Attachment B - Security Rules of Behavior Agreement.pdf
PDF 207 KB Posted
- Attached to
- Mainframe Cloud Transition Services and Support Federal contract opportunity
- Solicitation number
- RFP-CIO-30100000-23-001
About this file
This solicitation is seeking proposals for a single-award Indefinite Delivery Indefinite Quantity contract to establish Mainframe Cloud Transition Services and Support on an as-needed basis. The Bureau of the Fiscal Service, on behalf of their Information and Security Services, requires transitioning their mainframe to a cloud platform that is either IBM SmartCloud or equal in capabilities as defined in the Performance Work Statement. Questions are due by January 3rd, 2023 and proposals are due by January 9th, 2023. The services will be provided to the Department of the Treasury Bureau of the Fiscal Service.
View the file
Other files for this federal contract opportunity
| File | Type | Posted |
|---|---|---|
| RFP-CIO-30100000-23-001 (Amd. 2).pdf | ||
| Questions and Responses (Amd. 1).pdf | ||
| Attachment I (1-3) - Order 1 Pricing (Amd. 1).xlsx | XLSX spreadsheet | |
| Attachment H - Order 1 PWS (Amd. 1).pdf | ||
| Attachment E - Pricing Workbook (Amd. 1).xlsx | XLSX spreadsheet | |
| RFP-CIO-30100000-23-001 (Amd. 1).pdf | ||
| RFP-CIO-30100000-23-001.pdf | ||
| Attachment A - Security Requirements.pdf | ||
| Attachment C - Non-Disclosure Agreement.pdf | ||
| Attachment G - Small Business Participation Plan.pdf | ||
| Attachment I (1-3) - Order 1 Pricing.xlsx | XLSX spreadsheet | |
| Attachment J - Subcontracting Plan.pdf | ||
| Attachment K - Roles and Responsibilities.xlsx | XLSX spreadsheet | |
| Attachment E - Pricing Workbook.xlsx | XLSX spreadsheet | |
| Attachment F - Accessibility Requirements Statement.pdf | ||
| Attachment D - Security Controls Rules of Behavior Agreement.pdf | ||
| Attachment H - Order 1 PWS.pdf |
Show all 17
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
RFP-CIO-30100000-23-001
Attachment B Security Rules of Behavior Agreement
Bureau of the Fiscal Service
The Contractor must sign the Security Rules of Behavior Agreement.
SUBJECT:
The Bureau of the Fiscal Service (Fiscal Service) Security Rules of Behavior (Rules of Behavior)
PURPOSE:
The Rules of Behavior define responsibilities and procedures for the secure use of Fiscal Service data, equipment, information technology (IT) systems, and facilities. By reading and signing the Rules of Behavior, Users (defined below) acknowledge their responsibility for complying with the Rules of Behavior.
SCOPE:
The Rules of Behavior apply to Users (not public users) who access or maintain any Fiscal Service data, equipment, IT systems, or facilities, regardless of location (e.g., whether you are at your regular duty station or a remote work location.). Users are individuals who have access to Fiscal Service data, equipment, IT systems or facilities for the purpose of performing work on behalf of Fiscal Service. Examples of Users include, but are not limited to, Fiscal Service employees and employees of contractors, sub-contractors, and agents. At Fiscal Service’s discretion, certain individuals who have access to Fiscal Service data, equipment, IT systems, or facilities may not be considered Users under this definition and as such may not be required to sign these Rules of Behavior. In addition to the rules and requirements contained within this document, Users should note that other federal laws and regulations apply when accessing Fiscal Service resources (e.g., licensing agreements and copyright laws), but are considered outside the scope of this document.
Users SHALL:
Follow these rules regarding Fiscal Service facilities:
Use facilities properly and follow laws, regulations, and policies governing the entrance to, use of and exit from such facilities.
Do not threaten any person or organization.
Do not commit acts of violence.
Do not bring prohibited items (e.g., weapons) into a Fiscal Service facility.
Follow these rules regarding Fiscal Service data, equipment, and IT systems:
Use Fiscal Service data, equipment, and IT systems properly and follow laws, regulations, and policies governing the use of such resources (Base Line Security Requirements, (BLSRs), Treasury Information Technology Security Program (TD-P 85-01), the Treasury Security Manual (TD-P 15- 71), and Fiscal Service Policies.
Protect Fiscal Service data, equipment and IT systems from loss, theft, damage, and unauthorized use or disclosure.
Secure mobile media (paper and digital) based on the sensitivity of the information contained.
Use appropriate sensitivity markings on mobile media (paper and digital).
Promptly report any known or suspected security breaches or threats, including lost, stolen, or improper/suspicious use of Fiscal Service data, equipment, IT systems, or facilities to the Service Desk at 304-480-7777.
Do not attempt to circumvent any security controls.
Logoff, lock, or secure workstation/laptop to prevent unauthorized access to Fiscal Service IT
RFP-CIO-30100000-23-001
systems or services.
Do not read, alter, insert, copy, or delete any Fiscal Service data except in accordance with assigned job responsibilities, guidance, policies, or regulations. The ability to access data does not equate to the authority to access data. In particular, users must not browse or search Fiscal Service data except in the performance of authorized duties.
Do not reveal any data processed or stored by Fiscal Service except as required by job responsibilities and within established procedures.
Do not dial-in or remotely access Fiscal Service IT systems unless authorized to do so, such as an approved telework agreement authorizing remote access over the bureau’s VPN software.
Do not install or use unauthorized software on Fiscal Service equipment.
Retrieve all hard copy sensitive printouts in a timely manner.
Take reasonable precautions to prevent unauthorized individuals from viewing screen contents or printed documents.
Do not open e-mail attachments, or click links, from unknown or suspicious sources.
Be responsible for all activities associated with their assigned user IDs, passwords, access tokens, identification badges, Personal Identity Verification cards, or other official identification device or method used to gain access to Fiscal Service data, equipment, IT systems, or facilities.
Use only equipment and software provided by Fiscal Service or that has been approved for use by Fiscal Service’s CIO or designee to conduct Fiscal Service business.
Comply with Fiscal Service social media policy, including restrictions on publishing Fiscal Service information to social media and public websites.
Follow these rules regarding access credentials:
Protect passwords from improper disclosure. Do not reveal passwords, PINs, or other access credentials. Password or PIN disclosures are considered a security violation and should be reported as such.
Do not share passwords with anyone else or use another person’s password or other access credential such as, but not limited to, someone else’s PIV card.
Change passwords as required by expiration dates.
Choose hard to guess, non-dictionary passwords that use a minimum of twelve alphanumeric characters containing at least one numeric character and two alpha characters, both UPPER and lower case, and include a special character.
ACCEPTANCE:
I have read the Fiscal Service Security Rules of Behavior and fully understand the security requirements.
I further understand that violation of these rules may be grounds for legal and/or administrative action by the Fiscal Service and may result in actions up to and including disciplinary action, termination of access, termination of employment, contract termination, and/or prosecution under federal law.
User’s Name: _________________________________ (printed)
User’s Signature: ______________________________ (signature)
Date: ______________________
File details come from the government source that posted it. Updated .