HC108421R0011 Released.docx

DOCX document 131 KB Posted

Attached to
Warehouse Management Operating System (WMOS) Upgrade Federal contract opportunity
Solicitation number
HC108421R0011
Issued by
Defense Information Systems Agency

About this file

This is a performance work statement (PWS) for a firm fixed price contract to provide continued operations support for a warehouse management system (WMS) used by the Defense Commissary Agency (DeCA) at two central distribution centers located in Europe. The incumbent contractor will upgrade the WMS to a software-as-a-service model hosted in a FedRAMP environment, while also maintaining the existing system until migration is complete. The contractor will provide all personnel, equipment, and services to migrate and upgrade the WMS; maintain the current system; and then support the upgraded system. The base period of performance is one year from award with option years. The contractor will comply with all DoD security and information assurance requirements and assist in maintaining FedRAMP certification for the WMS solution.

View the file

Other files for this federal contract opportunity

Other files attached to Warehouse Management Operating System (WMOS) Upgrade, newest first.
File Type Posted
Justication and Approval 842166096.pdf PDF
Product List HC108421R0011.xlsx XLSX spreadsheet

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

HC108421R0011

Section SF 1449 - CONTINUATION SHEET

PWS

PERFORMANCE WORK STATEMENT (PWS)

As of 12 July 2021 Warehouse Management Open System (WMOS) Software Sustainment

Contract Number:
TBD

Task Order Number:

Tracking Number:

Follow-on to Previous Contract and Task Order Number:
HC1084-20-P-0003

1. Contracting Officer Representative (COR).

a. Primary COR.

Name:

Organization:
Defense Commissary Agency (DeCA)

Department of Defense Activity Address Code (DODAAC):

HQCAAA

Address:
1300 E Avenue Fort Lee, VA 23801-1800

Phone Number:

E-Mail Address:

2. Contract or Task Order Title. Warehouse Management Open System (WMOS)

3. Background. The DeCA manages commissary operations worldwide for the Department of Defense (DoD). These operations are supported with various systems using commercial-off-the-shelf (COTS). DeCA currently has fielded the WMOS COTS solution to both of DeCA’s Central Distribution Centers (CDCs) in Europe.

4. Objectives: The Defense Commissary Agency seeks to obtain continued support with an upgrade of the DeCA WMOS for the two CDCs located in Europe for FY21. Due to the COVID-19 Pandemic and other factors, the deployment and implementation of the replacement solution has been delayed and DeCA requires the retention and continuation of current capabilities provided by the current WMOS solution. Due to End of Life (EOL) of the primary WMOS application in April 2020 and the continued need of the WMOS solution, the WMOS solution requires an upgrade which will include migration into a Software as a Solution (SaaS) FedRAMP environment while maintaining the current environment until migration is completed. Once the WMOS solution is fully upgraded and migration to the FedRAMP SaaS environment has occurred, DeCA requires the same level of support and maintenance within the SaaS environment until the replacement solution is successfully fielded within both CDC’s in Europe.

5. Scope. The Contractor shall provide all personnel, supervision, management, and non-personal technical services required to migrate and upgrade the WMOS solution to a new version throughout its implementation, cutover, and sustainment. The Contractor shall provide all personnel, supervision, management, and non-personal technical services required to maintain the current fielded WMOS solution to mitigate disruption of current business operations in both European CDCs as required. The Contractor shall provide and maintain the same level of support and maintenance for the fielded solution and upgraded SaaS environment once completed. The Contractor will provide technical specifications for additional and upgraded software, including any upgraded third-party software required to support the current and upgraded WMOS solution. DeCA currently owns licenses for the ASL IBM MQ Licenses, Oracle Data Guard and VoCollect Software required to support the WMOS solution; however, any upgrades to the third party software and/or any required software that is not bundled with the WMOS package will need to be included and executed by the Contractor. The Contractor shall propose a timeline for implementation of the upgrade and migration to the FEDRAMP SaaS environment to DeCA for approval and update the timeline as needed throughout the upgrade and migration execution.

6. Performance Requirements.

6.1 COTS Software Package

6.1.1 WMOS Functional Specifications – The contractor shall provide the same level of support and maintenance for all functional capabilities of the current fielded WMOS solution and the upgraded and deployed FedRAMP WMOS SaaS solution. The FedRAMP WMOS SaaS solution will mirror and possess the same functional capabilities as the current fielded WMOS solution.

6.1.2 Technical Specifications – The contractor shall continue to provide and meet all technical capabilities of the currently deployed WMOS solution. The contractor will provide and meet all technical capabilities within the upgraded and deployed FedRAMP WMOS SaaS Solution.

6.1.3 The Contractor shall provide licenses and software support for the 200 concurrent users utilizing WMOS worldwide. The contractor shall provide an environment to allow for the testing and access of DeCA designated Subject Matter Experts (SMEs) for testing and training of the current WMOS and future FedRAMP WMOS SaaS solution. The Contractor shall engage with DeCA SME(s) throughout the upgrade and migration of the WMOS solution to a SaaS environment. The Contractor shall provide automated testing capabilities with the capability to provide and produce artifacts on test results.

6.1.4 The Contractor shall provide product support and upgrades to include both major scheduled software releases and periodic incremental releases to add minor functionality or resolve software bugs that do not operate per the required technical and functional specifications. All of the product support and upgrades outlined above will be included in the software support cost.

6.1.5 The Contractor shall provide a warranty for all COTS software and modifications to COTS software developed under past contracts with DeCA. This warranty shall apply to software developed to maintain existing operational baselines as well as any software developed in support of new requirements.

6.1.6 All materials provided by the contractor under this contract become the property of the Federal Government. All software/code purchased, provided, written, or developed under this contract for the use of Federal Government, becomes the property of the Federal Government. In the monthly status report, the contractor shall document the purchase, use, transfer, and destruction of all Government provided or Contractor-acquired property.

6.1.7 The Federal Government (DeCA) shall retain ownership of all operational data within the WMOS environments (Test and Production,). The Federal Government shall retain its data rights of all data produced, utilized, updated, populated and/or maintained under this contract.

6.2 Software Maintenance and Support Services

6.2.1 The Government will provide Level I support through the DeCA Enterprise Service Desk (DESD). Level I support consists of a 24 x 7 Service Desk, logging of problems within the Service Desk ticketing system (Remedy) and establishing priority, providing problem resolution for recurring/minor problems such as printer, PC, network, or RF-handheld malfunctions, and escalating problems to Level II support when required.

6.2.2 The Contractor shall provide Level II support for all software acquired through this contract. The contractor shall resolve problems that are of a complex nature with available troubleshooting tools and expert knowledge of the system. Typical problems resolved by Level II support include, but are not limited to, solving application problems or providing pre-approved workarounds to solve the problems, researching status on files, restaging and processing files, and resolving minor database problems.

6.2.3 The Contractor shall provide Level III support for systems identified within this PWS. The contractor shall resolve any problems reported on the system. The Contractor shall resolve and/or provide an approved and implemented successful workaround within 6 hours for all emergency problems and/or high priority or critical (P1) tickets.

6.2.4 The Contractor shall maintain a 24-hour, 7 days per week, 365 days per year call support center to provide operational support to users worldwide (CONUS and OCONUS).

6.2.5 The Contractor shall establish a continuous telephone service within the United States to provide DeCA the ability to report problems 24 hours per day.

6.2.6 The Contractor shall answer and provide a live response to all incoming calls within forty-five (45) seconds. All call center personnel responding to DeCA queries shall speak, write, and understand English.

6.2.7 The Contractor shall respond to system problems using a problem priority process. The internal DeCA Help Desk will establish a priority for each problem upon entry into the DeCA Remedy system. DeCA Program Management Office (PMO) has established the following priority classification and response times for mission essential systems:

P1 MISSION ESSENTIAL (CRITICAL)

· DC cannot process orders and/or Financial Accountability is at Risk

· Response Time: 15 minutes

· Resolution Time: 6 hours

P2 USER ESSENTIAL (HIGH)

· Individuals cannot perform their job responsibilities

· Response Time: 2 hours

· Resolution Time: 18 hours

P3 GENERAL ISSUES (MEDIUM)

· Job responsibilities cannot be performed, but an alternative is available

· Response Time: 4 hours

· Resolution Time: 36 hours

P4 INQUIRIES, QUESTIONS, AD-HOC REPORTS (LOW)

· Non-Production System Support

· Response Time: 24 hours

· Resolution Time: 72 hours

6.3 Configuration Management Support

6.3.1 The Contractor shall provide documentation for all software installation and configuration change procedures.

6.3.2 The Contractor shall provide a Software Version Description Document detailing the content of all software releases to include any scripts, codes, applications and/or programs that change the software baseline.

6.3.3 The Contractor shall follow and support the DeCA IT Technical Review Process for Information Systems. The Contractor will work with the DeCA point of contact to ensure all system changes requests are submitted through this process with the appropriate documentation. The Contractor shall ensure that all systems change requests (CRs) have been developed and tested at the COTS provider’s site. The COTS provider shall document and produce findings on all testing and quality assurance (QA) performed. After successful testing and QA and a review conducted of evidence produced to substantiate successful testing and QA via screen prints or output from the application, the patch or modification will be installed on the production environment.

6.3.4 The Contractor shall maintain the current application baseline to match the DeCA production environment, which will be base-lined and documented upon completion of the upgrade and migration. Once the WMOS SaaS upgrade and migration are complete, the Contractor shall maintain the baseline within the WMOS SaaS environment(s) (Pre-Production and Production). All changes to the DeCA production environment, the vendor’s development environment and/or vendor’s SaaS environment shall be documented and tested.

6.3.5 The Contractor shall provide all programs, processes, menus, screens, loading and implementation instructions, user documentation, user guides and any other information pertinent to releasing the changes to the operational baselines (including patches and scripts that produce a configuration change).

6.3.6 The Government will provide a personal computer with VPN access to the DeCA network and any applicable servers required.

6.5 Operational System Support

6.5.1 The Contractor shall identify any new software, including any third-party software, needed to sustain the WMOS Solution.

6.5.2 The Contractor shall provide support in tuning of the WMOS application to include but not limited to database instance(s), application settings/parameters, operating systems, server settings, client computing settings, and network tuning parameters to achieve optimum performance.

6.5.3 The Contractor shall test operating system, Information Assurance Vulnerability Alerts (IAVAs), and database upgrades in their development environment and identify/mitigate issues prior to production environment upgrades. The contractor shall assist the PMO in maintaining Information Assurance Vulnerability Management compliance and documenting mitigation plans as required.

6.5.4 The Contractor shall provide to the Government all executable files including modified or converted modules and bundled third-party software, operational processes, programs, scripts, codes, operating instructions, databases, system files, documentation, test files, and test conditions used to develop the application for DeCA.

6.5.5 The Contractor shall provide remote system support for analysis and troubleshooting for maintaining a healthy system.

6.5.6 The Contractor shall utilize the Information System Contingency Plan (ISCP) template provided by DeCA that adheres to the NIST SP 800-53 policies and procedures to provide a NIST SP 800-53 plan that addresses failover, disaster recovery (DR), duration and timing for data and system restoration from a backup, and Continuity of Operations (COOP) integration and implementation for the WMOS SaaS environments. The Contractor shall support annual DR and COOP tests and/or exercises to ensure data retention, data restoration and continued operations of the WMOS solution.

6.5.6.1 The Contractor shall develop, implement and provide artifacts and/or technical documentation for its Backup and Recovery processes and procedures to mitigate and avoid data loss, improve data recovery, performance redundancy and enhance storage capacity efficiency within the WMOS SaaS environment.

6.5.7 The Contractor shall provide and update software release documentation for all patches, upgrades, and versions delivered to the Government.

6.5.8 The Contractor shall assist the DeCA IA PMO in resolving any issues during the security testing and evaluation phase to ensure successful completion of the DoD Risk Management Framework (RMF). The Contractor shall assist the Information Assurance Office in ensuring that all security requirements (STIGs, IA controls, checklist items and JTFGNO mandated items) are implemented in the application prior to starting ST&E (Security Test and Evaluation).

6.5.9 The Contractor shall support testing and validation for all patch updates (including DoD mandated security patches) for operating systems, databases, third party, and embedded software for all certified releases of the WMOS products within 30 days of notification or by the DoD mandated response date whichever comes first. The DoD issues Information Assurance Vulnerability Alerts (IAVAs) for all systems.

6.5.10 The Contractor shall adhere to the DoD and DeCA Information Assurance Requirements Compliance and Support Procedures, and the Public Key Infrastructure policies for software implementation and support. http://www.dtic.mil/whs/directives/corres/pdf/852002p.pdf

6.5.11 The Contractor shall prepare impact analysis and detailed cost estimates associated with System Changes request (SCR) when requested by the COR within 10 business days of request.

6.5.12 The Contractor shall provide documentation for all metadata and data models. The documentation provided shall include detailed information such as all table names, relationships, columns and column attributes (including business names, definitions, data types, and sizes), logical and physical data models. The Contractor shall ensure that DeCA receives updates for metadata and data models as required throughout the lifecycle of the products.

6.5.13 The Contractor is solely responsible for connectivity to theDeCA network and its SaaS environment. The Contractor shall coordinate and ensure DeCA’s connectivity to its SaaS environment and address any connectivity issues impeding and/or prohibiting DeCA’s access.

6.6 Program Management

6.6.1 The Contractor shall provide technical specifications for hardware and software, including any third-party software, needed to sustain the WMOS solution.

6.6.2 The Contractor shall submit written monthly status reports on tasks performed during the contract’s period of performance. In addition, the status report shall include a summary of maintenance support activities and possible risks or issues.

6.6.3 Program Management Review - The contractor shall perform a quarterly Program Management Review (PMR). The Contractor shall prepare and submit a Microsoft PowerPoint presentation that details schedule, cost, baseline, issues and risks to the COR and TM ten (10) business days prior to the scheduled PMR. The location of PMR meetings will be either at DeCA HQ Ft. Lee, the contractor’s site, a third-party location, or conducted via Video Teleconference (VTC). The Contractor is responsible for taking the PMR meeting minutes.

6.6.4 The Contractor shall provide assistance to create the required documents and/or artifacts required to support DeCA Program Management Office (PMO) efforts to obtain and maintain FedRAMP certification of its WMOS solution and complete the required FedRAMP 3PAO assessment.

6.7 Test and Evaluation

6.7.1 System Testing. The Contractor shall perform WMOS testing and evaluation of the software and all upgrades and patches prior to delivery to the Government to support the Government’s internal testing and production release procedures and processes. The Contractor shall document all Test Cases in a Test Plan. The Contractor shall provide automated testing and the capability to generate ad hoc report and Test Reports from the system and/or application that will include Test Results prior to delivery to the Government.

6.8 Information Assurance

6.8.1 The WMOS software shall comply with DoD information assurance standards as published in DoD 8500.01E and DoDI 8500.2, which can be found on the World Wide Web at the following link: http://www.acq.osd.mil/ie/bei/pm/ref-library/dodd/d85001p.pdf. The software shall also comply with standards in applicable Defense Information Systems Agency (DISA) Security Technical Implementation Guidelines (STIG) and checklists.

6.8.2 The contractor shall assist DeCA in the generation of all documentation to maintain accreditation under the RMF process.

6.8.3 The WMOS shall comply with Joint Task Force-Global Network Operations task orders by mandated response dates (as released). DeCA will forward all JTF-GNO task orders as soon as they are published. Mandated response dates may vary from one day to several weeks.

6.8.4 The WMOS shall comply with the use of public key infrastructure technology for authentication in accordance with DoD guidelines. Web servers hosting data that is not approved for release outside of the Government shall use Secure Sockets Layer (SSL) for access and public key certificates to authenticate users. If WMOS relies on DeCA’s Active Directory to authenticate system users, then the systems shall be compatible with DeCA’s smart card logon solution. Instead of the use of SAML, DeCA would prefer the modification of the Manhattan Identity Provider (MIP) module using Kerberos to utilize the DeCA Active Directory. http://www.dtic.mil/whs/directives/corres/pdf/852002p.pdf

6.8.5 Contractors with access to the DeCA network shall comply with smart card logon requirements. The contractor shall support DeCA in the secure distribution, management, and disposal of credentials or tokens used by remote contractors for access to the DeCA network.

6.8.6 Contractors with access to Government computer systems shall meet the requirements of DoD 5200.2-R as implemented by DeCA and receive a favorable background investigation commensurate with their level of system access. This includes designating each contractor to an IT position category (i.e. IT-I, IT-II, or IT-III) based on their level of access and in accordance with DeCA criteria. DoD 5200.2-R can be found on the World Wide Web at the following link: http://www.dtic.mil/whs/directives/corres/pub1.html.

6.8.7 The WMOS software shall comply with the DoD ports, protocols, and services policy.

6.8.8 The contractor shall review DoD and DeCA system security requirements and document all exceptions to the standard settings required for the WMOS. Exceptions are only allowed if they are approved by the DeCA Designated Accrediting Authority (DAA).

6.8.9 DeCA shall be allowed access to any offsite contractor-operated systems that process, transmit, or store DeCA information for the purposes of evaluating the security compliance. Activities will include, but are not limited to, scanning and interviews.

6.8.11 Contractor will comply with 8570.01-m, Workforce Improvement Program, as required (See 12.4).

6.8.12 Contractor shall comply with all United Stated Department of Defense Instructions and Directives unless directed otherwise by Contracting Officer. DOD Instructions and Directives can be found at the following link: http://www.dtic.mil/whs/directives/index.html

6.9 Operational Sustainment Support

6.9.1 The contractor shall provide for the cost required to perform software upgrades, any software and hardware fixes that are not covered under the software or hardware support.

7. Performance Standards.

Performance Element
PWS Para
Performance Objective
Method of Surveillance
Systems Testing
6.7.2
The Systems Testing covers all WMOS requirements, and has no more than three (3) minor corrections per release.
100% Inspection
Technical Training Sessions
6.4.1
The Technical Training Sessions are delivered and receive a Satisfactory overall rating from at least 85 percent of the attendees completing the training.
Customer Input using survey

8. Incentives. Incentives are not part of this contract. Failure to perform work agreed that is within scope of the contract will result in payment being withheld.

9. Place of Performance.

9.1 The contractor shall perform work at the contractor’s site using remote access from Government provided workstations. The Contractor may be required to provide on-site support at DeCA Headquarters location.

10. Period of Performance. The base period of performance (POP) will be for a period of 12 months beginning at contract award, with a one (1) year options as follows:

· Base Year:

· CLIN 0001: WMOS – Discovery, Initial Upgrade and ATO

· PoP: 30 September 2021 – 231 March 2022

· CLIN 0002: WMOS – SaaS Subscription (Including all annual upgrades)

· PoP: 30 September 2021 – 29 September 2022

· CLIN 0003: WMOS – Operational & Sustainment of Current Solution

· PoP: 30 September 2021 – 31 December 2021

· CLIN 0004 (Optional): Operational & Sustainment of Current Solution

· PoP: 01 January 2022 – 31 March 2022

· CLIN 0005 (Optional): Operational & Sustainment of Current Solution

· PoP: 01 April 2022 – 31 July 2022

· Option Year

· CLIN 1001: WMOS – SaaS Subscription (Including all annual upgrades)

· PoP: 30 September 2022 – 29 September 2023

11. Delivery Schedule.

Delivery of computer programs, specifications, technical reports, progress/status reports, and any other data shall be in accordance with the following table and outlined sections within the PWS. All deliverables under this contract shall become the property of the Government. The Government shall retain all rights to the data within the current WMOS solution and the upgraded FEDRAMP SaaS WMOS solution.

11.1 Deliverables

PWS Ref#
Deliverable Title
Distribution
Frequency
5.0
FedRAMP SaaS Implementation and Migration Timeline/Schedule
Standard*
NLT 30 business days post contract award
6.5.4
WMOS Software Package including custom modules, system test scripts and installation documentation
Standard*
NLT 40 Business Days after acceptance of implementation plan
6.5.6
ISCP
Standard*
NLT than 30 business days prior to the SaaS environment upgrade
6.5.7
Software release documentation for all patches, upgrades, and versions.
Standard*
Contained in software release package or software delivery
6.7.1
Systems Test Plan
Standard*
Contained in software release package or software delivery
6.7.1
Systems Test Report
Standard*
Contained in software release package or software delivery
6.5.11
Impact analysis/Cost Estimate for software change requests
Standard*
Within 10 Business Days after Requested by COR
6.6.2
Monthly status reports
Standard*
NLT 10th of each month
6.6.3
PMR Microsoft PowerPoint presentation that details schedule, cost, baseline and issues to the COR/TM.
Standard*
Ten (10) business days prior to the scheduled PMR for review. The first PMR will be scheduled 90 days from contract award.
6.6.4
PMR Minutes
Standard*
Within five (5) Business Days after completion of the PMR
12.4
Information Assurance Awareness Training -Completion Certification for applicable employees
Standard*
Within 10 Business Days after Requested by COR

* Standard Distribution: 1 copy of the transmittal letter with the deliverable to the Primary and Alternate Task Managers at Jeffrey.Cook@deca.mil , and Johanna.Rowe@deca.mil. Deliverable may be submitted in contractor format unless otherwise specified. Written documents should be in Microsoft Word 2013 (or later). Project schedule should be submitted in Microsoft Project 2013 (or later).

12. Security.

12.1 Contractor personnel shall abide by DoD and DeCA security policies and procedures as part of their daily interface with DeCA. The contractor shall not divulge any information about files, data, processing activities or functions, user IDs, passwords, or other knowledge that may be gained, to anyone who is not authorized access to such information. The Contractor shall adhere to cybersecurity policies and procedures as defined in DoD and DeCA laws, directives, instructions, and regulations. The Contractor shall execute a non-disclosure agreement furnished by DeCA immediately following contract award.

12.2 All Contractors’ employees while working at a Government facility, shall conspicuously display on their person a badge, which shall include the full name of the employee, and the legal name under which the Contractor is doing business. Further, the Contractor personnel shall comply with all DeCA and DoD security and administrative policy and procedures.

12.3 The contractor shall be required to have all employees, prime and sub-contracted, working on this Government project to sign a sensitive but unclassified non-disclosure agreement prior to soliciting data from DeCA. The agreement shall prohibit the contractor from divulging any information. It shall be the contractor’s responsibility to exercise reasonable diligence to ensure other persons have proper authority before providing them with official information. While access to classified information will not be required in the performance of this task order, the contractor may be required to have access to information, records, or data that may be highly sensitive. Contractor personnel shall abide by applicable office rules, procedures, and standards of conduct. All contractor personnel shall have a satisfactory IT sensitivity background investigation completed before they are allowed to access the DeCA network. This requirement includes access to the local area network at the DeCA development center currently located at Fort Lee, Virginia. The contractor shall initiate all requests for background investigations when requested by the COR.

12.4 The Contractor shall comply with DoD Directive 8140.01, Cyberspace Workforce Management and the Implementation Manual DoD 8570.01-M, Information Workforce Improvement Program, DoD Instruction 8500.01, Cybersecurity, and DoD Instruction 8510.01 RMF for DoD Information Technology (IT). Per DoD 8570.01-M and DFARS 252.239.7001, the Contractor employees supporting Cyber Workforce functions shall be appropriately certified upon contract award. The baseline certification as stipulated in DoD 8570.01-M must be completed upon contract award.

All new Contractor employees working Cyber Workforce functions must comply with DoD training requirements in DoD 8570.01-M and obtain DoD-approved IA baseline certification prior to performing on the contract. The contractor will obtain the remaining certifications and training as required per DoD 8570.01-M.The contract Employee shall sign a “Statement of Responsibility” with respect to the cyber security labor category in which they are hired and submit to the COR.

12.5 Information Technology Position Levels. Any individual with a need to access DeCA’s sensitive information and/or computer resources must have a favorably adjudicated background investigation commensurate with their level of access prior to obtaining access, IAW DoDM 5200.02. All contractor positions should have an assigned position sensitivity category that is used to determine the minimum background investigation/clearance required for an individual to hold that position.

An individual may be responsible for one or multiple duties listed in IT-I, IT-II, or IT-III in the table below. An individual need only perform one responsibility listed in any one category to be designated at that IT level. However, individuals performing multiple responsibilities from different categories should be categorized at the highest IT level required by the specific duties and risk.

The term Foreign National (FN) refers to all individuals who are Non-U.S. citizens including U.S. military personnel, DoD civilian employees and contractors. Foreign Nationals (FNs) are not authorized to hold a DoD IT position unless information to which the individual will have access has been approved in writing for foreign disclosure in accordance with DoDD 5230.11 and conditions within Tables 1-1, 1-2, and 1-3 have been met. In all cases, FNs may only be assigned to an IT-I position after the Director of DeCA approves and signs a waiver. In addition, FNs may only hold an IT position provided the required background investigation has been completed and favorably adjudicated. FN hires covered by the provisions of a Status of Forces Agreement (SOFA), or other international agreement, require host-nation personnel security investigations that are the equivalent of the U.S. investigative level indicated.

Table 1-4. IT Specialist Titles and IT Position Levels

IT-I
Security (INFOSEC)-IT-II if primarily policy, planning, or awareness focused.

Network Services (NETWORK)-depends on scope of the network- criticality or mission impact (could be IT-II)

System Administration (SYSADMIN)-IT-II if stand-alone system or compromise limited to isolated system/network.

IT-II
Operating Systems (OS)-IT-I if individual acts independently without oversight or review by an IT-I.

Internet (INET)-IT-I if privileged access to network functions

IT-III
Policy and Planning (PLCYPLN)-IT-II if responsible for INFOSEC/IA applications or privileged contract award info.

Systems Analysis (SYSANALYSIS)-IT-II if responsible for INFOSEC/IA systems.

Applications Software (APPSW)-IT-II if responsible for INFOSEC/IA systems.

Data Management (DATAMGT)-IT-II if responsible for safeguarding privacy data.

Customer Support (CUSTSPT)-IT-I or IT-II if privileged access.

Many IT positions involve a mixture of responsibilities and may cover multiple specialty titles. Positions should be categorized at the highest level required by the specific duties and risk.

Interim assignment to IT-I, IT-II, and IT-III positions may be granted to individuals, except FNs, prior to a favorable adjudication of the required background investigation only after the following conditions have been met:

IT-I:

· favorable completion of the NAC (current within 180 days)

· initiation of an SSBI/favorable review of investigation form

IT-II:

· favorable review of local personnel, military, medical, and other security records as appropriate

· initiation of required investigation/favorable review of investigation form

IT-III:

· favorable review of local personnel, military, medical, and other security records as appropriate

· initiation of required investigation/favorable review of investigation form

13. Government-Furnished Equipment (GFE)/Government-Furnished Information (GFI). The Government has already provided and will continue to provide the use of the workspace, computer equipment, telephone access (for task-related business calls only), and office supplies for services performed on-site. For remote support, the Government has provided and will continue to provide a computer workstation with necessary software to allow authorized users to connect to the DeCA network using Virtual Private Network. Network (LAN and WAN) services and resources needed to connect to the DeCA network remains the responsibility of the contractor.

14. Other Pertinent Information or Special Considerations.

a. Identification of Possible Follow-on Work. N/A

b. Identification of Potential Conflicts of Interest (COI). The contractor shall identify any potential conflicts of interest and deliver a mitigation plan to address them as part of the proposal. The contractor and any subcontractors are hereby placed on notice that they may be precluded from participating in future federal contract competitions for the planning, furnishing, development, or oversight of systems, subsystems, major components, or other hardware or software items, resulting from specifications, statements of work, or other services performed under this requirement for a period of 24 months after completion of the contract. The guidelines and procedures of FAR Subpart 9.5 will be used in identifying and resolving any issues of organizational conflict of interest. In the event that task orders issued under this contract require the contractor to gain access to proprietary information of other companies, the contractor shall be required to execute agreements with those companies to protect the information from unauthorized use and to refrain from using it for any purpose other than for which it was furnished.

c. Identification of Non-Disclosure Requirements. N/A

d. Packaging, Packing, and Shipping Instructions.

All deliverables (software, documentation, hardware) should be mailed to DeCA Headquarters at the following address

Defense Commissary Agency
1300 E Avenue
Ft. Lee, VA 23801-1800

e. Inspection and Acceptance Criteria.

Identified in Sections 11.1.

15. Section 508 Accessibility Standards. The following Section 508 Accessibility Standard(s) (Technical Standards and Functional Performance Criteria) are applicable (if box is checked) to this acquisition.

Technical Standards

|X| 1194.21 - Software Applications and Operating Systems |X| 1194.22 - Web Based Intranet and Internet Information and Applications |_| 1194.23 - Telecommunications Products |_| 1194.24 - Video and Multimedia Products |_| 1194.25 - Self-Contained, Closed Products |_| 1194.26 - Desktop and Portable Computers |X| 1194.41 - Information, Documentation and Support

The Technical Standards above facilitate the assurance that the maximum technical standards are provided to the Offerors. Functional Performance Criteria is the minimally acceptable standards to ensure Section 508 compliance. This block is checked to ensure that the minimally acceptable electronic and information technology (E&IT) products are proposed.

Functional Performance Criteria

|X| 1194.31 - Functional Performance Criteria

ITEM NO
SUPPLIES/SERVICES
QUANTITY
UNIT
UNIT PRICE
AMOUNT
1
Each

Warehouse Management Solution

FFP

Warehouse Management Solution, Discovery. initial upgrade and ATO

Period of Performance: September 30, 2021 through March 31, 2022

The contractor is authorized to invoice monthly in arrears for services provided.

FOB: Destination

PSC CD: DA01

NET AMT

ITEM NO
SUPPLIES/SERVICES
QUANTITY
UNIT
UNIT PRICE
AMOUNT
1
Each

Warehouse Management Solution

Warehouse Management Solution, SaaS Subscription (including all annual upgrades)

Period of Performance: September 30, 2021 through September 29, 2022

NET AMT

ITEM NO
SUPPLIES/SERVICES
QUANTITY
UNIT
UNIT PRICE
AMOUNT
1
Each

Warehouse Management Solution

Warehouse Management Solution, Operational and Sustainment Support of current solution

Period of Performance: September 30, 2021 through December 31, 2021

The contractor is authorized to invoice monthly in arrears for services provided.

NET AMT

ITEM NO
SUPPLIES/SERVICES
QUANTITY
UNIT
UNIT PRICE
AMOUNT
1
Each
OPTION
Warehouse Management Solution

FFP

Optional Base Period Warehouse Management Solution, Operational and Sustainment Support of current solution

Period of Performance: January 1, 2022 through March 31, 2022

The contractor is authorized to invoice monthly in arrears for services provided.

NET AMT

ITEM NO
SUPPLIES/SERVICES
QUANTITY
UNIT
UNIT PRICE
AMOUNT
1
Each
OPTION
Warehouse Management Solution

FFP

Optional Base Period Warehouse Management Solution, Operational and Sustainment Support of current solution

Period of Performance: April 1, 2022 through July 31, 2022

The contractor is authorized to invoice monthly in arrears for services provided.

NET AMT

ITEM NO
SUPPLIES/SERVICES
QUANTITY
UNIT
UNIT PRICE
AMOUNT
1
Each
OPTION
Warehouse Management Solution

FFP

Option Period One Warehouse Management Solution, SaaS Subscription (including all annual upgrades)

Period of Performance: September 30, 2022 through September 29, 2023

NET AMT

INSPECTION AND ACCEPTANCE TERMS

Supplies/services will be inspected/accepted at:

CLIN
INSPECT AT
INSPECT BY
ACCEPT AT
ACCEPT BY
0001
N/A
N/A
N/A
Government
0002
N/A
N/A
N/A
Government
0003
N/A
N/A
N/A
Government
0004
N/A
N/A
N/A
Government
0005
N/A
N/A
N/A
Government
1001
N/A
N/A
N/A
Government

DELIVERY INFORMATION

CLIN
DELIVERY DATE
QUANTITY
SHIP TO ADDRESS
DODAAC / CAGE
0001
POP 30-SEP-2021 TO

31-MAR-2022

N/A
DECA

1300 E. AVE

FT. LEE VA 23801

JOHANNA ROWE

804-734-8000

HQCAAA

0002
POP 30-SEP-2021 TO

29-SEP-2022

N/A
(SAME AS PREVIOUS LOCATION)

HQCAAA

0003
POP 30-SEP-2021 TO

31-DEC-2021

N/A
(SAME AS PREVIOUS LOCATION)

HQCAAA

0004
POP 01-JAN-2022 TO

31-MAR-2022

N/A
(SAME AS PREVIOUS LOCATION)

HQCAAA

0005
POP 01-APR-2022 TO

31-JUL-2022

N/A
(SAME AS PREVIOUS LOCATION)

HQCAAA

1001
POP 30-SEP-2022 TO

29-SEP-2023

N/A
(SAME AS PREVIOUS LOCATION)

HQCAAA

CLAUSES INCORPORATED BY REFERENCE

52.202-1
Definitions
JUN 2020
52.203-3
Gratuities
APR 1984
52.203-6 Alt I
Restrictions On Subcontractor Sales To The Government (JUN 2020) -- Alternate I
OCT 1995
52.203-11
Certification And Disclosure Regarding Payments To Influence Certain Federal Transactions
SEP 2007
52.203-17
Contractor Employee Whistleblower Rights and Requirement To Inform Employees of Whistleblower Rights
JUN 2020
52.204-4
Printed or Copied Double-Sided on Postconsumer Fiber Content Paper
MAY 2011
52.204-10
Reporting Executive Compensation and First-Tier Subcontract Awards
JUN 2020
52.204-19
Incorporation by Reference of Representations and Certifications.
DEC 2014
52.204-20
Predecessor of Offeror
AUG 2020
52.204-22
Alternative Line Item Proposal
JAN 2017
52.204-23
Prohibition on Contracting for Hardware, Software, and Services Developed or Provided by Kaspersky Lab and Other Covered Entities.
JUL 2018
52.204-25
Prohibition on Contracting for Certain Telecommunications and Video Surveillance Services or Equipment.
AUG 2020
52.209-6
Protecting the Government's Interest When Subcontracting With Contractors Debarred, Suspended, or Proposed for Debarment
JUN 2020
52.209-7
Information Regarding Responsibility Matters
OCT 2018
52.209-9
Updates of Publicly Available Information Regarding Responsibility Matters
OCT 2018
52.212-1
Instructions to Offerors--Commercial Items
JUL 2021
52.212-4
Contract Terms and Conditions--Commercial Items
OCT 2018
52.212-5 (Dev)
Contract Terms and Conditions Required to Implement Statutes or Executive Orders--Commercial Items (Deviation 2018-O0021)
JUL 2021
52.212-5 (Dev)
Contract Terms and Conditions Required to Implement Statutes or Executive Orders--Commercial Items (Deviation 2018-O0021)
JUL 2021
52.217-5
Evaluation Of Options
JUL 1990
52.219-8
Utilization of Small Business Concerns
OCT 2018
52.222-3
Convict Labor
JUN 2003
52.222-21
Prohibition Of Segregated Facilities
APR 2015
52.222-26
Equal Opportunity
SEP 2016
52.222-37
Employment Reports on Veterans
JUN 2020
52.222-40
Notification of Employee Rights Under the National Labor Relations Act
DEC 2010
52.222-50
Combating Trafficking in Persons
OCT 2020
52.223-18
Encouraging Contractor Policies To Ban Text Messaging While Driving
JUN 2020
52.225-13
Restrictions on Certain Foreign Purchases
FEB 2021
52.227-1
Authorization and Consent
JUN 2020
52.227-2
Notice And Assistance Regarding Patent And Copyright Infringement
JUN 2020
52.229-4
Federal, State, And Local Taxes (State and Local Adjustments)
FEB 2013
52.232-28
Invitation to Propose Performance-Based Payments
MAR 2000
52.233-1
Disputes
MAY 2014
52.233-3
Protest After Award
AUG 1996
52.242-13
Bankruptcy
JUL 1995
52.243-1
Changes--Fixed Price
AUG 1987
52.245-1
Government Property
JAN 2017
52.245-9
Use And Charges
APR 2012
52.247-34
F.O.B. Destination
NOV 1991
52.253-1
Computer Generated Forms
JAN 1991
252.203-7000
Requirements Relating to Compensation of Former DoD Officials
SEP 2011
252.203-7002
Requirement to Inform Employees of Whistleblower Rights
SEP 2013
252.203-7005
Representation Relating to Compensation of Former DoD Officials
NOV 2011
252.204-7003
Control Of Government Personnel Work Product
APR 1992
252.204-7012
Safeguarding Covered Defense Information and Cyber Incident Reporting
DEC 2019
252.204-7018
Prohibition on the Acquisition of Covered Defense Telecommunications Equipment or Services
JAN 2021
252.205-7000
Provision Of Information To Cooperative Agreement Holders
DEC 1991
252.209-7004
Subcontracting With Firms That Are Owned or Controlled By The Government of a Country that is a State Sponsor of Terrorism
MAY 2019
252.211-7007
Reporting of Government-Furnished Property
AUG 2012
252.223-7008
Prohibition of Hexavalent Chromium
JUN 2013
252.225-7002
Qualifying Country Sources As Subcontractors
DEC 2017
252.225-7012
Preference For Certain Domestic Commodities
DEC 2017
252.225-7031
Secondary Arab Boycott Of Israel
JUN 2005
252.225-7048
Export-Controlled Items
JUN 2013
252.225-7052 (Dev)
Restriction on the Acquisition of Certain Magnets, Tantalum, and Tungsten (DEVIATION 2020-O0006)
OCT 2020
252.225-7974 (Dev)
Representation Regarding Business Operations with the Maduro Regime (DEVIATION 2020-O0005)
FEB 2020
252.226-7001
Utilization of Indian Organizations and Indian-Owned Economic Enterprises, and Native Hawaiian Small Business Concerns
APR 2019
252.227-7013
Rights in Technical Data--Noncommercial Items
FEB 2014
252.227-7014
Rights in Noncommercial Computer Software and Noncommercial Computer Software Documentation
FEB 2014
252.227-7015
Technical Data--Commercial Items
FEB 2014
252.227-7016
Rights in Bid or Proposal Information
JAN 2011
252.227-7030
Technical Data--Withholding Of Payment
MAR 2000
252.232-7003
Electronic Submission of Payment Requests and Receiving Reports
DEC 2018
252.232-7010
Levies on Contract Payments
DEC 2006
252.239-7001
Information Assurance Contractor Training and Certification
JAN 2008
252.243-7001
Pricing Of Contract Modifications
DEC 1991
252.243-7002
Requests for Equitable Adjustment
DEC 2012
252.244-7000
Subcontracts for Commercial Items
JAN 2021
252.245-7001
Tagging, Labeling, and Marking of Government-Furnished Property
APR 2012
252.245-7002
Reporting Loss of Government Property
JAN 2021
252.245-7003
Contractor Property Management System Administration
APR 2012
252.245-7004
Reporting, Reutilization, and Disposal
DEC 2017
252.247-7023
Transportation of Supplies by Sea
FEB 2019

CLAUSES INCORPORATED BY FULL TEXT

52.204-5 WOMEN-OWNED BUSINESS (OTHER THAN SMALL BUSINESS) (OCT 2014)

(a) Definition. Women-owned business concern, as used in this provision, means a concern that is at least 51 percent owned by one or more women; or in the case of any publicly owned business, at least 51 percent of its stock is owned by one or more women; and whose management and daily business operations are controlled by one or more women.

(b) Representation. [Complete only if the offeror is a women-owned business concern and has not represented itself as a small business concern in paragraph (c)(1) of FAR 52.219-1, Small Business Program Representations, of this solicitation.] The offeror represents that it ( ___ ) is a women-owned business concern.

(End of provision)

52.204-24 REPRESENTATION REGARDING CERTAIN TELECOMMUNICATIONS AND VIDEO SURVEILLANCE SERVICES OR EQUIPMENT (OCT 2020)

The Offeror shall not complete the representation at paragraph (d)(1) of this provision if the Offeror has represented that it "does not provide covered telecommunications equipment or services as a part of its offered products or services to the Government in the performance of any contract, subcontract, or other contractual instrument" in paragraph (c)(1) in the provision at 52.204-26, Covered Telecommunications Equipment or Services--Representation, or in paragraph (v)(2)(i) of the provision at 52.212-3, Offeror Representations and Certifications-Commercial Items. The Offeror shall not complete the representation in paragraph (d)(2) of this provision if the Offeror has represented that it "does not use covered telecommunications equipment or services, or any equipment, system, or service that uses covered telecommunications equipment or services" in paragraph (c)(2) of the provision at 52.204-26, or in paragraph (v)(2)(ii) of the provision at 52.212-3.

(a) Definitions. As used in this provision-

Backhaul, covered telecommunications equipment or services, critical technology, interconnection arrangements, reasonable inquiry, roaming, and substantial or essential component have the meanings provided in the clause 52.204-25, Prohibition on Contracting for Certain Telecommunications and Video Surveillance Services or Equipment.

(b) Prohibition.

(1) Section 889(a)(1)(A) of the John S. McCain National Defense Authorization Act for Fiscal Year 2019 (Pub. L. 115-232) prohibits the head of an executive agency on or after August 13, 2019, from procuring or obtaining, or extending or renewing a contract to procure or obtain, any equipment, system, or service that uses covered telecommunications equipment or services as a substantial or essential component of any system, or as critical technology as part of any system. Nothing in the prohibition shall be construed to--

(i) Prohibit the head of an executive agency from procuring with an entity to provide a service that connects to the facilities of a third-party, such as backhaul, roaming, or interconnection arrangements; or

(ii) Cover telecommunications equipment that cannot route or redirect user data traffic or cannot permit visibility into any user data or packets that such equipment transmits or otherwise handles.

(2) Section 889(a)(1)(B) of the John S. McCain National Defense Authorization Act for Fiscal Year 2019 (Pub. L. 115-232) prohibits the head of an executive agency on or after August 13, 2020, from entering into a contract or extending or renewing a contract with an entity that uses any equipment, system, or service that uses covered telecommunications equipment or services as a substantial or essential component of any system, or as critical technology as part of any system. This prohibition applies to the use of covered telecommunications equipment or services, regardless of whether that use is in performance of work under a Federal contract. Nothing in the prohibition shall be construed to--

(i) Prohibit the head of an executive agency from procuring with an entity to provide a service that connects to the facilities of a third-party, such as backhaul, roaming, or interconnection arrangements; or

(ii) Cover telecommunications equipment that cannot route or redirect user data traffic or cannot permit visibility into any user data or packets that such equipment transmits or otherwise handles.

(c) Procedures. The Offeror shall review the list of excluded parties in the System for Award Management (SAM) (https://www.sam.gov) for entities excluded from receiving federal awards for "covered telecommunications equipment or services."

(d) Representations. The Offeror represents that--

(1) It [] will, [] will not provide covered telecommunications equipment or services to the Government in the performance of any contract, subcontract or other contractual instrument resulting from this solicitation. The Offeror shall provide the additional disclosure information required at paragraph (e)(1) of this section if the Offeror responds "will" in paragraph (d)(1) of this section; and

(2) After conducting a reasonable inquiry, for purposes of this representation, the Offeror represents that--

It [] does, [] does not use covered telecommunications equipment or services, or use any equipment, system, or service that uses covered telecommunications equipment or services. The Offeror shall provide the additional disclosure information required at paragraph (e)(2) of this section if the Offeror responds "does" in paragraph (d)(2) of this section.

(e) Disclosures.

(1) Disclosure for the representation in paragraph (d)(1) of this provision. If the Offeror has responded "will" in the representation in paragraph (d)(1) of this provision, the Offeror shall provide the following information as part of the offer:

(i) For covered equipment--

(A) The entity that produced the covered telecommunications equipment (include entity name, unique entity identifier, CAGE code, and whether the entity was the original equipment manufacturer (OEM) or a distributor, if known);

(B) A description of all covered telecommunications equipment offered (include brand; model number, such as OEM number, manufacturer part number, or wholesaler number; and item description, as applicable); and

(C) Explanation of the proposed use of covered telecommunications equipment and any factors relevant to determining if such use would be permissible under the prohibition in paragraph (b)(1) of this provision.

(ii) For covered services--

(A) If the service is related to item maintenance: A description of all covered telecommunications services offered (include on the item being maintained: Brand; model number, such as OEM number, manufacturer part number, or wholesaler number; and item description, as applicable); or

(B) If not associated with maintenance, the Product Service Code (PSC) of the service being provided; and explanation of the proposed use of covered telecommunications services and any factors relevant to determining if such use would be permissible under the prohibition in paragraph (b)(1) of this provision.

(2) Disclosure for the representation in paragraph (d)(2) of this provision. If the Offeror has responded "does" in the representation in paragraph (d)(2) of this provision, the Offeror shall provide the following information as part of the offer:

(i) For covered equipment--

(A) The entity that produced the covered telecommunications equipment (include entity name, unique entity identifier, CAGE code, and whether the entity was the OEM or a distributor, if known);

(B) A description of all covered telecommunications equipment offered (include brand; model number, such as OEM number, manufacturer part number, or wholesaler number; and item description, as applicable); and

(C) Explanation of the proposed use of covered telecommunications equipment and any factors relevant to determining if such use would be permissible…

This is the start of the file's text. The full file is on GovTribe.

File details come from the government source that posted it. Updated .