1305M323RNRMA0015 - Attachment 6 - Supply Chain Risk Assessment Information Questionnaire.pdf
PDF 103 KB Posted
- Attached to
- Phased Array Radar (PAR) Test Article Federal contract opportunity
- Solicitation number
- 1305M323RNRMA0015
About this file
This document contains a Supply Chain Risk Assessment Information Questionnaire for the federal contract opportunity titled "Phased Array Radar (PAR) Test Article" issued by the Department of Commerce National Oceanic and Atmospheric Administration. The questionnaire requests information from offerors including business names and ownership details for primary entities and subcontractors. It also seeks information on facilities where IT hardware and software will be designed, manufactured, packaged and stored. Additionally, the questionnaire asks whether offerors maintain security programs covering personnel, information, physical security, cybersecurity and supply chain risk management. It requests details on means of delivery for any IT systems or software and identifies of entities providing transport, storage, disposal or follow-on services.
View the file
Other files for this federal contract opportunity
Show all 21
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
Supply Chain Risk Assessment Information:
The offeror/contractor shall submit the following information with its proposal or prior to award at the Government's request:
1. Business name (include DBA) and identity, include that of each parent and/or subsidiary corporate entities.
2. Provide the identity of any proposed subcontractors, (including third party vendors suppliers, distributors, and manufacturers) involved in its supply chain.
3. Provide the identity of any telecommunications equipment or video surveillance services, suppliers, distributors and manufacturers that are affiliates or subsidiaries of the following companies within your supply chain: Huawei Technologies Company, ZTE Corporation, Hytera Communications Corporation, Hangzhou Hikvision Digital Technology Company or Dahua Technology Company (or any subsidiary or affiliate of such entities).
4. Describe the degree of any foreign ownership in or control of the entities identified under
(1) and (2) (primary, parent, subsidiary, suppliers, distributors and manufacturers).
5. List the names and dates of birth of the offeror's/contractor's corporate officers identified under (1) and (2), including this information for subcontractors (including but not limited to suppliers, distributors, and manufacturers).
6. Verify whether the offerer/contractor and subcontractors (including but not limited to suppliers, distributors, and manufacturers) maintain a:
i. Formal security program that includes personnel security;
ii. Information security program;
iii. Physical security program;
iv. Cyber security program; and
v. Supply chain risk management program.
7. Provide the names and locations of each facility where any information system, IT hardware and/or software to be delivered under the contract or task order was designed, manufactured, packaged and stored prior to distribution.
8. Whether a separation of duties exists during the development process of any information system, IT hardware and/or software to be delivered under the contract or task order.
9. Describe the means and methods for delivering any information system, IT hardware and/or software to be delivered under the contract or task order, including the name(s) of any entity responsible for transport or storage. This information should address whether the information system, IT hardware and/or software will be direct-shipped to the Department.
10. Whether the proposed information system, IT hardware and/or software includes a service agreement required by the contract or task order, and, if so, the identity of the contractor/subcontractor(s) who will provide this follow-on service, and how the services will be delivered/deployed (e.g., via on-site service?
Remotely via the internet?)
11. Provide the identity of the business entity that will provide disposal services of any information system, IT hardware and/or software required by the contract or task order.
1305M323RNRMA0015 Attachment 6 - Supply Chain Risk Assessment Information Questionnaire
File details come from the government source that posted it. Updated .