Addenda_03_-_DD254.pdf

PDF 310 KB Posted

Attached to
Standard Accounting Budgeting Reporting System (SABRS) migration support Federal contract opportunity
Solicitation number
H92240-18-T-0002
Issued by
United States Special Operations Command

About this file

Addenda 03 - DD254

View the file

Other files for this federal contract opportunity

Other files attached to Standard Accounting Budgeting Reporting System (SABRS) migration support, newest first.
File Type Posted
H92240-18-T-0002.pdf PDF
Addenda_01_-_PERFORMANCE_WORK_STATEMENT.pdf PDF
Addenda_02_-_Price_Evaluation_Spreadsheet.xlsx XLSX spreadsheet

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

DEPARTMENT OF DEFENSE 1. CLEARANCE AND SAFEGUARDING

CONTRACT SECURITY CLASSIFICATION SPECIFICATION a. FACILITY CLEARANCE REQUIRED

SECRET

(The requirements of the DoD Industrial Security Manual apply to all security aspects of this effort.)

b. LEVEL OF SAFEGUARDING REQUIRED

NONE

2. THIS SPECIFICATION IS FOR: (X and complete as applicable) 3. THIS SPECIFICATION IS: (X and complete as applicable)

a. PRIME AGREEMENT NUMBER X

a. ORIGINAL (Complete date in all cases)

DATE (YYYYMMDD)

20171025

b. SUBCONTRACT NUMBER

b. REVISED (Supersedes all previous specs)

c. SOLICITATION OR OTHER NUMBER H92240-18-T-0002

DUE DATE (YYYYMMDD)

TBD

c. FINAL (Complete Item 5 in all cases)

DATE (YYYYMMDD)

4. IS THIS A FOLLOW-ON CONTRACT? YES NO. If Yes, complete the following:

Classified material received or generated under (Preceding Contract Number) is transferred to this follow-on contract.

5. IS THIS A FINAL DD FORM 254? YES NO. If Yes, complete the following:

In response to the contractor’s request dated N/A , retention of the classified material is authorized for the period of N/A

6. CONTRACTOR (Include Commercial and Government Entity (CAGE) Code)

a. NAME, ADDRESS, AND ZIP CODE

THIS DD 254 IS FOR SOLICITATION PURPOSES ONLY. AN

ORIGINAL DD 254 WILL BE PROVIDED UPON CONTRACT

AWARD.

b. CAGE CODE

c. COGNIZANT SECURITY OFFICE (Name, Address, and Zip)

7. SUBCONTRACTOR

a. NAME, ADDRESS, AND ZIP CODE

c. COGNIZANT SECURITY OFFICE (Name, Address, and Zip)

8. ACTUAL PERFORMANCE

a. LOCATION

SEE PAGE 3

N/A

c. COGNIZANT SECURITY OFFICE (Name, Address, and Zip)

SEE PAGE 3

9. GENERAL IDENTIFICATION OF THIS PROCUREMENT

CONTRACTOR SHALL PROVIDE THE PERSONNEL, MANAGEMENT, MATERIALS, AND EQUIPMENT NECESSARY TO ENSURE NSWC HAS A

SUCCESSFUL POST-MIGRATION SUPPORT FOR SABRS.

PERIOD OF PERFORMANCE: 08 JANUARY 2018 THROUGH 07 JANUARY 2019.

10. CONTRACTOR WILL REQUIRE ACCESS TO: YES NO 11. IN PERFORMING THIS CONTRACT, THE CONTRACTOR WILL: YES NO

a. COMMUNICATIONS SECURITY (COMSEC) INFORMATION X a. HAVE ACCESS TO CLASSIFIED INFORMATION ONLY AT ANOTHER

CONTRACTOR’S FACILITY OR A GOVERNMENT ACTIVITY

X

b. RESTRICTED DATA X b. RECEIVE CLASSIFIED DOCUMENTS ONLY X

c. CRITICAL NUCLEAR WEAPON DESIGN INFORMATION X c. RECEIVE AND GENERATE CLASSIFIED MATERIAL X

d. FORMERLY RESTRICTED DATA X d. FABRICATE, MODIFY, OR STORE CLASSIFIED HARDWARE X

e. INTELLIGENCE INFORMATION: e. PERFORM SERVICES ONLY X

(1) Sensitive Compartmented Information (SCI) X f. HAVE ACCESS TO U.S. CLASSIFIED INFORMATION OUTSIDE THE U.S., PUERTO

RICO, U.S. POSSESSIONS AND TRUST TERRITORIES

X

(2) Non-SCI X g. BE AUTHORIZED TO USE THE SERVICES OF DEFENSE TECHNICAL INFORMATION

CENTER (DTIC) OR OTHER SECONDARY DISTRIBUTION CENTER

X

f. SPECIAL ACCESS INFORMATION X h. REQUIRE A COMSEC ACCOUNT X

g. NATO INFORMATION X i. HAVE TEMPEST REQUIREMENTS X

h. FOREIGN GOVERNMENT INFORMATION X j. HAVE OPERATIONS SECURITY (OPSEC) REQUIREMENTS X

i. LIMITED DISSEMINATION INFORMATION X k. BE AUTHORIZED TO USE THE DEFENSE COURIER SERVICE X

j. FOR OFFICIAL USE ONLY INFORMATION IAW DOD 5400.7-R X l. OTHER (Specify)

ACCESS TO ALL COMNAVSPECWARCOM FACILITIES

REQUIRES CONTRACTORS TO POSSESS A MINIMUM OF A

SECRET CLEARANCE.

X

k. OTHER (Specify)

ACCESS TO NIPRNET/SIPRNET/ACCM AT

GOVERNMENT FACILITIES

DD FORM 254, DEC 1999 PREVIOUS EDITION IS OBSOLETE WARCOM (O/P) 5500/3 (REV. 6-2006)

SOLICITATION NUMBER: H92240-18-T-0002

12. PUBLIC RELEASE. Any information (classified or unclassified) pertaining to this contract shall not be released for public dissemination except as provided by the Industrial Security Manual or unless it has been approved for public release by appropriate U.S. Government authority. Proposed public releases shall be submitted for approval prior to release Direct Through (Specify):

REQUESTS MUST BE FORWARDED THROUGH THE CERTIFYING OFFICIAL (BLOCK 16), NAVSPECWARCOM OFFICE OF PUBLIC AFFAIRS

AND THE CONTRACTING OFFICER.

To the Directorate for Freedom of Information and Security Review, Office of the Assistant Secretary of Defense (Public Affairs)* for review.

* In the case of non-DoD User Agencies, requests for disclosure shall be submitted to that agency.

13. SECURITY GUIDANCE. The security classification guidance needed for this classified effort is identified below. If any difficulty is encountered in applying this guidance or if any other contributing factor indicates a need for changes in this guidance, the contractor is authorized and encouraged to provide recommended changes; to challenge the guidance or the classification assigned to any information or material furnished or generated under this contract; and to submit any questions for interpretation of this guidance to the official identified below. Pending final decision, the information involved shall be handled and protected at the highest level of classification assigned or recommended. (Fill in as appropriate for the classified effort. Attach, or forward under separate correspondence, any documents/guides/extracts referenced herein. Add additional pages as needed to provide complete guidance.)

WHILE PERFORMING DUTIES WITHIN HQ USSOCOM, JSOC, AFSOC, NSWC, MARSOC, OR USASOC OWNED AND OR OPERATED LOCATIONS/FACILITIES, THE CONTRACTOR MUST ALSO ADHERE TO ALL SERVICE/COMPONENT COMMAND/LOCAL SECURITY DIRECTIVES, REGULATIONS, AND STANDARD OPERATING PROCEDURES AT DIFFERENT CONTRACT PERFORMANCE LOCATIONS.

UPON COMPLETION OR TERMINATION OF THIS CLASSIFIED CONTRACT, OR SOONER WHEN THE PURPOSE OF RELEASE HAS BEEN SERVED, THE CONTRACTOR SHALL RETURN ALL CLASSIFIED INFORMATION (FURNISHED OR GENERATED) TO THE SOURCE FROM WHICH RECEIVED UNLESS RETENTION OR OTHER DISPOSITION INSTRUCTIONS ARE AUTHORIZED IN WRITING BY THE USSOCOM GOVERNMENT CONTRACTING AGENCY/ACTIVITY. THE CONTRACTOR SHALL ACCOUNT FOR AND RETURN TO THE APPROPRIATE ISSUING OFFICE, ALL IDENTIFICATION BADGES AND/OR ENTRY PASSES/VEHICLE DECALS ISSUED TO CONTRACTOR PERSONNEL UPON COMPLETION OR TERMINATION OF THE CLASSIFIED CONTRACT, TERMINATION OF EMPLOYMENT, OR SUSPENSION OF

CLASSIFIED CLEARANCE OR ACCESS OF ANY CONTRACTOR EMPLOYEE.

ALL CLASSIFIED INFORMATION/HARDWARE DEVELOPED WILL BE CLASSIFIED PURSUANT TO DERIVATIVE CLASSIFICATION PROCEDURES OR AS ANY APPLICABLE CLASSIFICATION GUIDE SO DICTATES (NISPOM CHAPT 4, SECT 2) AND EXECUTIVE ORDER 13526 DTD 5 JAN 2010, OR AS AMENDED. ALL APPLICABLE CLASSIFICATION GUIDES WILL BE IDENTIFIED AND MADE AVAILABLE BY THE

PROGRAM MANAGER/COR LOCATED IN BLOCK 16.

SEE CONTINUATION PAGE

MICHAEL ALVAREZ, CSM/DEPUTY SSO

NAVAL SPECIAL WARFARE COMMAND

2000 TRIDENT WAY, BLDG 624

SAN DIEGO, CA 92155-5599

14. ADDITIONAL SECURITY REQUIREMENTS. Requirements, in addition to ISM requirements, are established for this contract. YES NO (If Yes, identify the pertinent contractual clauses in the contract document itself, or provide an appropriate statement that identifies the additional requirements. Provide a copy of the requirements to the cognizant security office. Use Item 13 if additional space is needed.)

SEE CONTINUATION

15. INSPECTIONS. Elements of this contract are outside the inspection responsibility of the cognizant security office. YES NO (If Yes, explain and identify specific areas or elements carved out and the activity responsible for inspections. Use Item 13 if additional space is needed.)

SEE CONTINUATION

16. CERTIFICATION AND SIGNATURE. Security requirements stated herein are complete and adequate for safeguarding the classified information to be released or generated under this classified effort. All questions shall be referred to the official named below.

a. TYPED NAME OF CERTIFYING OFFICIAL

DAVID HAHN

b. TITLE

CONTRACT OFFICER’S REPRESENTATIVE

c. TELEPHONE (Include Area Code) 757-763-4097

d. ADDRESS (Include Zip Code)

NAVAL SPECIAL WARFARE COMMAND

2000 TRIDENT WAY, BLDG 624

SAN DIEGO, CA 92155-5583

17. REQUIRED DISTRIBUTION

a. CONTRACTOR

b. SUBCONTRACTOR

c. COGNIZANT SECURITY OFFICE FOR PRIME AND SUBCONTRACTOR

e. SIGNATURE d. U.S. ACTIVITY RESPONSIBLE FOR OVERSEAS SECURITY ADMINISTRATION

e. ADMINISTRATIVE CONTRACTING OFFICER CODE

f. OTHERS AS NECESSARY

DD FORM 254 (BACK), DEC 1999 WARCOM (O/P) 5500/3 (REV. 6-2006) (BACK)

BLOCK 8 CONTINUATION: PAGE 3 OF 5

ACTUAL PERFORMANCE COGNIZANT SECURITY OFFICE

1. NAVAL SPECIAL WARFARE COMMAND US SPECIAL OPERATIONS COMMAND

2000 TRIDENT WAY, BLDG 624 7701 TAMPA POINT BLVD

SAN DIEGO, CA 92155 MACDILL AFB, FL 33621

2. NAVAL SPECIAL WARFARE DEVELOPMENT GROUP NAVAL SPECIAL WARFARE COMMAND

1636 RAGULUS AVE 2000 TRIDENT WAY, BLDG 624

VIRGINIA BEACH, VA 23454 SAN DIEGO, CA 92155

3. NAVAL SPECIAL WARFARE GROUP TWO NAVAL SPECIAL WARFARE COMMAND

1300 HELICOPTER ROAD, BLDG 3854 2000 TRIDENT WAY, BLDG 624

VIRGINIA BEACH, VA 23459 SAN DIEGO, CA

BLOCK 13 CONTINUATION

10.J SEE FOR OFFICIAL USE ONLY (FOUO) ADDENDUM

10.K ALTERNATIVE COMPENSATORY CONTROL MEASURES (ACCM) PROGRAM INFORMATION IS GOVERNED BY DOD M 5200.01-V3, “DOD INFORMATION SECURITY PROGRAM: PROTECTION OF CLASSIFIED INFORMATION,” ENCLOSURE 2, SECTION 18; CJCS MANUAL 3213.02D, “JOINT STAFF ALTERNATIVE COMPENSATORY CONTROL MEASURES (ACCM) PROGRAM MANAGEMENT MANUAL” AND SUPPORTING DOCUMENTATION FOR EACH ACCM SUB-SYSTEM, INCLUDING SECURITY CLASSIFICATION GUIDES, PROGRAM SECURITY PLANS, AND GOVERNING DIRECTIVES. INSPECTIONS OF ACCM INFORMATION IN USSOCOM, COMPONENT (JSOC, AFSOC, NSWC, MARSOC, OR USASOC), OR THEATER SPECIAL OPERATION COMMAND (SOCNORTH, SOCAFRICA, SOCCENT, SOCEUR, SOCPAC, SOCSOUTH, OR SOCKOR) OWNED AND OPERATED FACILITIES ARE UNDER THE AUSPICES OF THE RESPECTIVE COMMAND OR COMPONENT ACCM COORDINATOR/ACCM PROGRAM CONTROL OFFICER (ACCM COORD/ACCM PCO). IF APPLICABLE, ACCM MATERIAL MAINTAINED BY THE CONTRACTOR WITHIN THEIR FACILITY MUST BE AFFORDED PROTECTION COMMENSURATE WITH DOD REQUIREMENTS AND STRICTLY CONTROLLED BASED ON NEEDTO- KNOW AND REQUIRED BRIEFINGS. DSS PERSONNEL CONDUCTING INSPECTIONS OF THE CONTRACTOR MUST BE BRIEFED ON TO THE SPECIFIC PROGRAM BY THE APPROPRIATE GOVERNMENT ACCM COORD/ACCM PCO RESPONSIBLE FOR THE MATERIAL

PRIOR TO BEING GRANTED ACCESS.

11.A CONTRACTOR PERFORMANCE IS RESTRICTED TO GOVERNMENT FACILITIES OWNED AND OPERATED BY NAVAL SPECIAL WARFARE COMMAND. GOVERNMENT AGENCY OR ACTIVITY WILL PROVIDE SECURITY CLASSIFICATION GUIDANCE FOR PERFORMANCE OF THIS CONTRACT. SUBMIT VISIT REQUESTS TO COR AND/OR SECURITY MANAGEMENT OFFICE FOR NEED-TO-

KNOW VERIFICATION.

11.E CONTRACT IS FOR SUPPORT AND ANALYSIS SERVICES. ACCESS TO ANY CLASSIFIED INFORMATION GOVERNMENT LOCATIONS REQUIRES APPROVAL. RETENTION OF ANY CLASSIFIED MATERIAL AT CONCLUSION OF CONTRACT IS NOT

AUTHORIZED.

11.J SEE OPERATIONS SECURITY (OPSEC) ADDENDUM

THE USE OF PERSONAL ELECTRONIC MEDIA (CAMERAS, VIDEO RECORDERS, COMPUTER LAPTOPS, FLASH (THUMB), OR OTHER REMOVABLE DRIVES) IS PROHIBITED IN ALL NAVAL SPECIAL WARFARE SPACES. ALL REMOVABLE ELECTRONIC MEDIA MUST BE LABELED (UNCLASSIFIED, ETC.) TO THE HIGHEST CLASSIFICATION OF DATA STORED, AND/OR FOR THE CLASSIFICATION OF THE SYSTEM IN WHICH IT IS USED. IF CLASSIFIED, ANY REMOVABLE ELECTRONIC MEDIA MUST BE TRACKED AND STORED

APPROPRIATE TO THAT LEVEL OF CLASSIFICATION.

ANTI-TERRORISM/FORCE PROTECTION (AT/FP) BRIEFINGS ARE REQUIRED FOR ALL PERSONNEL (MILITARY, DOD CIVILIAN, AND CONTRACTOR) PER OPNAVINST F3300.53C. CONTRACTOR EMPLOYEES MUST RECEIVE THE AT/FP BRIEFING ANNUALLY. THE BRIEFING IS AVAILABLE AT HTTP://JKO.JTEN.MIL/COURSES/ATL1/LAUNCH.HTML. FORWARD A COPY OF TRAINING CERTIFICATE TO

THE COR.

http://jko.jten.mil/COURSES/ATL1/LAUNCH.HTML

BLOCK 13 CONTINUATION: PAGE 4 OF 5

THE CONTRACTING OFFICER’S REPRESENTATIVE (COR) WILL SPECIFY WHICH POSITIONS REQUIRE ANY ADDITIONAL CLEARANCE AND WHEN THE CONTRACTOR IS AUTHORIZED TO COURIER CLASSIFIED INFORMATION AND EQUIPMENT IN SUPPORT OF THE

NAVAL SPECIAL WARFARE COMMAND.

THE SECURITY REQUIREMENTS FOR PERSONNEL ASSIGNED UNDER THIS TASK SHALL BE IN ACCORDANCE WITH THE REQUIREMENTS OF OPNAVINST 5510.1 SERIES. THE HIGHEST-LEVEL SECURITY REQUIRED FOR THIS TASK IS SECRET. THE WORK PERFORMED BY THE CONTRACTOR WILL INCLUDE ACCESS TO UNCLASSIFIED AND UP TO SECRET INFORMATION, AND SPACES.

THE CONTRACTOR MAY BE REQUIRED TO ATTEND MEETINGS CLASSIFIED UP TO THE SECRET LEVEL.

PERSONNEL PERFORMING CLASSIFIED WORK OR REQUIRING ACCESS TO CLASSIFIED MATERIAL OR SPACES UNDER THIS DELIVERY ORDER/TASK ORDER SHALL POSSESS BOTH A DOD SECURITY CLEARANCE AT THE APPROPRIATE LEVEL AND THE NEED TO KNOW. REQUEST FOR VISIT AUTHORIZATION SHALL BE SUBMITTED IN ACCORDANCE WITH DOD 5220.22M (INDUSTRIAL SECURITY MANUAL FOR SAFEGUARDING CLASSIFIED INFORMATION) NOT LATER THAN ONE (1) WEEK PRIOR TO VISIT. FORM DD-

254 OF THE BASIC CONTRACT APPLIES.

ALL DEVELOPMENT OF DATABASES, CLASSIFIED HARDWARE, AND GRAPHICS (WHEN CONDUCTED AT THE CONTRACTOR’S LOCATION) WILL BE DONE UPON DEFENSE SECURITY SERVICE APPROVED AUTOMATED INFORMATION SECURITY (AIS)

EQUIPMENT.

ALL CLASSIFIED INFORMATION/HARDWARE DEVELOPED WILL BE CLASSIFIED PURSUANT TO DERIVATIVE CLASSIFICATION PROCEDURES OR AS ANY APPLICABLE CLASSIFICATION GUIDE SO DICTATES (NISPOM CH 4, SECTION 2) AND EXECUTIVE ORDER 13526. ALL APPLICABLE CLASSIFICATION GUIDES WILL BE IDENTIFIED AND MADE AVAILABLE BY THE COR LOCATED IN BLOCK 16.

MEETINGS OR VISITS CONDUCTED BY THE CONTRACTOR WILL BE DONE IAW NISPOM CH. 6.

AS REQUIRED BY NISPOM, CHAPTER 1, SECTION 3, CONTRACTORS ARE REQUIRED TO REPORT CERTAIN EVENTS THAT HAVE AN IMPACT ON THE STATUS OF THE FACILITY CLEARANCE (FCL), THE STATUS OF AN EMPLOYEE'S PERSONNEL CLEARANCE (PCL), THE PROPER SAFEGUARDING OF CLASSIFIED INFORMATION, OR AN INDICATION THAT CLASSIFIED INFORMATION HAS BEEN LOST OR COMPROMISED. CONTRACTORS WORKING UNDER NAVAL SPECIAL WARFARE CONTRACTS WILL ENSURE INFORMATION PERTAINING TO ASSIGNED CONTRACTOR PERSONNEL ARE REPORTED TO THE PROGRAM MANAGER, COR, AND SECURITY

MANAGER ALONG WITH NOTIFYING THE APPROPRIATE AGENCIES SUCH AS CSA, CSO, OR DODCAF WHEN RELATED TO THE DENIAL, SUSPENSION, OR REVOCATION OF A SECURITY CLEARANCE OF ANY ASSIGNED PERSONNEL, ANY ADVERSE INFORMATION ON AN ASSIGNED EMPLOYEE'S CONTINUED SUITABILITY FOR CONTINUED ACCESS TO CLASSIFIED ACCESS; ANY INSTANCE OF LOSS OR COMPROMISE, OR SUSPECTED LOSS OR COMPROMISE, OF CLASSIFIED INFORMATION; ACTUAL, PROBABLE OR POSSIBLE ESPIONAGE, SABOTAGE, OR SUBVERSIVE INFORMATION; OR ANY OTHER CIRCUMSTANCES OF A SECURITY NATURE THAT WOULD AFFECT THE CONTRACTOR'S OPERATION WHILE WORKING UNDER NAVAL SPECIAL WARFARE

CONTRACTS.

COPIES OF ALL SUBCONTRACT DD FORM 254’S MUST BE PROVIDED TO THE DISTRIBUTION LISTED IN BLOCK 17.

BLOCK 14 CONTINUATION:

WHILE PERFORMING AT COMNAVSPECWARCOM OR OTHER NSW OWNED AND/OR OPERATED LOCATIONS/FACILITIES, THE CONTRACTOR WILL ADHERE TO THE RESPECTIVE MILITARY SERVICE/COMPONENT COMMAND. INFORMATION SECURITY PROGRAM, ADP AND DODIIS PROGRAMS, PHYSICAL SECURITY PROGRAM, INDUSTRIAL SECURITY PROGRAM, AND SCI/SAP PROGRAM (IF APPLICABLE) GUIDANCE WILL BE PROVIDED BY THE REQUIRING AGENCY (NORMALLY THROUGH THE PERFORMANCE MONITOR OR COMPONENT COMMAND COR) AT THESE LOCATIONS/FACILITIES. PRIOR APPROVAL OF THE

CONTRACTING ACTIVITY IS REQUIRED FOR SUBCONTRACTING.

TRAINING REQUIREMENT: CONTRACTORS PERFORMING ON THIS CONTRACT AT MILITARY INSTALLATIONS ARE REQUIRED TO ATTEND COMMAND AND UNIT SPECIFIC SECURITY TRAINING (INITIAL/REFRESHER INFOSEC, OPSEC, COUNTERINTELLIGENCE, AT/FP, ETC.). THIS TRAINING WILL BE PROVIDED BY THE RESPONSIBLE MILITARY ORGANIZATION.

BLOCK 14 CONTINUATION: PAGE 5 OF 5

IA REQUIREMENTS: SPECIFIC INFORMATION ASSURANCE REQUIREMENTS MAY BE MANDATED AND ARE AUTHORIZED BY THE

RESPONSIBLE COMMAND/UNIT WHERE PRIMARY PERFORMANCE LOCATION IS IDENTIFIED.

CONTRACTOR WILL BE AUTHORIZED TO COURIER CLASSIFIED INFORMATION UP TO THE SECRET LEVEL IN PERFORMANCE OF

OFFICIAL DUTIES UPON APPROVAL OF AND DESIGNATION BY THE COR AND WARCOM SSO.

BLOCK 15 CONTINUATION:

DEFENSE SECURITY SERVICE IS RELIEVED OF INSPECTION RESPONSIBILITY WITHIN COMNAVSPECWARCOM OWNED AND OPERATED LOCATIONS/FACILITIES. CLASSIFIED CONTRACT ACTIVITIES AND PERFORMANCE AT EACH MILITARY SERVICE’S LOCATIONS/FACILITIES ARE GOVERNED BY APPLICABLE SERVICE/COMPONENT COMMAND/LOCAL SECURITY DIRECTIVES, REGULATIONS, AND STANDARD OPERATING PROCEDURES AND ARE THE RESPONSIBILITY OF THE RESPECTIVE SECURITY OFFICERS. COLLATERAL CONTRACTOR CLASSIFIED OPERATIONS WILL BE UNDER THE SECURITY COGNIZANCE OF THE

SERVICES RESPECTIVE SECURITY MANAGEMENT OFFICE.

NO FURTHER ENTRIES ON THIS PAGE.

PROTECTING "FOR OFFICIAL USE ONLY" (FOUO) INFORMATION

(Updated June 2014)

1. GENERAL:

a. The "For Official Use Only" (FOUO) marking is assigned to information at the ti.me of its creation in a DoD User Agency. It is not authorized as a substitute for a security classification marking but is used on official government information that may be withheld from the public under exemptions 2 through 9 of the Freedom of Information Act (FOIA).

b. Other non-security markings, such as "Limited Official Use" and "Official Use Only" are used by non-DoD User Agencies for the same type of information and should be safeguarded and handled in accordance with instruction received from such agencies.

c. Use of the above markings does not mean that the information cannot be released to the public under FOIA, only that it must be reviewed by the Government prior to its release to determine whether a significant and legitimate government purpose is served by withholding the information or portions of it

2. MARKINGS:

a. Unclassified documents containing FOUO information will be marked "UNCLASSIFIED//For Official Use Only" or "U//FOUO" at the bottom of the front cover (if any), on the first page, on each page containing FOUO information , on the back page, and on the outside of the back cover (if any). Each paragraph containing FOUO information shall be marked as such.

b. Within a classified document, an individual page that contains both FOUO and classified information will be marked at the top and bottom with the highest security classification of information appearing on the page. Individual paragraphs shall be marked at the appropriate level be it classified, unclassified, or FOUO. An individual page that ONLY contains FOUO and unclassified information shall be marked “FOR OFFICIAL USE ONLY” or the highest classification of the entire document at the top and bottom of the page. If an individual portion contains FOUO information but no classified information, the portion will be marked, "FOUO."

c. Mark other records, such as computer print outs, photographs, films, tapes, or slides "FOR OFFICIAL USE ONLY" so that the viewer knows the record contains FOUO information.

d. Removal of the "For Official Use Only" marking can only be accomplished by the originator or other competent authority.

When the "For Official Use Only" status is terminated, all known holders will be notified to the extent practical.

3. DISSEMINATION: "For Official Use Only" information may be disseminated between officials of DoD Components, DoD contractors, consultants, and grantees to conduct official business for the DoD. FOUO information may also be passed to officials in other departments and agencies of the executive and judicial branches to fulfill a government function. Recipients shall ·be made aware of the special handling instructions detailed in this document and that it's exempt from public disclosure under the FOIA utilizing the following statement: "This document contains information EXEMPT FROM MANDATORY DISCLOSURE UNDER THE FOIA Exemptions apply."

4. STORAGE: During working hours, "For Official Use Only" information shall be placed in an out-of-sight location if the work area is accessible to persons who do not have a need for the information. During nonworking hours, the information shall be stored to preclude unauthorized access. Filing such material with other unclassified records in unlocked files or desks, is adequate when internal building security is provided during nonworking hours. When such internal security control is not exercised, locked buildings or rooms will provide adequate after- hours protection or the material can be stored in locked receptacles such as file cabinets, desks, or bookcases.

5. TRANSMISSION: "For Official Use Only" information may be sent in the following ways:

a. Mail - FOUO may be sent via first-class mail or parcel post. Bulky shipments may be sent by fourth-class mail.

b. Fax - Nom1ally FOUO may be sent over facsimile equipment. To prevent unauthorized disclosure the following should be considered: Use of special cover sheets, location of fax machines {both ends), and whether authorized persoru1el are around to receive FOUO information.

c. E-Mail/Websites E-mail may be used on approved secure communication systems or systems utilizing other protective measures such as Public Key Infrastructure (PK1) or transport layer security (e.g., https).

**Make sure documents/methods that transmit FOUO material call attention to any FOUO attachments. **

6. DISPOSITION: When no longer needed, FOUO information must be disposed of in a way that will preclude its disclosure to unauthorized individuals.

7. UNAUTHORIZED DISCLOSURE: Unauthorized disclosure of "For Official Use Only" information does not constitute a security violation but the releasing agency should be informed of any unauthorized disclosure. The unauthorized disclosure of FOUO information protected by the Privacy Act may result in criminal sanctions and disciplinary action may be taken against those responsible.

NAVAL SPECIAL WARFARE COMMAND OPERATIONS SECURITY REQUIREMENTS

ALL WORK IS TO BE PERFORMED IN ACCORDANCE WITH DOD AND NAVY OPERATIONS SECURITY (OPSEC)

REQUIREMENTS, PER THE FOLLOWING APPLICABLE DOCUMENTS:

- NATIONAL SECURITY DECISION DIRECTIVE 298 -NATIONAL OPERATIONS SECURITY PROGRAM (NSDD) 298

- DOD 5205.02 -DOD OPERATIONS SECURITY (OPSEC) PROGRAM

- OPNAVINST 3432.1 -DON OPERATIONS SECURITY

-NSWC OPERATIONS SECURITY POLICY

THE CONTRACTOR WILL ACCOMPLISH THE FOLLOWING MINIMUM REQUIREMENTS IN SUPPORT OF NAVAL SPECIAL

WARFARE COMMAND (WARCOM) OPERATIONS SECURITY (OPSEC) PROGRAM:

- THE CONTRACTOR WILL PRACTICE OPSEC AND IMPLEMENT OPSEC COUNTERMEASURES TO PROTECT

DOD CRITICAL INFORMATION. ITEMS OF CRITICAL INFORMATION ARE THOSE FACTS, WHICH

INDIVIDUALLY, OR IN THE AGGREGATE, REVEAL SENSITIVE DETAILS ABOUT SPAWAR OR THE

CONTRACTOR’S SECURITY OR OPERATIONS RELATED TO THE SUPPORT OR PERFORMANCE OF THIS SOW, AND THUS REQUIRE A LEVEL OF PROTECTION FROM ADVERSARIAL COLLECTION OR EXPLOITATION

NOT NORMALLY AFFORDED TO UNCLASSIFIED INFORMATION.

- CONTRACTOR MUST PROTECT CRITICAL INFORMATION AND OTHER SENSITIVE UNCLASSIFIED

INFORMATION AND ACTIVITIES, ESPECIALLY THOSE ACTIVITIES OR INFORMATION WHICH COULD COMPROMISE CLASSIFIED INFORMATION OR OPERATIONS, OR DEGRADE THE PLANNING AND EXECUTION OF MILITARY OPERATIONS PERFORMED OR SUPPORTED BY THE CONTRACTOR IN SUPPORT OF THE MISSION. PROTECTION OF CRITICAL INFORMATION WILL INCLUDE THE ADHERENCE TO AND EXECUTION OF COUNTERMEASURES WHICH THE CONTRACTOR IS NOTIFIED BY OR PROVIDED BY WARCOM, FOR

CRITICAL INFORMATION ON OR RELATED TO THE SOW.

- SENSITIVE UNCLASSIFIED INFORMATION IS THAT INFORMATION MARKED FOR OFFICIAL USE ONLY (OR FOUO), PRIVACY ACT OF 1974, COMPANY PROPRIETARY, AND ALSO INFORMATION AS IDENTIFIED BY

WARCOM.

- WARCOM HAS IDENTIFIED THE FOLLOWING ITEMS AS CRITICAL INFORMATION THAT MAY BE RELATED TO

THIS PWS/SOW:

• KNOWN OR PROBABLE VULNERABILITIES TO ANY U.S. SYSTEM AND THEIR DIRECT SUPPORT

SYSTEMS.

• DETAILS OF CAPABILITIES OR LIMITATIONS OF ANY U.S. SYSTEM THAT REVEAL OR COULD

REVEAL KNOWN OR PROBABLE VULNERABILITIES OF ANY U.S. SYSTEM AND THEIR DIRECT

SUPPORT SYSTEMS.

• DETAILS OF INFORMATION ABOUT MILITARY OPERATIONS, MISSIONS AND EXERCISES.

• DETAILS OF U.S. SYSTEMS SUPPORTING COMBAT OPERATIONS (NUMBERS OF SYSTEMS

DEPLOYED, DEPLOYMENT TIMELINES, LOCATIONS, EFFECTIVENESS, UNIQUE CAPABILITIES,

ETC.).

• OPERATIONAL CHARACTERISTICS FOR NEW OR MODIFIED WEAPON SYSTEMS (PROBABILITY OF

KILL (PK), COUNTERMEASURES, SURVIVABILITY, ETC.).

• REQUIRED PERFORMANCE CHARACTERISTICS OF U.S. SYSTEMS USING LEADING EDGE OR

GREATER TECHNOLOGY (NEW, MODIFIED OR EXISTING).

• TELEMETERED OR DATA-LINKED DATA OR INFORMATION FROM WHICH OPERATIONAL

CHARACTERISTICS CAN BE INFERRED OR DERIVED.

• TEST OR EVALUATION INFORMATION PERTAINING TO SCHEDULES OF EVENTS DURING WHICH

CRITICAL INFORMATION MIGHT BE CAPTURED. (ADVANCE GREATER THAN 3 DAYS).

• DETAILS OF NAVAL SPECIAL WARFARE UNIQUE TEST OR EVALUATION CAPABILITIES

(DISCLOSURE OF UNIQUE CAPABILITIES).

• EXISTENCE AND/OR DETAILS OF INTRUSIONS INTO OR ATTACKS AGAINST DOD NETWORKS OR

INFORMATION SYSTEMS, INCLUDING, BUT NOT LIMITED TO, TACTICS, TECHNIQUES AND

PROCEDURES USED, NETWORK VULNERABILITIES EXPLOITED, AND DATA TARGETED FOR

EXPLOITATION.

• NETWORK USER ID’S AND PASSWORDS.

• COUNTER-IED CAPABILITIES AND CHARACTERISTICS, INCLUDING SUCCESS OR FAILURE RATES, DAMAGE ASSESSMENTS, ADVANCEMENTS TO EXISTING OR NEW CAPABILITIES.

• VULNERABILITIES IN COMMAND PROCESSES, DISCLOSURE OF WHICH COULD ALLOW SOMEONE

TO CIRCUMVENT SECURITY, FINANCIAL, PERSONNEL SAFETY, OR OPERATIONS PROCEDURES.

• FORCE PROTECTION SPECIFIC CAPABILITIES OR RESPONSE PROTOCOLS

(TIMELINES/EQUIPMENT/NUMBERS OF PERSONNEL/TRAINING RECEIVED/ETC.).

• COMMAND LEADERSHIP AND VIP AGENDAS, RESERVATIONS, PLANS/ROUTES ETC.

• DETAILED FACILITY MAPS OR INSTALLATION OVERHEAD PHOTOGRAPHY (PHOTO WITH

ANNOTATION OF COMMAND AREAS OR GREATER RESOLUTION THAN COMMERCIALLY

AVAILABLE).

• DETAILS OF COOP, NAVAL SPECIAL WARFARE EMERGENCY EVACUATION PROCEDURES, OR

EMERGENCY RECALL PROCEDURES.

• GOVERNMENT PERSONNEL INFORMATION THAT WOULD REVEAL FORCE STRUCTURE AND

READINESS (SUCH AS RECALL ROSTERS OR DEPLOYMENT LISTS).

• COMPILATIONS OF INFORMATION THAT DIRECTLY DISCLOSE COMMAND CRITICAL

INFORMATION.

- THE ABOVE CRITICAL INFORMATION AND ANY THAT THE CONTRACTOR DEVELOPS, REGARDLESS IF IN

ELECTRONIC OR HARDCOPY FORM, MUST BE PROTECTED BY A MINIMUM OF THE FOLLOWING

COUNTERMEASURES:

• ALL EMAILS CONTAINING CRITICAL INFORMATION MUST BE DOD PUBLIC KEY INFRASTRUCTURE (PKI)

SIGNED AND PKI ENCRYPTED WHEN SENT.

• CRITICAL INFORMATION MAY NOT BE SENT VIA UNCLASSIFIED FAX.

• CRITICAL INFORMATION MAY NOT BE DISCUSSED VIA NON-SECURE PHONES.

• CRITICAL INFORMATION MAY NOT BE PROVIDED TO INDIVIDUALS THAT DO NOT HAVE A NEED TO

KNOW IT IN ORDER TO COMPLETE THEIR ASSIGNED DUTIES.

• CRITICAL INFORMATION MAY NOT BE DISPOSED OF IN RECYCLE BINS OR TRASH CONTAINERS.

• CRITICAL INFORMATION MAY NOT BE LEFT UNATTENDED IN UNCONTROLLED AREAS.

• CRITICAL INFORMATION IN GENERAL SHOULD BE TREATED WITH THE SAME CARE AS FOUO OR

PROPRIETARY INFORMATION.

• CRITICAL INFORMATION MUST BE DESTROYED IN THE SAME MANNER AS FOUO.

• CRITICAL INFORMATION MUST BE DESTROYED AT CONTRACT TERMINATION OR RETURNED TO THE

GOVERNMENT AT THE GOVERNMENT’S DISCRETION.

- THE CONTRACTOR SHALL DOCUMENT ITEMS OF CRITICAL INFORMATION THAT ARE APPLICABLE TO

CONTRACTOR OPERATIONS INVOLVING INFORMATION ON OR RELATED TO THE PWS/SOW. SUCH

DETERMINATIONS OF CRITICAL INFORMATION WILL BE COMPLETED USING THE DOD OPSEC 5 STEP PROCESS AS DESCRIBED IN NATIONAL SECURITY DECISION DIRECTIVE (NSDD) 298, “NATIONAL OPERATIONS SECURITY

PROGRAM”.

- OPSEC TRAINING MUST BE INCLUDED AS PART OF THE CONTRACTORS ONGOING SECURITY AWARENESS PROGRAM CONDUCTED IN ACCORDANCE WITH CHAPTER 3, SECTION 1, OF THE NISPOM. NSDD 298, DOD 5205.02, “DOD OPERATIONS SECURITY (OPSEC) PROGRAM”, AND OPNAVINST 3432.1, “OPERATIONS SECURITY”

SHOULD BE USED TO ASSIST IN CREATION OR MANAGEMENT OF TRAINING CURRICULUM.

- IF THE CONTRACTOR CANNOT RESOLVE AN ISSUE CONCERNING OPSEC THEY WILL CONTACT THE PROGRAM

MANAGER / COR (WHO WILL CONSULT WITH THE WARCOM SECURITY MANAGER).

- ALL ABOVE REQUIREMENTS MUST BE PASSED TO ALL SUB-CONTRACTORS.

COMMANDER NAVAL SPECIAL WARFARE COMMAND

INFORMATION TECHNOLOGY (IT) SYSTEMS SECURITY REQUIREMENTS

The U.S. Government conducts trustworthiness investigations of personnel who are assigned to positions that directly or indirectly affect the operation of unclassified IT resources and systems that process Department of Defense (DoD) information, to include For Official Use Only (FOUO) and other controlled unclassified information

(CUI).

The United States Office of Personnel Management (OPM), Federal Investigations Processing Center (FIPC) process all requests for U.S. Government trustworthiness investigations. Requirements for these investigations are outlined in paragraph C3.6.15 and Appendix 10 of DoD 5200.2-R, available at http://www.dtic.mil/whs/directives/corres/dir.html. Personnel occupying an IT Position shall be designated as filling one of the IT Position Categories listed below. The contractor shall include all of these requirements in any subcontracts involving IT support. (Note: Terminology used in DoD 5200.2-R references “ADP” vice “IT”. For purposes of this requirement, the terms ADP and IT are synonymous.)

The Contracting Officer’s Representative (COR) for Commander Naval Special Warfare Command (WARCOM) or a COR designated WARCOM Technical Representative (TR) shall determine if they or the contractor shall assign the IT Position category to contractor personnel and inform the contractor of their determination. If it is decided the contractor shall make the assignment, the COR, or TR must concur with the designation.

DoDD Directive 8500.01E, Subject: Information Assurance (IA), paragraph 4.8 states "Access to all DoD information systems shall be based on a demonstrated need-to-know, and granted in accordance with applicable laws and DoD 5200.2-R for background investigations, special access and IT position designations and requirements. An appropriate security clearance and non-disclosure agreement are also required for access to classified information” in accordance with DoDM 5200.01 Vol. 1. DoD 5200.2-R and DoDD 5200.2 require all persons assigned to sensitive positions or assigned to sensitive duties be U.S. citizens. All persons assigned to IT-I and IT-II positions, as well as all persons with access to controlled unclassified information (without regard to degree of IT access) or performing other duties that are considered "sensitive" as defined in DoDD 5200.2 and DoD 5200.2-R must be U.S. citizens.

Furthermore, access by non-U.S. citizens to unclassified export controlled data will only be granted to persons pursuant to the export control laws of the U.S. The categories of controlled unclassified information are specified in DoDM 5200.01 Vol. 4. These same restrictions apply to "Representatives of a Foreign Interest" as defined by DoD 5220.22-M (National Industrial Security Program Operating Manual, NISPOM). DoD 8570.01-M further stipulates additional training and/or certification that is required by all persons assigned to Information Assurance functions.

Criteria For Designating Positions:

IT-I Position (Privileged)

• Responsibility or the development and administration of Government computer security programs, and including direction and control of risk analysis and/or threat assessment.

• Significant involvement in life-critical or mission-critical systems.

• Responsibility for the preparation or approval of data for input into a system, which does not necessarily involve personal access to the system, but with relatively high risk for effecting grave damage or realizing significant personal gain.

• Relatively high risk assignments associated with or directly involving the accounting, disbursement, or authorization for disbursement from systems of (1) dollar amounts of $10 million per year or greater, or (2) lesser amounts if the activities of the individual are not subject to technical review by higher authority in the IT-I category to ensure the integrity of the system.

• Positions involving major responsibility for the direction, planning, design, testing, maintenance, operation, monitoring, and/or management of systems hardware and software.

http://www.dtic.mil/whs/directives/corres/dir.html

• Other positions as designated by WARCOM that involve relatively high risk for effecting grave damage or realizing significant personal gain.

Personnel whose duties meet the criteria for IT-I Position designation require a favorably adjudicated Single Scope Background Investigation (SSBI), SSBI Periodic Reinvestigation (SSBI-PR) or T5/T5R investigations. The SSBI, SSBI-PR, T5/T5R shall be updated every 5 years by using the Electronic Questionnaire for Investigation Processing (eQIP) web based program (SF86 format).

IT-II Position (Limited Privileged)

Responsibility for systems design, operation, testing, maintenance, and/or monitoring that is carried out under technical review of higher authority in the IT-I category, includes but is not limited to:

• Access to and/or processing of proprietary data, information requiring protection under the Privacy Act of 1974, and Government-developed privileged information involving the award of contracts;

• Accounting, disbursement, or authorization for disbursement from systems of dollar amounts less than $10 million per year. Other positions are designated by WARCOM that involve a degree of access to a system that creates a significant potential for damage or personal gain less than that in IT-I positions. Personnel whose duties meet the criteria for an IT-II Position require a favorably adjudicated National Agency Check with Local Agency Check and Credit Check (NACLC) or T3/T3R investigation. The NACLC or T3R shall be updated every 10 years by using the Electronic Questionnaire for Investigation Processing (eQIP) web based program (SF86 format).

IT-III Position (Non-Privileged)

• All other positions involving Federal IT activities. Incumbent in this position has non-privileged access to one or more DoD information systems, application, or database to which they are authorized access.

Personnel whose duties meet the criteria for an IT-III Position designation require a favorably adjudicated National Agency Check with Inquiries (NACI).

Qualified Cleared Personnel Do NOT Require Trustworthiness Investigations:

When background investigations supporting clearance eligibility have been submitted and/or adjudicated to support assignment to sensitive national security positions, a separate investigation to support IT access will normally not be required. A determination that an individual is NOT eligible for assignment to a position of trust will also result in the removal of eligibility for security clearance. Likewise, a determination that an individual is NOT eligible for a security clearance will result in the denial of eligibility for a position of trust.

Procedures for submitting U.S. Government Trustworthiness Investigations:

Only the e-QIP version of SF-85 and SF 86 are acceptable by OPM-FIPC.

The Facility Security Officer (FSO) must verify employee's security clearance eligibility in the Joint Personnel Adjudication System (JPAS) before contacting the WARCOM COR to initiate request for trustworthiness investigations.

After determining that an individual requires Public Trust Position determination, the FSO will identify the requirement and the individual to the WARCOM COR and Security Office and the specific IT Level category assigned for requesting the appropriate type of investigation. The FSO will also provide the following information in encrypted email format to the WARCOM Security Manager to initiate a request thru e-QIP:

Full SSN of the applicant Full Name Date of Birth

Place of Birth Email Address Phone Number The Personnel Security Office will send email notification and instruction to the applicant to complete and submit e- QIP expeditiously.

The FSO will take and submit fingerprints using SF-87, FD-258 or electronic submission. The FSO must obtain from the WARCOM Security Manager the e-QIP Request Number for inclusion in submitting the fingerprints. For immediate fingerprint result, electronic transmission of fingerprints is encouraged. Submission of hard copy SF-87 or FD-258 to:

E-QIP RAPID RESPONSE TEAM

OPM-FIPC

1137 BRANCHTON ROAD

BOYERS, PA 16020

The WARCOM Security Manager will notify the FSO when the Public Trust Investigation request is released to the Parent Agency, the Office of Personnel Management (OPM).

Contractor fitness determinations made by the DOD CAF are maintained in the Joint Personnel Adjudication System (JPAS). Favorable fitness determinations will support public trust positions only and not national security eligibility. If no issues are discovered, according to respective guidelines a “Favorable Determination” will be populated in JPAS and will be reciprocal within DoD. If issues are discovered, the DoD CAF will place a “No Determination Made” in the JPAS and forward the investigation to the submitting office for the commander’s final determination.”

For Trustworthiness Investigations that have been returned to the WARCOM Security Manager with a “No Determination Made” decision, your company will be notified in writing. If an individual received a negative trustworthiness determination, they will be immediately removed from their position of trust, the contractor will follow the same employee termination processing above, and they will replace any individual who has received a negative trustworthiness determination.

Visit Authorization Requests (VARs) for Qualified Employees:

Contractors that have been awarded a classified contract must submit visit requests using “only” the Joint Personnel Adjudication System (JPAS). All government activities have been directed to use JPAS when transmitting or receiving VARs. Therefore, contractors who work on classified contracts are required to have established an account through JPAS for their facility. This database contains all U.S. citizens who have received a clearance of Confidential, Secret, and/or Top Secret. The visit request shall be submitted for the length of the contract but not longer than one year. When submitting a visit requests to WARCOM, use the following Security Management Office (SMO) numbers (SCI: N000743; non-SCI: N000744). This information is provided in accordance with guidance provided to contractors via the Defense Security Service (DSS) website https://www.dss.mil/ (DSS guidance dated 24 April 2007, subject: Procedures Governing the Use of JPAS by Cleared Contractors).

Employment Terminations:

The contractor shall:

• Immediately notify the COR and WARCOM Security Manager of the employee’s termination.

• Return any Badge Credentials, to include Common Access Cards to Commander Naval Special Warfare

Command, 2000 Trident Way, Bldg 624, San Diego, CA 92155-5599.

https://www.dss.mil/

COMMANDER NAVAL SPECIAL WARFARE COMMAND SPECIFIC ON-SITE SECURITY REQUIREMENTS

I. GENERAL.

a. Contractor Performance. In performance of this Contract the following security services and procedures are incorporated as an attachment to the DD 254. The Contractor will conform to the requirements of DoD 5220.22-M, Department of Defense National Industrial Security Program, Operating Manual (NISPOM), as revised. The Contractor will follow all export laws and regulations in the performance of this contract.

When visiting Commander Naval Special Warfare Command (WARCOM) the Contractor will comply with the security directives used regarding the protection of classified and controlled unclassified information (CUI), SECNAV M-5510.36 (series), SECNAV M-5510.30 (series), DOD M-5200.01 Volumes 1 through 4, and COMNAVSPECWARCOMINST 5520.1 (series). Both of the SECNAV Instructions and Manuals are available online at http://doni.daps.dla.mil/SECNAV.aspx and the DOD Instructions can be found at http://www.dtic.mil/whs/directives/corres/pub1.html. A copy of COMNAVSPECWARCOMINST 5520.1 will be provided upon receipt of a written request from the Contractor’s Facility Security Officer (FSO) to the WARCOM Contracting Officer’s Representative (COR) listed on the contract DD254. If the Contractor establishes a cleared facility or Defense Security Service (DSS) approved off-site location aboard a US government installation, the security provisions of the NISPOM will be followed within this cleared facility.

b. Security Supervision. US government personnel shall exercise security supervision over all contractors visiting WARCOM and shall provide security support to the Contractor as noted below. The Contractor will identify, in writing to the COR, an on-site Point of Contact to interface with the WARCOM’s Security COR.

II. HANDLING CLASSIFIED MATERIAL OR INFORMATION.

a. Control and Safeguarding. Contractor personnel located at the WARCOM are responsible for the control and safeguarding of all classified material in their possession. All contractor personnel will be briefed by their FSO on their individual responsibilities to safeguard classified material. In addition, all contractor personnel are invited to attend any WARCOM conducted Security Briefings. In the event of possible or actual loss or compromise of classified material, the on-site Contractor shall immediately report the incident to COR and WARCOM Security Manager, telephone (619) 537-1023, as well as the Contractor's FSO. A WARCOM US government representative will investigate the circumstances, determine culpability where possible, and report results of the inquiry to the FSO and the Cognizant DSS Field Office. On-site contractor personnel will promptly correct any deficient security conditions identified by a WARCOM US government representative.

b. Storage.

1. Classified material may be stored in containers authorized by the WARCOM Security Manager for the storage of that level of classified material. Any areas located within cleared contractor facilities supporting the WARCOM will be approved by DSS.

2. The use of “Open Storage” areas must be pre-approved in writing by the COR and forwarded to the

WARCOM Security Manager for the open storage or processing of any contract related classified material.

http://doni.daps.dla.mil/SECNAV.aspx http://www.dtic.mil/whs/directives/corres/pub1.html

c. Transmission of Classified Material.

1. All classified material transmitted by mail for use by long term visitors will be addressed as follows:

(a) TOP SECRET, Non-Sensitive Compartmented Information (non-SCI) material using the Defense Courier Service: USTRANSCOM/DCS-SN, PO BOX 357134, San Diego, CA 92135- 7134; Phone 619-545-0099.

(b) CONFIDENTIAL and SECRET material transmitted by FedEx or USPS will be addressed to:

COMMANDER NAVAL SPECIAL WARFARE COMMAND

2000 TRIDENT WAY, BLDG624

SAN DIEGO, CA 92155-5599.

(c) The inner envelope will be addressed to the attention of the Contracting Officer's

Representative (COR) or applicable Technical Representative (TR) for this contract.

2. All SECRET or CONFIDENTIAL material hand carried to WARCOM by contractor personnel with a contractor provided courier card must be accompanied with a delivery receipt and be to delivered immediately to a US Government representative of WARCOM.

3. All classified material couriered by contractor personnel from WARCOM shall be approved by the

COR or US Government Technical Representative (TR) for this contract with WARCOM Security Manager Notification.

4. Contractors couriering classified information in support of WARCOM shall follow all NISPOM information security directives and instructions

III. INFORMATION SYSTEMS (IS) Security. Contractors using US government IS, networks, or computer resources to process classified or Controlled Unclassified Information (CUI) will comply with the provisions of SECNAVINST 5239.3 (series) and local policies and procedures. Contractor personnel must ensure that the systems they use at WARCOM have been granted and a US Special Operations Command (USSOCOM) System Authorization Access Request (SAAR) has been approved by the WARCOM Information Assurance Office.

IV. VISITOR CONTROL PROCEDURES.

Title 18 USC 701 provides for criminal sanctions including fine or imprisonment for anyone in possession of a badge who is not entitled to have possession. Sec. 701. Official badges, identification cards, other insignia.

Whoever manufactures, sells, or possesses any badge, identification card, or other insignia, of the design prescribed by the head of any department or agency of the United States for use by any officer or employee thereof, or any colorable imitation thereof, or photographs, prints, or in any other manner makes or executes any engraving, photograph, print, or impression in the likeness of any such badge, identification card, or other insignia, or any colorable imitation thereof, except as authorized under regulations made pursuant to law, shall be fined under this title or imprisoned not more than six months, or both.

a. Contractor personnel assigned to WARCOM shall be considered long-term visitors for the purpose of this contract.

b. Contractors that have been awarded a classified contract must submit visit requests to other locations using the Joint Personnel Adjudication System (JPAS) or Fax’d visit request that includes official company letterhead. JPAS Visit Requests are preferred. All US government activities have been directed to use JPAS when transmitting or receiving VARs. Therefore, contractors who work on classified contracts are required to have established an account through JPAS for their facility. This JPAS database contains all

U.S. citizens who have received a clearance of Confidential, Secret, and/or Top Secret. Visit requests can be submitted for one year for personnel not considered long term visitors. When submitting visit requests for personnel not assigned to the WARCOM use the Security Management Office (SMO) number for level of the visit and list a US Government POC (not the security manager or SSO). This information is provided in accordance with guidance provided to contractors via the Defense Security Service (DSS) website https://www.dss.mil/portal/ShowBinary/BEA%20Repository/new_dss_internet/about_dss/press_room/jpas _procedures_final.pdf (DSS guidance dated 24 April 2007, subject: Procedures Governing the Use of JPAS by Cleared Contractors).

c. For long term visitors to receive a WARCOM access badge, their Government POC must approve their visit request and the visitor must present government issued photo identification. WARCOM Badges are required to be worn in the WARCOM spaces at all times.

d. Visit requests for all visitors must be received at least one week prior to the expected arrival of the visitor to ensure necessary processing of the request.

e. WARCOM will issue temporary identification badges to Contractor personnel following receipt of a valid VAR from the Contractor's FSO. The responsible WARCOM COR will request issuance of picture access badges to contractor personnel on a case by case basis. WARCOM access badges are the property of the US Government, will be worn in plain sight, above the waist and used for official business only at WARCOM and NSW affiliated locations. WARCOM access badges are not authorized to be displayed off US Government facilities. Unauthorized use of a WARCOM access badge will be reported to DSS.

f. Prior to the termination of a Contractor employee with a WARCOM access badge or active VAR on file the

FSO must:

1. Notify in writing to the COR which employee had been granted unescorted access and the effective termination date. In emergencies, a facsimile (619-537-0805) may be sent or a telephone notification may be used. The telephone notification, however, must be followed up in writing within five working days.

2. Immediately confiscate any US Government credentials (to include Common Access Card (CAC) and access badge), and return to the COR no later than five working days after the effective date of the termination.

g. Common Access Card (CAC).

1. Approved by the contractor’s COR and CVS POC within WARCOM.

V. INSPECTIONS. For all personnel aboard WARCOM, US government personnel may conduct periodic inspections of the security practices of the onsite contractor. All contractor personnel will cooperate with US Government representatives during these inspections. Any adverse reports of the inspection will be forwarded to the COR, Technical Representatives, and the Contractor’s employing facility. The Contractor must be responsive to the representative's findings.

VI. REPORTS. As required by the NISPOM, Chapter 1, Section 3, contractors are required to report certain events that have an impact on the status of the facility clearance (FCL), the status of an employee's personnel clearance (PCL), the proper safeguarding of classified information, or an indication classified information has been lost or compromised.

a. The Contractor shall ensure that certain information pertaining to assigned contractor personnel or operations is reported to the COR. This reporting will include the following:

https://www.dss.mil/portal/ShowBinary/BEA%20Repository/new_dss_internet/about_dss/press_room/jpas_procedures_final.pdf https://www.dss.mil/portal/ShowBinary/BEA%20Repository/new_dss_internet/about_dss/press_room/jpas_procedures_final.pdf

1. The denial, suspension, or revocation of security clearance of any assigned personnel;

2. Any adverse information on an assigned employee's continued suitability for continued access to classified access;

3. Any instance of loss or compromise, or suspected loss or compromise, of classified information;

4. Actual, probable or possible espionage, sabotage, or subversive information; or

5. Any other circumstances of a security nature that would affect the contractor's operation at WARCOM.

b. In addition to the NISPOM reporting requirements, any conviction and/or violation of the Foreign Corrupt Practices Act, or any other violation of the International Traffic in Arms Regulations (ITAR) shall immediately be reported to the WARCOM Designated Disclosure Authority (DDA), Security Manager, COR/TR, and Contracting Officer.

VII. PHYSICAL SECURITY.

a. WARCOM will provide appropriate information to emergencies occurring onboard this facility. The Contractor will comply with all emergency direction and procedures established by WARCOM.

b. A 24 hour roving security patrol is conducted by WARCOM military personnel. Such coverage will consist of, but not be limited to, physical checks of the window or door access points, classified containers, unauthorized personnel in the workspaces, and improperly secured documents or spaces. Specific questions or concerns should be addressed with the COR.

c. All personnel aboard Naval Amphibious Base Coronado (NAB) are subject to random inspections of their…

This is the start of the file's text. The full file is on GovTribe.

File details come from the government source that posted it.