Attachment 1 - DD254_GSM-ETI.doc

DOC document 121 KB Posted

Attached to
Global Information Grid Services Management - Engineering, Transition and Implementation (GSM-ETI) Federal contract opportunity
Solicitation number
HC1028-10-R-2001
Issued by
Defense Information Systems Agency

About this file

DD254

View the file

Other files for this federal contract opportunity

Other files attached to Global Information Grid Services Management - Engineering, Transition and Implementation (GSM-ETI), newest first.
File Type Posted
Redacted_JA.pdf PDF
Atch_3_-_ETI_Sample_Task_Order_v13q_06-23-2011 PMO-2 —
GSM-ETI QA FRFP- 28 June 2011.doc DOC document
Amend 0006.doc DOC document
0005.doc DOC document
SF-30 - HC1028-10-R-2001 - Amendment 0004.doc DOC document
GSM-ETI QA FRFP 6-149- 13 Jun 2011.doc DOC document
Atch 3 - ETI Sample Task Order v13p 06-01-2011.doc DOC document
Atch 2 - GSM-ETI CDRLs 05-06-2011.doc DOC document
Atch 10 - Pricing Rate Tables.xls XLS spreadsheet
Atch 5 -GSM-ETI_Past_Performance_Information.DOC DOC document
Atch 15 - STO Supplemental Tech Data.doc DOC document
GSM-ETI QA FRFP 1-5.doc DOC document
Amend 0003.doc DOC document
Amend 0002.doc DOC document
GSM-ETI QA FRFP 1-5.doc DOC document
Attachment 8 - GSM-ETI PP Questionnaire.doc DOC document
Amendment 0001.doc DOC document
SBA OHA.pdf PDF
Attachment 5 - GSM-ETI Past Performance Information.DOC DOC document
Attachment 4 - GSM-ETI Task Order Guide.doc DOC document
GSM-ETI QA FRFP 1-5 —
Attachment 5 - GSM-ETI Past Performance Information.DOC DOC document
Attachment 3 - GSM-ETI Sample Task Order.doc DOC document
Attachment 7 - GSM-ETI Client Auth Letter.doc DOC document
GSM-ETI QA Matrix - APR 2011.doc DOC document
Attachment 8 - GSM-ETI PP Questionnaire.doc DOC document
HC1028-10-R-2001.doc DOC document
Attachment 6 - GSM-ETI Subc_Teaming Partner Consent Letter.doc DOC document
Attachment 14 - Electronic Products List.doc DOC document
Attachment 2 - GSM-ETI CDRLs.doc DOC document
Attachment 4 - GSM-ETI Task Order Guide.doc DOC document
Attachment 10 - GSM-ETI Labor Category_Rate.xls XLS spreadsheet
Attachment 9 - PWS Template.doc DOC document
Show all 34

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

HC1028-10-R-2001 – Attachment 1

DEPARTMENT OF DEFENSE

CONTRACT SECURITY CLASSIFICATION SPECIFICATION

(The requirements of the DoD Industrial Security Manual apply to all security aspects of this effort.)

1. CLEARANCE AND SAFEGUARDING

a. FACILITY CLEARANCE REQUIRED

TOP SECRET

b. LEVEL OF SAFEGUARDING REQUIRED

TOP SECRET

2. THIS SPECIFICATION IS FOR: (X and complete as applicable)
3. THIS SPECIFICATION IS: (X and complete as applicable)

FORMCHECKBOX

a. PRIME CONTRACT NUMBER

TBD

FORMCHECKBOX

a. ORIGINAL (Complete date in all cases)
DATE (YYYYMMDD)

20100402

FORMCHECKBOX

b. SUBCONTRACT NUMBER

FORMCHECKBOX

b. REVISED (Supersedes all previous specs) Revision No.

DATE (YYYYMMDD)

FORMCHECKBOX

c. SOLICITATION OR OTHER NUMBER

HC1028-10-R-2001

DUE DATE (YYYYMMDD)

FORMCHECKBOX

c. FINAL (Complete item 5 in all cases)
DATE (YYYYMMDD)

4. IS THIS A FOLLOW-ON CONTRACT?

FORMCHECKBOX

YES

FORMCHECKBOX

NO.

If yes, complete the following:

Classified material received or generated under (Preceding Contract Number) is transferred to this follow-on contract.

5. IS THIS A FINAL DD FORM 254?

FORMCHECKBOX

YES

FORMCHECKBOX

NO.

If yes, complete the following:

In response to the contractor's request dated , retention of the classified material is authorized for the period of

6. CONTRACTOR (Include Commercial and Government Entity (CAGE) Code)

a. NAME, ADDRESS, AND ZIP CODE
b. CAGE CODE
c. COGNIZANT SECURITY OFFICE (Name, Address, and ZIP Code)
TBD

7. SUBCONTRACTOR

a. NAME, ADDRESS, AND ZIP CODE
b. CAGE CODE
c. COGNIZANT SECURITY OFFICE (Name, Address, and ZIP Code)

8. ACTUAL PERFORMANCE

a. LOCATION
b. CAGE CODE
c. COGNIZANT SECURITY OFFICE (Name, Address, and ZIP Code)
TBD

9. GENERAL IDENTIFICATION OF THIS PROCUREMENT

This contract will provide Global Information Grid (GIG) Services Management (GSM) Engineering/Transition/Implementation support services on a worldwide basis as specified in the contract.

10. THIS CONTRACT WILL REQUIRE ACCESS TO:
YES
NO
11. IN PERFORMING THIS CONTRACT, THE CONTRACTOR WILL:
YES
NO
a. COMMUNICATIONS SECURITY (COMSEC) INFORMATION
X

a. HAVE ACCESS TO CLASSIFIED INFORMATION ONLY AT ANOTHER CONTRACTOR'S FACILITY OR A GOVERNMENT ACTIVITY

X

b. RESTRICTED DATA

X
b. RECEIVE CLASSIFIED DOCUMENTS ONLY

X

c. CRITICAL NUCLEAR WEAPON DESIGN INFORMATION

X
c. RECEIVE AND GENERATE CLASSIFIED MATERIAL
X

d. FORMERLY RESTRICTED DATA

X
d. FABRICATE, MODIFY, OR STORE CLASSIFIED HARDWARE
X

e. INTELLIGENCE INFORMATION:

e. PERFORM SERVICES ONLY
X

(1) Sensitive Compartmented Information (SCI) X

f. HAVE ACCESS TO U.S. CLASSIFIED INFORMATION OUTSIDE THE U.S., PUERTO RICO, U.S. POSSESSIONS AND TRUST TERRITORIES
X

(2) Non-SCI

g. BE AUTHORIZED TO USE THE SERVICES OF DEFENSE TECHNICAL INFOR-MATION CENTER (DTIC) OR OTHER SECONDARY DISTRIBUTION CENTER
X
f. SPECIAL ACCESS INFORMATION
X

h. REQUIRE A COMSEC ACCOUNT

X

g. NATO INFORMATION
X
i. HAVE TEMPEST REQUIREMENTS
X

h. FOREIGN GOVERNMENT INFORMATION

X
j. HAVE OPERATIONS SECURITY (OPSEC) REQUIREMENTS
X

i. LIMITED DISSEMINATION INFORMATION

X
k. BE AUTHORIZED TO USE THE DEFENSE COURIER SERVICE
X
j. FOR OFFICIAL USE ONLYINFORMATION
X
l. OTHER (Specify)
X

k. OTHER (Specify)

SIPRNet access X

See separate sheet for specific locations for overseas performance (11f)
X

DD Form 254, DEC 1999 (EF)

PREVIOUS EDITIONS ARE OBSOLETE

12. PUBLIC RELEASE. Any Information (Classified Or Unclassified) Pertaining To This Contract Shall Not Be Released For Public Dissemination Except As Provided By The Industrial Security Manual Or Unless It Has Been Approved For Public Release By Appropriate U.S. Government Authority. Proposed Public Releases Shall Be Submitted For Approval Prior To Release

FORMCHECKBOX

Direct

FORMCHECKBOX

Through (Specify):

Public release is not authorized to the Directorate for Freedom of Information and Security Review, Office of the Assistant Secretary of Defense (Public Affairs) * for review.

* In the case of non-DoD User Agencies, requests for disclosure shall be submitted to that agency.

13. SECURITY GUIDANCE. The security classification guidance needed for this classified effort is identified below. If any difficulty is encountered in applying this guidance or if any other contributing factor indicates a need for changes in this guidance, the contractor is authorized and encouraged to provide recommended changes to challenge the guidance or the classification assigned to any information or material furnished or generated under this contract; and to submit any questions for interpretation of this guidance to the official identified below. Pending final decision, the information involved shall be handled and protected at the highest level of classification assigned or recommended. (Fill in as appropriate for the classified effort. Attach, or forward under separate correspondence, any documents/guides/extracts referenced herein. Add additional pages as needed to provide complete guidance.)

General Information:

All visit access requests (VARs) by contractors shall be sent via the Joint Personnel Adjudication System (JPAS) to the DISA VAR Center (JPAS SMO:DKABAA10) or appropriate SMO for the effort. The COR/TM must approve the VAR prior to sending the request to the facility being visited. Contractors must also provide a copy of the VAR to the security manager.

The COR/TM must be notified and approve the receipt and/or generation of classified information under this contract.

All classified information received and/or generated under this contract is the property of the U.S. Government regardless of proprietary claims. Upon completion or termination of this contract, the U.S. Government will be contacted for destruction or disposition instructions.

Foreign Nationals will not perform on any area of the contract (classified or unclassified).

continued

14. ADDITIONAL SECURITY REQUIREMENTS. Requirements, in addition to ISM requirements, are established for this contract. (If Yes, identify the pertinent contractual clauses in the contract document itself, or provide an appropriate statement which identifies the additional requirements. Provide a copy of the requirements to the cognizant security office. Use item 13 if additional space is needed.) TEMPEST requirements apply. Guidance provided in block 13 as reference item 11i. The contractor will be provided and will abide by DCID 6/3, “Protecting Sensitive Compartmented Information Within Information Systems”, 5 June 1999 and by DCID 6/9, "Physical Security Standards for Sensitive Compartmented Information Facilities (SCIF),” 18 November 2002. Provided under separate cover. item 11i.

FORMCHECKBOX

YES

FORMCHECKBOX

NO

15. INSPECTIONS. Elements of this contract are outside the inspection responsibility of the cognizant security office. (If Yes, explain and identify specific areas or elements carved out and the activity responsible for inspections. Use item 13 if additional space is needed.)

The DISA Security Office (MPS6) is responsible for inspection of SCI under this contract. The SAP Management Office is responsible for inspection of all SAP related information under this contract.

FORMCHECKBOX

YES

FORMCHECKBOX

NO

16. CERTIFICATION AND SIGNATURE. Security requirements stated herein are complete and adequate for safeguarding the classified information to be released or generated under this classified effort. All questions shall be referred to the official named below.

a. TYPED NAME OF CERTIFYING OFFICIAL
b. TITLE
c. TELEPHONE (Include Area Code)
KATHY M. TULLOCK
Contracting Officer
618-229-9550
d. ADDRESS (Include Zip Code)
17. REQUIRED DISTRIBUTION

DISA/DITCO/PL8311

2300 East Drive

Scott AFB IL 62225-5406

X
a. CONTRACTOR

b. SUBCONTRACTOR

X
c. COGNIZANT SECURITY OFFICE FOR PRIME AND SUBCONTRACTOR

e. SIGNATURE

d. U.S. ACTIVITY RESPONSIBLE FOR OVERSEAS SECURITY ADMINISTRATION

e. ADMINISTRATIVE CONTRACTING OFFICER

f. OTHERS AS NECESSARY DISA Industrial Security (MPS6)

DD Form 254 (BACK), DEC 1999

Continuation sheet One of Four For Block 13 of DD Form 254

The DISN GIG Services Management (GSM) contract will provide life-cycle support services for DISN including equipment, installations, operations and maintenance services which process classified information. Actual knowledge of the generation or production of classified information is not required for performance of the contract. The DISN security Architecture requires cleared personnel in order to carry out stated mission support. Hence, cleared individuals/contractors are essential to the life-cycle support of the DISN. Any classification guidance needed will be provided by the using activity.

Contractor personnel performing tasks on DISA contracts are assigned duties using sensitive unclassified automated information systems (AIS) designated as ADP-I (Top Secret based upon a Single Scope Background Investigation (SSBI) or ADP-II (the minimum investigation required is a National Agency Check plus written Inquiries (NACI). Network and database management, installation and maintenance personnel having unescorted access to network equipment on the Top Secret sensitive DISN must also be cleared at the same level of access.

All classified visit request by contractors shall be forwarded to the Contracting Officer’s Representative (COR) for approval and need-to-know certification before being sent to the facility to be visited.

The COR must be notified and approve the receipt and/or generation of classified information under this contract.

All classified information received and/or generated under this contract is the property of the U.S. Government regardless of proprietary claims. Upon completion or termination of this contract, the U.S. Government will be contacted for destruction or disposition instructions.

Reference Item 10a: Contractor is authorized to receive Government furnished cryptographic equipment. Access to classified COMSEC information requires a final U.S. Government clearance at the appropriate level. Further disclosure of COMSEC information by a contractor, to include subcontracting, requires prior approval of the government contracting activity. Non-accountable COMSEC information, though not tracked in the COMSEC material control system, may still require a level or control within a document control system. Refer to NSA/CSS Manual 3-16, Control of Communications Security Material, page E-4 for guidance.

Reference Item 10e(1): This contract requires access to SCI.

a. The number of personnel required to have access to SCI is determined by the COR/TM and the DISA SSO.

b. The Director, Defense Intelligence Agency (DIA) and Director, Defense Information Systems Agency (DISA), as the executive agent for DIA, have exclusive security responsibility for SCI released to the contractor or developed under this contract.

c. Contractor generated or Government furnished material may not be provided to the Defense Technical Information Center. Contract generated technical reports will bear the statement ‘Not Releasable to the Defense Technical Information Center per DoD Instruction 5230.24.’

d. All contractor personnel requiring access to SCI information must: be U.S. citizens, have been granted a final DCID 6/4 security clearance by the U.S. Government, and have been indoctrinated for the applicable compartments of SCI access prior to being given any access to such information released or generated under this contract.

Continuation sheet Two of Four

For Block 13 of DD Form 254

e. Classified material released or generated under this contract is not releasable to foreign nationals without the expressed written permission of the Director (through the DISA SSO) and Director, DIA.

f. SCI received under this contract may not be released to subcontractors without permission of the DISA SSO.

g. The contractor and COR/TM will revalidate all SCI billets under this contract with the DISA SSO annually or when a revised DD Form 254 issued, whichever is sooner.

h. All SCI visit requests by contractors shall be forwarded to the COR/TM for approval and need-to-know certification before being sent through the DISA SSO to the facility to be visited.

i. STU-III or STE terminals installed at the contractor's facilities shall be supported by a COMSEC account (of the contractor of DISA). STU-IIIs in SCI Facilities (SCIFs) require Class VI Cryptographic Ignition Key (CIK).

j. The contractor and COR will revalidate all SCI billets under this contract with the DISA Security Operations Division (D162) annually or when a revised DD Form 254 issued, whichever is sooner.

Reference Item 10f:

a. To execute this contract, additional security requirements in addition to DoD 5220.22-M will be required. The contractor shall comply with the security provisions of these programs. Marking and/or classification guidance for material originated or generated under this contract will be provided through the SAP Management Office under separate cover. Any material generated by the contractor (including correspondence, drawings, models, mockups, photographs, schematics, progress, special and inspection reports, engineering notes, computations and training aids) shall be classified according to content. Guidance for classification shall be derived from the applicable Security Classification Guides, documents, or special instructions. Such material shall not contain contractor logos or similar identifiers which identify the specific contractor or team members.

b. The Contractor Special Security Officers shall coordinate with the DISA Security Office (MPS6) and SAP Management Office prior to subcontracting any portion of this contract.

c. All personnel requiring access to SAP information must be U.S. citizens, have been granted a final U.S. Government security clearance, and have been indoctrinated for the applicable SAP prior to being given access to such information generated or received under this contract.

d. Contractor generated or Government furnished material may not be provided to the Defense Technical Information Center. Contractor generated reports will bear the statement: “Not Releasable to the Defense Technical Information Center” per DoD Instruction 5230.24.

e. Upon expiration of this contract, the contractor is required to have a close-out inspection by the DISA SSO and/or SAP Management Office to ensure proper disposition of material and equipment. The contractor shall request disposition instructions for all classified and unclassified project material. The contractor may be directed to properly destroy the material or return it. If classified or unclassified project material is to be retained by the contractor, every effort should be taken to transfer it to a follow-on contract or similar effort, if applicable. This must be done, however, with the contracting officer’s (KO) approval. The material shall be returned or destroyed as instructed, unless written authorization by the KO to retain specific material for a specific period of time is received. Any exception to security policy shall be referred to the Cognizant Security Office and the DISA Security Office (MPS6) for coordination with the appropriate agency(s) and the KO.

Continuation sheet Three of Four

For Block 13 of DD Form 254

f. The contractor is required to have a close-out inspection

Reference Items 10f and 11c: This contract will be performed in a facility approved through the DISA Security Office (MPS6) and/or the SAP Management Office in accordance with applicable SAP security requirements. The Defense Security Service is relieved of security cognizance by the SAP Management Office, which will have responsibility for all SAP material and/or information released under this contract.

Reference Item 10g: Access up to and including TS/SCI material will be required for reference at contractor facility, as needed Reference Item 10j: Contractor will be provided with and will abide by DoD Regulation 5400.7, DoD Freedom of Information Act Program, and DoD Regulation 5200.1-R, Information Security Program, Appendix 3.

Reference Item 11c: Contractor will reference the appropriate security classification guidance when generating or deriving classified material or hardware. All classified information received or generated will be properly stored and handled according to the markings on the material. All classified information received or generated is the property of the U.S. Government. At the termination or expiration of this contract, the U.S. Government will be contacted for proper disposition instructions.

Contractor will abide by the following security classification guidance:

Security Classification Guides have been provided on the supplemental data CDs as part of the RFP package(s). Contractors are expected to follow published guidance in all applicable regulations.

Reference Item 11d: The Contractor may be required to store classified hardware. If required, details will be provided in applicable task orders.

Equipment Maintenance Services – Reference Item 11e: Contract is for equipment maintenance services on equipment which processes classified information. Actual knowledge, generation or production of classified information is not required for performance of this contract. Cleared personnel are required to perform this service because escorting personnel cannot preclude access to classified information. Any classification guidance needed will be provided by the using activity.

Engineering Services – Reference Item 11e: Contract is for engineering services. Classification and markings on the material to be furnished will provide the classification guidance necessary for performance of this contract.

Reference Item 11f: Contractors when performing or traveling outside the United States under this contract will:

a) All personnel will obtain an AOR specific foreign travel brief within 90 days of travel and will provide proof of training to the COR/TM.

b) All personnel will receive the Antiterrorism Level I Awareness training within one year prior to travel.

Continuation sheet Four of Four

For Block 13 of DD Form 254

Reference Item 11g:

a. Technical information on file at the Defense Technical Information Center will be made available to the contractor if the contractor requires such information.

b. The contractor must prepare and forward a DD Form 1540 to the COR/TM for authorization BEFORE the services may be requested.

Reference Item 11i: The contractor shall not process classified information by electrical means prior to a DISA TEMPEST evaluation of the equipment/systems and facility, and written DISA certification that the facility meets DISA TEMPEST criteria. In order to expedite the DISA TEMPEST evaluation, the contractor shall provide a list of equipment, to include model number, which is associated with the processing of classified information. In addition, the estimated percentage of classified information processed, cable/conduit runs, a floor plan layout that depicts placement of equipment in relation to other rooms, equipment distances from walls or uncontrolled areas, and physical security being afforded the equipment both during processing and after hours. The above TEMPEST evaluation and DISA approval will not be required if previous DISA approval can be furnished and is no more than 2 years old. The existing approval must be for processing information at the same or higher level and at the same facility and items of equipment. The DISA Certified TEMPEST Technical Authority is the only authorized approving agent for TEMPEST systems within DISA.

Reference Items 11i:

a. The contractor will not process classified information by electrical means prior to a TEMPEST evaluation of the equipment/systems and facility, and written certification by the DISA Certified TEMPEST Technical Authority that the facility meets DISA TEMPEST criteria. In order to expedite the TEMPEST evaluation, the contractor shall provide a list and layout of equipment in accordance with DOD 5105.21 M-1 TEMPEST Addendum. The enclosure will include a floor plan layout that depicts placement of equipment in relation to other equipment, telephone lines and instruments, cable/conduit runs, etc. The drawing(s) are to show dimensions of rooms, physical relation to other rooms, equipment distances from walls or uncontrolled areas, and physical security being afforded the equipment both during processing and after hours.

b. Previous DISA Certified TEMPEST Technical Authority approval may be furnished provided it is not more than 2 years old. The approval must be for processing information of the same or higher level security classification and for the same facility and items of equipment.

OPSEC requirements apply. Guidance provided in block 13 as reference item 11j.

File details come from the government source that posted it. Updated .