Attachment TS - 1 PACE V Technical Scenario 1.pdf
PDF 57 KB Posted
- Attached to
- Professional, Administrative, Computational, and Engineering Services contract (PACE V) Federal contract opportunity
- Solicitation number
- 80GRC020R0010
About this file
This document contains a technical scenario related to the Professional, Administrative, Computational, and Engineering Services contract (PACE V) solicitation for the National Aeronautics and Space Administration Glenn Research Center. The scenario outlines an incident where an unpatched personal computer connected to NASA's network via VPN is aggressively scanning and fingerprinting the network while relaying encrypted information to an external entity and attempting lateral movement. Respondents are asked how they would respond to and mitigate this incident, and provide recommendations to prevent recurrences. The PACE V contract aims to continue providing high-quality IT solutions to NASA Glenn Research Center customers, anticipating changes in requirements across institutional, programmatic, research, engineering, and facilities areas while ensuring ongoing alignment with NASA's missions.
View the file
Other files for this federal contract opportunity
Show all 34
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
80GRC020R0010 - PACE V Technical Scenario 1
Cybersecurity
A user is accessing NASA's network with their unpatched and compromised personal home computer. Unbeknownst to the user, once connected via VPN, their home computer is aggressively scanning and fingerprinting NASA's site, relaying information, encrypted via a command and control channel, to an external entity and attempting to move laterally throughout the organization. This anomalous network traffic has been detected by NASA's Security Operations Center and an incident ticket created. It is your responsibility to mitigate this incident.
a. How would you respond to this incident and how would you mitigate it?
b. Are there any recommendations you would make regarding ways to prevent this situation from occurring again in the future?
File details come from the government source that posted it. Updated .