F. ENCLOSURE 4 EED3 IT Security Management Plan.pdf

PDF 1 MB Posted

Attached to
Earth Observing System Data and Information System (EOSDIS) Evolution and Development (EED)-3 Federal contract opportunity
Solicitation number
80GSFC20R0026
Issued by
National Aeronautics and Space Administration Goddard Space Center

About this file

This document contains details for a federal contract solicitation for continued services supporting the Earth Observing System Data and Information System (EOSDIS) Evolution and Development (EED)-3 program. The National Aeronautics and Space Administration Goddard Space Flight Center is seeking proposals for a cost-plus-award-fee indefinite delivery indefinite quantity contract to provide services for the reliability, availability, functionality, operability, and performance of EOSDIS hardware and software systems for five years. Proposals are due no later than October 12, 2020. The contract award date is anticipated for June 1, 2021, with a period of performance beginning September 1, 2021. The North American Industry Classification System code for this requirement is 541512, with a small business size standard of $30 million in average annual receipts.

View the file

Other files for this federal contract opportunity

Other files attached to Earth Observing System Data and Information System (EOSDIS) Evolution and Development (EED)-3, newest first.
File Type Posted
SF30 80GSFC20R0026.pdf PDF
K. EXHIBIT 13 EED3 Past Performance Questionnaire Amendment 1.pdf PDF
B. SF33-14a Amendment 1.pdf PDF
Continuation Pages Amendment 1 80GSFC20R0026.pdf PDF
C. ENCLOSURE 1 Sections B-M Amendment 1.pdf PDF
A. COVER LETTER Amendment 1.pdf PDF
EED3 RFP Questions and Answers Response Document 80GSFC20R0026.pdf PDF
C.12 Attachment L_EED3 IT Security Applicable Documents List.pdf PDF
C.2 Attachment B_ EED3 Direct Labor Rates, Indirect Labor Rates.pdf PDF
C.3 Attachment C_EED3 GFP (CMP_5700_NSIDC_HDF_LPDAAC).pdf PDF
E. ENCLOSURE 3 EED3 Quality Assurance Surveillance Plan.pdf PDF
C.8 Attachment H_EED3 Financial Management Instructions.pdf PDF
C.5 Attachment E_ EED3 Small Business Subcontracting Plan.pdf PDF
C.7 Attachment G_EED3 Pesonal Identity Verification.pdf PDF
D. ENCLOSURE 2 EED3 Government Pricing Model.pdf PDF
C.11 Attachment K_EED3 IAGP List (GSFC ASDC).pdf PDF
I. EXHIBITS 1A-1C EED3 All IDIQ with GPM Specified ODCs by CY.pdf PDF
K. EXHIBIT 13 EED3 Past Performance Questionnaire.pdf PDF
4-EED3 DRFP Questions and Answers Response Document 80GSFC20R0026.pdf PDF
J. EXHIBITS 2-12 EED3 GPM All IDIQ by CY.pdf PDF
C.9 Attachment I_ EED3 Organizational Conflicts of Interest Plan.pdf PDF
H. ENCLOSURE 6 EED3 Performance Evaluation Plan.pdf PDF
C.6 Attachment F_ EED3 Information Technology Security Plan.pdf PDF
C.1 Attachment A_EED3 Statement of Work.pdf PDF
G. ENCLOSURE 5 EED3 Contract Historical Data.pdf PDF
C.4 Attachment D_ EED3 Safety and Health Plan.pdf PDF
C. ENCLOSURE 1 Sections B-M.pdf PDF
C.10 Attachment J_ EED3 Contract Historical Data.pdf PDF
A. COVER LETTER.pdf PDF
5-EED3 Pre-Proposal Conference Questions and Answers 80GSFC20R0026.pdf PDF
B. SF33-14a.pdf PDF
Show all 31

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

SENSITIVE BUT UNCLASSIFIED (SBU)

Information Technology Security Management Plan

Issue Date Effective Date:

Version 1 03-01-17

(Insert Contract # Here)

IT Security Management Plan Review and Approval

This Information Technology Security Management Plan (ITSMP) for the was prepared for the exclusive use of NASA and completed on

I have reviewed the contents of this plan, and believe that it presents an accurate representation.

Reviewed by: ________________________________

ISSO, or equivalent Date

Concurred by: ________________________________

COR/Task Monitor Date

Approved by: ________________________________

Center CISO Date

Accepted by: ________________________________

Contracting Officer Date

Contents

Change History .......................................................................................................................................................................................... ii IT Security Management Plan Review and Approval ............................................................................................................................... iii 1 Contract Identification

1.1 Contract Name

1.2 Contract Number

1.3 Responsible Organization

1.4 Contact Information

1.4.1 Physical Location

1.4.2 Points of Contact

1.5 General Contract Description

1.5.1 Information System Categorization

1.5.2 Security Categorization

1.5.3 Information System

1.5.4 Contractor Badging

1.5.5 Supply Chain Risk Management (SCRM)

1.5.6 Related Laws/Regulations/Policies

2 Security Control Implementations 3 Federal Information Security Management Act (FISMA) Reporting Appendix A: Acronyms

1.5.6 Related Laws/Regulations/Policies

• 5 U.S.C. 552, Freedom of Information Act, 1967

• 5 U.S.C. 552a, Privacy Act, 1974

• FIPS 199, Standards for Security Categorization of Federal Information and Information Systems

• FIPS 200, Minimum Security Requirements for Federal Information and Information Systems

• NIST SP 800-18, Guide for Developing Security Plans for Federal Information Systems

• NIST SP 800-30, Risk Management Guide for Information Technology Systems

• NIST SP 800-34, Contingency Planning Guide for Information Technology Systems

• NIST SP 800-37, Guide for the Security Authorization of Federal Information Systems

• NIST SP 800-42, Guideline on Network Security Testing

• NIST SP 800-53, Recommended Security Controls for Federal Information Systems

• NIST SP 800-53A, Techniques and Procedures for Verifying the Effectiveness of Security Controls in Federal Information

Systems

• NIST SP 800-60, Guide for Mapping Types of Information and Information Systems to Security Categories

• NIST SP 800-61, Computer Security Incident Handling Guide

• NIST SP 800-64, Security Considerations in the Information System Development Life Cycle

• OMB Circular A-130, Appendix III, Security of Federal Automated Information Systems

• Public Law (PL) 99-474, The Computer Fraud and Abuse Act of 1986

• PL 93-502 -Freedom of Information Act 1974

• Presidential Decision Directive (PDD-63), Critical Infrastructure Protection Federal Information Security Management Act of 2002 (FISMA)

• NPR 2810.1, Security of Information Technology

Additional Information: If there is any additional information that you wish to provide, please use the box below.

File details come from the government source that posted it. Updated .