PWS - Sources Sought Notice.pdf
PDF 478 KB Posted
- Attached to
- Flank Speed Support Services for IL5 IL6 Federal contract opportunity
- Solicitation number
- N6923525FLANKSPEEDIL5IL6
About this file
This Performance Work Statement (PWS) outlines requirements for Operation Flank Speed Support Services for IL5/IL6 cloud environments for the Naval Network Warfare Command. The contractor will provide support for the Navy's transition from on-premise IL5 architecture to a cloud-centric, Zero Trust architecture, as well as support the implementation of IL6 cloud services for classified environments.
The scope includes managing Azure Impact Level 4/5/6 security environments, implementing IT service management processes, and supporting cloud migration activities across Continental United States (CONUS) and outside CONUS (OCONUS) locations. Key positions required include Project Manager, Technical Writer, Conditional Access Policy Admin, Azure Virtual Desktop System Admin, Cloud Service Support Admin/Analyst, Cloud Service Support Engineer, Cloud Application Admin, Configuration Manager, E-Discovery Administrator, Identity and Entitlement Admin, and Personnel Security Specialist, with a total of 97 FTE positions. The period of performance includes a 12-month base period (August 26, 2025 - August 25, 2026), four 12-month option years, and one 6-month option. Work will be performed at Naval Network Warfare Command in Suffolk, Virginia and via authorized telework. All contractor personnel must have SECRET clearance, and certain positions require SECRET/SSBI clearance based on system access privileges.
View the file
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
Performance Work Statement (PWS)
Operation Flank Speed Support Services for IL5 IL6
1.0 Background:
The Navy has transitioned from an on-premise IL5 architecture to a cloud centric, Zero Trust architecture. Contractor support will continue to include the management, sustainment, and support for the current Azure Impact Level (IL) 4/5 security environment.
The Navy is transitioning from an on-premise classified architecture to a IL6 cloud centric, Zero Trust, architecture that enables secure access to the Microsoft Azure “Cloud Services” open and flexible cloud computing platform. The initiatives are aimed at bolstering Cloud Computing productivity services and improving resiliency in the unclassified and classified (IL5/IL6) environments while delivering services across the Continental United States (CONUS) and outside CONUS (OCONUS). Efforts will include maximizing security and availability, while leveraging cloud efficiencies that include Machine Learning and Artificial Intelligence (AI/ML).
Contractor support will augment the government workforce while standing up a classified IL6 cloud environment, implementing and executing IT service management processes, maximizing efficiencies across both tenants, and delivering weekly status reports depicting network health and user impact. Contractor support will include sustaining the Azure Impact Level 6 (IL6) security environment, and augment the management, sustainment, and establish IL6 support model for the Azure-based enterprise cloud architectures. The enterprise architectures are designed to support robust authentication, device hardening, and the reduction of the overall attack surface; improvements shall enhance capabilities to detect and quickly respond to adversarial activities. The implementation of IL6 Cloud services are instrumental in elevating the Navy's cybersecurity posture and advancing all concepts demanded in a Zero Trust model. Furthermore, Microsoft Azure expertise is sought-after, with Amazon Web Services and Google cloud experience desired, to facilitate expanding the existing Operation Flank Speed (OFS) infrastructure, including integrating with Naval Identity Services (NIS), the execution of design refinements, the deployment of additional advanced security features through automation, and the incorporation of new collaboration functionalities. These capabilities are essential to enhancing Zero Trust principles while further improving capabilities that include Azure Hyper Converged (HCI) stacks that deliver enhanced computing power and more adaptable access to the Microsoft Azure Cloud and Microsoft Office 365 productivity suite of tools.
This PWS specifically covers Flank Speed Migration to Impact Level 6 (IL6) Operations and Maintenance (O&M). IL6 is reserved for storing and processing information classified up to the SECRET level. While the primary operating platform will be hosted on Microsoft’s Azure, contractor support is expected to extend across other cloud services such as AWS and Google.
IL6 pertains to classified information that, if compromised, could pose a threat to national security interests.
2.0 Objective:
The objective is to procure a non-personal services contract to aid the government in various efforts, including Service Strategy and Design, Service Operations, Service Transition, and Continual Service Improvements across the cloud tenant. Contractor Support must include, but not limited to architectural design, network monitoring, process development, sustainment, implementation, and operation of advanced security automation and collaboration features.
These capabilities are essential to facilitate maximum access to Microsoft Azure Cloud services in a rapidly evolving operational networking environment, which will also extend to support AWS and Google services as well. Network access to the maximum extent feasible is crucial for users operating remotely (teleworking) or on-site, utilizing Department of Defense (DoD) networks, and shall align with the guidance as outlined in USCYBERCOM PLANORD 20- 0042. Additionally, contractor services are required to deliver ongoing support for OFS account management (i.e., e-Discovery, Records Management, Litigation Hold, etc.), and the migration of specific network components, along with all associated support activities. This framework, founded on Azure identity and security services, will enable maximum access and secure convergence of both IL5 and IL6 networks that span across ONENet, NMCI, IT-21/CANES, and Excepted networks. The totality of all efforts are crucial to broadening cloud capabilities, maximizing resiliency, and implementing state-of-the art technical advances using Artificial Intelligence and Machine Learning; all work is intended to fully support future application integration as part of the broader Navy cloud migration strategy.
3.0 Scope:
The scope of work encompasses the management of operational data spanning several Impact Levels (IL) of information management, including IL 4, 5, 6, network transport, and HCI Stacks while addressing all use cases involving Classified Information, Controlled Unclassified Information (CUI) and Navy Nuclear Propulsion Information (NNPI). For direct contractor support within the IL6 environment, access to classified information at government facilities is required for all support staff. The ongoing implementation of an architecture that supports cloud services and the adoption of Zero Trust principles represents a significant transformation for both the Navy and the broader DoD. This transformation will demand substantial efforts, including the update or drafting security policies, the re-engineering of systems, and the retraining of personnel to effectively operate, maintain, and secure the IL5/IL6 Azure Cloud environment. Furthermore, the Navy will continue to maximize the utilization of new collaboration and productivity features that require meticulous planning, engineering, configuration, and change management. The Navy's strategy also includes migrating additional excepted networks and new applications into the IL6 Cloud architecture. Architecture improvements include implementing enterprise cloud solutions that include installing Azure HCI Stacks that will effectively bring cloud services closer to end-users. This shift aligns with network resiliency and the Navy's objectives to enable an enhanced teleworking environment while concurrently reducing data center footprints and embracing cybersecurity principles, such as Zero Trust.
The ongoing development of the enterprise Azure cloud framework is crucial as it will facilitate centralized management and monitoring, improve network flexibility, and expedite the expansion of increased compute capacity and mission workloads where required. Additionally, this contract will support implementing a Records Management capability within the IL5/IL6 cloud tenant to meet Department of the Navy (DON) data retention, legal Litigation Hold, CAPSTONE requirements and Freedom of Information Act (FOIA) search requests.
4.0 Period of Performance:
The performance period is anticipated include one (1) 12-month base year, four (4) twelve-month option years and one (1) six (6) month option pursuant to FAR 52.217-8 – Option to Extend Services.
Period of Performance Base Year 26 August 2025 – 25 August 2026 Option Year I 26 August 2026 – 25 August 2027 Option Year II 26 August 2027 – 25 August 2028 Option Year III 26 August 2028 – 25 August 2029 Option Year IV 26 August 2029 – 25 August 2030 FAR 52.217-8 26 August 2030 – 25 February 2031
5.0 Place of Performance:
Work in accordance with this PWS shall be performed at:
(1) Naval Network Warfare Command, 112 Lake View Parkway, Suffolk, Virginia 23435
(2) Local Telework via authorized VPN standards as directed by Government Contracting
Officer Representative (COR)
The contractor will not perform regular day-to-day work at any other location unless that work has been authorized by the Contracting Officer's Representative (COR).
6.0 Requirements:
Contractor Support (CS) is required to assist the Navy with the worldwide acceleration and migration to OFS, monitoring network services and availability, and to sustain the continually evolving security and productivity features using Microsoft Azure Zero Trust secure technologies.
OFS CS support activities include, but are not limited to the following:
• Engineer solutions to enable key dependencies (e.g., Global Directory and authentication, Direct Routing, Azure Gov services).
• Decouple/recommend modifications to hybrid dependencies (e.g., Domain Name Service, Load Balancing, Proxy, and Active Directory).
• Manage configurations in the production Operation Flank Speed (OFS) tenant Records.
Management Requirement: Configurations include creation, deployment, and maintenance of retention labels, event types, sensitivity labels, and retention policies.
• Support the migration of remaining Navy users from on-premises to OFS including CONUS, OCONUS, Excepted Networks, and Communities of Interest in IL5 and IL6 environments.
• Operate, maintain, and secure the OFS tenant throughout the end of this contract Support the planning, engineering, configuration, and architecture design to achieve OFS objectives.
• Support new initiatives and apply rigor to work in progress as it pertains to Records Management and data retention, Litigation Hold, data spillage, CAPSTONE requirements and Freedom of Information Act (FOIA) search requests.
• Provide service desk support in support of user migration and OFS sustainment activities.
Records Management Request: Service desk supports includes ingestion and processing of RM requests such as record search and retrieval (from RM SPO sites), Capstone email search and retrieval (from Capstone official exchange accounts), eDiscovery queries, litigation hold queries, permissions and access questions, and architecture questions.
• Provide operations and enterprise management support.
Records Management Request: Enterprise management support to include
1) The generation and distribution of audit logs pertaining to actions taken on RM SPO sites and Capstone official Exchange mailboxes
2) Generation and distribution of MS Purview compliance reporting for RM SPO sites and Capstone official Exchange mailboxes
3) Storage reporting for RM SPO sites and Capstone official Exchange mailboxes.
4) Creation and management of eDiscovery cases
5) Creation and management of Content Searches
6) Creation and distribution of Disposition Reports
7) Facilitation of electronic destruction or transfer to NARA
• Assist in the architecture development, planning guidance, and enabling Azure Zero Trust services for applications to consume new identity and security features necessary to maintain end-to-end OFS services.
• Assist the acquisition and operational communities in maturing the Integrated Navy Operations Command and Control System (INOCCS) concept and other cyberspace operations functions.
• Assist in enabling the connection of Azure cloud hosting services and OFS to the Department of Defense Information Network (DODIN) following DoD recognized Zero Trust Architecture. Assist while configuring, managing, and sustaining MS Azure Stacks. Azure Stacks are being implemented to improve network performance and enable a centrally managed Azure Stack environment managed locally at NNWC Headquarters.
• Assist with electronic spillage cleanup which includes discovery and deleting unauthorized content residing in the FS Tenant.
• Support the current OFS “Flow 3 and Azure Virtual Desktop” activities that enable the adoption and enablement of the Navy's collaboration and Modern Service Delivery initiatives, to include high arching goals to expand Cloud Access Points (CAP) that will enable direct internet access to OFS services.
• Coordinate with Microsoft developers/engineers to understand and document customized configurations to enable OFS to meet DoD Cybersecurity policy and directives.
• Support the newly designed enterprise Azure cloud framework and the Department of Navy implementation of a centrally managed and monitored instance that can rapidly onboard and drive operational workloads.
• Support the Government to maintain OFS Cloud services, ensure the availability of mission applications, and troubleshoot and resolve problems with all IT equipment as it relates to Azure cloud and OFS services.
• Forensically secure, preserve, and capture data from workstations, laptops, servers, and network infrastructure devices. Respond, investigate, and prevent cyberattacks and breaches.
Recover data from computer hard drives and other data storage devices, and protect computers from infiltration. Trace the development and application of technical threat intelligence in the cyber-attack lifecycle.
• Execute IT Service Management (ITSM) activities and functions (as required) for IL5/IL6 cloud environments to include but not limited to change management, configuration management, event management (to include monitoring and reporting), identity & access management, incident management, problem management, and security compliance.
• Support AWS and Google Cloud technologies, compliance, and security best practices.
• Execute responsibilities as outlined in Section 10.0 – SUPPORT
SERVICES/QUALIFICATIONS/DUTIES
7.0 Security Requirements:
SECURITY: The contractor shall be responsible for adhering to all Department of Defense (DOD), Department of the Navy (DON) and Command instructions, guidance, orders, directives, and supplements relative to performing tasks set forth in this PWS. The contractor shall not disclose and must safeguard procurement sensitive information, operationally sensitive data, computer systems and data, Privacy Act data, and Government personnel work products that are obtained or generated in the performance of this contract. This includes dissemination of protocols and papers not generally available through the public literature. Neither the contractor nor any of its contract service providers shall disclose or cause to disseminate any information concerning operations of military activities. Such action(s) could result in violation of the contract and possible legal actions.
Access will be granted to Government facilities as required in support of the tasking. Contractor personnel performing work under this contract must meet all requirements for gaining access to US Government installations. The contractor shall conform to all DoD, DON, and local (base/installation) security instructions; refer to Contractor Unclassified and Classified Access to Federally Controlled Facilities, Sensitive Information, Information Technology (IT) Systems or Protected Health Information.
The scope of work requires access to SECRET information for all contractor personnel.
Contractor personnel shall have the appropriate security clearance on the first day of the period of performance. Where annotated, a SECRET clearance must be based on a Single Scope
Background Investigation (SSBI). SECRET/SSBI is required for any position where system access has the potential of requiring special privileges, including system administration and configuration changes, are expected. Interim SECRET based upon SSBI is acceptable pending final adjudication.
All work is to be performed in accordance with DOD and Navy Operations Security (OPSEC) requirements and in accordance with the DD254 and all attachments.
The contractor shall comply with all applicable federal, state, and local laws and ensure performance is secure while protecting material, equipment, and supplies from damage and loss.
Government security personnel shall have the express right to inspect for security violations at any time during the term of the contract.
The contractor shall be responsible for safeguarding all government equipment, information and property provided for contractor use. At the close of each work period, government facilities, equipment and materials shall be secured.
The Common Access Card (CAC) card serves as the primary method of identification for the contractor employees, as well as providing the basis of Public Key Infrastructure (PKI) access to the Navy/Marine Corps Intranet (NMCI), the NCDOC Excepted network, and numerous Navy web sites, which may also require PKI access. The COR shall assist in providing the contractor the appropriate documentation for obtaining CACs. The contractor shall be responsible for obtaining any Government issued identification cards from former employees or employees whose access has been terminated and to turn those items over to the COR upon termination of employment or access.
Contract personnel shall wear a badge that clearly identifies them as a contractor employee. The badge will be issued by the COR, via the Special Security Office (SSO), and will contain a personal picture, name of employee, and contractor's name. Badges shall be worn on the outer garment, above the waist, in full view at all times, attached to the outer shirt or jacket pocket by a button or clip or worn around the neck secured by an appropriate identification card lanyard.
PRIVACY ACT COMPLIANCE: The contractors may be in contact with data and information subject to the Privacy Act of 1974 (Title 5 of the U.S. Code Section 552a). The contractors shall ensure that its employees assigned to this effort understand and adhere to the requirements of the Privacy Act and to Department of Defense and Department of the Navy regulations that implement the Privacy Act. Department of Navy policy and procedures implementing the Privacy Act are detailed in SECNAVINST 5211.5E (Department of the Navy (DON) Privacy Act (PA) Program). The contractors shall identify and safeguard data, information and reports accordingly. In addition, the contractor shall ensure that contractor employees assigned to the contract are trained on properly identifying and handling data and information subject to the Privacy Act prior to commencing work.
GOVERNMENT FURNISHED EQUIPMENT (GFE): GFE will be provided to contractor employees as needed to complete the tasks set forth in this performance work statement. Access to classified information must be granted in accordance with the terms and conditions contained in DOD Manual 5220.22-M and DD Form 254 (Contract Security Classification Specification).
The contractor shall comply with all current information assurance awareness, information security policies, procedures, and statutes applicable to DOD information technology; including DOD Instruction 8500.01 on Cyber Security.
8.0 DODD 8140 CYBER SECURITY WORKFORCE (CSWF) REQUIREMENTS:
The contractor shall ensure employees have all required certifications/licenses (current and valid) for each applicable occupation category before commencement of work. contractor must meet this qualification upon first day of employment.
Procedures surrounding the qualification of the DON Cyberspace IT/Cybersecurity Workforce must be in accordance with DoD Directive 8140.01. The SECNAV M-5239.2 establishes mandatory procedures for the uniform identification, management, and qualification of the Cyberspace IT/Cybersecurity Workforce (Cyber IT/CSWF). The contractor must demonstrate upon request by the COR that all Cyber IT/CSWF personnel have met and maintains the minimum qualification standards of their assigned Specialty Area and proficiency level throughout the duration of this contract. DON has identified appropriate training, education, and industry certification requirements along with proficiency demonstration in the lab or on the job.
All contractor personnel are required to carry an approved certification for their particular job classification.
Any full or part-time contractor, with privileged access to a DoD information system, performing Cyber Security (information assurance) functions, regardless of job or occupational series, must meet the requirements associated with the CSWF specialty area outlined in the position description to maintain employment as part of this contracting effort. Additionally, all contractors must participate in a continuous learning program as described in SECNAVINST
1543.2. A minimum of 20 hours of Cyber IT/CSWF related continuous learning must be annually documented and available to NNWC’s CSWF Program Manager and/or COR.
Additionally, all contractors must provide proof that required annual maintenance fees are paid within seven (7) days of the due date.
All reporting contractors must meet the requirement for their position immediately upon arrival.
9.0 GENERAL/ADMINISTRATIVE MATTERS:
The contractor shall only conduct business with designated government personnel listed as points of contact (POCs). Names of authorized personnel shall be provided to the contractor by the government COR, in writing, and updated as necessary throughout the contract period.
All inquiries, comments or complaints arising from any matter observed, experienced, or learned of as a result of or in connection with the performance of this contract, the resolution of which may require the dissemination of official information, shall be directed to the COR. The COR will forward inquiries, comments or complaints to the Contracting Officer (KO).
STAFFING: The contractor shall provide a fully qualified work force on the first day of contract performance.
All contract personnel attending meetings, answering Government telephones, and working in other situations where their contractor status is not obvious to third parties are required to identify themselves as such to avoid creating an impression in the minds of members of the public that they are Government officials. They must also ensure that all documents or reports produced by contractors are suitably marked as contractor products or that contractor participation is appropriately disclosed. Additionally, they must clearly indicate on email title blocks their company name and that they are contractor personnel.
All positions are defined to fulfill tasking based on working hours. For the purpose of this PWS, Full-Time Employee (FTE) is defined as 1920 of billable work hours per calendar year.
DATA RIGHTS: It is the Government’s intent to retain unlimited rights to all software, documentation, and data first produced in performance of the task.
U.S. Government records, copies of original results and reports, verified original data, corrected data, and corrected supporting final reports are maintained by the contractor, but remain the property of the U.S. Government. These files/results must be surrendered to the COR immediately upon demand.
CONTRACTOR QUALITY ASSURANCE: The contractor shall develop and maintain a Quality Assurance Plan (QA Plan) in order to ensure only qualified personnel, as defined in the position descriptions, are assigned to fulfill the requirements stated in this PWS. The contractor shall detail in its quality assurance plan how it intends to maintain personnel qualifications and ensure contract employees have up-to-date training and knowledge in their respective areas of endeavor.
This QA Plan shall detail the methodology to be used by the contractor to monitor and grade the performance of its personnel as they carry out the requirements of this PWS. The QA Plan shall address the contractor’s courses of action to address under-performing employees.
GOVERNMENT QUALITY ASSURANCE SURVEILLANCE: The Government shall evaluate the contractor’s performance under this contract in accordance with the Quality Assurance Surveillance Plan (QASP). This plan is primarily focused on what the Government must do in order to ensure that the contractor is performing in accordance with the performance standards.
It defines how the performance standards will be applied, the frequency of surveillance, and the minimum acceptable defect rate(s).
COMPLAINTS LODGED AGAINST CONTRACTOR PERSONNEL: In the event that a complaint is made regarding the conduct or ability of contractor personnel, the individual receiving the complaint will contact the COR. The COR will notify the contractor. The Contract Overarching Project Manager and COR will cooperate in investigating complaints made against contractor employees. If the results of the investigation prove the complaint(s) to be valid, the contractor shall have a maximum of three (3) working days to propose a corrective plan for resolving the matter and preventing future similar occurrences. This plan shall be submitted in writing to the Contracting Officer and COR. In the event that the Government deems the corrective plan insufficient for resolution of the problem, a written response to the contractor shall be provided within three (3) working days.
OFFICE SPACE: Government will provide office space, desk, chair, and common office supplies. In addition to office space, each contract employees shall be provided with access to Government computers and telephones, but not cellular phones, for official use only. Under no circumstances will contractor-provided personal computers, electronic devices, or cellular phones be connected to the Navy/Marine Corps Intranet (NMCI). Contractor personnel shall comply with all DOD and Navy internet usage and cybersecurity policies.
STATEMENT OF NON-PERSONAL SERVICE: Contractor employees performing services under this contract will be controlled, directed, and supervised at all times by management personnel of the contractor. Contractor management shall ensure that employees properly comply with the performance work standards outlined in the PWS. Contractor employees shall perform their duties independently, under the supervision of, an appointed Government official. The tasks, duties, and responsibilities set forth in this contract shall not be interpreted or implemented in any manner that results in contractor employees creating or modifying Federal policy, obligating the appropriated funds of the United States Government, overseeing the work of Federal employees, providing direct personal services to Federal employees, or otherwise violating the prohibitions set forth in Parts 7.5 and 37.1 of the Federal Acquisition Regulation (FAR) http://farsite.hill.af.mil/. The Government shall control access to the facilities and shall perform the inspection and acceptance of completed work.
MANDATORY TRAINING: Government has annual training requirements for the safety and security of personnel and data that will be required to be completed by all assigned contractors.
This training will be provided by Government personnel, either in person or via computer, for completion during normal working hours. The COR will provide the annual required training list to the Company Program Manager on an annual basis, and completion will be tracked by NNWC Training Department.
Government will provide office space, desk, chair, and common office supplies. In addition to office space, each contract employee shall be provided with access to Government computers and telephones, but not cellular phones, for official use only. Under no circumstances will contractor provided personal computers be connected to either the Navy/Marine Corps Intranet (NMCI) or any other DOD network. Contractor personnel shall comply with all DOD and Navy internet usage and cybersecurity policies.
10.0 SUPPORT SERVICES/QUALIFICATIONS/DUTIES:
Historically, the Scope of Work above is provided via fulfillment of the following positions:
Position Number
Labor Category Clearance Level of Effort Per Labor Category
Quantity of FTE
Position 1 Project Manager II Secret 1920 hours 1 http://farsite.hill.af.mil/
Position 2 Technical Writer III Secret 1920 hours 1 Position 3 Conditional Access Policy
Admin Secret 3840 hours 2
Position 4 Azure Virtual Desktop Sys Admin
Secret 23040 hours
Position 5 Cloud Service Support Admin/Analyst
Secret 40320 hours
Position 6 Cloud Service Support Engineer Secret 34560 hours 18 Position 7 Cloud Application Admin Secret 9600 hours 5 Position 8 Configuration Manager Secret 11520 hours 6 Position 9 E-Discovery Administrator
(Security/FOIA/CAPSTONE) Secret 40320 hours 24
Position 10 Identity and Entitlement Admin Secret 5760 hours 3 Position 11 Personnel Security Specialist Secret 1920 hours 1
Position 1. Project Manager II (PM II): Clearance requirement is SECRET.
DESCRIPTION:
These positions have been designated as a Cyber IT/Cybersecurity Workforce position in Specialty Area 802, and as a condition of employment incumbents of the position is required to comply with the DON Cyber IT/CSWF Program requirements of SECNAV M-5239.2.
Manages strategy, personnel, infrastructure, policy enforcement, emergency planning, security awareness, and/or other resources. Coordinate the efforts of subordinate SMEs including approval of and compliance with Tactics, Techniques and Procedures (TTPs) and Standard Operating Procedures (SOPs); coordinate with Naval Network Warfare Command (NNWC) teams to maximize effect of analysis of Flank Speed-generated data;
and provide day to day leadership and guidance to all members of the Operation Flank Speed Effort. The contractor shall facilitate delivery of OFS Program Management tracking / artifacts / documentation to the COR or his / her designated representative.
QUALIFICATIONS REQUIRED:
• Experience managing 30+ people
• 12 years IT experience
• Extensive understanding of operating systems and networking
• Organizational skills
• Capable of managing multiple projects
• Great communication skills (oral and written)
• Azure Fundamentals Certification
• Microsoft 365 Fundamentals Certification
• Comprehensive understanding of cloud computing and networking
• Azure Firewall Knowledge
• Experience with Microsoft Office suite and PowerShell
• Experienced in the administration of Microsoft SharePoint
CONTRACTOR SHALL:
Provide administrative support for centralized preparation of all contract related deliverables, and ensure contractor deliverables are aligned with critical agency priorities.
Provide financial management support for centralized tracking, analysis and reporting all contract related funding, costs, and expenditures required the execution of this contract.
Prepare monthly status/progress report for contract tasks Prepare monthly contract financial reports Prepare technical reports as required by specific projects Provide contract tracking deliverables to the COR monthly Liaison between contractor workforce and NNWC leadership for administrative purposes Ensure all contractor tasks are accomplished in a timely manner and that the proper support is being delivered Ensure product delivery is in alignment with intended government outcomes Deliver and maintain all TTPs/SOPs and exceptions assigned by government lead Coordinate and deliver additional tasking as assigned by OFS government leads; ensuring product delivery is in alignment with intended outcomes
Have knowledge to effectively oversee contractor workforce AND augment contractor workloads while performing the following functions:
Managing Azure identities and governance Implementing and managing storage Monitoring and conducting back-up to Azure resources Configuring and managing virtual networking Be familiar with the hierarchal structure utilized in SharePoint sites hosted in Flank
Speed Provide support for Teams Live Events as requested Monitor Microsoft 365 Admin Center for service-related incidents, outages, and feature releases Monitor Azure Information Protection data labels and controls Participate in various ITSM roles and activities (as required) including but not limited to change management, incident management and problem management Monitor, analyze and respond to alerts from M365 SaaS cloud operational and security tools and services Analyze SaaS cloud operational performance and trends, and support applications and systems on premise, in cloud, inclusive of network, server, and endpoints Deploy and manage virtual machines in Azure to support a large user base Provide technical support to the Enterprise Flank Speed Tier 2 service desk for troubleshooting issues as required
Review and provide recommendations regarding group policy and end user software Provide recommendations regarding hierarchal management of SharePoint sites hosted in
OFS
Historical level of effort is a Project Manager II, NTE 1920 HRS:
One (1) FTE - DAY SHIFT (07:00 AM/0700 - 3:30 PM/1530) working position (Monday – Friday). Some irregular effort will be required based of operational mission requirements, but not to exceed a 40-hour work week.
Position 2. Technical Writer (SME III): Clearance requirement is SECRET.
DESCRIPTION:
The contractor shall perform quality reviews, rewrites, and editing of a wide-range of documentation throughout the command. Works with technical experts to develop, design, edit, all forms of documentation to include Standard Operating Procedures (SOPs), Process Guides, Instructions, Notices, Memorandums, Concept of Operations (CONOPS), and other written deliverables as requested.
• 3+ years IT experience
• Fluent spoken and expert written English language skills
• Experience in authoring executive level documentation written requirements, drafting
Operating Procedures, delivering/documenting test results, etc.
• Expert level experience in Microsoft Word, and PowerPoint to include creating/applying styles, headers, footers, etc.
• Familiar with tracking changes and version control
• Experience with a Configuration Management tool (SharePoint) is preferred
• Robust attention to detail
• Strong organizational skills, with the ability to work on multiple projects with multiple deadlines
• Proven ability to collaborate and negotiate with multiple stakeholders to steer and document projects through the requirements phase, establish a consensus, and complete within established timeframe
• Be able to write for multiple audiences: project managers, subject matter experts, developers, system administrators, QA testers, technical support, end users, and executive decision makers.
• Be able to write multiple documentation types, technical and non-technical: design specifications, technical requirements, installation procedures, system administration/management, test plans
• Working knowledge of the Information Technology Infrastructure Library (ITIL) Framework
• Working knowledge of government CIVPERs classification processes, as required to write evaluation statements for positions that will transition to CES
Develop detailed technical and non-technical briefings, providing informational updates to chain of command in current and future development and implementation of measurements and data strategies
Combine disparate materials into documents that flow logically and speak with one voice.
Translate complex concepts and solutions into multiple types of documents (requirements, compliance, SOPS, test results, etc.)
Draft documentation, user guides for all user levels, technical support and FAQs, as well as executive summaries
Develop Standard Operating Procedures (SOPs), checklists, workflow process charts, forms, Points of Contact (POC) lists, and other documentation needed to support processes and related IA functions
Create and maintain existing and potential data sources for local consumption;
collaborate with data architect to ensure data sources availability
Develop MS Power Point slides, MS Excel workbooks, and executive level word documents for review and forwarding to leadership
Create and maintain existing and potential data sources for local consumption;
collaborate with data architect to ensure data sources availability
Historical level of effort is a Technical Writer SME III for:
One (1) FTE – DAY SHIFT (07:00 AM/0700 - 3:30 PM/1530) working position (Monday – Friday). Some irregular effort will be required based of operational mission requirements, but not to exceed a 40-hour work week.
Position 3. Conditional Access Policy Administrator: Clearance requirement is SECRET.
DESCRIPTION:
These positions have been designated as a Cyber IT/Cybersecurity Workforce position in Specialty Area 461 and as a condition of employment incumbents of the position is required to comply with the DON Cyber IT/CSWF Program requirements of SECNAV M-5239.2. The contractor shall perform tasks associated with the development, testing, deployment, and documentation of Microsoft Azure Conditional Access and Microsoft Defender for Cloud Application policies.
• 5+ years IT experience with significant experience with Microsoft Azure
• Azure Administrator Certification
• Understanding of cloud computing and networking
• Superior organizational skills
• Capable of managing multiple projects
• Great communication skills (oral and written)
• Familiar with tracking Access Requests and account provisioning
• Experience with Account and Access Management capabilities/tools
• Familiar with M365 SaaS Personas, and license types
• Strong attention to detail
• Working knowledge of the Information Technology Infrastructure Library (ITIL)
Framework
CONTRACTOR SHALL:
Maintain detailed documentation of conditional access policy, including archiving relevant configuration files to a centralized data repository Develop, document, test, and deploy Microsoft Azure conditional access policies.
Develop, document, test, and deploy Microsoft Defender for Cloud Applications policies.
Perform verification and validation that approved changes are made properly Perform account access provisioning and de-provisioning based on approved processes Evaluate policies to ensure compliance with DoD Tenant Configuration Guides Where development outpaces existing guidance, support development of DoD Tenant
Configuration Guides with mission partners and DISA.
Monitor Message Center for feature releases that have the potential to impact existing configuration, access roles and personas
Historical level of effort is a Conditional Access Policy Administrator for:
Two (2) FTE – DAY SHIFT (07:00 AM/0700 - 3:30 PM/1530) working position (Monday – Friday). Some irregular effort will be required based of operational mission requirements, but not to exceed a 40-hour work week.
Position 4. Azure Virtual Desktop System Administrator: Clearance requirement is SECRET.
DESCRIPTION:
Clearance requirement is SECRET. This position has been designated as a Cyber IT/Cybersecurity Workforce position in Specialty Area 461 and as a condition of employment incumbents of the position is required to comply with the DON Cyber IT/CSWF Program requirements of SECNAV M-5239.2. Administers Navy Flank Speed Azure desktop environment server-based systems, security devices, distributed applications, network storage, and performs systems monitoring. Consults on network, application, and customer service issues to support computer systems’ security and availability.
• Comptia Sec +
• 5+ years IT experience with significant experience with Microsoft Azure
• Relevant experience as a Windows system administrator
• Understanding of cloud computing and networking
• Experience with PowerShell
• Knowledge of Microsoft Cloud Security and Data Governance Tools
• Superior organizational skills
• Capable of managing multiple projects
• Great communication skills (oral and written)
• Strong attention to detail
• Working knowledge of the Information Technology Infrastructure Library (ITIL)
Framework
CONTRACTOR SHALL:
Deploy and manage virtual machines in Azure to support a large user base Closely monitor session statistics to develop and refine usage metrics to inform provisioning additional resources or shutting down unused resources; assist in development of service optimization models
Provide technical support to the Enterprise Flank Speed Tier 2 service desk for troubleshooting issues as required
Manage Windows image to include group policy and end user software
Historical level of effort is an Azure Virtual Desktop Administrator for:
Twelve (12) FTE, inclusive of a Shift Lead, working to maintain a 24/7/365 helpdesk consisting of multiple Day, Evening, Midnight and Weekend Shifts
06:30 AM/0630 - 02:30 PM/1430
02:30 PM/1430 - 10:30 PM/2200
10:30 PM/2200 - 06:30 AM/0630
Position 5. Cloud Service Support Administrator/Analyst: Clearance requirement is
SECRET).
DESCRIPTION:
These positions have been designated as a Cyber IT/Cybersecurity Workforce position in Specialty Area 461 and as a condition of employment incumbents of the position is required to comply with the DON Cyber IT/CSWF Program requirements of SECNAV M-5239.2. The contractor shall perform tasks associated with the administration of Microsoft 365 Software as a Service (SaaS) offerings, to include AZURE Virtual Desktop, Intune, Exchange Online, OneDrive, Teams, and SharePoint. Additionally, the contractor will perform administrative functions associated with Azure Information Protection/data labeling and control.
• 3+ years IT experience Azure Cloud Administrator in an enterprise level cloud computing environment.
• Azure Fundamentals Certification
• Comprehensive understanding of cloud computing and networking
• Azure Firewall Knowledge
• Experienced in the administration of Microsoft SharePoint
• Knowledge of Purview
• Basic experience with Power Platform
• Experience with Microsoft Cloud Security and Data Governance Tools
• Superior organizational skills
• Capable of managing multiple projects
• Great communication skills (oral and written)
• Strong attention to detail
• Working knowledge of the Information Technology Infrastructure Library (ITIL)
Framework
CONTRACTOR SHALL:
Perform administrative tasks associated with the management of Microsoft 365 SaaS offerings.
Manage Azure identities and governance Implement and manage storage Deploy and manage Azure compute resources Configure and manage virtual networking Monitor and back up Azure resources Configure and manage virtual networking Oversee the hierarchal management of SharePoint sites hosted in Flank Speed Manage tenant-wide configuration settings for Microsoft SaaS offerings Provide support for Teams Live Events as requested (e.g., conferencing/telephony support) Monitor Microsoft 365 Admin Center for service-related incidents, outages, and feature releases Manage Azure Information Protection data labels and controls Participate in various ITSM roles and activities (as required) including but not limited to;
change management, incident management and problem management Monitor, analyze and respond to alerts from M365 SaaS cloud operational and security tools and services Perform M365 SaaS cloud service operations, analyze operational performance and trends, and support applications and systems on premise, and in cloud, inclusive of network, server, and endpoints
Deploy and manage virtual machines in Azure to support a large user base Provide technical support to the Enterprise Flank Speed Tier 2 service desk for troubleshooting issues as required Manage Windows image to include group policy and end user software Oversee the hierarchal management of SharePoint sites hosted in Flank Speed Manage tenant-wide configuration settings for Microsoft SaaS offerings
Historical level of effort is a Cloud Service and Support Analyst for:
Twenty-four (24) FTE, inclusive of a Shift Lead, working to maintain a 24/7/365 helpdesk consisting of multiple Day, Evening, Midnight and Weekend Shifts
10:30 PM/2200 - 06:30 AM/0630
Position 6. Cloud Service Support Engineer (SME II): Clearance requirement SECRET.
This position has been designated as a Cyber IT/Cybersecurity Workforce position in Specialty Area 461 and as a condition of employment incumbents of the position is required to comply with the DON Cyber IT/CSWF Program requirements of SECNAV M-5239.2. CONTACTOR will recommend configuration changes, test, operate, monitor, and manage network devices including hardware, software, and operating systems that permit information sharing across the full spectrum of Navy Flank Speed Cloud Transport using all media. Supports the security of information and information systems.
• 3+ years IT experience with significant experience with operational metrics correlation, reporting, and dash boarding in a Microsoft SaaS environment
• Familiarity with concepts of data integration and normalization
• Experience working in an IT environment in an operational capacity
• Ability to gather metrics and report on relevant findings
• Ability to use professional knowledge to collaborate with multiple competencies within the Navy
• Comprehensive understanding of SLAs/SLRs and service performance quality tools, processes, and procedures
• Technical understanding with ability to translate reports into mission capabilities
• Practical application of statistical, numerical and analytical principles and processes
• Relationship management and conflict resolution skills
• Proficiency in M365 and Microsoft Office applications including Word, Visio, Project, and PowerPoint
• Proficient to Master level Microsoft Excel and Access skills
• Excellent written and verbal communication skills
• Knowledge of Information Technology Service Management (ITSM) and ITIL
Framework
• Knowledge of performance measurements and metrics methods and concepts
• Knowledge of Figures of Merit (FOM), Critical Success Factors (CSF) and Key
Performance Indicators (KPI)
• Knowledge of pertinent Government laws and information technology regulations as well as applicable laws, policies, standards and guidance
• Knowledge of DoD requirements definition and how requirements drive KPPs, KSAs, SLAs and SLRs
• Knowledge of DoD and DON acquisition management principles, policies and procedures
Leverage best practice BA/BI data correlation, aggregation and reporting in support of the Enterprise M365 SaaS capabilities Develop dashboards, reports, presentations and actionable recommendations and escalations related to M365 SaaS enterprise service performance and quality Identify performance measures or indicators of service performance, quality and compliance with SLAs/SLRs Develop/Deliver monthly performance reports on-time and on-quality Create Executive level dashboards to effectively communicate/socialize M365 SaaS performance to customer commands (CONUS & OCONUS) Facilitate ongoing assessments and reporting of overall conformance to and compliance with Critical Success Factors (CSFs) and Key Performance Indicators (KPIs) defined within the DoD Enterprise Service Management Framework (DESMF), DoDI 8440.01 Information Technology Service Management (ITSM), and COMNAVIFOR M-2620.2 Navy Process Reference Model where applicable
Develop dashboards, reports, presentations and actionable recommendations and escalations related to Flank Speed Transport service performance and quality
Routinely monitor circuit bandwidth capacity and make recommendations for bandwidth increases
Identify transport anomalies and coordinate resolution with appropriate organizations Implement robust encryption protocols to protect data during transport. Proactively monitor for vulnerabilities to transport services Conduct network diagnostics, performance optimization and incident resolution
Historical level of effort is a Flank Speed Transport Network Security Engineer II for:
Sixteen (16) FTE working to maintain a 24/7/365 helpdesk consisting of multiple Day, Evening, Midnight and Weekend Shifts
Two (2) FTE – DAY SHIFT (07:00 AM/0700 - 3:00 PM/1500) working position (Monday – Friday). Some irregular effort will be required based of operational mission requirements, but not to exceed a 40-hour work week.
Position 7. Cloud Application Administrator (SME II): Clearance requirement is
SECRET/SSBI.
This position has been designated as a Cyber IT/Cybersecurity Workforce position in Specialty Area 461 and as a condition of employment incumbents of the position is required to comply with the DON Cyber IT/CSWF Program requirements of SECNAV M-5239.2. Administers Navy Flank Speed Cloud Applications environment server-based systems, security devices, distributed applications, network storage, and performs systems monitoring. Consults on network, application, and customer service issues to support computer systems’ security and availability.
• 7 - 10 years of experience as Azure Cloud Administrator in an enterprise level cloud computing environment.
• Azure Fundamentals Certification
• Microsoft 365 Fundamentals Certification
• 3 years’ experience working with RMF based Information Security Systems Engineer
(ISSE) documentation
• Proficient in the application of Secure Technical Implementation Guides (STIG) on cloud-based systems
• Familiar with enterprise backup software and administration
• Familiar with enterprise storage administration and concepts
• Ability to work in team setting, as well as independently
• Self-starter: identify issues and create action plan for resolution
• Demonstrated initiative, flexibility and ability to concurrently manage multiple deadline-driven tasks and projects
• Excellent communication skills
• Provide Subject Matter Expert level support for desktops in Azure cloud computing environment
• Maintain systems patches
• Maintain systems security posture
• Implement STIGs
• Improve system administration productivity by authoring/updating relevant shell scripts
• Provide timely reports on projects status and other systems administration work, as required
• Aggregate custom detections and alerts into a cloud native SEIM
• Provide/perform on-the-job training of KQL for all assigned government and military analysts
• Provide/perform on-the-job training of Navy owned Microsoft products and capabilities for all assigned
• Assist in the development of a standardized cloud-based case management system
Historical level of effort is a System Administration SME III NTE:
Five (5) FTE working to maintain a 24/7/365 helpdesk consisting of multiple Day, Evening, Midnight and Weekend Shifts
Position 8. Configuration Manager: Clearance requirement is SECRET.
DESCRIPTION:
These positions have been designated as a Cyber IT/Cybersecurity Workforce position in Specialty Area 461 and as a condition of employment incumbents of the position is required to comply with the DON Cyber IT/CSWF Program requirements of SECNAV M-5239.2.
This is the start of the file's text. The full file is on GovTribe.
File details come from the government source that posted it. Updated .