Attachment_6_Software_Vendor_Integrity_Statement_Guidelines_Application_Software.docx

DOCX document 15 KB Posted

Attached to
Advanced Joint Terminal Attack Controller Training System (AAJTS) Federal contract opportunity
Solicitation number
ID07170051
Issued by
GSA Federal Acquisition Service

About this file

Attachment 6 Software Vendor Integrity Statement Guideline Application Software

View the file

Other files for this federal contract opportunity

Other files attached to Advanced Joint Terminal Attack Controller Training System (AAJTS), newest first.
File Type Posted
Attachment_12__Responsibility_Questionnaire_Financial.docx DOCX document
Attachment_11_Financial_Release_Authorization_Letter_Attachment_11.doc DOC document
ID07170051_PWS_08.03.2018_Rev_01.pdf PDF
ID07170051_IMPORTANT_Registration_Reminder.docx DOCX document
ID07170051_AAJTS_RFP_Questions_and_Answers.pdf PDF
Attachment_2_Reference_Document_List.docx DOCX document
Attachment_3_Glossary_and_Acronyms.docx DOCX document
Attachment_7_Software_Vendor_Integrity_Statement_Guidelines_Website.docx DOCX document
Attachment_8_OCI_Certification.docx DOCX document
Attachment_5_Consent_To__Purchase_Form.xlsx XLSX spreadsheet
ID07170051_PWS_6.27.18.pdf PDF
Attachment_4_CDRLs.PDF PDF
Attachment_1_Pricing_Spreadsheet.xlsx XLSX spreadsheet
Attachment_9_Past_Experience_Information_Sheet.docx DOCX document
Atttachment_10_QASP.pdf PDF
ID07170051_RFP_First_Step_READ_ME_FIRST.pdf PDF
ID07170051_PreSolicitation_Notice_Synopsis.docx DOCX document
Show all 17

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

SECTION J

Attachment 6 Software Vendor Integrity Statement Guidelines: Application Software

DESCRIPTION

The Vendor Integrity Statement for software shall be a written and signed Contractor certification that assures that each trainer application software delivered to the Government has been examined according to DoD and Air Force policies and procedures. The results of the examinations must indicate that the software has no elements that might be detrimental to the secure operation of the resource operating system. Elements detrimental to the secure operation include:

1. Malicious code

1. Trojans, worms, logic bombs, and other computer viruses

1. Backdoors

1. Ad-ware, Spy-ware, or web bugs that have the ability to track user behavior

1. Code that permits functions that are beyond the actual publicized intent of application capability

1. Software that will not function properly with the operating system configured securely

BACKGROUND

DoDI 8500.01, Cybersecurity, requires that IA-enabled products (such as operating systems) comply with the evaluation and validation requirements of DoDI 8510.01 Risk Management Framework for DoD Information Technology. Paragraph 9.b.11 of DoDI 8500.01 requires that IA-enabled IT products incorporated into DoD information systems be configured in accordance with DoD-approved security configuration guidelines.

CONTENT AND FORMAT

The Vendor Integrity Statements for trainer application software shall consist of the following certification, dated and signed by an authorized representative of the Contractor, on company letterhead. A sample follows:

Software Vendor Integrity Statement: Application Software Sample

TO: USAF GPO

RE: Vendor Integrity Statement for Software for Device XXXXX, under Contract XX-X-XXXX

I certify that for xxxx software, version xx, there are no elements that might be detrimental to the secure operation of the resource operating system. The software runs with the operating system configured according to DODI 8500.01, Cybersecurity, paragraph 9.b.11, and DoDI 8510.01 Risk Management Framework.

Signed

Company Representative

File details come from the government source that posted it.