NIST ASSESSMENT ON SPRS SITE QUICK REFERENCE GUIDE - March 2 2021.pdf
PDF 135 KB Posted
- Attached to
- JPACE, LJPACE, and Repair Kits Federal contract opportunity
- Solicitation number
- SPE1C1-21-R-0072
About this file
This document provides guidance for submitting National Institute of Standards and Technology Special Publication 800-171 assessments to the Supplier Performance Risk System. Vendors can request the SPRS support team to manually enter assessment results by emailing the specified data points. Alternatively, vendors with a Cyber Vendor role can directly enter results into SPRS, which is accessible through the Procurement Integrated Enterprise Environment. The assessment information includes the date, score, scope, planned remediation date if applicable, included Commercial and Government Entity codes, name and version of the system security plan, and date the plan was created or updated.
The attached federal contract opportunity is a pre-solicitation notice for JPACE, LJPACE, and repair kits in two lots. The Defense Logistics Agency Troop Support Clothing and Textiles seeks these critical safety items subject to International Traffic in Arms Regulations. Firms must have a Joint Certification Program certification and sign a non-disclosure agreement to receive technical data. Market research summaries and surveys for each lot are attached.
View the file
Other files for this federal contract opportunity
| File | Type | Posted |
|---|---|---|
| JPACE_LJPACE_Market Research-Lot 0002_Final.docx | DOCX document | |
| 21-R-0072_JPACE_LJPACE_Presolicitation Notice.docx | DOCX document | |
| DLA Expot Ctrl Tech Data Mgmt Questionnaire.pdf | ||
| JPACE_Non-Disclosure Agreement-Fillable.pdf | ||
| NIST SP 800-171_Quick Entry Guide.pdf | ||
| Finding your MAC address Instructions.pdf | ||
| DLA Intro to Proper Handling of DoD Export-Controlled Tech Data.pdf | ||
| DD Form 2345.pdf | ||
| JPACE_LJPACE_Market Research-Summary.docx | DOCX document | |
| JPACE_LJPACE_Market Research-Lot 0001_Final.docx | DOCX document | |
| JCP Certification General Instructions_2021-04.docx | DOCX document | |
| JCP Certification Specific Instructions_2021-04.pdf |
Show all 12
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
NIST ASSESSMENT ON SPRS SITE QUICK REFERENCE GUIDE
For your reference, a list of frequently asked questions (https://www.sprs.csd.disa.mil/faqs.htm) and a NIST Quick Entry Guide (Vendors needing help posting Basic Assessments) are available from the SPRS home page: https://www.sprs.csd.disa.mil/
Please follow the link below for information on requesting access to SPRS.
https://www.sprs.csd.disa.mil/access-nongov.htm
The Quick Entry Guide on our website can help you enter your results, once you have the Cyber Vendor role: https://www.sprs.csd.disa.mil/pdf/NISTSP800-171QuickEntryGuide.pdf)
Option 1 - If you would like the SPRS Support Team to enter your NIST SP 800-171 assessment results into SPRS; please reply to WEBPTSMH.fct@navy.mil with the following data in this format:
1. Assessment Date (MM/DD/YYYY)
2. Assessment Score (-205 to 110)
3. Scope of Assessment (choose one)
• Enterprise - Entire Company’s Network under the CAGEs listed
• Enclave - Standalone under Enterprise CAGE as Business Unit (test enclave, hosted resources, etc.)
• Contract - Contract specific SSP Review
4. Plan of Action completion date (MM/DD/YYYY you intend to have any deficiencies addressed and the 110 score achieved. If score is 110, N/A.)
5. Included CAGE(s)
6. Name of System Security Plan (SSP) assessed (free form field, intended to be the name of the internal document created for/by your company, ex. Company Name SSP)
7. SSP Version/Revision (not mandatory)
8. SSP Date (MM/DD/YYYY – date the latest version of your SSP was created/updated)
#6-8 are new! Edits to existing assessments will require completing the SSP name and date fields.
Option 2 - Here is an Additional Option for Personal Entry of NIST Information:
You may enter your NIST SP 800-171 Basic assessment results directly in SPRS, which is accessible through the Procurement Integrated Enterprise Environment (PIEE) (https://piee.eb.mil). You will need a SPRS Cyber Vendor role in PIEE to enter/edit your results. A “Contractor/Vendor (Support User)” role allows you to see your SPRS scores, including view-only access to cyber assessment result. Users can have either or both roles on their PIEE account. These roles are approved by your company’s PIEE CAM in that system.
https://www.sprs.csd.disa.mil/faqs.htm https://www.sprs.csd.disa.mil/ https://www.sprs.csd.disa.mil/access-nongov.htm https://www.sprs.csd.disa.mil/pdf/NISTSP800-171QuickEntryGuide.pdf mailto:WEBPTSMH.fct@navy.mil https://piee.eb.mil/
File details come from the government source that posted it. Updated .