OIG eDiscovery_Litigation Hold Software Solution DRAFT v2 clean.pdf

PDF 234 KB Posted

Attached to
DHS OIG eDiscovery Tool Requirement Federal contract opportunity
Solicitation number
70VT1525N00002
Issued by
Department of Homeland Security Office of the Inspector General

About this file

This Statement of Work (SOW) outlines the Department of Homeland Security Office of Inspector General's (DHS OIG) requirements for a cloud-based electronic discovery (eDiscovery) Software-as-a-Service solution with integrated legal hold capabilities. The platform must support unlimited users and provide comprehensive eDiscovery capabilities covering identification, preservation, collection, processing, review, analysis, production, and trial phases.

The contract includes a 12-month base period with four 1-year option periods and requires both the SaaS solution and a full-time eDiscovery Solutions Specialist. Key technical requirements include FedRAMP authorization, advanced search functionality, audio/video transcription, foreign language translation, built-in redaction capabilities, in-platform collaboration features, automated legal hold management integrated with Microsoft 365, predictive coding, and custom reporting capabilities. The specialist must have 4+ years of experience with data collection and litigation support, knowledge of current OIG eDiscovery tools (Microsoft Purview, Veritas Platform, Relativity Server), and strong communication skills. Work will be performed primarily remotely or at contractor facilities, with core support hours between 6am-6pm EST, and technical support available 7 days a week except federal holidays.

View the file

Other files for this federal contract opportunity

Other files attached to DHS OIG eDiscovery Tool Requirement, newest first.
File Type Posted
RFI eDiscovery Litigation Hold Software 12172024 SAM.pdf PDF
RFI eDiscovery Litigation Hold Software 12132024 SAM.pdf PDF

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

Department of Homeland Security

Office of Inspector General

Electronic Discovery, Litigation Hold, Document Review Software

STATEMENT OF WORK (SOW)

1.0 Description of Services

The Office of the Inspector General (OIG) has a need for a cloud-based electronic discovery

(eDiscovery) Software-as-a-Service (SaaS) tool in support of audits, investigations, inspections, and litigation. The platform must support unlimited users and have robust eDiscovery capabilities that support the full Electronic Discovery Reference Model through all phases including identification, preservation, collection, processing, review, analysis, production, and trial.

2.0 Background

Congress enacted the Inspector General Act of 1978 to ensure integrity and efficiency in Government. Both the Department of Homeland Security (DHS) and this OIG were established by Congress in 2002. The OIG is led by a Presidentially appointed and Senate confirmed

Inspector General, who is responsible for providing independent oversight and promoting excellence, integrity, and accountability within DHS. The IG is supported by a leadership team consisting of a Principal Deputy Inspector General, Chief of Staff, Counsel to the Inspector

General, Deputy Inspectors General and Assistant Inspectors General. Headquartered in

Washington D.C., this leadership team manages the more than 750 federal employees, dispersed across 30 cities in the United States and Puerto Rico and oversees the operations of the OIG’s eight program offices: Office of Audits, Office of Inspections and Evaluations, Office of Investigations, Office of Counsel, the Executive Office of Inspector General, Office of Integrity, Office of Management, and Office of Innovation.

OIG conducts and supervises independent audits, inspections, evaluations, investigative activities, and forensic and data analytic efforts of DHS programs and operations. These OIG activities help identify, deter, and address fraud, waste, abuse, and mismanagement, or other criminal or noncriminal misconduct; drive transformative change to improve DHS programs and operations; and promote a safer homeland. The Office of Counsel supports this mission through the delivery of legal services to OIG.

OIG seeks to streamline our business processes, and our overarching goal is to replace systems that no longer meet our needs due to insufficient capabilities, cumbersome workflows or processes, insufficient vendor support, or any combination of these issues.

There are three different eDiscovery tools currently in use; however, the OIG’s collective responsibilities make it necessary to use one platform that combines the capabilities of all the existing on-premise tools that the various Program Offices need or are currently using.

Furthermore, OIG lacks the ability to fully comply with a legal requirement to put legal holds in place because there is no automated tool to accurately track and manage legal holds or to retain or search for historically placed holds that are still relevant to ongoing or pending litigation or otherwise legally required holds. As such, OIG requires a platform that can effectuate preservation orders across DHS and its components to prevent the deletion or spoliation of relevant documents. Ensuring the retention of all relevant documents is critical to fulfill OIG’s statutory mandate to provide comprehensive oversight of all matters within

OIG’s purview.

3.0 Objective

The objective of this SOW is to procure a secure, cloud-based eDiscovery solution with an integrated legal hold capability to enhance the organization’s eDiscovery capabilities.

4.0 Scope

The Contractor will host, support, and maintain the eDiscovery solution in a secure, FedRAMP-authorized cloud environment throughout the contract period. This includes onboarding/project management support, ensuring the platform’s optimal performance, assisting the Government through the authority to operate process, delivering ongoing technical support, data migration, and providing user training on the various features of the service.

5.0 SAAS Requirements

This eDiscovery SaaS solution will provide the capability of timely processing and handling millions of documents, multiple terabytes of data, and thousands of legal matters. The solution will enable the OIG to manage large volumes of data and conduct cloud-based collections, processing, culling, review, and highly customizable productions to support fast-paced, high-demand litigations, investigations, and administrative proceedings.

The eDiscovery solution shall meet or exceed the following minimum requirements:

• Unlimited users and cases included in the subscription/price

• Cloud-based platform:

o Fully hosted in the cloud o FedRamp-authorized

• Security and compliance:

o Have built-in security controls including data encryption, multi-factor authentication, and compliance with industry standards and federal cybersecurity requirements

• Robust processing, indexing, and searching capabilities:

o Integrated suite of tools for rapid and efficient data collection, processing, review, and analysis o Advanced search functionalities, including but not limited to, keyword, Boolean, wildcard, conceptual search, and fuzzy search, proximity searching, etc.

o Ability to filter and sort based on metadata information o Flexible and dynamic content tagging; native/non-native/text views of a variety of document types, including audio and video files, mobile text messaging display; and transcription for search and review o Audio/video transcription o Foreign language translation o Built-in redaction capabilities that do not require any add-ons or third-party plug-ins and that allow for full burned-in redactions o Ability to redact audio, video, and Excel files o Imaging and optical character recognition capabilities o Ability to produce in native, PDF, or TIF images with or without load files o Ability to Bates number o Ability to use the Windows file structure to transfer files o Ability to de-crypt encrypted files

• In-platform collaboration:

o Comprehensive in-platform sharing and secure collaboration for internal and external agency stakeholders such as in-platform messaging, per document collaboration, and flexible sharing options. Features should:

▪ support building dynamic cases, histories, and narratives in chronological order with the ability to visualize timelines, events, or other information; tie in or link to relevant documents; label/tag documents; make notes; pose questions during document reviews;

export documents; and assign tasks with due dates to team members.

▪ enable simultaneous drafting and editing of documents by multiple users

▪ facilitate real-time communication about investigations and litigations across geographically dispersed teams (e.g., in-platform chat or messaging)

• Legal hold:

o Automated legal hold management with a feature that tracks acknowledgements, reminders, and custodian interactions and integrates with

Microsoft 365 (M365) o Capability to connect directly to M365 and other applications through APIs to initiate litigation hold function to preserve custodial electronically stored information (ESI) in place; collect custodial ESI; and manage holds using templates, alerts, and notifications

• Advanced analytics:

o Tools for document review, including email threading, clustering, and categorization o Predictive coding to prioritize documents for review based on previous reviewer decisions o Technology assisted review

• Robust reporting o Ability to create custom reports tailored to specific needs

• Compatibility:

o Integrates with Microsoft 365, SharePoint, and new or emerging data sources

• Access:

o Robust permission management to include the ability to create custom permissions and permission groups o Capability to grant or limit access at varying levels of granularity through role-based access controls o enable users to self-manage permissions and controls over their documents

• Efficient administrative processes o Provides a comprehensive view of all projects (including inactive cases) to enable an efficient way to suspend, deactivate, and reactivate cases o Ability for non-technical users to easily set up projects or workspaces

• Supports a mobile workforce

• Intuitive and user-friendly interface and experience

• Unlimited technical support

• Unlimited user training

• Supports document management and records retention

6.0 Period of Performance

The period of performance for this contract is a twelve (12) month base year and four (4) one

(1) year option periods as follows:

Performance

Period

Performance Period Dates

Base Period Option Period One Option Period Two Option Period Three Option Period Four

7.0 Contractor Personnel

In addition to the SaaS solution above, the OIG has a requirement to obtain a full-time eDiscovery Solutions Specialist to assist OIG staff with their e-Discovery requirements and day-to-day operations.

The eDiscovery Solutions Specialist shall perform the following tasks:

• Data ingestion activities for the purposes of text and metadata extraction.

• Implementation of culling requirements such as deduplication, date restrictions, and search filtering.

• Export processed data in specified formats as required.

• Plan and implement assisted review strategies through the use of analytics.

• Export processed data in specified formats as required.

• Plan and implement assisted review strategies through the use of analytics.

• Creation and permissions management of user account security.

• Database review workflow consulting including building of coding and quality control best practices.

• Processing legal hold requests and recovery of date in response to approved requests.

• Demonstrate and train on key components of application features to both internal and external clients.

• Maintain Veritas eDiscovery Platform and Relativity Server platform for the remaining duration of those systems.

• Provide limited project management support to facilitate billing, project oversight, and administrative tasks in support of the contract execution.

The eDiscovery Solutions Specialist shall meet or exceed the following qualifications:

• Strong customer service skills, team skills, and the ability to collaborate within a cross-functional team.

• Ability to research and resolve problems efficiently and accurately.

• 4+ years of experience with data collection, use of technology to facilitate civil and/or criminal Discovery, and familiarity with litigation support.

• Knowledge of eDiscovery tools that are currently used in OIG to include Microsoft

Purview eDiscovery, Veritas eDiscovery Platform, and Relativity Server.

• Strong oral and written communication skills, particularly the ability to translate legal requirements to technical requirements and to provide end-user training as required.

7.1 Qualified Personnel

The Contractor shall provide qualified personnel to fully support the implementation of the proposed solution to successfully perform all objectives and requirements specified in this

SOW throughout the life of the contract.

7.2 Continuity of Support

The Contractor shall ensure that the contractually required level of support for this requirement is maintained at all times. The Contractor shall ensure that contract support personnel are available during core hours of the workday. If for any reason the Contractor staffing levels are not maintained due to vacation, leave, appointments, etc., and replacement personnel will not be provided, the Contractor shall provide e-mail notification to the Contracting Officer’s Representative (COR) prior to employee absence, at a minimum fourteen (14) calendar days prior. Otherwise, the Contractor shall provide a fully qualified replacement.

7.3 Employee Identification

Contractor employees visiting Government facilities shall wear an identification badge that, at a minimum, displays the Contractor name, the employee’s photo, name, clearance-level and badge expiration date. Visiting Contractor employees shall comply with all Government escort rules and requirements. All Contractor employees shall identify themselves as

Contractors when their status is not readily apparent and display all identification and visitor badges in plain view above the waist at all times.

Contractor employees working on-site at Government facilities shall wear a Government issued identification badge. All Contractor employees shall identify themselves as

Contractors when their status is not readily apparent (in meetings, when answering Government telephones, in e-mail messages, etc.) and display the Government issued badge in plain view above the waist at all times.

7.4 Contractor Conduct

Contractor’s employees shall comply with all applicable Government regulations, policies and procedures (e.g., fire, safety, sanitation, environmental protection, security, “off limits” areas) when visiting or working at Government facilities. The Contractor shall ensure

Contractor employees present a professional appearance at all times and that their conduct shall not reflect discredit on the United States or the DHS OIG. The Key Personnel shall ensure Contractor employees understand and abide by DHS OIG established rules, regulations, and policies concerning safety and security.

7.5 Removing Contract Employees for Misconduct or Security Reasons

The Government may, at its sole discretion (via the CO), direct the Contractor to remove any Contractor employee from DHS OIG facilities for misconduct or security reasons. Removal does not relieve the Contractor of the responsibility to continue providing the services required under the contract. The CO will provide the Contractor with a written explanation to support any request to remove an employee.

7.6 Contractor Performance

The Contractor shall be responsible for performing the requirements of this contract in accordance with the specific requirements and objectives described in this SOW.

8.0 Place and Time of Performance

The Contractor shall perform the services required by this contract Monday through Friday except federal holidays or days when the Government is closed due to local or national emergencies, administrative closings, or similar Government-directed facility closings. Core hours for support personnel are 8 hours/day between 6 a.m., EST and 6 p.m., EST.

The Contractor is responsible for providing technical support for the SaaS solution 7 days a week, except federal holidays or when the Government facility is closed due to local or national emergencies, administrative closings, or similar Government-directed facility closings.

The work under this contract will be performed primarily remotely or at the contactor’s facility. However, the Government retains the right to require work to be performed on-site at

OIG Headquarters located at 395 E Street, SW, Washington, DC 20024.

9.0 Applicable Documents

Documents referenced will continue to evolve throughout the lifetime of this contract. New documents may be added, current documents updated, while others may become obsolete.

9.1 Documents

The following documents provide specifications, standards, or guidelines that shall be complied with to meet the requirements of this contract.

Reference Description / Title

Information Protection Memo

DHS Information Protection Memo – Memo to all employees regarding the protection of classified and Sensitive But

Unclassified information.

DHS MD 11042.1 Safeguarding Sensitive But Unclassified (For Official Use Only)

Information

DHS MD 0470.2 Privacy Act Compliance – DHS policy regarding the Department’s Privacy Act Compliance

DHS MD 4010.2 Section 508 Program Management Office & Electronic and

Information Technology Accessibility

DHS PII Handbook Handbook for Safeguarding Sensitive Personally Identifiable

Information (PII)

OIG 66-1 Privacy Program Directive – Establishes policies, procedures, and requirements for the OIG’s Privacy Act Compliance

Privacy Technology

Implementation Guide

Privacy Technology Implementation Guide – DHS Privacy Office’s guidance to technology managers and developers in understanding privacy protections as they design, build, and deploy operational systems.

DHS 4300A Sensitive Systems Policy Directive, All Attachments

DHS 4300A Handbook DHS Sensitive Systems Handbook chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/xlibrary/assets/foia/mgmt_directive_110421_safeguarding_sensitive_but_unclassified_information.pdf chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/xlibrary/assets/foia/mgmt-directive-0470-2-privacy-act-compliance.pdf https://www.dhs.gov/publication/management-directive-40102-section-508-program-management-office-electronic-and chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/sites/default/files/publications/dhs%20policy%20directive%20047-01-007%20handbook%20for%20safeguarding%20sensitive%20PII%2012-4-2017.pdf chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/sites/default/files/publications/privacy-technology-implementation-guide.pdf chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/sites/default/files/publications/privacy-technology-implementation-guide.pdf chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/xlibrary/assets/foia/mgmt_directive_4300a_policy_v8.pdf https://www.dhs.gov/publication/dhs-4300a-sensitive-systems-handbook

4300A Memos Guidance on Usage of Microsoft Office 365 Teams

DHS Information System Configuration Standards

DHS Directive 138-01 Enterprise Information Technology Configuration Management

DHS Directive 140-01 Information Technology Security Program

Yellow Book Government Auditing Standards

Blue Book CIGIE Quality Standards for Inspection & Evaluation

NIST 800-37 National Institute of Standards and Testing (NIST) Publication

800-37, Risk Management Framework for Information Systems and Organizations: A System Life Cycle Approach for Security and

Privacy

NIST 800-39 NIST Publication 800-39, Managing Information Security Risk:

Organization, Mission, and Information System View

NIST 800-53, Rev 5 NIST Publication 800-53, Rev. 5 Security and Privacy Controls for Information Systems and Organizations

FIPS 140-3 Federal Information Processing Standards (FIPS) Publication 140-

3, Security Requirements for Cryptographic Modules

FIPS 199 FIPS Publication 199, Standards for Security Categorization of

Federal Information and Information Systems

FIPS 200 FIPS Publication 200, Minimum Security Requirements for Federal Information and

Information Systems

Section 508 Section 508 of the Rehabilitation Act of 1973 - Electronic and

Information Technology Accessibility Standards

9.2 Quality Control/Assurance

The Contractor’s quality control (QC) program is how the Contractor assures that work complies with the requirements of the contract. In accordance with FAR 46.202-1, the Government presumes the Contractor has in place an effective quality assurance system to ensure the delivery of high-quality services under this contract; as such, the Contractor is not required to develop and submit a QC plan specific to this contract.

10.0 Deliverables

Key Deliverables

Item No.

Deliverable Title

Frequency Reference Delivery Format

Due By

1 Software Access and Use

Ongoing Section 5.0 Web-based Upon award chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/sites/default/files/publications/05.%20Directive%20138-01%2C%20Enterprise%20Information%20Technology%20Configuration%20Management%20%285-6-14%29.pdf chrome-extension://efaidnbmnnnibpcajpcglclefindmkaj/https:/www.dhs.gov/sites/default/files/publications/mgmt/information-and-technology-management/mgmt-dir_140-01-info-tech-security-program_revision-02.pdf https://www.nist.gov/privacy-framework/nist-sp-800-37 https://www.nist.gov/privacy-framework/nist-sp-800-39 https://csrc.nist.gov/publications/detail/sp/800-53/rev-5/final https://csrc.nist.gov/publications/detail/fips/140/3/final https://csrc.nist.gov/publications/detail/fips/199/final https://csrc.nist.gov/publications/detail/fips/200/final https://www.section508.gov/

2 Technical

Support

Ongoing Section 5.0 Email or phone

Upon award

3 User Training Ongoing, As Needed

Section 5.0 Virtual Upon award

11.0 Accessibility Requirements

1. Section 508 Requirements (include in the SOW, PWS, or SOO) Section 508 of the Rehabilitation Act (classified to 29 U.S.C. § 794d) requires that when

Federal agencies develop, procure, maintain, or use information and communications technology (ICT), it shall be accessible to people with disabilities. Federal employees and members of the public with disabilities must be afforded access to and use of information and data comparable to that of Federal employees and members of the public without disabilities.

All products, platforms and services delivered as part of this work statement that, by definition, are deemed ICT shall conform to the revised regulatory implementation of

Section 508 Standards, which are located at 36 C.F.R. § 1194.1 & Appendixes A, C & D, and available at https://www.ecfr.gov/cgi-bin/text-idx?SID=e1c6735e25593339a9db63534259d8ec&mc=true&node=pt36.3.1194&rgn=div5.

In the revised regulation, ICT replaced the term electronic and information technology (EIT) used in the original 508 standards. ICT includes IT and other equipment.

Exceptions for this work statement have been determined by DHS and only the exceptions described herein may be applied. Any request for additional exceptions shall be sent to the Contracting Officer and a determination will be made according to DHS

Directive 139-05, Office of Accessible Systems and Technology, dated November 12, 2018 and DHS Instruction 139-05-001, Managing the Accessible Systems and Technology Program, dated November 20, 2018, or any successor publication.

1.1 Section 508 Requirements for Technology Products (include in the SOW, PWS, or SOO)

Section 508 applicability to Information and Communications Technology

(ICT): eDiscovery Web Platform

Applicable Exception: N/A Authorization #: N/A

Applicable Functional Performance Criteria: All functional performance criteria in

Chapter 3 apply to when using an alternative design or technology that results substantially equivalent or greater accessibility and usability by individuals with disabilities than would be provided by conformance to one or more of the requirements https://uscode.house.gov/view.xhtml?req=(title:29%20section:794d%20edition:prelim)%20OR%20(granuleid:USC-prelim-title29-section794d)&f=treesort&edition=prelim&num=0&jumpTo=true https://www.ecfr.gov/cgi-bin/text-idx?SID=e1c6735e25593339a9db63534259d8ec&mc=true&node=pt36.3.1194&rgn=div5 https://www.ecfr.gov/cgi-bin/text-idx?SID=e1c6735e25593339a9db63534259d8ec&mc=true&node=pt36.3.1194&rgn=div5 in Chapters 4 and 5 of the Revised 508 Standards, or when Chapters 4 or 5 do not address one or more functions of ICT.

Applicable 508 requirements for electronic content features and components (including but not limited to Internet or Intranet website; Electronic documents; Electronic forms;

Electronic document templates; Electronic surveys; Electronic reports): All requirements in E205 apply, including all WCAG 2.0 Level A and AA Success Criteria apply as specified in E205

Applicable 508 requirements for software features and components (including but not limited to Software infrastructure)

Applicable 508 requirements for hardware features and components: Does not apply

Applicable 508 requirements for support services and documentation: All requirements in Chapter 6 apply

1.2 Section 508 Requirements for Technology Services (include in the SOW, PWS, or

SOO)

1.When providing installation, configuration or integration services for ICT, the Contractor shall not reduce the original ICT item's level of Section 508 conformance prior to the services being performed.

2.When providing maintenance upgrades, substitutions, and replacements to ICT, the

Contractor shall not reduce the original ICT’s level of Section 508 conformance prior to upgrade, substitution or replacement. The agency reserves the right to request an

Accessibility Conformance Report (ACR) for proposed upgrades, substitutions and replacements prior to acceptance. The ACR should be created using the on the Voluntary Product Accessibility Template Version 2.2 508 (or successor versions). The template can be located at https://www.itic.org/policy/accessibility/vpat

3.When providing Platform as a Service (PaaS) or Software as a Service (SaaS), the Contractor shall ensure services conform to the applicable Section 508 standards

(including the requirements in Chapter 5 for software and WCAG Level A and AA Level

2.0 success criteria for web and software. When the requirements in Chapter 5 do not address one or more software functions, the Contractor shall ensure conformance to the Functional Performance Criteria specified in Chapter 3.) The agency reserves the right to request an Accessibility Conformance Report (ACR) for PaaS and SaaS offerings. The ACR should be created using the Voluntary Product Accessibility

Template Version 2.2 508 (or later). The template can be located at https://www.itic.org/policy/accessibility/vpat https://www.itic.org/policy/accessibility/vpat

4.When providing cloud hosting services (Infrastructure as a Service, Platform as a

Service, Software as a Service, etc.) the Contractor shall ensure user administrative screens, dashboards and portals used to configure, and monitor cloud services conform to the Section 508 standards.

5.The Contractor shall ensure cloud hosting services shall not reduce the level of Section 508 conformance for ICT migrated by DHS to the cloud hosting environment.

6.When developing or modifying ICT, the Contractor is required to validate ICT deliverables for conformance to the applicable Section 508 requirements. Validation shall occur on a frequency that ensures Section 508 requirements is evaluated within each iteration and release that contains user interface functionality.

7.When modifying, installing, configuring or integrating commercially available or government-owned ICT, the Contractor shall not reduce the original ICT Item’s level of

Section 508 conformance.

8.When developing or modifying web based and electronic content components, except for electronic documents and non-fillable forms provided in a Microsoft Office or Adobe PDF format, the Contractor shall demonstrate conformance to the applicable

Section 508 standards (including WCAG 2.0 Level A and AA Success Criteria) by conducting testing using the DHS Trusted Tester for Web Methodology Version 5.0 or successor versions, and shall ensure testing is conducted by individuals who are certified by DHS on version 5.0 or successor versions (e.g. “DHS Certified Trusted

Testers”). The Contractor shall provide the Trusted Tester Certification IDs to DHS upon request. Information on the DHS Trusted Tester for Web Methodology Version 5.0, related test tools, test reporting, training, and tester certification requirements is published at https://www.dhs.gov/trusted-tester.

9.When developing or modifying electronic documents and forms provided in a Microsoft

Office or Adobe PDF format, the Contractor shall demonstrate conformance to the applicable to the applicable Section 508 standards (including WCAG Level A and AA

Level 2.0 Success Criteria) by conducting testing using the test methods published under “Accessibility Tests for Documents” at https://www.dhs.gov/compliance-test-processes.

10. When developing or modifying ICT deliverables that contain the ability to automatically generate electronic documents and forms in Microsoft Office and Adobe formats, or when the capability is provided to enable end users to design and author web based electronic content (i.e. surveys, dashboards, charts, data visualizations, etc.), the Contractor shall demonstrate the ability to ensure these outputs conform to the applicable Section 508 standards (including WCAG 2.0 Level A and AA Success

Criteria). The Contractor shall demonstrate conformance by conducting testing and reporting test results based on representative sample outputs. For outputs produced https://www.dhs.gov/trusted-tester https://www.dhs.gov/compliance-test-processes https://www.dhs.gov/compliance-test-processes as Microsoft Office and Adobe PDF file formats, the Contractor shall use the test methods published under “Accessibility Tests for Documents”, which are published at https://www.dhs.gov/compliance-test-processes. For outputs produced as web based electronic content, the Contractor shall use the DHS Trusted Tester for Web

Methodology Version 5.0, or successor versions. This methodology is published at https://www.dhs.gov/trusted-tester

11. When developing or modifying software functions of ICT, the Contractor shall demonstrate conformance to the applicable Section 508 standards (including the requirements in Chapter 5 and WCAG 2.0 Level A and AA Success Criteria). When the requirements in Chapter 5 do not address one or more software functions, the

Contractor shall demonstrate conformance to the Functional Performance Criteria specified in Chapter 3. The Contractor shall use a test process capable of validating conformance to all applicable Section 508 standards for software functionality delivered pursuant to this contract. The Contractor may utilize the DHS Trusted Tester

Methodology for Web and Software Version 4.0 as a component of the overall test process used. This version of the test process provides partial test coverage of the

Section 508 standards that apply to software. If the Contractor uses this test process, the Contractor shall address the test coverage gaps through additional test procedures. Information on the DHS Trusted Tester Methodology for Web and

Software Version 4.0, including coverage against the applicable Section 508 standards for software as well as gaps that need to be addressed through other test methods, related test tools, and training is published at https://www.dhs.gov/trusted-tester.

12. Contractor personnel shall possess the knowledge, skills and abilities necessary to address the accessibility requirements in this work statement.

1.3 Section 508 Deliverables (include in the SOW, PWS, or SOO)

1.Section 508 Test Plans: When developing or modifying ICT pursuant to this contract, the

Contractor shall provide a detailed Section 508 Conformance Test Plan. The Test Plan shall describe the scope of components that will be tested, an explanation of the test process that will be used, when testing will be conducted during the project development life cycle, who will conduct the testing, how test results will be reported, and any key assumptions.

2.Section 508 Test Results: When developing or modifying ICT pursuant to this contract, the Contractor shall provide test results in accordance with the Section 508

Requirements for Technology Services provided in this solicitation.

3.Section 508 Accessibility Conformance Reports: For each ICT item offered through this contract (including commercially available products, and solutions consisting of ICT that are developed or modified pursuant to this contract), the Offeror shall provide an Accessibility Conformance Report (ACR) to document conformance claims against the https://www.dhs.gov/compliance-test-processes https://www.dhs.gov/trusted-tester https://www.dhs.gov/trusted-tester applicable Section 508 standards. The ACR shall be based on the Voluntary Product

Accessibility Template Version 2.0 508 (or successor versions). The template can be found at https://www.itic.org/policy/accessibility/vpat. Each ACR shall be completed by following all of the instructions provided in the template, including an explanation of the validation method used as a basis for the conformance claims in the report.

4.Other Section 508 Documentation: The following documentation shall be provided upon request for ICT items offered through this contract:

o Documentation of features provided to help achieve accessibility and usability for people with disabilities.

o Documentation on how to configure and install the ICT Item to support accessibility.

o Documentation of core functions that cannot be accessed by persons with disabilities.

o Documentation of remediation plans to address non-conformance to the

Section 508 standards.

File details come from the government source that posted it. Updated .