Attachment 3 - Security Program Questionnaire.pdf

PDF 80 KB Posted

Attached to
Kaiju, Call 02 - Colossus Federal contract opportunity
Solicitation number
FA8650-22-S-1004-CALL-02
Issued by
Department of the Air Force Materiel Command Research Laboratory

About this file

This document contains a security program questionnaire for applicants responding to solicitation number FA8650-22-S-1004-CALL-02 from the Department of the Air Force Materiel Command Research Laboratory. The questionnaire collects information about applicants' physical security plans, information security processes, storage of effort-related information, transmission and transportation procedures for effort information, disposal and destruction procedures for effort information, reproduction procedures for effort information, personnel access safeguards for effort information, plans for safeguarding government furnished equipment and government furnished information, cybersecurity and network protection procedures, and operations security processes to prevent adversary access or insider threats compromising efforts. Applicants must also describe procedures for handling compromised effort information and confirm willingness to provide annual security training to all personnel with access.

View the file

Other files for this federal contract opportunity

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

SECURITY PROGRAM QUESTIONNAIRE

FA8650-22-S-1004

Attachment 3

Objective: This questionnaire is used to review the security program and practices of the institutions receiving research funding.

Intended Audience/User: Completed by collaborators; reviewed by S&T Protection Lead.

Date Submitted:

Applicant Name: _____________________________ _

CAGE Code/SCL and level (if applicable): __________________ _

Completed by Name: ____________________________ _

Position/Title:

1. What are your physical security plans?

2. What information security processes are in place?

3. Where will information for this effort be stored? (examples: computers, cloud, file cabinets, etc.)

4. What procedures are in place for transmission/transportation of information for this effort?

5. What procedures are in place for disposal and destruction of information for this effort?

6. What procedures are in place for reproduction of information for this effort?

7. What safeguards are in place for personnel who can access information for this effort?

8. What is the plan for safeguarding GFE/GFI?

9. What procedures are in place for cybersecurity or network protection?

10. What operations security processes are in place to prevent adversaries' access to information for this effort or actions that would compromise your projects?

11. What processes are in place to deter, detect, and mitigate actions of insider threat?

12. What procedures are in place to handle if information for this effort is compromised?

13. Are you willing to provide AFRL S&T Protection training to all personnel with access annually?

Additional comments:

File details come from the government source that posted it. Updated .