Enclosure 1 - ITSMP Template.pdf

PDF 4 MB Posted

Attached to
Headquarters Operational Support Services (HOSS) II Federal contract opportunity
Solicitation number
80HQTR23R0001
Issued by
National Aeronautics and Space Administration Goddard Space Center

View the file

Other files for this federal contract opportunity

Other files attached to Headquarters Operational Support Services (HOSS) II, newest first.
File Type Posted
HOSS II RFP QA 174-181.pdf PDF
Attach A - Performance Work Statement (PWS) - Core Services 7.14.23.pdf PDF
SF30 - 80HQTR23R0001 Amendment 003 Pages 1-4.pdf PDF
Exhibits 1-9A rev 7.19.23.pdf PDF
Exhibits 1-9A.pdf PDF
Exhibit 10 - Past Performance Questionnaire.pdf PDF
Signed SF30 80HQTR23R0001 - Amendment 002.pdf PDF
80HQTR23R0001 Amendment 001 - Page 2.pdf PDF
HOSS II RFP QA 159-173.pdf PDF
HOSS II RFP QA 65-158.pdf PDF
HOSS II RFP QA 13-64.pdf PDF
Attach E - Safety and Health Plan 6.28.23.pdf PDF
Signed SF30-80HQTR23R0001 -Amendment 001.pdf PDF
Attach B - IDIQ Labor Rates Matrix 6.29.23.pdf PDF
80HQTR23R0001 Amendment 001 Page 2.pdf PDF
HOSS II RFP QA 1-12.pdf PDF
Enclosure 3 - Exec Driver RTO 1.pdf PDF
Enclosure 5 - Incumbent Weighted Average.pdf PDF
Attach M - Contract Data Requirements List.pdf PDF
Attach I - ITSMP.pdf PDF
Attach E - Safety and Health Plan.pdf PDF
Attach B - IDIQ Labor Rates Matrix.pdf PDF
80HQTR23R0001 HOSS II RFP.pdf PDF
80HQTR23R0001 HOSS II - Cover Letter.pdf PDF
Enclosure 4 - Safety and Health Plan.pdf PDF
Attach L - Contractor Proposed Enhancements.pdf PDF
Attach J - DD254.pdf PDF
Attach H - IT Security Applicable Docs.pdf PDF
Attach D - DEIA Plan.pdf PDF
Attach A - HOSS II Core PWS.pdf PDF
Attach F - Contract Historical Data.pdf PDF
Attach G - OCI Avoidance Plan.pdf PDF
Exhibits 1-9A.pdf PDF
Exhibit 10 - Past Performance.pdf PDF
Enclosure 2 - QASP.pdf PDF
Attach K - DOL Wage Determination 2015-4281 rev 26.pdf PDF
Attach C - IAGP.pdf PDF
Show all 37

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

Information Technology Security Management Plan

Issue Date Effective Date:

SENSITIVE BUT UNCLASSIFIED

(SBU) Version 7 03/2021

(Insert Contract # Here)

RFP 80HQTR23R0001

IT Security Management Plan Review and Approval

This Information Technology Security Management Plan (ITSMP) for the was prepared for the exclusive use of NASA and completed on

I have reviewed the contents of this plan, and believe that it presents an accurate representation.

Reviewed by: ________________________________

ISSO, or equivalent Date

Concurred by: ________________________________

COR/Task Monitor Date

Approved by: ________________________________

Center CISO Date

Accepted by: ________________________________

Contracting Officer Date

SENSITIVE BUT UNCLASSIFIED

(SBU) Version 7 03/2021

Contents

Change History .......................................................................................................................................................................................... ii IT Security Management Plan Review and Approval ............................................................................................................................... iii 1 Contract Identification

1.1 Contract Name

1.2 Contract Number

1.3 Responsible Organization

1.4 Contact Information

1.4.1 Physical Location

1.4.2 Points of Contact

1.5 General Contract Description

1.5.1 Information System Categorization

1.5.2 Security Categorization

1.5.3 Information System

1.5.4 Contractor Badging

1.5.5 Supply Chain Risk Management (SCRM)

1.5.6 Related Laws/Regulations/Policies

2 Security Control Implementations 3 Federal Information Security Management Act (FISMA) Reporting Appendix A: Acronyms

SENSITIVE BUT UNCLASSIFIED

1.5.6 Related Laws/Regulations/Policies

• 5 U.S.C. 552, Freedom of Information Act, 1967

• 5 U.S.C. 552a, Privacy Act, 1974

• FIPS 199, Standards for Security Categorization of Federal Information and Information Systems

• FIPS 200, Minimum Security Requirements for Federal Information and Information Systems

• NIST SP 800-18 Rev. 1, Guide for Developing Security Plans for Federal Information Systems

• NIST SP 800-30 Rev. 1, Guide for Conducting Risk Assessments

• NIST SP 800-34 Rev. 1, Contingency Planning Guide for Information Technology Systems

• NIST SP 800-37 Rev. 2, Guide for the Security Authorization of Federal Information Systems

• NIST SP 800-42, Guideline on Network Security Testing

• NIST SP 800-53 Rev. 4, Recommended Security Controls for Federal Information Systems

• NIST SP 800-53A Rev. 4, Techniques and Procedures for Verifying the Effectiveness of Security Controls in Federal

Information Systems

• NIST SP 800-60 v1 Rev. 1, Guide for Mapping Types of Information and Information Systems to Security Categories

• NIST SP 800-61 Rev. 2, Computer Security Incident Handling Guide

• NIST SP 800-64 v1, Security Considerations in the Information System Development Life Cycle

• OMB Circular A-130, Appendix III, Security of Federal Automated Information Systems

• Public Law (PL) 99-474, The Computer Fraud and Abuse Act of 1986

• PL 93-502 -Freedom of Information Act 1974

• Presidential Decision Directive (PDD-63), Critical Infrastructure Protection Federal Information Security Management Act of 2002 (FISMA)

• NPR 2810.1A, Security of Information Technology

SENSITIVE BUT UNCLASSIFIED

Additional Information: If there is any additional information that you wish to provide, please use the box below.

Version 7 03/2021

File details come from the government source that posted it. Updated .