04_Attachment_2_RFP_1A-6_DD_254s.pdf
PDF 2 MB Posted
- Attached to
- EELV Phase 1A Request for Proposal (RFP) 1A-6 Federal contract opportunity
- Solicitation number
- FA8811-18-R-0001
About this file
Attachment 2 DD254
View the file
Other files for this federal contract opportunity
| File | Type | Posted |
|---|---|---|
| 08_Attachment_6_Evaluation_Criteria.pdf | ||
| 05_Attachment_3B_Small_business_participation_commitment_document.pdf | ||
| 11_Attachment_9a_Payment_Plan_NROL-87,_SILENTBARKER_and_AFSPC-44.pdf | ||
| 02c_CDRLs_Exhibit_CX_Signed.pdf | ||
| 10_Attachment_8_Government_Property_Form.pdf | ||
| 12_Attachment_10_FCIL_Cover.pdf | ||
| 02b_CDRLs_Exhibit_BX_Signed.pdf | ||
| 09_Attachment_7_MRA_Cover.pdf | ||
| 13_Attachment_11_OCI_Plan_Cover.pdf | ||
| 03_Attachment_1_PWS.pdf | ||
| 07_Attachment_5_Instructions_to_Offerors_Combined.pdf | ||
| 06_Attachment_4_Acceptance_Criteria.pdf | ||
| 14_Attachment_12_Security_Plan_Cover.pdf | ||
| 00_RFP_Front_Cover_and_Table_of_Contents.pdf | ||
| 01_FA8811-18-R-0001.pdf | ||
| 02a_CDRLs_Exhibit_AX_Signed.pdf | ||
| 05_Attachment_3A_Small_Business_Subcontracting_Plan.pdf | ||
| 11_Attachment_9b_Payment_Plan_NROL-85_and_SBIRS_GEO-5.pdf |
Show all 18
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
DEPARTMENT OF DEFENSE
CONTRACT SECURITY CLASSIFICATION SPECIFICATION
(Please read Instructions BEFORE completing this application.) (The requirements of the National Industrial Security Program (NISP) apply to all security aspects of this effort involving classified information.)
OMB No. 0704-0567
OMB approval expires
October 31, 2020
The public reporting burden for this collection of information, 0704-0567, is estimated to average 70 minutes per response, including the time for reviewing instructions, searching existing data sources, gathering and maintaining the data needed, and completing and reviewing the collection of information. Send comments regarding this burden estimate or any other aspect of this collection of information, including suggestions for reducing the burden, to the Department of Defense, Washington Headquarters Services, at whs.mc-alex.esd.mbx.dd-dod-information-collections@mail.mil. Respondents should be aware that notwithstanding any other provision of law, no person shall be subject to any penalty for failing to comply with a collection of information if it does not display a currently valid OMB control number.
RETURN COMPLETED FORM AS DIRECTED IN THE INSTRUCTIONS.
1. CLEARANCE AND SAFEGUARDING
2. THIS SPECIFICATION IS FOR: (X and complete as applicable.) 3. THIS SPECIFICATION IS: (X and complete as applicable.)
a. LEVEL OF FACILITY SECURITY CLEARANCE (FCL) REQUIRED (See instructions.)
b. LEVEL OF SAFEGUARDING FOR CLASSIFIED INFORMATION/MATERIAL
REQUIRED AT CONTRACTOR FACILITY
Top Secret None (See instructions)
DUE DATE (YYYYMMDD)
FA8811-18-R-0001
c. SOLICITATION OR OTHER NUMBER
b. SUBCONTRACT NUMBER
a. PRIME CONTRACT NUMBER (See instructions.)
DATE (YYYYMMDD)
c. FINAL (Complete Item 5 in all cases.)
DATE (YYYYMMDD)REVISION NO.b. REVISED (Supersedes all previous specifications.)
20180131
DATE (YYYYMMDD)
a. ORIGINAL (Complete date in all cases.)
(Preceding Contract Number) is transferred to this follow-on contract. Classified material received or generated under
YES. If Yes, complete the following:NO4. IS THIS A FOLLOW-ON CONTRACT?
, retention of the classified material is authorized for the period of: In response to the contractor's request dated
YES. If Yes, complete the following:NO5. IS THIS A FINAL DD FORM 254?
TBD
c. COGNIZANT SECURITY OFFICE (CSO) (Name, Address, ZIP Code, Telephone)
TBD
b. CAGE CODE
TBD
a. NAME, ADDRESS, AND ZIP CODE
6. CONTRACTOR (Include Commercial and Government Entity (CAGE) Code.)
N/A
c. COGNIZANT SECURITY OFFICE(S) (CSOs) (Name, Address, ZIP Code, Telephone)
N/A
b. CAGE CODE
N/A
a. NAME, ADDRESS, AND ZIP CODE
7. SUBCONTRACTOR(S) (Click button to add more subcontractors.)
TBD
c. COGNIZANT SECURITY OFFICE(S) (CSOs) (Name, Address, ZIP Code, Telephone) (If applicable, see instructions.)
TBD
b. CAGE CODE (If applicable, see instructions.)
TBD
a. LOCATION(S) (For actual performance, see instructions.)
8. ACTUAL PERFORMANCE (Click button to add more locations.)
The Evolved Expendable Launch Vehicle (EELV) Phase 1A procurement allows the Air Force to procure the necessary equipment and services in order to reliably launch National Security Space (NSS) space vehicles, placing payloads into their appropriate earth orbit. This DD254 covers the contract security classification specification requirements for the Phase 1A NROL-85 mission
9. GENERAL UNCLASSIFIED DESCRIPTION OF THIS PROCUREMENT (Click here if more space is needed.)
10. CONTRACTOR WILL REQUIRE ACCESS TO: (X all that apply. Provide details in Blocks 13 or 14 as set forth in the instructions.)
a. COMMUNICATIONS SECURITY (COMSEC) INFORMATION
d. FORMERLY RESTRICTED DATA
c. CRITICAL NUCLEAR WEAPON DESIGN INFORMATION (CNWDI) (If CNWDI applies, RESTRICTED DATA must also be marked.)
b. RESTRICTED DATA
e. NATIONAL INTELLIGENCE INFORMATION:
f. SPECIAL ACCESS PROGRAM (SAP) INFORMATION
k. OTHER (Specify) (See instructions.)
j. CONTROLLED UNCLASSIFIED INFORMATION (CUI) (See instructions.)
i. ALTERNATIVE COMPENSATORY CONTROL MEASURES (ACCM)
INFORMATION
h. FOREIGN GOVERMENT INFORMATION
g. NORTH ATLANTIC TREATY ORGANIZATION (NATO) INFORMATION
DD FORM 254, NOV 2017 PREVIOUS EDITION IS OBSOLETE. Adobe LiveCycle Designer ES4
CLASSIFICATION (When filled in):
UNCLASSIFIEDCLASSIFICATION (When filled in):
UNCLASSIFIED
(1) Sensitive Compartmented Information (SCI)
(2) Non-SCI
11. IN PERFORMING THIS CONTRACT, THE CONTRACTOR WILL: (X all that apply. See instructions. Provide details in Blocks 13 or 14 as set forth in the instructions.)
a. HAVE ACCESS TO CLASSIFIED INFORMATION ONLY AT ANOTHER CONTRACTOR'S FACILITY OR A GOVERNMENT ACTIVITY (Applicable only if there is no access or storage required at contractor facility. See instructions.)
h. REQUIRE A COMSEC ACCOUNT
k. BE AUTHORIZED TO USE THE DEFENSE COURIER SERVICE (DCS)
j. HAVE OPERATIONS SECURITY (OPSEC) REQUIREMENTS
i. HAVE A TEMPEST REQUIREMENT
b. RECEIVE AND STORE CLASSIFIED DOCUMENTS ONLY
c. RECEIVE, STORE, AND GENERATE CLASSIFIED INFORMATION OR
MATERIAL
f. HAVE ACCESS TO U.S. CLASSIFIED INFORMATION OUTSIDE THE U.S., PUERTO RICO, U.S. POSSESSIONS AND TRUST TERRITORIES
g. BE AUTHORIZED TO USE THE SERVICES OF DEFENSE TECHNICAL
INFORMATION CENTER (DTIC) OR OTHER SECONDARY DISTRIBUTION
CENTER
e. PERFORM SERVICES ONLY
d. FABRICATE, MODIFY, OR STORE CLASSIFIED HARDWARE l. RECEIVE, STORE, OR GENERATE CONTROLLED UNCLASSIFIED
INFORMATION (CUI).
(DoD Components: refer to DoDM 5200.01, Volume 4 only for specific CUI protection requirements. Non-DoD Components: see instructions.)
See Continuation Pages
m. OTHER (Specify) (See instructions)
12. PUBLIC RELEASE. Any information (classified or unclassified) pertaining to this contract shall not be released for public dissemination except as provided by the National Industrial Security Program Operating Manual (NISPOM) or unless it has been approved for public release by appropriate U.S. Government authority. Proposed public releases shall be submitted for review and approval prior to release to the appropriate government approval authority identified here with at least office and phone contact information and if available, an e-mail address.
(See instructions)
DIRECT
SMC (ATTN: SMC/LE)
483 N. Aviation Blvd, El Segundo, CA 90245
SMC (ATTN: SMC/PA)
483 N. Aviation Blvd, El Segundo, CA 90245
THROUGH (Specify) PUBLIC RELEASE AUTHORITY:
13. SECURITY GUIDANCE. The security classification guidance for classified information needed for this effort is identified below. If any difficulty is encountered in applying this guidance or if any other contributing factor indicates a need for changes in this guidance, the contractor is authorized and encouraged to provide recommended changes;
to challenge the guidance or the classification assigned to any information or material furnished or generated under this contract; and to submit any questions for interpretation of this guidance to the official identified below. Pending final decision, the information involved shall be handled and protected at the highest level of classification assigned or recommended. (Fill in as appropriate for the classified effort. Attach, or forward under separate correspondence, any documents/guides/extracts referenced herein. Click button to add additional pages as needed to provide complete guidance.)
1. The contractor shall protect Critical Program Information (CPI), technologies, security documents and systems as identified in the applicable Program Protection Plan (PPP) as well as identified in the contractor's Program Protection Implementation Plan (PPIP), as approved by the program office. The prime contractor will flow-down applicable CPI to any subcontractors with protection requirements as identified in its PPIP. Individual Space Vehicle classification guidance for launch services provided under this effort are contained in the following, all of which have been transmitted to the contractor, and are available in the EELV Program Office.
2. Current NAVSTAR Global Positioning System Protection Guide and any revisions. Appendices A-E to SPG are not applicable to the EELV contractor - Unclassified/FOUO. Current EELV PPP & SCG and any revisions- Unclassified/FOUO. See Continuation Pages
14. ADDITIONAL SECURITY REQUIREMENTS. Requirements, in addition to NISPOM requirements for classified information, are established for this contract.
YesNo (If Yes, identify the pertinent contractual clauses in the contract document itself, or provide an appropriate statement which identifies the additional requirements. Provide a copy of the requirements to the CSO. Use Item 13 or click button if additional space is needed.)
15. INSPECTIONS. Elements of this contract are outside the inspection responsibility of the CSO.
(If Yes, explain and identify specific areas and government activity responsible for inspections. Click button or use Item 13 if additional space is needed.)
YesNo
The Defense Security Service is relieved of security inspection responsibility for contract activities performed on military installations; the program office directorate and applicable location specific security offices will retain security cognizance over contractor operations located on military department installations/jurisdiction. See SCI addendum V2 for additional guidance.
See Continuation Pages
310-653-3537
e. POC TELEPHONE (Include Area Code.)
ashley.cunningham.4@us.af.mil
f. EMAIL ADDRESS (See instructions.)
b. ACTIVITY ADDRESS CODE (AAC) OF THE CONTRACTING OFFICE (See instructions.)
d. AAC OF THE CONTRACTING OFFICE (See instructions.)
e. CAGE CODE OF THE PRIME CONTRACTOR (See instructions.)
Capt Ashley Cunningham
d. POC NAME (See instructions.)
483 N. Aviation Blvd El Segundo, CA 90245
c. ADDRESS (Include ZIP Code.)
SMC/LEK
a. GCA NAME
16. GOVERNMENT CONTRACTING ACTIVITY (GCA) AND POINT OF CONTACT (POC)
18. REQUIRED DISTRIBUTION BY THE CERTIFYING OFFICIAL
17. CERTIFICATION AND SIGNATURES. Security requirements stated herein are complete and adequate for safeguarding the classified information to be released or generated under this classified effort. All questions shall be referred to the official named below.
a. TYPED NAME OF CERTIFYING OFFICIAL (Last, First, Middle Initial) (See instructions.)
Cunningham, Ashley, M
310-653-3537
f. TELEPHONE (Include Area Code.)
ashley.cunningham.4@us.af.mil
g. EMAIL ADDRESS (See instructions.) i. SIGNATUREh. DATE
Contracting Officer
b. TITLE 483 N. Aviation Blvd El Segundo, CA 90245
c. ADDRESS (Include ZIP Code.)
SMC/ENX, SMC/INS SSO
f. OTHERS AS NECESSARY (If more room is needed, continue in Item 13 or on additional page if necessary.)
e. ADMINISTRATIVE CONTRACTING OFFICER
d. U.S. ACTIVITY RESPONSIBLE FOR OVERSEAS SECURITY ADMINISTRATION
c. COGNIZANT SECURITY OFFICE FOR PRIME AND SUBCONTRACTOR
b. SUBCONTRACTOR
a. CONTRACTOR
DD FORM 254 (BACK), NOV 2017
UNCLASSIFIEDCLASSIFICATION (When filled in):
For collateral:
The Defense Security Service is relieved of security inspection responsibility for contracts on government installations. The Commander retains cognizance over contracts on the installation. SMC/ENX staff is designated as member of the Wing Inspection Team and has inspection authority when assigned under SMC/IG.
------END OF SECTION---
15. INSPECTIONS (Continued)
This contract requires access to Sensitive Compartmented Information (SCI). The following directives/manuals/instructions provide the necessary guidance for physical, personnel, information and information systems security measures and is part of the SCI security specification for the contract.
DoD 5105.21 V1, V2, V3, SCI Administrative Security Manual(s) AFMAN 14-304, Security, Use and Dissemination of SCI ICD 503 - Information Systems ICD and ICPGs 704 - Personnel Security ICD and ICS/Tech Specs 705 - Physical Security DCID 6/9 - Physical Security (for facilities accredited under 6/9 standards) JDCSISSS - Joint DoDIIS Cryptologic SCI Information Systems Security Standards DIAM 50-4 - Defense Intelligence Agency Manual NISPOM Supplement
2. The COR must be a Government employee (military or civilian) who is appropriately cleared and SCI indoctrinated for all accesses required by the contract in order to verify the SCI contract deliverables and validate need-to-know. An alternate COR should be appointed to assist the COR whenever the primary COR is not available. Contact information of the Contract Officer Representative (COR) for the SCI portion of this contract:
14. ADDITIONAL SECURITY REQUIREMENTS (Continued)
3. Contract Completion Date: August 2018 POC for collateral classified information is SMC/LEE
10a. (Communications Security (COMSEC) In addition to the COMSEC requirements identified in the NISPOM the Contractor shall comply with Committee on National Security Systems (CNSS) Policy No. 3, National Policy for Granting Access to U.S. Classified Cryptographic Information and Air Force Manual 17-1302-0, Communications Security (COMSEC) Operations [if on-base contractor]. Personnel requiring COMSEC access shall be briefed IAW DODM 5220.22, CNSSP No. 3, and AFMAN 17-1302-0. For on-base contracts, Prime Contractors must forward requests for COMSEC material/information to the Government COMSEC Custodian through the Contracting Officer. Access to COMSEC material or information is restricted to U.S. citizens holding final U.S. Government clearances and is not releasable to personnel holding only a reciprocal clearance. All contractor employees who require access to classified COMSEC information in the performance of their contractual duties shall be briefed prior to being granted access. The Government Program Manager shall designate the number of Prime Contractor personnel requiring cryptographic access. The number will be limited to the minimum necessary and will be on a strict need-to-know basis. The contractor shall maintain a record of all COMSEC briefings. NACSIM/NACSEM documents are not considered COMSEC controlled material. Prior approval from the Contracting Officer is required in order for a Prime Contractor to grant COMSEC access to a subcontractor.
The Prime Contractor should also notify the National Security Agency (NSA) Central Office of Record (COR) before negotiating or awarding subcontracts. (For Visitor Groups) Contractor will require access to COMSEC information at the on-base locations listed in item 8a. On-base contractors will not require their own COMSEC account. Access will be controlled by 61st Air Base Group (ABG). On-base contractors will protect COMSEC material IAW directives identified by the installation COMSEC Custodian to include Air Force Manual 17-1302-0, Communications Security (COMSEC) Operations. Access to COMSEC material by personnel is restricted to U.S. citizens holding final U.S. Government clearances.
10e.1 (SCI):
See SCI Addendum in Additional Security Requirements
10e.2 (Non-SCI):
The contractor shall handle non-SCI or "collateral" intelligence information IAW Chapter 9, Section 3 of DoD 5220.22-M, National Industrial Security Program Operations Manual (NISPOM), DoDM 5200.01-V1-V3, Information Security Program and AFI 16-1404, Air Force Information Security
13. SECURITY GUIDANCE (Continued)
Pages7of3Continuation PageDD FORM 254, NOV 2017
UNCLASSIFIED
CLASSIFICATION (When filled in): UNCLASSIFIED
CLASSIFICATION (When filled in):
Additional persons assisting with completion of form (signatures and titles)
Primary COR Name: TBD Org: TBD Telephone: TBD Address: 483 N. Aviation Blvd, El Segundo, CA 90245 E-Mail: TBD
3. All DD Form 254s prepared for subcontracts involving access to SCI under this contract must be forwarded to the COR for approval and then to SMC/ INS SSO for review and concurrence prior to award of the subcontract. Inquiries pertaining to classification guidance on SCI will be directed to the COR listed in paragraph 2 above. SCI security management issues shall be directed to:
SMC/INS SSO
483. N. Aviation Blvd.
El Segundo, CA 90245
310-653-4351/4509, DSN 633-4351/4509
Unclassified e-mail: smc.ins.sso@us.af.mil JWICS e-mail: SMC_INS_SSO@af.ic.gov
14. ADDITIONAL SECURITY REQUIREMENTS (Continued)
Program. Particular emphasis is placed on the contractor(s) correctly understanding and heeding intelligence portion markings. As classified material, the contractor shall afford collateral intelligence information the same protections, safeguards, and precautions required by any classified material required by DoDM 5200.01-V1-V3, unless special intelligence related handling instructions are specifically imposed. The contractor shall always obtain prior consent of SMC/IN to the release of intelligence derived information, whether its status is collateral or SCI.
10j. (Controlled Unclassified Information):
Controlled Unclassified Information (CUI) is now the term which collectively refers to FOUO and Unclassified Controlled Nuclear Information (UCNI).
CUI information provided under this contract shall be managed and safeguarded IAW DoDM 5200.01, V4, Controlled Unclassified Information. UCNI is sensitive unclassified information subject to special handling as outlined in DoDD 5210.83, DoD UCNI. The likelihood of your company coming in contact with UCNI is remote. However, if the situation does arise, employees will protect the information in the same manner as FOUO information;
contact the company security office which will in turn, obtain guidance from the cognizant security office (TBD)
11a. (Have Classified Information Only at Another Contractor's Facility or a Government Activity):
Classified material will be handled in accordance with DoDM 5200.01-V1-V3, and the NISPOM.
11c. (Receive and Generate Classified Material):
Classified material will handled in accordance with DoDM 5200.01-V1-V3 and the NISPOM
11d. (Fabricate, Modify, or Store Classified Hardware):
The Contractor is required to provide adequate storage for classified hardware up to and including the level of SECRET. If the hardware is such a size and/ or quantity that it cannot be safeguarded in an approved storage container, use of an approved ‘Closed Area’ will be required
11g. (Be Authorized Use of Services of Defense Technical Information Center (DTIC) or Other Secondary Distribution Center):
The contractor may access information provided by DTIC by complying with all established safeguards and following the registration procedures as set forth in Chapter 11 Section 2 of the NISPOM.
Pages7of4Continuation PageDD FORM 254, NOV 2017
UNCLASSIFIED
CLASSIFICATION (When filled in): UNCLASSIFIED
4. SCI access is subject to U.S. Government review and approval as outlined in the aforementioned SCI security guidance. Upon completion or cancellation of the contract, the SSO/CSSO will debrief all personnel not required for contract closeout and those positions will be disestablished.
5. Names of contractor personnel requiring access to SCI and justification for SCI access will be submitted for coordination and action to SMC/INS SSO after the COR’s approval/concurrence. Upon receipt of written approval from the COR, the Facility Security Officer (FSO) and/or Contractor Special Security Officer (CSSO) may submit the necessary forms to the Defense Security Service (DSS) for a Single Scope Background Investigation (SSBI) for those personnel nominated for SCI in accordance with the National Industrial Security Program Operating Manual (NISPOM).
6. The SSO/CSSO can grant access to only those who possess the necessary security clearance and who are actually providing services under the contract.
Further dissemination to other contractors, subcontractors, other government agencies, private individuals or organizations is prohibited unless authorized in writing by the releasing agency.
7. SCI materials furnished in support of this contract remains the property of the DoD department or command that released it. Upon completion or cancellation of the contract, all SCI materials furnished will be returned to the direct custody of the originator of the materials. The information management system employed by the contractor shall be capable of facilitating such retrieval and disposition in an expeditious manner.
8. Classified foreign intelligence materials must not be released to foreign nationals or immigrant aliens whether or not they are also consultants, U.S.
contractors, or employees of the contractor regardless of the level of their security clearance, except with advance written permission from the originator.
14. ADDITIONAL SECURITY REQUIREMENTS (Continued)
11h. (Require a COMSEC Account):
(On-base contractors) The contractor will be required to establish and maintain a COMSEC user account following the procedures and requirements contained in Committee on National Security Systems (CNSS) Policy No. 3, National Policy for Granting Access to U.S. Classified Cryptographic Information and AFMAN 17-1302-0, Communications Security (COMSEC) Operations, the NISPOM, and installation COMSEC account procedures.
(Off-base contractors) NSA account will be established for and maintained by contractor IAW Committee on National Security Systems (CNSS) Policy No. 3, National Policy for Granting Access to U.S. Classified Cryptographic Information. The Contractor will comply with the additional security requirements and the management of NSA information/material as defined in the manual.
11i. (TEMPEST Requirements):
The contractor shall comply with TEMPEST requirements as directed by the Authorization Official (AO) in addition to having the system assessed and authorized to the necessary confidentiality impact level.
11j. (Operations Security (OPSEC) Requirements):
The contractor shall accomplish the following minimum requirements in support of the User Agency Operations Security (OPSEC) Program.
Compliance with security requirements imposed by documents generated in response to DoDI 5200.39, Critical Program Information (CPI) Identification and Protection Within Research, Development, Test and Evaluation (RDT&E), 28 May 2015, is required. Compliance with OPSEC measures if imposed by programs supported or by documents generated by User Agency Programs may be necessary. OPSEC program shall be IAW DoDM 5205.2, dated 3 November 2008. Program OPSEC plans shall be coordinated with and approved by the User Agency and shall be imposed on subcontractors as appropriate. Program protection measures shall be approved by the User Agency and shall be applied at ALL locations where Critical Information is developed, produced, analyzed, maintained, transported, stored, tested, or used in training.” The contractor shall comply with the User Agency OPSEC Plan, and apply protective measures therein. The contractor shall develop an OPSEC Plan in accordance with DoDM 5205.2. Include OPSEC as a part of their ongoing security awareness program conducted in accordance with Chapter 3, Section 1, of the National Industrial Security Operating Manual. Be responsive to the User Agency OPSEC Manager on a non-interference basis. Protect sensitive unclassified information and activities, which could compromise classified information or operations, or degrade the planning and execution of military operations performed by the contractor in support of
13. SECURITY GUIDANCE (Continued)
Pages7of5Continuation PageDD FORM 254, NOV 2017
UNCLASSIFIED
CLASSIFICATION (When filled in): UNCLASSIFIED
9. Contractor personnel must maintain accountability for all intelligence (to include foreign intelligence) materials released to their custody.
10. Contractor personnel must not reproduce classified foreign intelligence without advance approval of the releasing agency. If permission is granted, each copy will be controlled in the same manner as the original. The CSSO must not destroy any classified foreign intelligence without advance approval of the releasing agency.
11. SCIF is not required
11.3. Contact information for FSO/CSSO:
Primary FSO/CSSO Name: TBD Telephone: TBD E-Mail: TBD
12. Visits. The contractor will submit the written request for SCI visit certifications through the COR for approval of the visit. The certification must arrive at their servicing SSO (SMC/INS SSO) at least five business days prior to the visit.
14. ADDITIONAL SECURITY REQUIREMENTS (Continued) the mission. Sensitive unclassified information is that Information marked FOR OFFICIAL USE ONLY (FOUO), Privacy Act (PA) Of 1974, COMPANY PROPRIETARY, and as identified by the Air Force Program Office and the SMC/ENX OPSEC Program Manager. Disposition of Critical Information, FOUO, and PA obtained or produced pursuant to this contract shall be shredded/degaussed to prevent reconstruction. Email transmission of Critical Information, FOUO, and PA obtained or produced pursuant to this contract will be encrypted or password protected. In addition, email containing FOUO and PA shall be marked in the subject line with (FOUO) or (PA). FOUO shall also be included at the beginning of the email with a non-disclosure statement.
11k. (Authorized Use of Defense Courier Service):
The Contractor shall comply with NISPOM for authorized use of Defense Courier Services and obtain GCA authorization as required.
11l. (Receive, Store, or Generate Controlled Unclassified Information (CUI)):
Protection of Unclassified DoD Information on Non-Government Information Systems - The contractor must comply with the information safeguards as specified in DoDI 8582.01, Security of Unclassified DoD Information on Non-DoD Information Systems, CNSSP No. 18, National Policy on Classified Information Spillage, Chairman of the Joint Chief's of Staff Instruction (CJCSI) 6510.01, Information Assurance and Support to Computer Network Defense (CND), and AF Manual 17-1301, Computer Security.
NIST SP 800-171 provides guidance for identification and protection of CUI on non-federal information systems. Apply security controls contained in NIST SP 800-53 for the protection of CUI and UCTI on non-DoD information systems. CUI information will not be placed on publicly accessible web sites. The contractor shall comply with DFAR Clauses related to the Disclosure of Information (DFAR 252.204-7000), Safeguarding Covered Defense Information and Cyber Incident Report (DFARs 252.204-7012 and DFAR Subpart 204.73) for the protection of unclassified controlled technical information.
Definitions:
Adequate Security – Security commensurate with the risk and the magnitude of harm resulting from the loss, misuse, or unauthorized access to or modification of information (see OMB Circular A-130). Current means of achieving adequate security for Information Technology is to use DoD, CNSS and NIST guidance (see CNSSI No. 4009).
13. SECURITY GUIDANCE (Continued)
Pages7of6Continuation PageDD FORM 254, NOV 2017
UNCLASSIFIED
CLASSIFICATION (When filled in): UNCLASSIFIED
13. Information assurance and electronic processing; information security (computer) and network connectivity require accreditation of the equipment connectivity. If JWICS accounts are required, it must be identified in Block 11L (JWICS must be stated, not just a blanket statement of access to government AISs). If JWICS connectivity at a contractor site is required, the statement of work or statement of objectives must specify a continual ongoing requirement for access that cannot utilize other means of information transmission or exchange, and it must be annotated in Block 11L of the
DD254.
14. Reference Block 15. This contract requires access to SCI. If the Contractor has established a SCIF, DIA and its designees are responsible for all inspections of the contractor SCIF and SCI security management program for ensuring compliance with all SCI security regulations and policies. If a new SCIF must be established in accordance with this contracting effort, permission to build/accredit a SCIF must be requested through the COR and forwarded to the SSO. Special Security Officers reserve the right to conduct program reviews of AF SCI materials and SCI program management to ensure the protection of AF equities.
15. Contract estimated completion date: TBD Period of Performance (Base): TBD Option Years: TBD ----END OF SECTION----
14. ADDITIONAL SECURITY REQUIREMENTS (Continued)
Non-Sensitive Information -- Information available in the public domain or DoD information that has been approved for public release.
Sensitive Information -- Information, the loss, misuse, or unauthorized access to or modification of, could adversely affect the national interest or the conduct of Federal programs, or the privacy to which individuals are entitled under Section 552a of title 5, United States Code, "The Privacy Act" but which has not been specifically authorized under criteria established by Executive order or an Act of Congress to be kept secret in the interest of national defense or foreign policy.
11m. (Other):
Security Incident Reporting:
In addition to the reporting requirements directed by the NISPOM, the contractor shall provide a concurrent report of loss or compromise of classified information to the cognizant Government Contracting Activity (GCA), Government Information System Security Manager (ISSM), SMC/LE Security, and Authorization Official (AO).
Have Export Control Requirements Technology Transfer and Information Control and Arms Export Control: By law, the U.S. Government and contractors must comply with the provisions of the International Traffic in Arms Regulations (ITAR) and the Arms Control Act before exporting defense articles, technical data, or defense services controlled by the ITAR. All such information intended for public release, or disclosure to any foreign person or U.S. person residing in a foreign country shall be submitted to SMC/ENX Foreign Disclosure Office (FDO), through the appropriate Foreign Disclosure Focal Point (FCFP), for potential technology transfer and suitability for the release of technical information Unauthorized Disclosure: Government and contractor personnel must act to protect Technical Program design, development, or manufacturing data under their control from unauthorized disclosure to any foreign person or a U.S. person residing in a foreign country. Government and contractor organization must inform the U.S. State Department under the provision of the ITAR regarding any unauthorized disclosure.
-----END OF SECTION----
Pages7of7Continuation PageDD FORM 254, NOV 2017
UNCLASSIFIED
CLASSIFICATION (When filled in): UNCLASSIFIED
CLASSIFICATION (When filled in):
Additional persons assisting with completion of form (signatures and titles)
Security Manager
SMC/LEE
Acquisition Security Specialist
SMC/ENX
Special Security Office
SMC/INS SSO
(Please read Instructions BEFORE completing this application.) (The requirements of the National Industrial Security Program (NISP) apply to all security aspects of this effort involving classified information.)
OMB No. 0704-0567
OMB approval expires
October 31, 2020
The public reporting burden for this collection of information, 0704-0567, is estimated to average 70 minutes per response, including the time for reviewing instructions, searching existing data sources, gathering and maintaining the data needed, and completing and reviewing the collection of information. Send comments regarding this burden estimate or any other aspect of this collection of information, including suggestions for reducing the burden, to the Department of Defense, Washington Headquarters Services, at whs.mc-alex.esd.mbx.dd-dod-information-collections@mail.mil. Respondents should be aware that notwithstanding any other provision of law, no person shall be subject to any penalty for failing to comply with a collection of information if it does not display a currently valid OMB control number.
RETURN COMPLETED FORM AS DIRECTED IN THE INSTRUCTIONS.
1. CLEARANCE AND SAFEGUARDING
2. THIS SPECIFICATION IS FOR: (X and complete as applicable.) 3. THIS SPECIFICATION IS: (X and complete as applicable.)
a. LEVEL OF FACILITY SECURITY CLEARANCE (FCL) REQUIRED (See instructions.)
b. LEVEL OF SAFEGUARDING FOR CLASSIFIED INFORMATION/MATERIAL
REQUIRED AT CONTRACTOR FACILITY
Top Secret None (See instructions)
DUE DATE (YYYYMMDD)
FA8811-18-R-0001
c. SOLICITATION OR OTHER NUMBER
b. SUBCONTRACT NUMBER
a. PRIME CONTRACT NUMBER (See instructions.)
DATE (YYYYMMDD)
c. FINAL (Complete Item 5 in all cases.)
DATE (YYYYMMDD)REVISION NO.b. REVISED (Supersedes all previous specifications.)
20180131
DATE (YYYYMMDD)
a. ORIGINAL (Complete date in all cases.)
(Preceding Contract Number) is transferred to this follow-on contract. Classified material received or generated under
YES. If Yes, complete the following:NO4. IS THIS A FOLLOW-ON CONTRACT?
, retention of the classified material is authorized for the period of: In response to the contractor's request dated
YES. If Yes, complete the following:NO5. IS THIS A FINAL DD FORM 254?
TBD
c. COGNIZANT SECURITY OFFICE (CSO) (Name, Address, ZIP Code, Telephone)
TBD
b. CAGE CODE
TBD
a. NAME, ADDRESS, AND ZIP CODE
6. CONTRACTOR (Include Commercial and Government Entity (CAGE) Code.)
N/A
c. COGNIZANT SECURITY OFFICE(S) (CSOs) (Name, Address, ZIP Code, Telephone)
N/A
b. CAGE CODE
N/A
a. NAME, ADDRESS, AND ZIP CODE
7. SUBCONTRACTOR(S) (Click button to add more subcontractors.)
TBD
c. COGNIZANT SECURITY OFFICE(S) (CSOs) (Name, Address, ZIP Code, Telephone) (If applicable, see instructions.)
TBD
b. CAGE CODE (If applicable, see instructions.)
TBD
a. LOCATION(S) (For actual performance, see instructions.)
8. ACTUAL PERFORMANCE (Click button to add more locations.)
The Evolved Expendable Launch Vehicle (EELV) Phase 1A procurement allows the Air Force to procure the necessary equipment and services in order to reliably launch National Security Space (NSS) space vehicles, placing payloads into their appropriate earth orbit. This DD254 covers the contract security classification specification requirements for the Phase 1A NROL-87 mission
9. GENERAL UNCLASSIFIED DESCRIPTION OF THIS PROCUREMENT (Click here if more space is needed.)
10. CONTRACTOR WILL REQUIRE ACCESS TO: (X all that apply. Provide details in Blocks 13 or 14 as set forth in the instructions.)
a. COMMUNICATIONS SECURITY (COMSEC) INFORMATION
d. FORMERLY RESTRICTED DATA
c. CRITICAL NUCLEAR WEAPON DESIGN INFORMATION (CNWDI) (If CNWDI applies, RESTRICTED DATA must also be marked.)
b. RESTRICTED DATA
e. NATIONAL INTELLIGENCE INFORMATION:
f. SPECIAL ACCESS PROGRAM (SAP) INFORMATION
k. OTHER (Specify) (See instructions.)
j. CONTROLLED UNCLASSIFIED INFORMATION (CUI) (See instructions.)
i. ALTERNATIVE COMPENSATORY CONTROL MEASURES (ACCM)
INFORMATION
h. FOREIGN GOVERMENT INFORMATION
g. NORTH ATLANTIC TREATY ORGANIZATION (NATO) INFORMATION
DD FORM 254, NOV 2017 PREVIOUS EDITION IS OBSOLETE. Adobe LiveCycle Designer ES4
CLASSIFICATION (When filled in):
UNCLASSIFIEDCLASSIFICATION (When filled in):
UNCLASSIFIED
11. IN PERFORMING THIS CONTRACT, THE CONTRACTOR WILL: (X all that apply. See instructions. Provide details in Blocks 13 or 14 as set forth in the instructions.)
CONTRACTOR'S FACILITY OR A GOVERNMENT ACTIVITY (Applicable only if there is no access or storage required at contractor facility. See instructions.)
h. REQUIRE A COMSEC ACCOUNT
k. BE AUTHORIZED TO USE THE DEFENSE COURIER SERVICE (DCS)
j. HAVE OPERATIONS SECURITY (OPSEC) REQUIREMENTS
i. HAVE A TEMPEST REQUIREMENT
b. RECEIVE AND STORE CLASSIFIED DOCUMENTS ONLY
c. RECEIVE, STORE, AND GENERATE CLASSIFIED INFORMATION OR
MATERIAL
f. HAVE ACCESS TO U.S. CLASSIFIED INFORMATION OUTSIDE THE U.S., PUERTO RICO, U.S. POSSESSIONS AND TRUST TERRITORIES
g. BE AUTHORIZED TO USE THE SERVICES OF DEFENSE TECHNICAL
INFORMATION CENTER (DTIC) OR OTHER SECONDARY DISTRIBUTION
CENTER
e. PERFORM SERVICES ONLY
d. FABRICATE, MODIFY, OR STORE CLASSIFIED HARDWARE l. RECEIVE, STORE, OR GENERATE CONTROLLED UNCLASSIFIED
INFORMATION (CUI).
(DoD Components: refer to DoDM 5200.01, Volume 4 only for specific CUI protection requirements. Non-DoD Components: see instructions.)
See Continuation Pages
m. OTHER (Specify) (See instructions)
12. PUBLIC RELEASE. Any information (classified or unclassified) pertaining to this contract shall not be released for public dissemination except as provided by the National Industrial Security Program Operating Manual (NISPOM) or unless it has been approved for public release by appropriate U.S. Government authority. Proposed public releases shall be submitted for review and approval prior to release to the appropriate government approval authority identified here with at least office and phone contact information and if available, an e-mail address.
(See instructions)
DIRECT
SMC (ATTN: SMC/LE)
483 N. Aviation Blvd, El Segundo, CA 90245
SMC (ATTN: SMC/PA)
483 N. Aviation Blvd, El Segundo, CA 90245
THROUGH (Specify) PUBLIC RELEASE AUTHORITY:
13. SECURITY GUIDANCE. The security classification guidance for classified information needed for this effort is identified below. If any difficulty is encountered in applying this guidance or if any other contributing factor indicates a need for changes in this guidance, the contractor is authorized and encouraged to provide recommended changes;
to challenge the guidance or the classification assigned to any information or material furnished or generated under this contract; and to submit any questions for interpretation of this guidance to the official identified below. Pending final decision, the information involved shall be handled and protected at the highest level of classification assigned or recommended. (Fill in as appropriate for the classified effort. Attach, or forward under separate correspondence, any documents/guides/extracts referenced herein. Click button to add additional pages as needed to provide complete guidance.)
1. The contractor shall protect Critical Program Information (CPI), technologies, security documents and systems as identified in the applicable Program Protection Plan (PPP) as well as identified in the contractor's Program Protection Implementation Plan (PPIP), as approved by the program office. The prime contractor will flow-down applicable CPI to any subcontractors with protection requirements as identified in its PPIP. Individual Space Vehicle classification guidance for launch services provided under this effort are contained in the following, all of which have been transmitted to the contractor, and are available in the EELV Program Office.
2. Current NAVSTAR Global Positioning System Protection Guide and any revisions. Appendices A-E to SPG are not applicable to the EELV contractor - Unclassified/FOUO. Current EELV PPP & SCG and any revisions- Unclassified/FOUO. See Continuation Pages
14. ADDITIONAL SECURITY REQUIREMENTS. Requirements, in addition to NISPOM requirements for classified information, are established for this contract.
YesNo (If Yes, identify the pertinent contractual clauses in the contract document itself, or provide an appropriate statement which identifies the additional requirements. Provide a copy of the requirements to the CSO. Use Item 13 or click button if additional space is needed.)
15. INSPECTIONS. Elements of this contract are outside the inspection responsibility of the CSO.
(If Yes, explain and identify specific areas and government activity responsible for inspections. Click button or use Item 13 if additional space is needed.)
YesNo
The Defense Security Service is relieved of security inspection responsibility for contract activities performed on military installations; the program office directorate and applicable location specific security offices will retain security cognizance over contractor operations located on military department installations/jurisdiction. See SCI addendum V2 for additional guidance.
See Continuation Pages
310-653-3537
e. POC TELEPHONE (Include Area Code.)
ashley.cunningham.4@us.af.mil
f. EMAIL ADDRESS (See instructions.)
b. ACTIVITY ADDRESS CODE (AAC) OF THE CONTRACTING OFFICE (See instructions.)
d. AAC OF THE CONTRACTING OFFICE (See instructions.)
e. CAGE CODE OF THE PRIME CONTRACTOR (See instructions.)
Capt Ashley Cunningham
d. POC NAME (See instructions.)
483 N. Aviation Blvd El Segundo, CA 90245
c. ADDRESS (Include ZIP Code.)
SMC/LEK
a. GCA NAME
16. GOVERNMENT CONTRACTING ACTIVITY (GCA) AND POINT OF CONTACT (POC)
18. REQUIRED DISTRIBUTION BY THE CERTIFYING OFFICIAL
17. CERTIFICATION AND SIGNATURES. Security requirements stated herein are complete and adequate for safeguarding the classified information to be released or generated under this classified effort. All questions shall be referred to the official named below.
a. TYPED NAME OF CERTIFYING OFFICIAL (Last, First, Middle Initial) (See instructions.)
Cunningham, Ashley, M
310-653-3537
f. TELEPHONE (Include Area Code.)
ashley.cunningham.4@us.af.mil
g. EMAIL ADDRESS (See instructions.) i. SIGNATUREh. DATE
Contracting Officer
b. TITLE 483 N. Aviation Blvd El Segundo, CA 90245
c. ADDRESS (Include ZIP Code.)
SMC/ENX, SMC/INS SSO
f. OTHERS AS NECESSARY (If more room is needed, continue in Item 13 or on additional page if necessary.)
e. ADMINISTRATIVE CONTRACTING OFFICER
d. U.S. ACTIVITY RESPONSIBLE FOR OVERSEAS SECURITY ADMINISTRATION
c. COGNIZANT SECURITY OFFICE FOR PRIME AND SUBCONTRACTOR
b. SUBCONTRACTOR
a. CONTRACTOR
DD FORM 254 (BACK), NOV 2017
The Defense Security Service is relieved of security inspection responsibility for contracts on government installations. The Commander retains cognizance over contracts on the installation. SMC/ENX staff is designated as member of the Wing Inspection Team and has inspection authority when
This contract requires access to Sensitive Compartmented Information (SCI). The following directives/manuals/instructions provide the necessary guidance for physical, personnel, information and information systems security measures and is part of the SCI security specification for the contract.
DoD 5105.21 V1, V2, V3, SCI Administrative Security Manual(s) AFMAN 14-304, Security, Use and Dissemination of SCI ICD 503 - Information Systems ICD and ICPGs 704 - Personnel Security ICD and ICS/Tech Specs 705 - Physical Security DCID 6/9 - Physical Security (for facilities accredited under 6/9 standards) JDCSISSS - Joint DoDIIS Cryptologic SCI Information Systems Security Standards DIAM 50-4 - Defense Intelligence Agency Manual NISPOM Supplement
2. The COR must be a Government employee (military or civilian) who is appropriately cleared and SCI indoctrinated for all accesses required by the contract in order to verify the SCI contract deliverables and validate need-to-know. An alternate COR should be appointed to assist the COR whenever the primary COR is not available. Contact information of the Contract Officer Representative (COR) for the SCI portion of this contract:
14. ADDITIONAL SECURITY REQUIREMENTS (Continued)
3. Contract Completion Date: August 2018 POC for collateral classified information is SMC/LEE
10a. (Communications Security (COMSEC) In addition to the COMSEC requirements identified in the NISPOM the Contractor shall comply with Committee on National Security Systems (CNSS) Policy No. 3, National Policy for Granting Access to U.S. Classified Cryptographic Information and Air Force Manual 17-1302-0, Communications Security (COMSEC) Operations [if on-base contractor]. Personnel requiring COMSEC access shall be briefed IAW DODM 5220.22, CNSSP No. 3, and AFMAN 17-1302-0. For on-base contracts, Prime Contractors must forward requests for COMSEC material/information to the Government COMSEC Custodian through the Contracting Officer. Access to COMSEC material or information is restricted to U.S. citizens holding final U.S. Government clearances and is not releasable to personnel holding only a reciprocal clearance. All contractor employees who require access to classified COMSEC information in the performance of their contractual duties shall be briefed prior to being granted access. The Government Program Manager shall designate the number of Prime Contractor personnel requiring cryptographic access. The number will be limited to the minimum necessary and will be on a strict need-to-know basis. The contractor shall maintain a record of all COMSEC briefings. NACSIM/NACSEM documents are not considered COMSEC controlled material. Prior approval from the Contracting Officer is required in order for a Prime Contractor to grant COMSEC access to a subcontractor.
The Prime Contractor should also notify the National Security Agency (NSA) Central Office of Record (COR) before negotiating or awarding subcontracts. (For Visitor Groups) Contractor will require access to COMSEC information at the on-base locations listed in item 8a. On-base contractors will not require their own COMSEC account. Access will be controlled by 61st Air Base Group (ABG). On-base contractors will protect COMSEC material IAW directives identified by the installation COMSEC Custodian to include Air Force Manual 17-1302-0, Communications Security (COMSEC) Operations. Access to COMSEC material by personnel is restricted to U.S. citizens holding final U.S. Government clearances.
10e.1 (SCI):
See SCI Addendum in Additional Security Requirements
10e.2 (Non-SCI):
The contractor shall handle non-SCI or "collateral" intelligence information IAW Chapter 9, Section 3 of DoD 5220.22-M, National Industrial Security Program Operations Manual (NISPOM), DoDM 5200.01-V1-V3, Information Security Program and AFI 16-1404, Air Force Information Security
UNCLASSIFIED
CLASSIFICATION (When filled in): UNCLASSIFIED
Name: TBD Org: TBD Telephone: TBD Address: 483 N. Aviation Blvd, El Segundo, CA 90245 E-Mail: TBD
3. All DD Form 254s prepared for subcontracts involving access to SCI under this contract must be forwarded to the COR for approval and then to SMC/ INS SSO for review and concurrence prior to award of the subcontract. Inquiries pertaining to classification guidance on SCI will be directed to the COR listed in paragraph 2 above. SCI security management issues shall be directed to:
SMC/INS SSO
483. N. Aviation Blvd.
El Segundo, CA 90245
310-653-4351/4509, DSN 633-4351/4509
Unclassified e-mail: smc.ins.sso@us.af.mil JWICS e-mail: SMC_INS_SSO@af.ic.gov
14. ADDITIONAL SECURITY REQUIREMENTS (Continued)
Program. Particular emphasis is placed on the contractor(s) correctly understanding and heeding intelligence portion markings. As classified material, the contractor shall afford collateral intelligence information the same protections, safeguards, and precautions required by any classified material required by DoDM 5200.01-V1-V3, unless special intelligence related handling instructions are specifically imposed. The contractor shall always obtain prior consent of SMC/IN to the release of intelligence derived information, whether its status is collateral or SCI.
10j. (Controlled Unclassified Information):
Controlled Unclassified Information (CUI) is now the term which collectively refers to FOUO and Unclassified Controlled Nuclear Information (UCNI).
CUI information provided under this contract shall be managed and safeguarded IAW DoDM 5200.01, V4, Controlled Unclassified Information. UCNI is sensitive unclassified information subject to special handling as outlined in DoDD 5210.83, DoD UCNI. The likelihood of your company coming in contact with UCNI is remote. However, if the situation does arise, employees will protect the information in the same manner as FOUO information;
contact the company security office which will in turn, obtain guidance from the cognizant security office (TBD)
11a. (Have Classified Information Only at Another Contractor's Facility or a Government Activity):
Classified material will be handled in accordance with DoDM 5200.01-V1-V3, and the NISPOM.
11c. (Receive and Generate Classified Material):
Classified material will handled in accordance with DoDM 5200.01-V1-V3 and the NISPOM
11d. (Fabricate, Modify, or Store Classified Hardware):
The Contractor is required to provide adequate storage for classified hardware up to and including the level of SECRET. If the hardware is such a size and/ or quantity that it cannot be safeguarded in an approved storage container, use of an approved ‘Closed Area’ will be required
11g. (Be Authorized Use of Services of Defense Technical Information Center (DTIC) or Other Secondary Distribution Center):
The contractor may access information provided by DTIC by complying with all established safeguards and following the registration procedures as set
UNCLASSIFIED
CLASSIFICATION (When filled in): UNCLASSIFIED
4. SCI access is subject to U.S. Government review and approval as outlined in the aforementioned SCI security guidance. Upon completion or cancellation of the contract, the SSO/CSSO will debrief all personnel not required for contract closeout and those positions will be disestablished.
5. Names of contractor personnel requiring access to SCI and justification for SCI access will be submitted for coordination and action to SMC/INS SSO after the COR’s approval/concurrence. Upon receipt of written approval from the COR, the Facility Security Officer (FSO) and/or Contractor Special Security Officer (CSSO) may submit the necessary forms to the Defense Security Service (DSS) for a Single Scope Background Investigation (SSBI) for those personnel nominated for SCI in accordance with the National Industrial Security Program Operating Manual (NISPOM).
6. The SSO/CSSO can grant access to only those who possess the necessary security clearance and who are actually providing services under the contract.
Further dissemination to other contractors, subcontractors, other government agencies, private individuals or organizations is prohibited unless authorized in writing by the releasing agency.
7. SCI materials furnished in support of this contract remains the property of the DoD department or command that released it. Upon completion or cancellation of the contract, all SCI materials furnished will be returned to the direct custody of the originator of the materials. The information management system employed by the contractor shall be capable of facilitating such retrieval and disposition in an expeditious manner.
8. Classified foreign intelligence materials must not be released to foreign nationals or immigrant aliens whether or not they are also consultants, U.S.
contractors, or employees of the contractor regardless of the level of their security clearance, except with advance written permission from the originator.
14. ADDITIONAL SECURITY REQUIREMENTS (Continued)
11h. (Require a COMSEC Account):
(On-bas…
This is the start of the file's text. The full file is on GovTribe.
File details come from the government source that posted it.