SOLICITATION.pdf
PDF 634 KB Posted
- Attached to
- INTERNET BASED THREAT RISK MITIGATION AND MONITORING SERVICES Federal contract opportunity
- Solicitation number
- 70CMSW20R00000002
- Issued by
- Immigration and Customs Enforcement
About this file
This request for proposal solicits internet-based threat risk mitigation and monitoring services for Immigration and Customs Enforcement. The contractor shall provide vulnerability assessments, proactive threat monitoring, and reporting for ICE senior leaders, general personnel, and specific individuals as requested. Services include open source research, social media monitoring, and alerting ICE immediately of imminent threats across three tiers of personnel. The contractor must submit daily, weekly, monthly and annual reports even when no threats are found. The base period of performance is one year with four one-year options. Final proposals are due by March 6, 2020.
View the file
Other files for this federal contract opportunity
| File | Type | Posted |
|---|---|---|
| AMENDMENT.pdf |
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
Office of Acquisition Management U.S. Department of Homeland Security 801 I Street, NW Washington, DC 20536
RFP Attachments:
SF-1449 (fill-in/sign)
1. Attachment A – Submission Instructions & Evaluation Criteria
2. Attachment B – Statement of Objectives
3. Attachment C – Provisions & Clauses
Date: February 28, 2020 Subject: Request for Proposal (RFP) 70CMSW20R00000002
Dear Prospective Offerors:
The Department of Homeland Security (DHS), Immigration and Customs Enforcement (ICE), Office of Professional Responsibility (OPR), has a requirement for Internet Based Threat Risk Mitigation and Monitoring Services. This is a combined synopsis/solicitation for commercial services, prepared in accordance with the format in the Federal Acquisition Regulation (FAR) Subpart 12.6 and solicits proposals from vendors in the open market. This combined synopsis/solicitation will result in a Firm-Fixed Price Contract, with an anticipated period of performance of a twelve (12) month base period with four (4) twelve (12) month option periods.
The offeror’s proposal must be submitted in two (2) volumes: Volume I – Technical; Volume II – Pricing. Each volume shall be separate and complete so that an evaluation of each may be accomplished independently and simultaneously.
Please provide a complete proposal based on the attached Statement of Objectives (SOO) (Attachment B) in accordance with the Combined Synopsis/Solicitation.
To ensure that your proposal is in compliance with ICE’s requirements, please read the entire RFP and attachments.
To be considered timely, an electronic copy proposal must be received at the specified e-mail addresses. All questions concerning this combined synopsis/solicitation shall be submitted in writing via e-mail, no later than Tuesday, March 3, 2020 at 12:00 p.m. Eastern Standard Time (EST) to Yasmin.Atkins@ice.dhs.gov, and the Contracting Officer, Ryan Macdonald, at Ryan.Macdonald@ice.dhs.gov. All final proposal submissions are due on Friday, March 6, 2020 at 8:00 a.m. Eastern Standard Time (EST) to Yasmin.Atkins@ice.dhs.gov, and the Contracting Officer, Ryan Macdonald, at Ryan.Macdonald@ice.dhs.gov.
Sincerely, Ryan Macdonald Contracting Officer
ICE/OAQ/MSW
mailto:Yasmin.Atkins@ice.dhs.gov mailto:Ryan.Macdonald@ice.dhs.gov mailto:Yasmin.Atkins@ice.dhs.gov mailto:Ryan.Macdonald@ice.dhs.gov
SEE ADDENDUMIS CHECKED
CODE 18a. PAYMENT WILL BE MADE BY
CODE
FACILITYCODE
17b. CHECK IF REMITTANCE IS DIFFERENT AND PUT SUCH ADDRESS IN OFFER
OFFEROR
ICE/MS-DC
Washington DC 20536
801 I Street NW, Suite 800 Office of Acquisition Management Immigration and Customs Enforcement ICE/Mission Support-DC
ICE/AS/OPR CODE 16. ADMINISTERED BYCODE
X
X
541990
SIZE STANDARD:
% FOR:SET ASIDE:UNRESTRICTED ORICE/MS-DC
RFPIFB
10. THIS ACQUISITION ISCODE
RFQ
14. METHOD OF SOLICITATION
13b. RATING
NAICS:
SMALL BUSINESS
03/06/2020 0800 ES
02/28/2020
202-732-2619YASMIN ATKINS
(No collect calls)
INFORMATION CALL:
FOR SOLICITATION 8. OFFER DUE DATE/LOCAL TIMEb. TELEPHONE NUMBER a. NAME
4. ORDER NUMBER3. AWARD/ 6. SOLICITATION
70CMSW20R00000002
5. SOLICITATION NUMBER
SOLICITATION/CONTRACT/ORDER FOR COMMERCIAL ITEMS 1. REQUISITION NUMBER PAGE OF
1 70 192120OPRHQ160016OFFEROR TO COMPLETE BLOCKS 12, 17, 23, 24, & 30
Attn: Yasmin Atkins
TELEPHONE NO.
17a. CONTRACTOR/
Washington DC 20024 500 12th Street SW Immigration and Customs Enforcement ICE Ofc of Professnl Responsibility
15. DELIVER TO
Washington DC 20536 801 I Street NW, Suite 800 Office of Acquisition Management Immigration and Customs Enforcement
9. ISSUED BY
7.
2. CONTRACT NO.
EFFECTIVE DATE
$16.50
18b. SUBMIT INVOICES TO ADDRESS SHOWN IN BLOCK 18a UNLESS BLOCK BELOW
ISSUE DATE
DELIVERY FOR FOB DESTINA-
TION UNLESS BLOCK IS
MARKED
11.
SEE SCHEDULEX
12. DISCOUNT TERMS
THIS CONTRACT IS A
RATED ORDER UNDER
DPAS (15 CFR 700)
13a.
SERVICE-DISABLED
VETERAN-OWNED
SMALL BUSINESS
HUBZONE SMALL
BUSINESS
8(A)
ICE/Mission Support-DC
WOMEN-OWNED SMALL BUSINESS
(WOSB) ELIGIBLE UNDER THE WOMEN-OWNED
SMALL BUSINESS PROGRAM
EDWOSB
24.
AMOUNT
23.
UNIT PRICE
22.
UNIT
21.
QUANTITY
20.
SCHEDULE OF SUPPLIES/SERVICES
19.
ITEM NO.
RFP FOR INTERNET BASED THREAT RISK MITIGATION AND
MONITORING SERVICES for OPR.
Please submit proposals in accordance with the attachments to be considered for award.
RFP ATTACHMENTS:
1. Attachment A – Submission Instructions & Evaluation Criteria
2. Attachment B – Statement of Objectives
3. Attachment C – Provisions & Clauses
(Use Reverse and/or Attach Additional Sheets as Necessary)
HEREIN, IS ACCEPTED AS TO ITEMS:
X
XX
DATED
RYAN MACDONALD
. YOUR OFFER ON SOLICITATION (BLOCK 5),
INCLUDING ANY ADDITIONS OR CHANGES WHICH ARE SET FORTH
COPIES TO ISSUING OFFICE. CONTRACTOR AGREES TO FURNISH AND DELIVER
ARE
ARE
31c. DATE SIGNED
27b. CONTRACT/PURCHASE ORDER INCORPORATES BY REFERENCE FAR 52.212-4. FAR 52.212-5 IS ATTACHED. ADDENDA
31a. UNITED STATES OF AMERICA (SIGNATURE OF CONTRACTING OFFICER)
30c. DATE SIGNED 31b. NAME OF CONTRACTING OFFICER (Type or print)
ALL ITEMS SET FORTH OR OTHERWISE IDENTIFIED ABOVE AND ON ANY ADDITIONAL
SHEETS SUBJECT TO THE TERMS AND CONDITIONS SPECIFIED.
27a. SOLICITATION INCORPORATES BY REFERENCE FAR 52.212-1, 52.212-4. FAR 52.212-3 AND 52.212-5 ARE ATTACHED. ADDENDA
26. TOTAL AWARD AMOUNT (For Govt. Use Only)
OFFER
STANDARD FORM 1449 (REV. 2/2012)
Prescribed by GSA - FAR (48 CFR) 53.212
ARE NOT ATTACHED.
ARE NOT ATTACHED.
AUTHORIZED FOR LOCAL REPRODUCTION
PREVIOUS EDITION IS NOT USABLE
30b. NAME AND TITLE OF SIGNER (Type or print)
30a. SIGNATURE OF OFFEROR/CONTRACTOR
28. CONTRACTOR IS REQUIRED TO SIGN THIS DOCUMENT AND RETURN
25. ACCOUNTING AND APPROPRIATION DATA
29. AWARD OF CONTRACT:
REF.
32e. MAILING ADDRESS OF AUTHORIZED GOVERNMENT REPRESENTATIVE
32c. DATE 32b. SIGNATURE OF AUTHORIZED GOVERNMENT REPRESENTATIVE
ACCEPTED, AND CONFORMS TO THE CONTRACT, EXCEPT AS NOTED:
32a. QUANTITY IN COLUMN 21 HAS BEEN
RECEIVED INSPECTED
40. PAID BY39. S/R VOUCHER NUMBER38. S/R ACCOUNT NUMBER
37. CHECK NUMBER
FINALPARTIAL
36. PAYMENT
FINALPARTIAL
35. AMOUNT VERIFIED
CORRECT FOR
34. VOUCHER NUMBER33. SHIP NUMBER
COMPLETE
32g. E-MAIL OF AUTHORIZED GOVERNMENT REPRESENTATIVE
42d. TOTAL CONTAINERS42c. DATE REC'D (YY/MM/DD)
42b. RECEIVED AT (Location)
42a. RECEIVED BY (Print)
41c. DATE41b. SIGNATURE AND TITLE OF CERTIFYING OFFICER
41a. I CERTIFY THIS ACCOUNT IS CORRECT AND PROPER FOR PAYMENT
STANDARD FORM 1449 (REV. 2/2012) BACK
24.
AMOUNT
23.
UNIT PRICE
22.
UNIT
21.
QUANTITY
20.
SCHEDULE OF SUPPLIES/SERVICES
19.
ITEM NO.
Period of Performance: 02/28/2020 to 03/06/2020
0001 BASE YEAR ORDERING PERIOD - TIER 1 12 MO
Threat Mitigation & Monitoring services for Top
Level personnel in accordance with Statement of
Objectives attached.
Delivery: 03/20/2021
Period of Performance: 03/21/2020 to 03/20/2021
0002 BASE YEAR ORDERING PERIOD - TIER 2 12 MO
Threat Mitigation & Monitoring services for
Middle Level Personnel in accordance with
Statement of Objectives attached.
Delivery: 03/20/2021
Period of Performance: 03/21/2020 to 03/20/2021
0003 BASE YEAR ORDERING PERIOD - TIER 3 12 MO
Threat Mitigation & Monitoring services for Lower
Level Personnel in accordance with Statement of
Objectives attached.
Continued ...
32f. TELEPHONE NUMBER OF AUTHORIZED GOVERNMENT REPRESENTATIVE
32d. PRINTED NAME AND TITLE OF AUTHORIZED GOVERNMENT REPRESENTATIVE
70 2 of
ITEM NO. SUPPLIES/SERVICES QUANTITY UNIT UNIT PRICE AMOUNT
NAME OF OFFEROR OR CONTRACTOR
3 70
CONTINUATION SHEET
REFERENCE NO. OF DOCUMENT BEING CONTINUED PAGE OF
(A) (B) (C) (D) (E) (F)
70CMSW20R00000002
Delivery: 03/20/2021
Period of Performance: 03/21/2020 to 03/20/2021
1001 OPTION YEAR 1 ORDERING PERIOD - TIER 1 12 MO
Threat Mitigation & Monitoring services for Top
Level personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2021
Delivery: 03/20/2022
Period of Performance: 03/21/2021 to 03/20/2022
1002 OPTION YEAR 1 ORDERING PERIOD - TIER 2 12 MO
Threat Mitigation & Monitoring services for
Middle Level Personnel in accordance with
Statement of Objectives attached.
(Option Line Item)
01/21/2021
Delivery: 03/20/2022
Period of Performance: 03/21/2021 to 03/20/2022
1003 OPTION YEAR 1 ORDERING PERIOD - TIER 3 12 MO
Threat Mitigation & Monitoring services for Lower
Level Personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2021
Delivery: 03/20/2022
Period of Performance: 03/21/2021 to 03/20/2022
2001 OPTION YEAR 2 ORDERING PERIOD - TIER 1 12 MO
Threat Mitigation & Monitoring services for Top
Level personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2022
Delivery: 03/20/2023
Continued ...
NSN 7540-01-152-8067 OPTIONAL FORM 336 (4-86)
Sponsored by GSA
FAR (48 CFR) 53.110
4 70
CONTINUATION SHEET
REFERENCE NO. OF DOCUMENT BEING CONTINUED PAGE OF
(A) (B) (C) (D) (E) (F)
70CMSW20R00000002
Period of Performance: 03/21/2022 to 03/20/2023
2002 OPTION YEAR 2 ORDERING PERIOD - TIER 2 12 MO
Threat Mitigation & Monitoring services for
Middle Level Personnel in accordance with
Statement of Objectives attached.
(Option Line Item)
01/21/2022
Delivery: 03/20/2023
Period of Performance: 03/21/2022 to 03/20/2023
2003 OPTION YEAR 2 ORDERING PERIOD - TIER 3 12 MO
Threat Mitigation & Monitoring services for Lower
Level Personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2022
Delivery: 03/20/2023
Period of Performance: 03/21/2022 to 03/20/2023
3001 OPTION YEAR 3 ORDERING PERIOD - TIER 1 12 MO
Threat Mitigation & Monitoring services for Top
Level personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2023
Delivery: 03/20/2024
Period of Performance: 03/21/2023 to 03/20/2024
3002 OPTION YEAR 3 ORDERING PERIOD - TIER 2 12 MO
Threat Mitigation & Monitoring services for
Middle Level Personnel in accordance with
Statement of Objectives attached.
(Option Line Item)
01/21/2023
Delivery: 03/20/2024
Continued ...
NSN 7540-01-152-8067 OPTIONAL FORM 336 (4-86)
5 70
CONTINUATION SHEET
REFERENCE NO. OF DOCUMENT BEING CONTINUED PAGE OF
(A) (B) (C) (D) (E) (F)
70CMSW20R00000002
Period of Performance: 03/21/2023 to 03/20/2024
3003 OPTION YEAR 3 ORDERING PERIOD - TIER 3 12 MO
Threat Mitigation & Monitoring services for Lower
Level Personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2023
Delivery: 03/20/2024
Period of Performance: 03/21/2023 to 03/20/2024
4001 OPTION YEAR 4 ORDERING PERIOD - TIER 1 12 MO
Threat Mitigation & Monitoring services for Top
Level personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2024
Delivery: 03/20/2025
Period of Performance: 03/21/2024 to 03/20/2025
4002 OPTION YEAR 4 ORDERING PERIOD - TIER 2 12 MO
Threat Mitigation & Monitoring services for
Middle Level Personnel in accordance with
Statement of Objectives attached.
(Option Line Item)
01/21/2024
Delivery: 03/20/2025
Period of Performance: 03/21/2024 to 03/20/2025
4003 OPTION YEAR 4 ORDERING PERIOD - TIER 3 12 MO
Threat Mitigation & Monitoring services for Lower
Level Personnel in accordance with Statement of
Objectives attached.
(Option Line Item)
01/21/2024
Delivery: 03/20/2025
Continued ...
NSN 7540-01-152-8067 OPTIONAL FORM 336 (4-86)
6 70
CONTINUATION SHEET
REFERENCE NO. OF DOCUMENT BEING CONTINUED PAGE OF
(A) (B) (C) (D) (E) (F)
70CMSW20R00000002
Period of Performance: 03/21/2024 to 03/20/2025
NSN 7540-01-152-8067 OPTIONAL FORM 336 (4-86)
70CMSW20R00000002 - Attachment A: Submission Instructions and Evaluation Criteria Internet Based Threat Risk Mitigation and Monitoring Services
1.0 SUBMISSION INSTRUCTIONS
The Government intends to award a Firm-Fixed Price contract.
All personnel proposed must be U.S. citizens and will be required to have a DHS ICE background investigation completed before performing any work on this contract. The technical proposal must not contain any reference to price. Resource information such as data concerning labor hours and categories, materials, subcontracts, etc. must be provided so that the proposal and understanding of the requirements may be evaluated.
Each offeror is requested to e-mail a proposal, separated into two volumes (Volume I - Technical and Volume II - Price) to the following:
Contract Specialist: Yasmin Atkins, Yasmin.Atkins@ice.dhs.gov Contracting Officer: Ryan Macdonald, Ryan.Macdonald@ice.dhs.gov
To be considered timely, an electronic copy proposal must be received at the specified e-mail addresses no later than Friday, March 6, 2019, by 8:00 AM, Eastern Standard Time (EST).
In your submission, please provide the following information in your cover letter:
a) Name of Vendor
b) Tax Identification Number (TIN)
c) Dun & Bradstreet Number (DUNS)
d) Contact Name
e) Contact Email address
f) Contact telephone and fax number
g) Complete business mailing address
h) A list of all subcontractors
1.1 ORGANIZATION/PAGE LIMITS
Each Offeror shall prepare the proposals as set forth in the Proposal Organization Table (Table 1 below). The titles and contents of the sections shall be as defined in this table, all of which shall be within the required page limits as specified in Table 1. The contents of each section are described in the Instructions paragraph as noted in the table below.
Table 1 – Proposal Organization
Volume Instructions Paragraph # Title Page Limit
I 2.0/3.1 Technical Approach and Sample Report
10 pages (excluding Sample Report)
I 2.0/3.2 Staffing Plan 5 pages I 2.0/3.3 Past Performance 5 pages II 2.1/3.3 Price Proposal None
1.2 PAGE LIMITATIONS
The page limitation for each volume is listed above. Page limitations shall be treated as maximums and do not include the cover page. If exceeded, the excess pages will be removed and will not be considered in the evaluation of the quote. When both sides of the sheet display printed material, it shall be counted as two (2) pages.
1.3 PAGE SIZE AND FORMAT
(a) Page size shall be 8.5 x 11 inches. The font size shall be no less than 12 point, readable by MS Word. Use at least 1-inch margins on the top and bottom and ¾-inch side margins. Pages shall be numbered sequentially by section.
(b) Black and white submission of quote ONLY, will be accepted, unless otherwise stated in the solicitation.
(c) Electronic Submission shall ensure that all emails submitted are less than 5MB. If the proposal exceeds 5MB, separate the submission into multiple emails and include in the subject line the solicitation number and number of (# of #) emails. Any electronic submission determined to contain a virus will be deleted and not viewed or accepted for consideration under this solicitation. Late submissions are treated in accordance with FAR 52.212-1.
1.4 PRICING INFORMATION
All pricing information shall be addressed ONLY in the Price Proposal Section (Volume II).
1.5 CLASSIFIED INFORMATION
This is an unclassified procurement.
2.0 VOLUME I - TECHNICAL PROPOSAL SECTION
Volume I should be specific and complete. Legibility, clarity and coherence are very important.
The Government is seeking proposals that go beyond a mere repetition of the requirements by offering innovative and effective management strategies and solutions that will ultimately result in the highest quality services which are clearly visible to the stakeholders. Your responses will be evaluated against the Technical Factors defined in Section 3.0 Evaluation Criteria.
Assumptions: Vendors shall indicate, in this section only, if any technical or staffing related assumptions have been made, conditions have been stipulated or exceptions have been taken with the Statement of Objectives (SOO) as written. These assumptions, conditions and exceptions shall be written in red and listed on the first three pages of the Technical Volume. If technical assumptions are not noted in the Technical Volume, it will be assumed that the proposal reflects no technical assumptions for award and agrees to comply with all the terms and conditions set forth herein. It is not the responsibility of the Government to seek out and identify assumptions, conditions, or exceptions buried within the proposal. Accordingly, any technical related assumptions listed in any other section shall be null and void.
The following paragraphs describe the information that offerors shall provide in their technical proposal.
a) Offerors shall ensure that the content of the Technical Proposal addresses each specification stated in the SOO and the combined synopsis/solicitation and otherwise complies with the requirements of the combined synopsis/solicitation.
b) The Offeror's technical submission should demonstrate the firm's capability and capacity to perform the requirements outlined in the solicitation. Offerors shall provide a technical proposal that sufficiently addresses their qualifications and abilities in the following three (3) non-price factors:
Factor 1: Technical Approach Factor 2: Staffing Factor 3: Past Performance
c) Offeror shall provide a description of their technical approach, detailed and complete, that clearly and fully demonstrates an understanding of the tasks and requirements specified in the SOO. Phrases such as “standard procedures will be employed” and “well known techniques will be used” are not considered to be adequate descriptions. The techniques and procedures you plan to follow, in conjunction with the task areas to be performed, must be described in as much detail as the Offeror determines sufficient to fully explain the proposed technical approach or method.
d) The narrative shall include the quality, comprehensiveness, and feasibility of the methods and plans proposed to accomplish the tasks specified in the SOO, and the application of the Offerors’ understanding in accomplishing these tasks.
e) The Offeror shall provide a sample daily report of identified threats as described in Section 6.1 of the SOO.
f) The Staffing Plan shall include a description of duties for all proposed personnel to cover the work to be performed as identified in the SOO. The Staffing Plan must include the proposed labor mix that will be the most efficient and effective to fulfill the requirements of the SOO.
g) Offeror shall identify up to three (3) relevant contracts that it has recently performed (within three (3) years from the closing date of the solicitation) or is currently performing, that are similar in size, scope, and complexity according to this SOO. The Offeror shall provide the following information with respect to each of these contracts:
• Contractor/Customer name & address, telephone number, and e-mail address;
• Contract number, contract type and size (contract dollar value);
• Point of Contact (POC) information (i.e. name, telephone number and e-mail address of the Contracting Officer and Contracting Officer’s Representative or the Program Manager);
• Place and Period of Performance;
• Brief description of contract work, scope, and complexity.
2.1 Volume II – Price
The price proposal shall include:
a) Offerors shall submit prices for the base and option periods of performance. Prices must be final and must not contain contingencies or conditions.
b) Offerors shall fill in and sign the SF1449 and any amendments.
3.0 EVALUATION CRITERIA
The Government will evaluate proposals, to include option periods, against specific evaluation criteria and award to the Offeror whose quote represents the best value (as defined in FAR 2.101) and results in the lowest overall cost alternative to meet the Government’s needs. The evaluation criteria consist of the following factors: (1) Technical Approach (2) Staffing, (3) Past Performance, and (4) Price. Factors 1and 2 are equal and are more important than factor 3. All non-price evaluation factors, when combined, are significantly more important than price.
3.1 FACTOR 1 - TECHNICAL APPROACH
The technical approach (to include Sample Report) will be evaluated to determine the extent to which the Offeror’s approach reflects a demonstrated understanding of the requirements, and offers sound, practical, and feasible methods of accomplishing all relevant tasks. Acceptable methods for ensuring the quality of all deliverables will also be evaluated. The Government will evaluate:
a) The extent to which the Offeror demonstrates an in-depth understanding of the requirements and the information technology tools, methodology and deliverables specified in the SOO as well as provides sound, practical, and feasible approaches to accomplishing the requirements using the established delivery architecture. Additionally, the government will evaluate the offeror will ensure the quality of all deliverables identified in the SOO, specifically:
i. How the offerors intend to conduct Tier 1 vulnerability assessments.
ii. How the offerors intend to conduct Tier 2 vulnerability assessments.
iii. How the offerors intend to conduct Tier 3 vulnerability assessments.
iv. How the offerors intend to conduct In Depth Monthly Assessment.
v. Continuous monitoring and alerting on imminent threats (via electronic notification 24/7).
vi. Ad-Hoc Reporting Requirements.
vii. Sample Threat analysis sample vulnerability report.
b) The extent to which the Offeror understands the analytical and proactive threat monitoring requirements as described in the SOO:
c) The extent to which the Offeror understands how to leverage the use of proprietary data, open sources and feasible methods of accomplishing tasks as required in SOO;
d) The extent to which the Offeror understands and proposes to support the proactive monitoring and analysis methodology.
3.2 FACTOR 2 –STAFFING
The Offeror’s staffing plan must demonstrate a clear understanding of the level of effort and the best staffing mix to achieve intended outcomes and results, including hiring practices and retention strategies. In the event the Offeror proposes subcontractors, the Offeror must demonstrate its ability to manage and staff subcontractors. The Offeror must include an organizational chart and proposed approach to adequately manage the project, lines of authority and communication and problem resolution methodologies.
The staffing plan will be evaluated on the extent to which the Offeror demonstrates how the proposed level-of-effort and labor mix can successfully perform the task requirements and how it is aligned with the described technical approach.
3.3 FACTOR 3 – Past Performance
Offerors will be evaluated on the quality and evidence of the extent to which the Offeror’s approach, as demonstrated in prior efforts, will achieve the scope as required in the SOO. The Offeror’s proposal will be evaluated on its past performance in the providing threat analysis and mitigation services as described in this SOO. The Government will evaluate the extent to which services were provided, whether the program included custom or out-of-the-box solutions, the integration complexities of the program, and the technologies and methodologies used to deliver the threat analysis and mitigation services.
If an offeror has no record of relevant past performance experience, the Offeror will be evaluated neither favorably nor unfavorably and will receive an Unknown Confidence (Neutral) rating.
3.4 FACTOR 4 – PRICE
The Government will evaluate the total of each Offeror’s proposed prices to determine if the prices are fair and reasonable for the work to be performed. The Government will evaluate to assess the accuracy, completeness and reasonableness of the quotation. The Government expects to receive price competition through the submission of price proposals from multiple vendors.
The price evaluation will be based upon combining the base period with all the option periods.
The price proposal shall include the following:
The sum of the CLIN breakdown shall equal the CLIN price.
As part of the price evaluation, the Government will evaluate the ‘Option to Extend Services’ under FAR Clause 52.217-8 by adding one-half of the vendor's final option period price to the Vendor's total price. Please note that the vendor’s total price should only include the base period and all option periods. Vendors shall not submit a price for the potential six-month extension of services period.
4.0 BASIS FOR AWARD
This is a best-value procurement using trade-offs. The Government will make an award to the responsible Offeror that represents the best value to the Government, price and other criteria considered. Factors 1 and 2 are equal and are more important than factor 3. When combined, the non-price factors are significantly more important than price.
Award may also be made based on initial proposals without discussions. Offerors are therefore cautioned that each initial proposal should contain the vendor’s most competitive terms. The right to conduct communications, if necessary, is reserved. No alternate proposals will be accepted. No proposal cost shall be reimbursed.
Table 1 – RATINGS DEFINITIONS: Factors 1 & 2
Rating Symbol Definition
Excellent E
The Offeror exceeds requirements in a manner beneficial to the Government and demonstrates an exceptional understanding of the goals and objectives of the acquisition. One or more strengths exist and there are no weaknesses present. Risk of unsuccessful performance is very low.
Good G
The Offeror meets all minimum requirements and demonstrates a comprehensive understanding of the goals and objectives of the acquisition. One or more strengths exist, and the strength(s) outweigh any weaknesses present. Risk of unsuccessful performance is low.
Acceptable A
The Offeror meets all minimum requirements and demonstrates an acceptable understanding of the goals and objectives of the acquisition. Proposal/quotation offers no additional benefits beyond the stated requirements and no significant weaknesses exist. Risk of unsuccessful performance is moderate.
Marginal M
The Offeror demonstrates a fair understanding of the goals and objectives of the acquisition but fails to meet all minimum requirements. Weaknesses outweigh any strengths that exist.
Some revision(s) are required for minimum acceptability. Risk of unsuccessful performance is high.
Unacceptable U
The Offeror fails to demonstrate an understanding of the goals and objectives of the acquisition and fails to meet all minimum requirements. The proposal/quotation has one or more significant weaknesses that will be very difficult and/or impossible to correct.
Major revision(s) are required for minimum acceptability. The Offeror is not eligible for award.
Table 2 – RATINGS DEFINITIONS: Factor 3
Rating Symbol Definition Substantial Confidence
(Outstanding) O
Based on the Offeror’s recent/relevant performance record, the Government has a high expectation that the Offeror will successfully perform the required effort.
Satisfactory Confidence
(Satisfactory) S
Based on the Offeror’s recent/relevant performance record, the Government has a reasonable expectation that the Offeror will successfully perform the required effort.
Limited Confidence (Marginal) M
Based on the recent/relevant performance record, the Government has a low expectation that the Offeror will successfully perform the required effort.
No Confidence (Unsatisfactory) U
Based on the Offeror’s recent/relevant performance record, the Government has no expectation that the Offeror will be able to successfully perform the required effort.
Unknown Confidence (Neutral)
N
No recent/relevant performance record is available, or the Offeror’s performance record is so sparse that no meaningful confidence assessment rating can be reasonably assigned.
DEPARTMENT OF HOMELAND SECURITY (DHS)
U.S. IMMIGRATION AND CUSTOMS ENFORCEMENT (ICE)
ICE DIRECTOR’S OFFICE
INTERNET BASED THREAT RISK MITIGATION AND MONITORING SERVICES
STATEMENT OF OBJECTIVES
February 28, 2020
1. Background:
ICE’s mission is to promote homeland security and public safety through the criminal and civil enforcement of approximately 400 federal laws governing border control, customs, trade and immigration.
Over the last two years, ICE has experienced an increased level of external threat activity directed towards its Senior leaders, personnel and facilities. Much of this threat activity originates from social media and online postings and has since expanded to physical attacks on ICE facilities and the homes of ICE employees. In order to prevent adversaries from successfully targeting ICE Senior leaders, personnel and facilities, ICE requires real-time threat mitigation and monitoring services, vulnerability assessments, and proactive threat monitoring services.
2. Point of Contact
The Contractor shall provide a point of contact responsible for coordinating work performance. The point of contact shall have full authority to act on behalf of the Contractor on all matters relating to the daily operation of this contract. The Government point of contact will be the Contracting Officer’s Representative (COR) as later determined and delegated.
3. Description of Services/Introduction:
The Contractor shall provide all necessary personnel, supervision, management, equipment, materials and services, except for those provided by the Government, in support of ICE’s desire to protect ICE Senior Leaders, personnel and facilities, who face threats or harm, via internet-based threat mitigation and monitoring services. These efforts include conducting vulnerability assessments and proactive threat monitoring.
Minimum services include full data aggregation to provide proactive threat monitoring and vulnerability assessments stipulated in the following Tasks Objectives in Section 5. The Contractor will utilize the following Tier Level categories to identify the minimum deliverable and reporting requirements as stipulated in Section 6.
Tier Level Tier Level Coverage Tier Level Description
Tier 1 ICE Senior Leaders (Minimum 12 Targets)
Tier 1 provides detailed and tailored executive open-source Vulnerability Assessments and Proactive Threat Monitoring for ICE Senior Leaders, and, as requested by ICE OPR, their immediate family members.
Tier 2
General ICE Population and Facilities
(Minimum 100 Targets)
Tier 2 provides detailed open-source Vulnerability Assessments and Proactive Threat Monitoring for threats towards ICE employees and facilities in general. Tier 2 will also provide for the assessment and monitoring of threats and/or disruptions to general ICE operations.
Tier 3
Specific ICE Employees, Operations and Facilities as requested by ICE OPR (Minimum 15 Targets)
Tier 3 provides detailed open-source Vulnerability Assessments and Proactive Threat Monitoring for threats against designated ICE employees, their immediate family members and facilities on an AD-HOC basis. Tier 3 will also provide for the assessment and monitoring of threats and/or disruptions to specific ICE operations as requested.
4. Service Provider – Non-Personal Services
DHS retains the authority to make all decisions regarding the DHS mission, and the execution or interpretation of laws of the United States. Contactor Services defined are not considered to be inherently Governmental in nature, as defined by Federal Acquisition Regulation (FAR) Subpart 7.5.
This is a Non-Personal services contract as defined by FAR Subpart 37.101. Contractor personnel rendering services under this order are not subject to supervision or control by Government personnel.
The Contractor will be responsible for the supervision of the Contractor employees at all duty locations. The Contractor is expected to work independently to accomplish the requirements of this order. The Contractor must generate reports and other deliverables as specified in the Statement of Objectives as outlined in Sections 3, 5 and 6. The government will neither supervise contractor employees nor control the method by which the Contractor performs the required tasks. Under no circumstances will the government assign tasks or prepare work schedules for individual contractor employees. It shall be the responsibility of the Contractor to manage its employees and to guard against any actions that are of the nature of personal services or give the perception of personal services. If the Contractor believes that any actions constitute or are perceived to constitute personal services, the Contractor must notify the Contracting Officer (CO) immediately.
5. Task Objectives:
5.1. Vulnerability Assessments
Evaluate and conduct Tier 1 vulnerability assessments using proprietary and publicly available electronic information associated or regarding designated ICE Senior Leaders to identify threats, the exploitation of Protection Plans, and other risk factors. This assessment will be provided within five (5) business days from the award the contract.
Evaluate and conduct Tier 2 vulnerability assessments using proprietary and publicly available electronic information associated or regarding threats to the general ICE population and facilities, as well as threats and/or disruptions to ICE operations. This assessment will be provided within five (5) business days of a request from ICE OPR.
Evaluate and conduct Tier 3 vulnerability assessments using proprietary and publicly available electronic information associated or regarding designated ICE personnel, facilities and operations. These assessments will be provided on an ADHOC basis as requested by
ICE OPR.
Assessments and/or searches shall involve real-time aggregating open source information using unique identifiers for related association, enhanced data analytics, and analytic reporting on sentiment and other related factors.
Assessments will include queries to determine what personally identifiable information is publicly available about those in categories Tier 1, 2 and 3 (Phone numbers, addresses, relatives, etc.).
Conduct analytics by utilizing social and behavioral sciences to multiple data sets to locate dangerous individuals posing a possible threat to categories Tier 1, 2 and 3.
Conduct real-time Deep Web and Dark Web searches to identify possible threats against categories Tier 1, 2 and 3.
Conduct open source searches using key-terms and geolocation properties relative or associated with categories Tier 1, 2 and 3.
Immediately notify ICE OPR via electronic means of imminent threats.
Supply ADHOC vulnerability assessments of personnel, locations and facilities as requested by ICE OPR.
5.2. Proactive Threat Monitoring & Report Requirements
Provide a secure and proactive threat monitoring program that contains automatic alerts.
Provide monitoring and analysis of behavioral and social media sentiment (i.e. positive, neutral, and negative) based on a time of day, a week, a month-long period.
Upon system outages, capability to immediately complete searches to recover any lost or potentially lost threat information.
Provide ADHOC searches and reporting when notified by ICE OPR.
Provide secondary and/or follow-on real-time strategic monitoring of previous adverse findings.
Capability to save search criteria post obtaining adverse results, ADHOC queries, or for future queries.
Ensure searches and/or inquires on information and alerting procedures never reveal ICE’s affiliation.
Contractor will analyze individual(s) and/or organization(s) making threats. Analysis should include: 1). Previous social media activity which would indicate any additional threats to ICE; 2). Information which would indicate the individual(s) and/or the organization(s) making threats have a proclivity for violence; and 3). Information indicating a potential for carrying out a threat (such as postings depicting weapons, acts of violence, refences to acts of violence , to include empathy or affiliation with a group which has violent tendencies; references to violent acts; affections with violent acts; eluding to violent acts, etc.).
Monitor and analyze all social media activities (including foreign/dark web/deep web social media networks) in REAL-TIME.
Conduct correlation of users’ social media accounts.
Provides psychological profiles.
Geo-locate individuals beyond standard geo-tagging. The government defines geo-locating as the ability to provide a specific location of the subject/threat actor.
Identify any person or group who has previously identified as having made a threat and individual(s) whose language that would potentially lead to violence directed towards ICE, Facilities, and employees has reached a level of concern.
Identify whether a user has deleted messages and provide content from deleted accounts and/or deleted messages.
Capability to identify threats by location.
Provide detailed daily, weekly, monthly and end of year/contract reporting, and ADHOC reporting on results with mitigating recommendations in Adobe PDF or Microsoft Office format.
Provide ADHOC reports as requested by ICE OPR with the capability to adjust date ranges and identify threats by those made against ICE Senior Leaders, ICE employees, and facilities, as well as threat type.
All daily, weekly, monthly and end of year/contract reports will be provided even when there is no reportable activity.
All reports will include threat information in narrative form, including analytical summaries of identified threats and assessments.
All reports will contain statistical data in narrative form and will be depicted in graphs (bar charts, pie charts, etc.).
Statistical data provided in the reports should include information such as: 1). Total number of negative references to ICE found in social media during monitoring; 2). Total number of threats against Senior Leaders; 3). Total number of threats against ICE employees; 4). Total number of threats against ICE facilities/operations; 5). Trend analysis, such as the increase/decrease of threats for each of these categories during the requested period; and 6). Total number of threats by type.
Reports will identify ICE Senior Leaders, ICE employees or and facilities that have been repeatedly targeted.
Reports will provide all relevant information for threats identified by the contractor. This information shall include: 1). Screen renderings of threatening social media posts; 2). The real and social media identity of the threat originator; 2). Time, date and online platform through which the threat was made; and 3). Location and/or the identity of the ICE Senior Leader, ICE employee or facility identified in the threat.
Facial Recognition capabilities that could take a photograph of a subject and search the internet to find all relevant information associated with the subject that will help identify any individual making a threat and help cross reference the individual across multiple platforms.
At the request of OPR, the contractor needs to be able to adjust for the addition and removal of each Tier category from the monitoring list.
Link analysis indicating individual may be associated with other potential threats/threat actors (narrative, charts & graphs).
If threatening information is identified and in a foreign language, the contractor will provide the threat as it appears and provide a translation of the threat in English.
Monitoring capabilities need to include the ability to proactively search for any threatening information and/or information which would suggest a potential disruption in ICE operations by location.
Ability to determine which websites were accessed by users prior to making a threat.
5.3. Data Sources (Required, but not limited to)
Open Source Information Portals Available Proprietary Sources Deep Web Content Dark Web Content IRC/Chat Message Boards
Online Broadcasting Websites Public Email Groups and Discussion Forums Social Media Sites USEnet Data Web Blogs World Wide Web
Public Records (Court records, police reports, DMV records, news reports, etc.)
5.4. Open Social Media Sources (Required, but not limited to)
Twitter Facebook Foursquare Instagram Snapchat LinkedIn Pinterest Applicable Foreign Social Media
Sites
WordPress StumbleUpon Tagged YouTube Tumblr Vine camera Bitly Flickr
6. Deliverables:
Acceptance by the Government of satisfactory products/services will be made once all the terms and conditions of the contract are fulfilled including the following delivery requirements:
Deliverable Task Frequency Receivers
Tier 1 - Report on findings All Daily (NLT 11:00 AM EST) Gov’t
POC
Tier 2 - Report on findings All Daily (NLT 11:00 AM EST) Gov’t
POC
Tier 3 - Report on findings All Daily (NLT 11:00 AM EST) Gov’t
POC
Vulnerability Assessment as Described in Section 5 Intimal Within 5 business days after award. Gov’t
POC
In-depth Monthly Vulnerability Assessment All Monthly (by the 1st calendar day of each month) Gov’t
POC
Continuous monitoring and alerting on imminent threats (via email notification) 24/7). Alerts should include screen rendering of threat and any other information available at the time. Further analysis will be provided in the next daily report.
All Immediately Gov’t
POC
ADHOC Report All As needed Gov’t
POC
Courtesy Invoice All Monthly (NLT the 15th calendar day of each Month) COR
6.1 Report Submission
The Contractor shall provide a daily report of identified threats. The Contractor shall curate all findings into two sections:
1. Threat Intelligence: This section shall include a daily risk assessment based on the day’s threat activity; a summary of post volume and change from previous period to provide contextual intelligence; a summary of key insights and identified threats, including the user platform, and language of the threat.
2. Social Media Overview: This section shall include a daily risk assessment based on the day’s threat activity; a summary of post volume and change from previous period to provide contextual intelligence; a summary of key insights and identified threats, including the user platform, and language of the threat.
Each report shall include screenshots of threatening posts and a summary of active hyperlinks to the source material. Each finding reports shall be delivered to ICE daily by 11:00 AM EST.
6.2 Monthly Vulnerability Assessment
The Contractor shall provide a monthly Vulnerability Assessment on all key identified ICE Personnel to mitigate threats to high-risk personnel. The Monthly Vulnerability Assessment shall provide a comprehensive understanding of an executive’s online exposure on social media, open source public record aggregators, and other open sources so ICE personnel can limit such exposure and remove vulnerable information adversaries could use to target ICE personnel.
The contractor can collect, analyze, and report on the full collection of openly available information on an identified individual and his immediate family, including spouse and children, in the Monthly Vulnerability Assessment.
All Monthly Vulnerability Assessments shall include:
1. An executive summary of key findings and identified threats.
2. An overview of the executive’s social media presence collected of all social media platforms and open sources. The overview details the social media presence of the executive and includes the publicly available information used to connect the executive to his or her immediate family, including spouse and children, on social media and/or in open sources. Screenshots and hyperlinks (where available) of all relevant findings shall be included.
3. A summary of the open source presence of the executive’s immediate family, including spouse and children. This summary details the analysis of open source public records for identifying information such as relatives, address, and phone number; social media; and open sources for key identifying and/or contextual details on a person’s pattern of life.
4. An overview of any relevant open source a Deep Web and Dark Web exposure identified during research which adversaries could use to target ICE personnel or their families.
5. A comprehensive listing of all identified open source exposures. This listing shall include, but not limited to; type (public records, social media, or open source), an indication of whether the site is active as of the assessment; the URL; details of the available information; details of any links to the executive under review and/or their immediate family; and details of any addresses or phone numbers listed on the source.
6.3 Ad Hoc Reporting
The Contractor shall develop and provide ICE Ad Hoc reports with actionable intelligence on identified threats within 24 hours periods. Once a threat is identified, the Contractor shall review a user’s available open source and social media activity to aid location of the associated individual.
The Ad Hoc reports shall be generated based on ICE guidance and request.
1. The Contractor shall provide public records details on the individual, as available. These details include, but are not limited to: Full legal name, date of birth, any aliases, Social Security Number (SSN), probable address(es), any relevant recent address(es), phone numbers, e-mail, work affiliations, vehicle registration information, and any criminal legal history, The
Contractor shall also provide a summary of the methodology used to determine the subjects identity.
2. The Contractor shall provide all available identifying information to aid ICE in identification when complete information is unavailable. These details can include, but are not limited to:
photograph, partial legal name, partial date of birth, possible city, possible work affiliations, possible school or university affiliation, and any identified possible family members or associates.
7. Government Furnished Information and Support
ICE will provide a list of entity(ies) that require Threat Mitigation and Monitoring Service.
8. Service Provider Furnished Items
8.1. The Contractor shall furnish all other facilities, equipment, and services required in the performance of this contract.
8.2. The Contractor is responsible for taking the actions necessary to protect supplies, material, and equipment and personal property of employees from loss, damage, or theft.
9. Approval Authority
Overall coordination, final approval and authority for this project are the responsibility of the ICE Office of Professional Responsibility. The Contracting Officer will be the administrative point of contact at ICE Office of Acquisition Management – Mission support (MS) for all official correspondence and information concerning this contract. Final acceptability or unacceptability of all deliverables and tasks performed by the Contractor is the responsibility of the OAQ-MS Contracting Officer.
A Contracting Officer’s Representative COR will be identified for this effort. The COR will recommend acceptance of the deliverable products, but only after concurrence from Government on-site Subject Matter Experts (SMEs) that deliverables are complete and correct.
10. Period of Performance
Performance Period Performance Period Dates
Base Period 03/21/2020 – 03/20/2021
Option Period 1 03/21/2021 – 03/20/2022
Option Period 2 03/21/2022 – 03/20/2023
Option Period 3 03/21/2023 – 03/20/2024
Option Period 4 03/24/2024 – 03/20/2025
11. Type of Performance
The contract type will be a Firm Fixed Price Contract.
12. Place of Performance
The Contractor shall accomplish the assigned work by employing and utilizing qualified personnel with appropriate combinations of education, training, and experience. The Contractor shall match personnel skills to the work or task with a minimum of under/over employment of resources. The Contractor shall provide the necessary resources and infrastructure to manage, perform, and administer the contract. Performance will not be at a government location.
13. Business Relations
The Contractor shall successfully integrate and coordinate all activity needed to execute the requirement. The Contractor shall manage the timeliness, completeness, and quality of problem identification. The Contractor shall provide corrective action plans, proposal submittals and timely identification of issues. The Contractor shall seek to ensure customer satisfaction and professional and ethical behavior of all contractor personnel.
13.1. Quality Control: The Contractor will establish and maintain a complete Quality Control Plan (QCP). This plan will include expected services delivered, contractor procedures for review of delivered services, and other items that may have impact on the performance of this contract. The Contractor will submit their QCP within 15 business days of contract award. When changes are made to the QCP a revised plan will be submitted to the Government.
14. Constraints and Risks
14.1. Obtaining Information from Unrestricted Sources. When conducting social media searches, the Contractor may obtain information from publicly-accessible online sources and facilities under the same conditions they may obtain information from other sources generally open to the public. This principle applies to publicly-accessible sources located in foreign jurisdictions as well as those in the United States.
14.2. Accessing Restricted Sources. When conducting social media searches, the Contractor may not access restricted online sources or facilities.
14.3. Obtaining Identifying Information about Users or Networks. The Contractor may not use software tools, even those generally available as standard operating system software, to circumvent restrictions placed on system users.
14.4. Public Interaction. The Contractor may access publicly-available information only by reviewing posted information and may not interact with the individuals who posted the information.
14.5. Appropriating Online Identity. "Appropriating online identity" occurs when an entity electronically communicates with others by deliberately assuming the known online identity
(such as the username) of a real person, without obtaining that person's consent. The Contractor may not use this technique to access information about individuals.
14.6. International Issues. Unless gathering information from online facilities configured for public access, Contractor personnel conducting the required service or deliverables should use reasonable efforts to ascertain whether any pertinent computer system, data, witness, or subject is located in a foreign jurisdiction. Whenever an item or person is located abroad, contractor personnel shall follow ICE's policies and procedures in providing the required service or deliverables.
14.7. PII Safeguards. The contractor will protect personally identifiable information (PII) as required by the Privacy Act and DHS privacy policy.
14.8. Complete ATO and Ongoing security scans and remediation for High Risk Sensitive contracts in accordance with HSAR Deviation 15-01.
15. Contract Management
The Contractor shall establish clear…
This is the start of the file's text. The full file is on GovTribe.
File details come from the government source that posted it. Updated .