Attachment 6 - Security Program Questionnaire.pdf

PDF 154 KB Posted

Attached to
Combat Identification Automated Target Recognition Technology (CATCH) Call 03 Federal contract opportunity
Solicitation number
FA237725RB012
Issued by
Department of the Air Force Materiel Command Research Laboratory

About this file

The document is a Security Program Questionnaire designed to review the security practices of institutions receiving research funding. The questionnaire consists of 13 comprehensive questions that probe various aspects of an organization's security protocols, including physical security plans, information storage and transmission procedures, cybersecurity measures, personnel safeguards, and processes for handling potential information compromises. Key areas of inquiry include information storage methods (computers, cloud, file cabinets), procedures for information transmission, disposal, reproduction, and strategies for preventing insider threats and adversarial access to sensitive information. The questionnaire is intended to be completed by a contractor or recipient and reviewed by an S&T Protection Lead, with the final question asking if the organization is willing to provide annual AFRL S&T Protection training to all personnel with access.

View the file

Other files for this federal contract opportunity

Show all 13

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

SECURITY PROGRAM QUESTIONNAIRE

Objective: This questionnaire is used to review the security program and practices of the institutions receiving research funding.

Intended Audience/User: Completed by Contractor/Recipient; reviewed by S&T Protection Lead.

Date Submitted:

Applicant Name:

Cage Code/SCL and level (if applicable):

Completed by Name:

Position/Title:

1. What are your physical security plans?

2. What information security processes are in place?

3. Where will information for this effort be stored? (examples: computers, cloud, file cabinets, etc.)

4. What procedures are in place for transmission/transportation of information for this effort?

5. What procedures are in place for disposal and destruction of information for this effort?

6. What procedures are in place for reproduction of information for this effort?

7. What safeguards are in place for personnel who can access information for this effort?

8. What is the plan for safeguarding GFE/GFI?

9. What procedures are in place for cybersecurity or network protection?

10. What operations security processes are in place to prevent adversaries’ access to information for this effort or actions that would compromise your projects?

11. What processes are in place to deter, detect, and mitigate actions of insider threat?

12. What procedures are in place to handle if information for this effort is compromised?

13. Are you willing to provide AFRL S&T Protection training to all personnel with access annually?

Additional comments:

File details come from the government source that posted it. Updated .