type": "table",
   "head": [
    "Assistance type",
    "Typical value",
    "Relaxation applied",
    "Appropriate?"
   ],
   "rows": [
    [
     "Immediate needs payment",
     "Hundreds",
     "Full",
     "Yes — speed dominates"
    ],
    [
     "Rental assistance",
     "Thousands",
     "Full",
     "Questionable"
    ],
    [
     "Home repair assistance",
     "Tens of thousands",
     "Full",
     "No"
    ],
    [
     "Business disaster loan",
     "Hundreds of thousands",
     "Partial",
     "No"
    ]
   ]
  },
  {
   "type": "p",
   "html": "The bottom two rows are where organised fraud concentrates, because the return per fraudulent application justifies effort. The top row is where the humanitarian urgency is, and it is also where the loss per incident is smallest."
  },
  {
   "type": "h2",
   "text": "Tiering, with the low tier deliberately weak"
  },
  {
   "type": "p",
   "html": "The proposal is not to strengthen everything. It is to keep the immediate tier as fast as it is now, and to add assurance where value concentrates."
  },
  {
   "type": "ol",
   "items": [
    "<strong style=\"font-weight:600\">Tier 1 — immediate needs.</strong> No change. Pay fast, accept the loss rate, recoup nothing. The administrative cost of recouping small payments exceeds their value and the hardship it causes is disproportionate.",
    "<strong style=\"font-weight:600\">Tier 2 — rental and temporary housing.</strong> Credential enrolled at application if possible; assisted path at the disaster recovery centre; payment proceeds either way with a documented basis.",
    "<strong style=\"font-weight:600\">Tier 3 — repair, replacement and loans.</strong> Authorisation required, with an assisted path that is properly staffed, and a documented exception route for genuinely unreachable applicants."
   ]
  },
  {
   "type": "h2",
   "text": "The offline requirement"
  },
  {
   "type": "p",
   "html": "At a disaster recovery centre with a satellite uplink shared by forty staff, any verification requiring a round trip to a central service will time out."
  },
  {
   "type": "p",
   "html": "Verification against a published key, performed locally with no network call, is not a nicety here. It is the difference between a control that works at the point of service and one that gets switched off on day two."
  },
  {
   "type": "h2",
   "text": "The false-exclusion budget"
  },
  {
   "type": "p",
   "html": "State it before the event, not during. What share of eligible applicants may a control delay beyond a defined threshold before the control should not be used?"
  },
  {
   "type": "p",
   "html": "Then measure it during the response and report it alongside the fraud figures. Programmes currently report detected fraud and recoupment and do not report how many eligible people were delayed or excluded by integrity measures, which makes the tradeoff invisible to everyone reviewing it afterwards."
  },
  {
   "type": "h2",
   "text": "Why recoupment is not the answer"
  },
  {
   "type": "p",
   "html": "Post-payment recoupment is the current backstop and it performs badly on both dimensions. Recovery rates against organised fraud are low, because the money and the identities are gone. Recovery against ordinary eligible recipients who were later determined ineligible is higher — and it means pursuing disaster survivors for money the programme gave them."
  },
  {
   "type": "p",
   "html": "That is a bad outcome arrived at honestly, and it is an argument for getting the authorisation right at payment rather than for chasing it afterwards."
  },
  {
   "type": "h2",
   "text": "A tier model for emergency assistance"
  },
  {
   "type": "table",
   "caption": "Amount and reversibility set the bar",
   "head": [
    "Payment",
    "Reversibility",
    "Assurance"
   ],
   "rows": [
    [
     "Immediate needs, small",
     "Effectively none",
     "Minimal — speed wins"
    ],
    [
     "Interim, moderate",
     "Partial",
     "Identity proofing, deferred"
    ],
    [
     "Major repair or replacement",
     "Recoverable in principle",
     "Full proofing before payment"
    ],
    [
     "Ongoing assistance",
     "Recoverable",
     "Proofing plus periodic re-verification"
    ]
   ]
  },
  {
   "type": "h2",
   "text": "Objections and honest limits"
  },
  {
   "type": "p",
   "html": "<strong style=\"font-weight:600\">“Any deferral means people wait.”</strong> Not if the first tier pays immediately. Deferring assurance is different from deferring money, and conflating them is how programmes end up choosing between the two failure modes."
  },
  {
   "type": "p",
   "html": "<strong style=\"font-weight:600\">“Fraudsters will take the first tier.”</strong> Some will, and the first tier is bounded by design. The question is whether the bound is set deliberately or discovered afterwards."
  }
 ],
 "faq": [
  {
   "q": "Would this slow down immediate assistance?",
   "a": "No. The design explicitly leaves the immediate tier unchanged, because speed dominates at that value and the loss per incident is small."
  },
  {
   "q": "How do you authorise someone with no documents?",
   "a": "The credential is enrolled at application, not derived from documents. Enrolment establishes continuity between the applicant and later transactions; it does not prove who they are."
  },
  {
   "q": "What about applicants who cannot enrol at all?",
   "a": "A documented exception route with a recorded basis. Exceptions should be counted and reported rather than hidden."
  },
  {
   "q": "Is any of this required?",
   "a": "No. Programme integrity requirements address eligibility and documentation. Authorisation architecture under degraded conditions is not prescribed."
  },
  {
   "q": "Doesn't deferring verification invite fraud?",
   "a": "It bounds it. The first tier is capped by design, and the alternative — verifying before any payment — excludes people who have just lost their documents."
  },
  {
   "q": "Why does reversibility matter as well as amount?",
   "a": "Because a recoverable payment tolerates a lower bar than an irreversible one of the same size."
  },
  {
   "q": "Where is the real cumulative exposure?",
   "a": "Ongoing assistance, which is why periodic re-verification belongs there rather than at the emergency counter."
  }
 ],
 "sources": [
  {
   "t": "Federal disaster assistance programme requirements and eligibility rules."
  },
  {
   "t": "U.S. Government Accountability Office reports",
   "u": "https://www.gao.gov/reports-testimonies"
  },
  {
   "t": "22 CFR Parts 120-130 — International Traffic in Arms Regulations",
   "u": "https://www.ecfr.gov/current/title-22/chapter-I/subchapter-M"
  },
  {
   "t": "GAO-15-593SP — A Framework for Managing Fraud Risks in Federal Programs",
   "u": "https://www.gao.gov/products/gao-15-593sp"
  }
 ],
 "related": [
  {
   "slug": "accessible-payment-authorization",
   "title": "Benefit payment redirection",
   "category": "Compliance"
  },
  {
   "slug": "payee-authorization-claims",
   "title": "First notice of loss to payout",
   "category": "Vertical"
  },
  {
   "slug": "offline-authorization-readiness",
   "title": "Black start and the identity provider you cannot reach",
   "category": "Definitional"
  }
 ],
 "image": "https://cdn.twc.sh/images/igcache/Tiered%20Emergency%20Authorization/1200_630/blog.jpg",
 "wordcount": 866,
 "url": "/blog/tiered-emergency-authorization.html",
 "reading_time": "4 min read",
 "seo_title": "Disaster assistance: speed versus proof",
 "meta_description": "Disaster assistance must move within days to people who may have lost their documents, their devices and their homes.",
 "hub": {
  "slug": "topics/public-sector-identity",
  "title": "Public sector identity"
 },
 "answer": "Yes, if the two are separated. Emergency programmes must pay quickly and cannot prove who anyone is, and treating speed and assurance as a single dial produces either fraud or people sleeping in cars. Tiering by amount and by reversibility lets both be true at once.",
 "answer_q": "Can disaster assistance be both fast and verified?",
 "glossary": [
  {
   "term": "Deferred proofing",
   "def": "Paying first and establishing identity afterwards, bounded by amount."
  },
  {
   "term": "Reversibility",
   "def": "Whether a payment can realistically be recovered, which should set the assurance bar alongside amount."
  },
  {
   "term": "Tier bound",
   "def": "The deliberately chosen maximum exposure in the fastest, least-verified tier."
  }
 ],
 "checklist": {
  "title": "Designing the tiers",
  "id": "tiers",
  "desc": "Four steps.",
  "steps": [
   {
    "name": "Pay the first tier immediately.",
    "text": "Bounded, and accept the loss rate as a policy decision."
   },
   {
    "name": "Defer assurance, not money.",
    "text": "The two can move independently."
   },
   {
    "name": "Raise the bar with amount and irreversibility.",
    "text": "Both axes, not just amount."
   },
   {
    "name": "Re-verify for ongoing assistance.",
    "text": "Where the cumulative exposure actually sits."
   }
  ]
 },
 "cta": {
  "title": "Where this fits in Manav",
  "html": "Manav binds the authorising official to the exact release, award or record change, and produces a receipt another agency, an auditor or a counterparty can verify without access to the issuing system.",
  "href": "../docs.html",
  "label": "See authorisation receipts"
 }
}