PWS-NASIC_IT_Support_Services_(GSP).pdf

PDF 198 KB Posted

Attached to
NASIC IT Support Follow-on Federal contract opportunity
Solicitation number
FA8604-15-R-7004
Issued by
Department of the Air Force Materiel Command Lifecycle Management Center Wright Patterson Air Force Base

About this file

PWS - NASIC/GSP

View the file

Other files for this federal contract opportunity

Other files attached to NASIC IT Support Follow-on, newest first.
File Type Posted
PWS-NASIC_IT_Support_Services(SC).pdf PDF
Capability_Package-NASIC_IT_Support_Services.docx DOCX document

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

PERFORMANCE WORK STATEMENT (PWS)

Name: NASIC/GSP IT Support Services

Organization: National Air & Space Intelligence Center

Address: 4180 Watson Way, Wright-Patterson AFB, OH 45433

1.0 PURPOSE

The National Air and Space Intelligence Center (NASIC) is the source for air and space intelligence. NASIC produces integrated, predictive air and space intelligence to enable military operations, force modernization and national policymaking.

The Persistent Infrared Analysis Squadron (GSP) at the National Air and Space Intelligence Center (NASIC) is responsible for the maintenance, sustainment, and development of the Modular Persistence GEOINT (MPG) hardware, software, and databases. The MPG hardware, software, and databases support capabilities for the National Systems for Geospatial-Intelligence (NSG). The Persistent Infrared Analysis Squadron is located at the National Air and Space Intelligence Center, Wright-Patterson AFB (WPAFB), Fairborn, OH.

2.0 SCOPE

All work shall be performed at Wright Patterson Air Force Base (WPAFB), Fairborn, Ohio. The majority of work that shall be provided will occur at one of NASIC’s facilities at WPAFB. On-site support shall also be required at other locations on WPAFB. Many of the Center’s buildings are multi-story structures.

This effort includes maintenance fixes to ensure the proper function and maintain the Information Manager (IFM) hardware, which is on a system that crosses multiple networks (including JWICS, SIPRNet, NIPRNet, StoneGhost, Tungsten, and Zinc) and ~500+ Windows/Unix/Linux servers of varying brands, both physical and virtual. The effort includes network hardware and circuit management support, servers, virtualization and storage support, and heavy scripting and light database administration support.

The contractor shall also support and sustain customized, locally-developed, Government-provided software. The contractor shall provide support as detailed in this PWS on a flexible 24x7 schedule to maintain availability of the supported systems for 24x7 operations. Primary hours of support shall be 0600 – 2200, Monday through Friday. Support may be necessary outside of the primary hours in order to support crisis or high profile events, as well as to ensure that NSG operations are not negatively impacted by software system issues such as updates or fixes/patches. Due to the type of work being performed, the Government anticipates that all work shall be accomplished on-site at NASIC. The contractor shall operate 24/7 and 365 days per year and support over 400 government and contractor employees including nearly 180 analysts. The MPG environment includes over 200 physical virtual servers, 2 PB of disk storage, 14 PB of tape storage, 200 high-performance workstations, 10 million pages of OPIR Search – data and product dissemination web services.

The MPG areas of support include Active Directory, Exchange 2007/2010/2013, Red Hat Enterprise Linux (RHEL), MS System Management Server (SMS), Windows System Update Server (WSUS), SQL server 2005/2008/2012, SharePoint, SCCM.

The contractor shall comply with NASIC policies, processes, procedures, TCNO/IAVA and ICVA directives and national and local security rules, regulations and requirements;

specific instances waived by COR or QAP shall not be included.

All contracted support personnel shall have a TS/SCI security clearance with an up-to-date (having been completed no longer than five years prior to contract award) Single Source Background Investigation (SSBI). Certain contractor personnel shall also satisfy additional security requirements as detailed in para 7.

3.0 REQUIREMENT(S)/DESCRIPTION OF SERVICE(S)

3.1.1 Senior Hardware Technician (Desktops and Peripherals)

3.1.1.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by Contracting Officer Representative (COR) or Quality Assurance Personnel (QAP).

Contractor shall be required to install approximately 100 workstations per year Equipment to be installed/maintained includes but is not limited to Dell/Windows and Oracle (Sun)/Unix servers, various Linux servers, Dell and H-P Windows desktop computers, Oracle (Sun) Unix workstations, OPIR Search, various Linux workstations, Lexmark printers, multi-function devices, and Zenoss network/server management

Increase in servers to be supported due to specific mission area is approximately 50-100 physical and virtual servers per year

High-end workstations to be supported due to specific mission area is approximately 200 workstations

3.1.1.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

Contractor shall possess appropriate certifications from equipment vendors or their designated parties

3.1.1.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall install/maintain/repair/remove Windows/Unix/Linux workstations and servers Contractor shall install/maintain/repair/remove scanners, fax machines, network printers, multi-function devices, copiers, other devices

Contractor shall maintain architectural diagrams and shall document all installations/changes in accordance with NASIC guidance

Contractor shall provide computer inventory and accountability support in accordance with customer prescribed practices with minimal supervision

Contractor shall develop, maintain and execute server preventative maintenance scheduling

Contractor shall maintain list of equipment associated with this functional area Contractor shall provide monthly functional area reports summarizing work accomplished, work planned in next month and important issues occurring during the month

3.1.2 Senior Storage Technician (Storage and Back‐up)

3.1.2.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by COR or QAP Enterprise includes approximately one petabyte of network storage Enterprise includes approximately 14 PB of tape storage Enterprise contains equipment primarily from Brocade, Hitachi, Quantum but others must also be supported Increase in storage to be supported due to specific mission area is approximately

50 terabytes of disk storage and 2 petabytes of tape storage Additional support required due to addition of administration and maintenance of

Network Attached Storage (NAS) due to specific mission area

3.1.2.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

Contractor shall be Hitachi trained/approved for warranty maintenance of Hitachi hardware

3.1.2.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall provide corrective and preventative maintenance on all tape libraries and storage sub-systems Contractor shall provide all installation, configuration, and maintenance of all enterprise tape backup storage system including the following libraries: Scalar AEL 6000, i6000, i2000, and i500

Contractor shall perform all installation, configuration and maintenance of all Hitachi storage including Hitachi Unified Storage (HUS), Virtual Storage Pool (VSP), Hitachi Network Attached Storage (HNAS), and Adaptable Modular Storage (AMS) systems.

Contractor shall perform all installation, configuration, and maintenance of all Hitachi Data Storage Network Attached Storage systems

Contractor shall perform installation, configuration, and maintenance of all Brocade SAN switches of the DCX, VDX, and ICX series including the 8500, 6500, 48K, 4100, 3900 series

Contractor shall perform installation, configuration, and maintenance of all Dell Compellent SC8000 and SC200 series

Contractor shall maintain architectural diagrams and shall document all installations/changes in accordance with NASIC guidance

Contractor shall maintain list of equipment associated with this functional area Contractor shall provide monthly functional area reports summarizing work

3.1.3 Storage and Backup Administration

3.1.3.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by COR or QAP Enterprise includes equipment, systems and software such as Brocade, Hitachi, Oracle (Sun), Quantum, StorNext, AMS, NetBackup, Device Manager Increase in storage to be supported due to specific mission area is approximately

150 terabytes of disk storage and 6-8 PB of tape storage per year

3.1.3.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

Contractor shall have received specialized training in Hitachi, Brocade and, and Dell storage devices

3.1.3.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall provide functional utilization reports as requested Contractor shall provide network integration services Contractor shall perform configuration/administration of SAN devices Contractor shall perform configuration/administration of SAN resources Contractor shall update the microcode/firmware on SAN devices using Device

Manager, Crystal and High Command application tools Contractor shall perform SAN/Enterprise Disk Administration Performing installation, configuration and maintenance of all Hitachi HNAS, HUS, VSP, and AMS storage systems.

Contractor shall install and updated licenses for adding more storage and domains to current and new Hitachi storage systems

Contractor shall perform installation, configuration and maintenance of the Brocade SAN switches including the DCX, VDX, and ICX series

Contractor shall install/configure/administer Veritas NetBackup backups/restores

Contractor shall perform enterprise backups and Level III data file restores, configuration, and troubleshooting

Contractor shall perform all configuration and administration of Quantum enterprise tape backup storage and recovery system, including Quantum libraries Scalar series

Contractor shall follow NASIC Disaster Recovery Program (DRP) procedures Contractor shall provide monthly performance, utilization and capacity reports Contractor shall provide monthly functional area reports summarizing work

3.1.4 Senior Database and System Administration (Windows)

3.1.4.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by COR or QAP Contractor shall provide Level III support Enterprise includes roaming Windows profiles for approximately 350+ personnel Enterprise includes Windows 7 and 8 desktop operating systems (OS) Enterprise includes programs and applications such as VMWare ESX, Exchange

2007/2010/2013 Server, SQL server 2005/2008/2012, SharePoint, SCCM, SMS, WSUS, Flexira AdminStudio, Windows Server 2003/2008/2012, Citrix, Windows Terminal Services, Hummingbird, Samba, Quest Vintela Authentication Services, MS Cluster Services, Active Directory, Lumension Sanctuary, BMC/ Remedy, Symantec Antivirus Server, McAfee Antivirus Server, Outlook, Internet Information Server, Admin Studio, Multimedia Message (M3) client, ESRI ArcGIS, Analyst Notebook, Adobe products, Lotus Notes and various scripting languages including Perl, Python, Bash, PowerShell, VB Script

Enterprise maintains operating system versions as required by DoD and USAF

3.1.4.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

3.1.4.3 Description

Contractor shall follow all approved DoD and NASIC policies, processes and procedures Contractor shall maintain/administer/update Windows operating systems, products, applications and services Contractor shall provide production network integration services Contractor shall maintain configuration management controls, to include security/update patches Contractor shall create/maintain custom ad hoc scripting Contractor shall maintain and administer Windows Terminal Services/Citrix

Contractor shall conduct periodic log reviews Contractor shall provide Level III support Contractor shall develop change plans for all Windows Enterprise/Domain modifications Contractor shall provide monthly functional area reports summarizing work accomplished, work planned in next month and important issues occurring during the month

Contractor shall provide monthly performance, utilization and capacity reports Contractor shall manage and administer Microsoft SQL database services Contractor shall manage and administer Microsoft SharePoint server farm Contractor shall maintain Active Directory and associated custom scripting for account validation, office symbol changes and GPO's Contractor shall maintain Domain Name Service configuration integrated across

Windows/Unix Contractor shall maintain/update Active Directory Exchange extensions Contractor shall perform file and email message remediation as necessitated by identified security incidents Contractor shall maintain/update clustered Exchange servers for high-availability, to include daily review of system and application logs for the Exchange cluster

Contractor shall verify delivery and transit of email inbound/outbound to other SMTP mail servers

Contractor shall provide highly-available, fault tolerant file/print cluster services Contractor shall maintain print services: drivers, spooler, separator pages, printer configuration Contractor shall configure/maintain Windows attached storage Contractor shall maintain TCP/IP configuration controls Contractor shall install/maintain security/update patches Contractor shall provide/maintain functional utilization reports, scorecards, databases Contractor shall provide compliance with USAF/DIA directives, including but not limited to Time Compliance Network Orders (TCNO), Information Assurance Vulnerability Alerts (IAVA) and Intelligence Community Vulnerability Alerts

(ICVA).

Contractor shall maintain and track user access Contractor shall support installation/admin/update of antivirus software, server and signatures.

Contractor shall perform forensic analysis of security incidents and other malicious events as required Contractor shall conduct period audit reviews IAW NASIC and DoD guidance Contractor shall maintain/administer/update Windows products, applications and services Contractor shall maintain/administer/update approved third party Windows applications Contractor shall perform software loading and configuration controls Contractor shall perform Certificate to Operate (CTO) testing and produce test result reports in accordance with provided guidance

Contractor shall provide support for MS and third party application workstation products

Contractor shall provide/maintain FDCC compliant workstation builds IAW NASIC processes and policies

Contractor shall provide/maintain Windows server builds IAW NASIC processes and policies

3.1.5 Senior System Administration (Unix/Linux)

3.1.5.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by the COR or QAP Contractor shall provide Level III support Enterprise includes primarily Solaris 10, Red Hat Linux, Red Hat Enterprise Linux

(RHEL) and CentOS Enterprise includes programs and applications such as NIS, DNS, Quest Vintela

Authentication Services, Red Hat Satellite Server, Zenoss Enterprise Network Modeling, Oracle, BMC/Remedy, Jumpstart, NetBackup, StorNext HSM, Veritas HSM, Veritas Clusters, ZFS, VMWare, Kernel Virtual Machine (KVM), Virtual Box, Samba, Apache, Tomcat, Netscape, Oracle Web Services, ISSE Guard, eXmeritus, SeaMonkey, Thunderbird, Firefox, Chrome, Adobe, MATLAB cluster, Multimedia Message (M3) server, Symantec, Secure Messaging and Routing Terminal Server (Smart) and Smart.neXt, VMWare ESX and Consolidated Backup Server, YUM repositories, Cisco firewalls, Open Office, Libra Office, Lotus Notes, and various programming/scripting languages including Fortran, C, Perl and Java

Enterprise maintains operating system versions as required by DoD and USAF Enterprise includes services such as the NASIC enterprise message system and electronic records management

3.1.5.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

3.1.5.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall maintain/administer/update Unix/Linux operating systems, products, applications and services Contractor shall maintain/administer/update approved third party Unix/Linux applications Contractor shall develop change plans for all Unix/Linux modifications Contractor shall provide monthly functional area reports summarizing work

Contractor shall provide monthly performance, utilization and capacity reports Contractor shall provide functional utilization reports as requested Contractor shall provide network integration services Contractor shall build/maintain/administer license servers Contractor shall provide compliance with USAF/DIA directives, including but not limited to Time Compliance Network Orders (TCNO), Information Assurance Vulnerability Alerts (IAVA) and Intelligence Community Vulnerability Alerts (ICVA)

Contractor shall perform Certificate to Operate (CTO) testing and produce test result reports in accordance with provided guidance

Contractor shall maintain and tracks user access Contractor shall provide support for OS and third party application workstation products Contractor shall maintain TCP/IP configuration controls, to include security/update patches Contractor shall create/maintain custom ad hoc scripting Contractor shall maintain Domain Name Service administration & configuration integrated across Windows/Unix Contractor shall provide Level III support Contractor shall provide/maintain workstation builds Contractor shall provide/maintain server builds Contractor shall maintain/update JumpStart server/workstation builds Contractor shall maintain/update NIS maps Contractor shall maintain/update custom Samba services Contractor shall maintain/update programming/scripting languages and libraries Contractor shall maintain/update/administer eXmeritus Contractor shall perform forensic analysis of security incidents and other malicious network events

3.1.6 Network Administration (Network Hardware Support)

3.1.6.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by Contracting Officer Representative (COR) Contractor shall be required to install approximately 15 miles of network cabling per year Enterprise contains approximately 20,000 fiber terminations Enterprise contains over 3,000 network connections

3.1.6.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

Personnel shall possess Certified Fiber Optics Installer (CFOI) certification Contractor shall be capable of climbing ladders, lifting/carrying up to 40 pounds

3.1.6.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall install and maintain network cabling throughout NASIC enterprise to include outlying buildings Contractor shall install router/switches Contractor shall remove unused network cabling and equipment Contractor shall label all installations in accordance with NASIC guidance Contractor shall maintain architectural diagrams and shall document all installations/changes in accordance with NASIC guidance; tools utilized shall include AutoCAD and MS Visio

Contractor shall design networks, schedule installations and schedule network maintenance

Contractor shall maintain list of equipment associated with this functional area Contractor shall provide monthly functional area reports summarizing work

3.1.7 System Engineer

3.1.7.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by Contracting Officer Representative (COR) Contractor shall provide state-of-the-art techniques for designing, developing, modifying and troubleshooting highly complex computer operating hardware system.

Subject matter expert on emerging technologies

3.1.7.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

Contractor shall possess a Master’s degree in this functional area (e.g.

information systems, computer science, math or engineering)

3.1.7.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall design operating/hardware systems Contractor shall formulate system concepts and architecture, specify requirements and develop implementation approaches Contractor shall identify and resolve complex hardware/software interface issues Contractor shall be the subject matter expert on emerging technologies Contractor shall direct the development of systems specifications and technical documentation

Contractor shall provide monthly functional area reports summarizing work

3.1.8 Senior Information Assurance/Security Assessor

3.1.8.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by Contracting Officer Representative (COR) Contractor shall provide expert support, analysis and research into exceptionally complex problems Contractor shall ensure that the architecture and design of information systems are functional and secure Contractor shall provide expert support for Information Technology in areas of information systems architecture, telecommunications systems design, architecture, implementation, information systems integration, software development, security engineering, and communications and network systems management

Contractor shall identify security issues and risks, and develop mitigation plans Contractor shall architect, design, implement, support, and evaluate security-focused tools and services including project leadership roles Contractor shall develop and interpret security policies and procedures Contractor shall mentor junior members of the team Contractor shall develop and deliver training materials and perform general security awareness and specific security technology training Contractor shall evaluate and recommend new and emerging security products and technologies Contractor shall participate in incident handling Contractor shall actively protect the availability, confidentiality, and integrity of customer, user, and mission information and data Contractor shall proactively instruct, update, maintain and manage, monitor, and support enterprise network and systems security operations infrastructure throughout the shared services environment

Contractor shall have experience and expertise with ethical hacking, firewall and intrusion detection/prevention technologies, secure coding practices and threat modeling

Contractor shall be proficient with Windows and Unix/Linux operating systems Contractor shall build, maintain, manage, and monitor the security infrastructure Contractor shall perform day to day administration of security related systems and applications, monitoring logs, and reporting of security events Contractor shall develop, enhance, and execute security operations processes Contractor shall proactively manage, tune, and troubleshoot security logging, web filtering, anti-malware, vulnerability management, and other security systems

Contractor shall provide security advice on directory services such as Active Directory and LDAP as well as operating system environments

Contractor shall monitor, analyze, and evaluate operations and activities to ensure an appropriate level of information protection is achieved and maintained

Contractor shall perform vulnerability assessments and assists IT operations with remediation planning

Contractor shall assists IT operations with remediation planning and implementations

Contractor shall participate in operations and tactical planning Contractor shall provide vulnerability and threat management monitoring and mitigation response Contractor shall work with architects and senior engineers to review security architecture and design documents to ensure consistency, accuracy and compliance with the articulated security posture and industry requirements

Contractor shall have in-depth knowledge of network security best practices Contractor shall assist senior and lead Engineers in the review, development, testing and implementation of security plans, products and control techniques Contractor shall participate in tactical and operational planning of vulnerability assessment activities Contractor shall provide vulnerability and threat management monitoring and mitigation response Contractor shall incorporate stakeholders, the Information Security Teams, associated working groups, and external contacts within the information security industry

Contractor shall have knowledge of in designing secure network architectures, virtualization technologies, application security, DNS, and web applications

Contractor shall assist with architects and senior engineers and systems engineering team in designing, integrating, and deploying services, systems, and future capabilities

Contractor shall have knowledge of authentication protocols, core network and system security principles

3.1.8.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess within six months and maintain Information Assurance Technical Level III (CISSP) certification as required by DoD Directive 8570.01-M for the work being performed

Personnel shall possess a Master’s Degree in information systems, computer science, math or engineering or have equivalent experience

3.1.8.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall design and develop IA or IA enabled products, interface specifications, and approaches to secure the environment Contractor shall assess threats to the environment and provide input on security designs and architecture Contractor shall participate in risk assessment during the Accreditation and

Authorization (A&A) process Contractor shall provide monthly functional area reports summarizing work

3.1.9 GSP Helpdesk Support

3.1.9.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide 24/7 support 365 days Contractor shall be the single point of contact for all IT related issues for both internal and external customers Contractor shall provide Level I and II CFP support Contractor shall diagnose and resolve technical and end-user problems in a customer service oriented, team environment (estimated work load: ~300 customers, ~200-300 help desk tickets per month, approximately 5 networks)

Contractor shall utilize the GSP ticket tracking system Contractor shall assist with Accounts Management Contractor shall provide 24 hour network resource/environmental monitoring and alarm reporting

3.1.9.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

Contractor shall have a minimum of three years of Microsoft administration, Microsoft Exchange and network infrastructure

Contractor shall have the ability to lift up to 80 pounds Contractor shall possess a proven ability to balance, prioritize and organize multiple tasks Contractor shall possess a proven ability to resolve problems efficiently and effectively while recognizing customers’ competence levels and approaching each level appropriately

3.1.9.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall follow the written and verbal instructions provided by the

Government Task Manager, Branch Chief and/or Principal Technical Advisor

(PTA)

Contractor shall coordinated corrective action required by outside/parent agencies as required

Contractor shall be responsible for monitoring, opening, assigning, updating and closing help desk tickets

Contractor shall troubleshoot assigned tickets using Standard Operating Procedures (SOP’s)

Contractor shall provide administrative support for GSP Networks as required such as granting/revoking network access and file permissions; performing file/directory restorations; installation of desktop software

Contractor shall provide administrative support to user account creation and maintenance to include resetting account passwords and unlocking accounts

Contractor shall provide desktop support at the customer’s location as required;

desktop support includes Windows and Unix/Linux workstations and mobile computing (i.e. laptops and tablets)

Contractor shall provide 24-hour network and environmental monitoring and appropriate alarm reporting utilizing NASIC-provided tools/capabilities

Contractor shall use Solarwinds to monitor and support various networks and system assets

Contractor shall perform documented system reboots in the data center as required

Contractor shall interact with other team members and back office (Level II) personnel to determine corrective action

Contractor shall be able to utilize standard Active Directory and UNIX based commands

Contractor shall replace workstations with like systems and reload all applicable user applications

Contractor shall coordinate with other duty sections such as hardware technicians and software administrators when additional Level II or Level III support is required

Contractor shall notify personnel of facility alarms to dispatch maintenance individuals

Contractor shall follow VERITAS' backup/restoration Standard Operating Procedures

Contractor shall physically or remotely log into the system and execute prepackaged Microsoft Installers (MSIs) or follow prescribed flowcharts/checklists

Contractor shall provide Trusted Agent (TA) PKI support as requested Contractor shall provide daily network status reports Contractor shall install desktop software as required Contractor shall provide bulk data transfers between networks Contractor shall provide monthly functional area reports summarizing work

3.1.10 Senior High Performance Compute Support Engineer

3.1.10.1 Scope (in addition to the enterprise scope detailed above)

Contractor shall provide core hour support Contractor shall provide non-core hour support on an on-call basis and as approved by the COR or QAP Enterprise includes primarily Solaris 10, IRIX, Red Hat Linux, Red Hat Enterprise

Linux (RHEL) and CentOS Enterprise includes programs and applications such as NIS, DNS, Quest Vintela

Authentication Services, Red Hat Satellite Server, Zenoss Enterprise Network Modeling, Oracle, BMC/Remedy, Jumpstart, NetBackup, StorNext HSM, Veritas HSM, Veritas Clusters, ZFS, VMWare, Kernel Virtual Machine (KVM), Virtual Box, Samba, Apache, Tomcat, Netscape, Oracle Web Services, ISSE Guard, eXmeritus, SeaMonkey, Thunderbird, Firefox, Chrome, Adobe, MATLAB cluster, Multimedia Message (M3) server, Symantec, Secure Messaging and Routing Terminal Server (Smart) and Smart.neXt, VMWare ESX and Consolidated Backup Server, YUM repositories, Cisco firewalls, Open Office, Libra Office, Lotus Notes, and various programming/scripting languages including Fortran, C, Perl and Java

Contractor shall develop, innovative, and implement complex computing solutions, ensuring that upgrades and changes comply with established guidelines and processes

Contractor shall further develop and execute computing solutions using cluster/grid technologies

Contractor shall serve as a senior member of the team responsible for the planning and development of a robust and scalable management infrastructure for Linux computing resources

Contractor shall have development experience in C, C++ and/or Java, PHP, JavaScript, Perl, Python

Contractor shall contribute to development of next-generation HPC-based framework, algorithms, and tooling (using C++, OpenCL/CUDA, MATLAB, MPI, Pthreads)

Contractor shall have knowledge of network and web related protocols (eg, TCP/IP, UDP, HTTP, HTTPS, routing protocols)

Contractor shall be required advanced knowledge of complex concepts, practices and procedures associated with IT systems design, installation and maintenance

Contractor shall support, administer Red Hat Enterprise Linux (RHEL) systems within the compute environment

Contractor shall support, administer Windows systems within the compute environment

Contractor shall have experience in cloud implementations using OpenStack Contractor shall have expertise in HPC middleware installation, administration, security and patching Contractor shall have experience with High-performance storage and clustered file systems Contractor shall have experience with High-performance computer interconnects

(1,10 Gigabit Ethernet, InfiniBand, Fibre Channel) Contractor shall be responsible for advanced level design, integration, implementation and modification of a wide variety of user information systems usually within a highly complex environment

Contractor shall coordinate installation, testing, operation, troubleshooting and maintenance of computer systems

Contractor shall provide functional and technical expertise in support of user systems operation and maintenance

Contractor shall have solid experience in MATLAB and toolboxes Contractor shall have knowledge in taking requirements or existing capabilities of existing MATLAB code and assist in tailoring to meet current or future needs Contractor shall conduct needs analysis, planning and scheduling the installation of a wide variety of new or modified hardware/software Contractor shall develop functional and technical IT system requirements and specifications Contractor shall provide technical support through allocating systems resources, managing accounts, administering passwords, documentation, security, recoverability and access including deploying security and operating system patches

Contractor shall support internal departmental servers

Contractor shall maintain hardware and software inventories including developing and updating departmental distributed software license management policy

Contractor shall enhance functional capabilities, performance, and robustness of the existing system

Contractor shall have industry experience as a data engineer, with specific exposure to both unstructured and structured data environments

Contractor shall troubleshoot OS, networking, storage, and software issues while leveraging internal teams for solutions

Contractor shall deliver changes to the HPC production platforms according to the change control process Communicating and seeking approvals from business owners

Contractor shall develop tools to deploy, manage, monitor and troubleshoot HPC systems at scale

Contractor shall maintain asset lists of all servers, applications and licensing ensuring compliancy

Contractor shall serve as a senior member of the team responsible for the planning and development of a robust and scalable management infrastructure for Linux computing resources

Contractor shall requires advanced knowledge of complex concepts, practices and procedures associated with IT systems design, installation and maintenance

Contractor shall have knowledge of network and web related protocols (eg, TCP/IP, UDP, HTTP, HTTPS, routing protocols)

Contractor shall industry experience as a data engineer, with specific exposure to both unstructured and structured data environments including knowledge of and experience with SQL and NOSQL data architectures, capabilities, tools and support requirements

Contractor shall conduct needs analysis, planning and scheduling the installation of a wide variety of new or modified hardware/software

Contractor shall develop functional and technical IT system requirements and specifications

Contractor shall responsible for advanced level design, integration, implementation and modification of a wide variety of user information systems usually within a highly complex environment

Contractor shall develop, innovative, and implement complex computing solutions, ensuring that upgrades and changes comply with established guidelines and processes

Contractor shall further develop and execute computing solutions using cluster/grid technologies

Contractor shall development experience in C, C++ and/or Java, PHP, JavaScript, Perl, Python

Contractor shall contribute to development of next-generation HPC-based framework, algorithms, and tooling (using C++, OpenCL/CUDA, MATLAB, MPI, Pthreads)

Contractor shall develop tools to deploy, manage, monitor and troubleshoot HPC systems at scale

Contractor shall have solid experience in MATLAB and toolboxes and knowledge in taking requirements or existing capabilities of existing MATLAB code and assist in tailoring to meet current or future needs

3.1.10.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical (IAT) Level II certification as required by DoD Directive 8570.01-M for the work being performed (Security+ requirement)

3.1.10.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall maintain/administer/update Unix/Linux operating systems, products, applications and services Contractor shall maintain/administer/update approved third party Unix/Linux applications Contractor shall develop change plans for all Unix/Linux modifications Contractor shall provide monthly functional area reports summarizing work accomplished, work planned in next month and important issues occurring during the month

Contractor shall provide monthly performance, utilization and capacity reports Contractor shall provide functional utilization reports as requested Contractor shall provide network integration services Contractor shall provide compliance with USAF/DIA directives, including but not limited to Time Compliance Network Orders (TCNO), Information Assurance Vulnerability Alerts (IAVA) and Intelligence Community Vulnerability Alerts (ICVA)

Contractor shall perform Certificate to Operate (CTO) testing and produce test result reports in accordance with provided guidance

Contractor shall maintain and tracks user access Contractor shall provide support for OS and third party application workstation products Contractor shall maintain TCP/IP configuration controls, to include security/update patches Contractor shall create/maintain custom ad hoc scripting Contractor shall maintain/update programming/scripting languages and libraries Contractor shall provide functional and technical expertise in support of user systems operation and maintenance Contractor shall coordinate installation, testing, operation, troubleshooting and maintenance of compute systems Contractor shall support, administer Red Hat Enterprise Linux (RHEL) systems within the compute environment Contractor shall support, administer Windows systems within the compute environment Contractor shall have experience in cloud implementations using OpenStack Contractor shall have expertise in HPC middleware installation, administration, security and patching Contractor shall have experience with High-performance storage and clustered file systems Contractor shall have experience with High-performance computer interconnects

(1,10 Gigabit Ethernet, InfiniBand, Fibre Channel)

Contractor shall provide technical support through allocating systems resources, managing accounts, administering passwords, documentation, security, recoverability and access including deploying security and operating system patches

Contractor shall monitor and report on system performance Contractor shall troubleshoot OS, networking, storage, and software issues while leveraging internal teams for solutions Contractor shall support internal departmental servers Contractor shall enhance functional capabilities, performance, and robustness of the existing system Contractor shall deliver changes to the HPC production platforms according to the change control process Communicating and seeking approvals from business owners

Contractor shall maintain hardware and software inventories including developing and updating departmental distributed software license management policy

3.1.11 Surge Activities

NASIC is in the process of incorporating several new missions into the Center.

In addition, the upgrade of aging facilities infrastructure has resulted in much construction work within the facility. These two items have necessitated much movement of personnel to/from temporary locations within the Center. Support provided by the Firm- Fixed-Price portion of this task order can handle a portion of the extra IT work required but at times it is necessary to supplement this support. This surge support may be required for periods of time ranging from 1 month to 3 months. The increased personnel are not required for a full 12 month period and it is impossible to schedule the requirement for their services in advance.

Surge activities may be performed in each functional area detailed in paragraphs

3.1.1 to 3.1.10.

All personnel performing surge activities shall conform to all requirements defined in the Qualifications paragraph of the functional area in which the surge activity is being performed

All surge activities shall be defined by the Description paragraph of the functional area in which the surge activity is being performed

The surge pricing needs to be included with a funded CLIN.

Turning Surge Support On:

Surge support will be initiated via a request from operational user through a mini- PWS or Task Directive (one page description of work to be completed) to the government COR

COR will review the mini-PWS or Task Directive and prepares an independent government cost estimate of the work for Base contracting review

Base contracting reviews and provides the mini-PWS or Task Directive to the vendor

Vendor shall provide cost proposal to Base contracting and COR user for approval

Base Contracting documents approval via a modification to the order

Turning Surge Support Off:

During the contracted surge effort the contractor shall provide monthly progress report on hours used and amount of funding remaining Contractor shall provide weekly status reports on the progress of the tasking Tasking or surge effort can be spread out over a month or even 6 months depending on when the arrival of the systems occur and what additional requirements are needed before the install

Surge will be closed when work is completed and funding is used up within the Period of Performance the surge support was turned on

3.1.12 Project Management

3.1.12.1 Scope

Contractor will provide a project lead to ensure quality and accuracy of responsibilities performed under tasks 3.1.1 – 3.1.10. Contractor shall provide organizational chart to Technical Monitor to document which contract personnel by-name are supporting each required mission area/task, updated monthly and submitted as part of the Functional Area Report (CDRL A001).

Operates in a team lead capacity; primary interface for customer requirements, delegates tasks and manages work-load for other contractors. Participates and represents responsibilities covered under tasks 3.1.1 – 3.1.10. Tasks including but not limited to initiation of architecture changes, solution proposal, and customer requirement management will be handled in accordance with defined Engineering Review Team (ERT) processes. Contractor shall provide a Funds and Man-hours Expenditure Report (CDRL A002) and a Contract Funds Status Report (CDRL A003) NLT 10th of each month.

3.1.12.2 Qualifications

Contractor shall possess a US Government Top Secret (TS) security clearance and granted access to sensitive compartmented information (SCI) based on an up-to-date Single Scope Background Investigation (SSBI); selected contractor personnel may be required to satisfy a Counter Intelligence polygraph requirement

Contractor shall possess and maintain Information Assurance Technical certifications as required by DoD Directive 8570.01-M for the work being performed

Contractor shall be trained in basic customer services and customer relations Contractor shall possess a proven ability to resolve problems efficiently and effectively while recognizing customers’ competence levels and approaching each level appropriately

Contractor shall possess a proven ability to balance, prioritize and organize multiple tasks

3.1.12.3 Description

Contractor shall follow all approved NASIC policies, processes and procedures Contractor shall augment government work force during core hours Contractor shall provide daily situational reports as required Contractor shall provide monthly functional area reports summarizing work accomplished, work planned in next month and important issues

4.0 Cyber Security

The contractor shall ensure that all system or application deliverables meet the requirements of DoD and AF Information Assurance (IA) policy. Furthermore, the contractor shall ensure that personnel performing IA activities obtain, and remain current with, required technical and/or management certifications.

4.1.1 System IA

For those solutions that will not inherit existing network security controls, and thus integrate an entirely new application system consisting of a combination of hardware, firmware and software, system security assurance is required at all layers of the TCP/IP DoD Model. The contractor shall ensure that all system deliverables comply with DoD and AF IA policy, specifically DoDI 8500.2, Information Assurance Implementation, and AFI 33-200, Information Assurance Management. To ensure that IA policy is implemented correctly on systems, contractors shall ensure compliance with DoD and AF Certification & Accreditation policy, specifically DoDI 8510.01, DoD Information Assurance Certification and Accreditation Process (DIACAP), and AFI 33-210, Air Force Certification and Accreditation Process (AFCAP).

This is the start of the file's text. The full file is on GovTribe.

File details come from the government source that posted it. Updated .