enclosure_1_IT_Security_Management_Plan_final.pdf

PDF 2 MB Posted

Attached to
Calibration and Metrology Laboratory Services Federal contract opportunity
Solicitation number
80GSFC19R0027
Issued by
National Aeronautics and Space Administration Goddard Space Center

About this file

Enclosure #1- IT Security Management Olan

View the file

Other files for this federal contract opportunity

Other files attached to Calibration and Metrology Laboratory Services, newest first.
File Type Posted
Amendment_4_Final.pdf PDF
Exhibit__1_Core_Fixed_Price_List.pdf PDF
Amendment_3.pdf PDF
Attachment_J.pdf PDF
Amendment_2.pdf PDF
Attachment_I-Installation_Accountable_Government_Property.pdf PDF
Attachment_I_-_Installation_Accountable_Government_Property.pdf PDF
Amendment_1.pdf PDF
SF1449.pdf PDF
Attachment_H_-_IT_Security_Applicable_Documents_List.pdf PDF
Exhibit_5_-_Calibration_Historical_Data.pdf PDF
Attachment_H_Information_Technology_(IT)_Security_Applicable_Documents_List_final.pdf PDF
Exhibit__4_ISO_9001-AS_9100_Requirements_final.pdf PDF
Exhibit__2_IDIQ_Representative_Task_Order_final.pdf PDF
Attachment_D_PIV_Requirements_final.pdf PDF
RFP_Cover_Letter_final.pdf PDF
SF1449_final.pdf PDF
Exhibit__1_Core_Fixed_Price_List_final.pdf PDF
Attachment_F_Quality_Control_Plan_final.pdf PDF
Exhibit__5_Calibration_Historical_Data_final.pdf PDF
Attachment_A_SOW_8-20_final.pdf PDF
Final_RFP_final.pdf PDF
Enclosure_2_QASP_Fixed_Price_Contract_final.pdf PDF
Attachment_C_Unit_Price_Rate_Matrix_final.pdf PDF
Attachment_B_Core_Equipment_List_final.pdf PDF
Attachment_G_IT_Security_Management_Plan_final.pdf PDF
Exhibit__3_Phase-In_Plan_Pricing_final.pdf PDF
Attachment_E_WD-CBA_final.pdf PDF
Show all 28

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

RFP 80GSFC19R0027

Enclosure #1 Contract# TBD

Enclosure #1 IT Security Management Plan Template

July 2019 To be submitted 30 days after

SENSITIVE BUT UNCLASSIFIED (SBU)

Information Technology Security Management Plan

Issue Date Effective Date:

Version 1 03-01-17

(Insert Contract # Here)

IT Security Management Plan Review and Approval

This Information Technology Security Management Plan (ITSMP) for the was prepared for the exclusive use of NASA and completed on

I have reviewed the contents of this plan, and believe that it presents an accurate representation.

Reviewed by: ________________________________

ISSO, or equivalent Date

Concurred by: ________________________________

COR/Task Monitor Date

Approved by: ________________________________

Center CISO Date

Accepted by: ________________________________

Contracting Officer Date

Contents

Change History .......................................................................................................................................................................................... ii IT Security Management Plan Review and Approval ............................................................................................................................... iii 1 Contract Identification

1.1 Contract Name

1.2 Contract Number

1.3 Responsible Organization

1.4 Contact Information

1.4.1 Physical Location

1.4.2 Points of Contact

1.5 General Contract Description

1.5.1 Information System Categorization

1.5.2 Security Categorization

1.5.3 Information System

1.5.4 Contractor Badging

1.5.5 Supply Chain Risk Management (SCRM)

1.5.6 Related Laws/Regulations/Policies

2 Security Control Implementations 3 Federal Information Security Management Act (FISMA) Reporting Appendix A: Acronyms

1.5.6 Related Laws/Regulations/Policies

• 5 U.S.C. 552, Freedom of Information Act, 1967

• 5 U.S.C. 552a, Privacy Act, 1974

• FIPS 199, Standards for Security Categorization of Federal Information and Information Systems

• FIPS 200, Minimum Security Requirements for Federal Information and Information Systems

• NIST SP 800-18, Guide for Developing Security Plans for Federal Information Systems

• NIST SP 800-30, Risk Management Guide for Information Technology Systems

• NIST SP 800-34, Contingency Planning Guide for Information Technology Systems

• NIST SP 800-37, Guide for the Security Authorization of Federal Information Systems

• NIST SP 800-42, Guideline on Network Security Testing

• NIST SP 800-53, Recommended Security Controls for Federal Information Systems

• NIST SP 800-53A, Techniques and Procedures for Verifying the Effectiveness of Security Controls in Federal Information

Systems

• NIST SP 800-60, Guide for Mapping Types of Information and Information Systems to Security Categories

• NIST SP 800-61, Computer Security Incident Handling Guide

• NIST SP 800-64, Security Considerations in the Information System Development Life Cycle

• OMB Circular A-130, Appendix III, Security of Federal Automated Information Systems

• Public Law (PL) 99-474, The Computer Fraud and Abuse Act of 1986

• PL 93-502 -Freedom of Information Act 1974

• Presidential Decision Directive (PDD-63), Critical Infrastructure Protection Federal Information Security Management Act of 2002 (FISMA)

• NPR 2810.1, Security of Information Technology

Additional Information: If there is any additional information that you wish to provide, please use the box below.

File details come from the government source that posted it.