Appendix 2 - Signal Captains Career Course.pdf

PDF 359 KB Posted

Attached to
Emerging Technology Education Program Undergrad (ETEP Undergrad) Federal contract opportunity
Solicitation number
W9124924R0007
Issued by
Department of the Army Materiel Command Mission and Installation Contracting Command Fort Eustis

About this file

This document contains details for a federal contract solicitation seeking non-personnel services to provide instruction for Signal Corps Professional Military Education courses focused on data science, cloud computing, database management, zero-trust cybersecurity methodologies, and programming/application development. Key requirements include developing, validating, and instructing data and cloud courses for the Signal School; identifying high value approaches to operational data engineering and emerging technologies; and supporting the Army Data Plan and Unified Network Plan. Interested offerors must submit questions by 2:00 PM EST on December 21, 2023. The soliciting agency is the Department of the Army Materiel Command Mission and Installation Contracting Command Fort Eustis.

View the file

Other files for this federal contract opportunity

Other files attached to Emerging Technology Education Program Undergrad (ETEP Undergrad), newest first.
File Type Posted
Amendment 3 W9124924R0007-0003.pdf PDF
Appendix 5 - Data Operations Warrant Officer 255A WOBC WOAC.pdf PDF
Appendix 8 - 25D30 Cyber Network Defender Course.pdf PDF
Appendix 6 -Network Operations Warrant Officer 255N WOBCWOAC.pdf PDF
Appendix 4 - Intermediate Level Education (ILE) Courses.pdf PDF
Appendix 1 - Basic Officer Leaders Course (BOLC).pdf PDF
Appendix 9 - Signal NCO Advance Leader Courses 25H 25U 25B 25S.pdf PDF
Appendix 10 - Signal NCO Senior Leader Courses (SLC).pdf PDF
Amendment 2 W9124924R0007-0002.pdf PDF
Appendix 3 - S6 Staff Course (S6).pdf PDF
Appendix 11 - Data Engineering Foundations (Functional).pdf PDF
Appendix 12 - Data for Leader Competency (Functional).pdf PDF
Appendix 7 - Cyberspace Defense Warrant Officer 255S WOBCWOAC.pdf PDF
ETEP Base Year_Course Dates_28 Dec 23.docx DOCX document
Amendment 1 W9124924R0007-0001.pdf PDF
ATTACHMENT 3 PAST PERFORMANCE QUESTIONAIRE.docx DOCX document
W9124924R0007.pdf PDF
ATTACHMENT 7 SAMPLE CLIENT AUTHORIZATION LETTER.docx DOCX document
ATTACHMENT 4 PRICE WORKSHEET UPDATED.xlsx XLSX spreadsheet
ATTACHMENT 1 CONSENT FORM FOR THE RELEASE OF PART PERFORMANCE.docx DOCX document
ATTACHMENT 5 TOTAL COMPENSATION PLAN FOR PROFESSIONAL EMPLOYEE (TCPPE).xlsx XLSX spreadsheet
ATTACHMENT 2 RELVANT CONTRACT REFERENCE SHEET.docx DOCX document
Show all 22

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

Signal Captain’s Career Course

Appendix 2 - Signal Captain’s Career Course

1 | P a g e

Implement Cloud Oversight & Consumption (SCCC)

Learning Outcome Description:

This course is designed to provide participants with a comprehensive overview of the fundamental concepts, principles, and technologies that define the world of cloud computing. Learners will explore the core components of cloud computing, including cloud architecture, service models, deployment models, security, scalability, and migration strategies. The course will also examine emerging trends, real-world case studies, and hands-on exercises to provide a holistic understanding of the cloud computing landscape.

24 Hours Total Cloud Foundations: - 2 hrs (DSL) Provide learners with an introduction to cloud computing and the Army Cloud Plan with an understanding of how it provides a comprehensive framework for managing cloud technologies in support of Army operations. Identify the benefits and challenges associated with implementing cloud technologies and the learner’s role in leveraging cloud for mission success.

• Discuss cloud computing and cloud service providers

• Define key terms and concepts in cloud computing

• Define the key components of the Army Cloud Plan

• Recognize ECMA and its role within the Army cloud ecosystem

• Compare advantages of cloud computing vs traditional data centers

• Discuss Cloud Architecture & Service Models

• Identify Cloud Deployment Models

• Explore Cloud Security and tools

• Describe Cloud Migration and Integration

• Define FinOps

• Discuss Emerging Trends in Cloud Computing

Domain 1: Introduction to AWS – 2hrs (DSL) Introduce the fundamental AWS concepts related to the different cloud architecture design principles, the shared responsibility model, and AWS global infrastructure. This section covers the concepts necessary to increase learners understanding of AWS services and to make informed decisions about solutions that meet mission requirements.

• Explain the different cloud architecture design principles Design for failure Decouple components Implement elasticity in the cloud Think parallel

• Recognize the elements of the AWS Shared Responsibility Model

• Define the AWS global infrastructure

Describe the relationships among Regions, Availability Zones, and Edge Locations Describe how to achieve high availability through the use of multiple AZs o Recall that high availability is achieved by using multiple AZs o Recognize that AZs do not share single points of failure

• Describe when to consider the use of multiple AWS Regions o Disaster recovery/business continuity o Low latency for end-users o Data sovereignty

• Describe at a high level the benefits of Edge Locations o Amazon CloudFront o AWS Global Accelerator

2 | P a g e

Domain 2: Security and Compliance – 6 hrs (4 hrs DSL, 2 hrs PE) This module provides a comprehensive overview of the core principles, best practices, and services related to security and compliance within the Amazon Web Services (AWS) cloud environment. This course is designed to equip learners with the knowledge and skills to effectively secure their AWS resources, protect sensitive data, and adhere to industry-specific compliance standards. Throughout this section, participants will explore a wide range of security and compliance topics, including access control, network security, data encryption, monitoring, auditing, and incident response. They will gain an understanding of the shared responsibility model and how it applies to securing AWS environments.

• Recognize the elements of the Shared Responsibility Model (related to security) o Describe how the customer’s responsibilities may shift depending on the service used

(for example with RDS, Lambda, or EC2)

• Define AWS Cloud security and compliance concepts

• Identify where to find AWS compliance information and available compliance controls (for example, HIPPA, SOCs)

• Recognize that compliance requirements vary among AWS services

• Describe how customers achieve compliance on AWS

• Identify different encryption options on AWS (for example, In transit, At rest)

• Describe who enables encryption on AWS for a given service

• Recognize there are services that will aid in auditing and reporting

• Recognize that logs exist for auditing and monitoring

• Explain the concept of least privileged access

• Define the following terms:

o AWS Artifact o AWS Certificate Manager (ACM) o AWS Cloud HSM o Amazon Cognito o Amazon Detective o Amazon Guard Duty o AWS Identity and Access Management (IAM) o Amazon Inspector o AWS License Manager o Amazon Macie o AWS Shield o AWS WAF o Amazon CloudWatch o AWS Config o AWS CloudTrail

AWS Identity and Access Management (IAM)

• Discuss AWS IAM and its role in AWS Security

• Define key IAM Concepts: users, groups, roles, and policies

• Policy structure, syntax, variables, and functions o Understanding policy elements: Resources, Actions, and Conditions o Identity Federation and Single Sign-On (SSO)

• AWS Roles for services o EC2 Instance Roles o Lambda Function Roles o CloudFormation Roles

• AWS Access Keys, CLI, SDK

• IAM Authentication and MFA

• IAM Security Tools

3 | P a g e

Identify resources for security support

• Recognize there are different network security capabilities o Native AWS services (for example, security groups, Network ACLs, AWS WAF) o 3rd party security products from the AWS Marketplace

• Locate AWS documentation for best practices, whitepapers, official documents o AWS Knowledge Center, Security Center, security forum, and security blogs o Partner Systems Integrators

• Describe AWS Trusted Advisor Domain 3: Technology – 6 hrs (4 hrs DSL, 2 hrs PE) The domain is designed to provide learners with a comprehensive understanding of the core AWS services, architectural principles, and best practices for building scalable and reliable applications on the Amazon Web Services (AWS) cloud platform.

• Identify the core AWS services

• Describe the categories of services on AWS (compute, storage, network, database)

• Identify AWS Compute Services o Recognize there are different compute families o Recognize the different services that provide compute (for example, AWS Lambda o compared to Amazon Elastic Container Service (Amazon ECS), or Amazon EC2, etc.)

o Recognize that elasticity is achieved through Auto Scaling o Identify the purpose of load balancers o Review AWS Batch o Review AWS LightSail o Review Docker Containers and Microservices o Review Amazon Elastic Container Service (ECS)

• Identify different AWS Storage Services o Describe Amazon S3 o Describe S3 Storage Classes o Describe S3 Buckets and Objects o Describe S3 Permissions and Bucket Policies o Describe Archiving Amazon S3 Glacier o Describe Amazon Elastic Block Store (Amazon EBS)

EBS Volumes and Snapshots o Describe AWS Snowball o Describe Amazon Elastic File System (Amazon EFS) o Describe AWS Storage Gateway o Describe S3 Versioning, Replication, and Lifecycle Rules o Review AWS Backup

• Identify AWS Networking Services o Identify VPC o Identify security groups and Network NACLs o Review Public, Private, and Elastic IP Addresses o Review NAT Gateways and NAT instances o Review Amazon VPC Peering o Identify the purpose of Amazon Route 53 o Identify VPN, AWS Direct Connect o Review AWS Transit Gateway o Review AWS Outposts

4 | P a g e

• Identify different AWS Databases and Analytics o Discuss the types of databases o Identify Amazon RDS o Identify Amazon DynamoDB o Identify Amazon Redshift o Identify Amazon Elasticache o Discuss Athena and AWS Glue o Discuss Amazon Kinesis

Domain 4: Billing, Pricing and Support – 8 hrs (4 hrs DSL, 4 hrs PE) Provide students with a foundational understanding of managing data throughout its lifecycle. Cover key topics including data governance, data architecture, data quality and metadata management, data integration and ETL, and data analysis and reporting.

• Compare and contrast the various pricing models for AWS o Describe on-demand instances, reserved instances, and spot instances prices o Identify scenarios/best fit for On-Demand Instance pricing o Identify scenarios/best fit for Reserved-Instance pricing o Describe Reserved-Instances flexibility o Describe Reserved-Instances behavior in AWS Organizations o Identify scenarios/best fit for Spot Instance pricing

• Recognize the various account structures in relation to AWS billing and pricing o Recognize that consolidated billing is a feature of AWS Organizations o Identify how multiple accounts aid in allocating costs across departments

• Identify resources available for billing support o Identify ways to get billing support and information o Cost Explorer, AWS Cost and Usage Report, Amazon Quick Sight, third-party partners, and AWS Marketplace tools o Discuss how to open a billing support case o Discuss the role of the Concierge for AWS Enterprise Support Plan customers o Identify where to find pricing information on AWS services o Examine the AWS Simple Monthly Calculator o Review the AWS Services product pages o Review the AWS Pricing API o Identify practical uses for billing alarms/alerts o Identify how tags are used in cost allocation

Resources:

What is cloud computing?: https://aws.amazon.com/what-is-cloud-computing/?trk=c87ae749-9cf6-4cd0-ab40-c9e447c26b82&sc_channel=el

Army Cloud Plan: https://api.army.mil/e2/c/downloads/2022/10/14/106b220e/army-cloud-plan-2022.pdf

AWS Certified Cloud Practitioner Exam guide: https://aws.amazon.com/certification/certified-cloud-practitioner/

AWS Certified Cloud Practitioner Exam Prep:

https://explore.skillbuilder.aws/learn/course/9449/Exam%2520Prep%253A%2520AWS%2520Certified% 2520Cloud%2520Practitioner%2520%28CLF-C01%29

AWS Ramp-Up Guides (Decision Maker): https://aws.amazon.com/training/ramp-up-guides/ https://aws.amazon.com/what-is-cloud-computing/?trk=c87ae749-9cf6-4cd0-ab40-c9e447c26b82&sc_channel=el https://aws.amazon.com/what-is-cloud-computing/?trk=c87ae749-9cf6-4cd0-ab40-c9e447c26b82&sc_channel=el https://api.army.mil/e2/c/downloads/2022/10/14/106b220e/army-cloud-plan-2022.pdf https://aws.amazon.com/certification/certified-cloud-practitioner/ https://aws.amazon.com/certification/certified-cloud-practitioner/ https://explore.skillbuilder.aws/learn/course/9449/Exam%2520Prep%253A%2520AWS%2520Certified%2520Cloud%2520Practitioner%2520%28CLF-C01%29 https://explore.skillbuilder.aws/learn/course/9449/Exam%2520Prep%253A%2520AWS%2520Certified%2520Cloud%2520Practitioner%2520%28CLF-C01%29 https://aws.amazon.com/training/ramp-up-guides/

5 | P a g e

Implement Data Oversight & Consumption (SCCC)

Learning Objective Description:

This course is designed to provide participants with a comprehensive understanding of the data lifecycle, database capabilities, normalization, data science, big data, and data analytics. The course will cover the key concepts, techniques, and tools used in data operations and provide hands-on experience in managing and optimizing data for mission success.

24 Hours Total Army Data Operations Foundation: 1 Hr (DSL) Provide Soldiers with and overview of the Army Data Plan and an understanding of how it provides a comprehensive framework for managing data in support of Army operations. Identify the challenges associated with implementing the plan and their role in turning data strategy into action to leverage data for mission success.

• Define the importance of data in military operations.

• Define the key components of the Army Data Plan

• Define your role and responsibilities.

• Identify how to collaborate with other data professionals.

• Identify methods to communicate data insights to stakeholders

Data Fundamentals – 1 Hr (DSL) Introduce data terms and concepts involved in data operations and its importance in managing and maintaining data-driven systems. Discuss the processes and considerations involved in acquiring, generating, and collecting data. This section explores various methods, technologies, and best practices for effectively and ethically capturing data to ensure its quality and integrity. Soldiers will gain insights into the importance of data source evaluation, data capture techniques, and legal and ethical considerations in data collection.

• Define the core data terms and concepts.

• Identify the stages of the data lifecycle.

• Define Data Quality and other considerations

• Identify Storage options (on-premises, cloud, hybrid)

• Identify Data security best practices and encryption methods

Data Modeling and Normalization Techniques – 1 hr (DSL) The Data Modeling Techniques and Normalization course section provides a comprehensive understanding of data modeling principles and techniques, with a focus on normalization. This section explores the process of designing and organizing data structures to ensure data integrity, eliminate redundancy, and optimize database performance. Participants will gain hands-on experience in data modeling using industry-standard techniques and learn how to apply normalization rules to create efficient and scalable database schemas.

• Data modeling fundamentals

• Entity-Relationship (ER) Modeling

• Transactional data modeling vs analytical data modeling

• Relational Data Model

• Normalization Techniques

• Data Modeling Tools

Data Visualization & Reporting – 5 hrs (2 hrs DSL, 3 hrs PE) The Data Visualization & reporting course section is designed to equip Soldiers with the essential knowledge and skills to create effective and impactful visual representations of data. In this course, they will learn the fundamentals of data visualization, explore visualization techniques, and gain hands-on experience in designing and transforming complex data into visually meaningful insights that drive informed decision-making.

6 | P a g e

• Overview of data analysis

• Introduction to key principles of data visualization

• Data exploration and preparation

• Data visualization exercises o User Compliance (Training) o Computer/Network Analysis (Vulnerabilities, Out of Date, OS) o Helpdesk Trends (Reported Outages, Repeated Issues)

Database Fundamentals – 8 hrs (4 hrs DSL, 4 hrs PE) The Database Fundamentals course provides participants with a comprehensive understanding of the core principles and concepts of databases. Over the course, Soldiers will delve into the fundamentals of database design, explore different database models, learn about querying and manipulating data in SQL, and gain hands-on experience in designing and implementing databases.

• Introduction to Databases

• Relational Database Concepts

• Database Design and Normalization

• Database Creation

• Querying and Manipulating data

Introduction to Big Data – 8 hrs (4 hrs DSL, 4 hrs PE) The Big Data module introduces participants to the concept of big data, its characteristics, and the challenges and opportunities it presents. This module aims to provide participants with a comprehensive understanding of big data and its impact on various industries. Through interactive discussions and real-world examples, participants will explore the key components and technologies associated with big data processing and analysis.

• Introduction to Big Data

• Big Data Technologies and Infrastructure

• Big Data Processing and Analytics

Practical Exercise Material

• Introduction to databases o Understand the importance of databases in modern information systems.

o Explore the components and architecture of a database system.

o Introduce database management systems (DBMS) and their role in data management.

o Understanding the importance of data integrity in databases.

• Relational database concepts o Explore key relational database concepts: tables, rows, columns, and relationships.

o Explore different types of constraints: primary key, foreign key, unique, and check constraints.

o Implement constraints to enforce data integrity and maintain data consistency.

o Introduction to Structured Query Language (SQL) for managing relational databases.

Tables Rows Columns Relationships Datatypes Primary Keys Foreign Keys Relational Database Management System

• Database Design and Normalization

7 | P a g e o Explore the process of conceptual, logical, and physical database design.

o Introduction to normalization and its role in eliminating data redundancy and ensuring data integrity.

• Database Creation o Creating Tables o Adding and Dropping Columns o Renaming Tables o Dropping Tables

• Querying and Manipulating data o Simple SELECTs

SELECTing All Columns in All Rows Exploring the Tables SELECTing Specific Columns SELECTing Specific Columns o Sorting Records Sort By a Single Column Sort By Multiple Columns Sort By Column Position Ascending and Descending Sorts Sort Results o The WHERE Clause and Operator Symbols Check for Equality Check for Inequality Check for Greater or Less Than Check for NULL WHERE and ORDER BY o Subqueries, Joins and Unions Subqueries Subqueries Joins Table Aliases Multi-table Joins Using Joins Outer Joins Unions

UNION ALL

UNION Rules o Inserting, Updating and Deleting Records

INSERT

Inserting Records

UPDATE

DELETE

Updating and Deleting Records

• Introduction to Big Data o Definition and characteristics of big data.

o The three Vs of big data: volume, velocity, and variety.

o Exploring the sources and types of big data.

• Big Data Technologies and Infrastructure

8 | P a g e o Overview of big data infrastructure components, including storage, processing, and analytics.

o Introduction to Hadoop ecosystem: Hadoop Distributed File System (HDFS) o Understanding the role of NoSQL databases in handling unstructured and semi-structured data.

• Big Data Processing and Analytics (1 hour) o Data ingestion and preprocessing techniques for big data.

o Introduction to data processing framework: Apache Spark o Overview of big data analytics approaches: descriptive, diagnostic, predictive, and prescriptive analytics.

9 | P a g e

Implement Zero Trust Principles

Learning Outcome Description:

This course is designed to provide participants with a comprehensive overview of the fundamental knowledge and skills required to design, implement, and maintain a secure and resilient network environment. In this course, Soldiers will explore the core principles and concepts of Zero Trust and explore a range of topics, including identity and access management, network segmentation, data protection, continuous monitoring, and incident response within the context of Zero Trust.

8 Hrs Total Introduction to Zero Trust Architecture (.5 hr) This module explores the core principles, components, and significance of this modern security approach. In this module, Soldiers will gain a comprehensive understanding of Zero Trust, its key tenets, and pillars, and how it differs from traditional defense-in-depth strategies. Throughout this module, participants will gain a deeper understanding of each aspect of Zero Trust architecture and learn how to implement its principles effectively.

• Define Zero Trust

• Identify Zero Trust Five Tenets

• Identify Zero Trust Seven Pillars

• Compare Defense in Depth and Zero Trust

• Discuss the importance of Zero Trust

Pillar 1: Users (1 hour) This module focuses specifically on securing user identities and ensuring that only authorized individuals gain access to sensitive resources and systems. Participants will be able to recognize why traditional perimeter-based security measures are no longer sufficient in an increasingly interconnected and dynamic digital landscape. Additionally, they will develop a high-level understanding of why each user and device is treated as potentially untrusted, regardless of their location or network. It emphasizes to participants the principle of "never trust, always verify."

• Review Zero Trust Access Flow

• Define the User Inventory

• Describe Conditional User Access

• Describe Multi-Factor Authentication (MFA)

• Describe Privileged Access Management (PAM)

• Identity Federation & User Credentialing

• Identify Behavioral, contextual ID, and Biometrics

• Assess Least Privileged Access

• Assess Continuous Authentication

• Discuss Integrated ICAM Platform

Pillar 2: Devices (1 hour) This module focuses on defining and implementing access controls for devices. Participants will be equipped with the knowledge and skills necessary to implement and maintain a zero-trust architecture focused on their organization’s security along with the protection of critical assets from unauthorized access.

• Define Device Inventory

• Describe Device Detection and Compliance

• Describe Device Authorization with Real time Inspection

• Review Remote Access

• Discuss Partially & Fully Automated Asset, Vulnerability and Patch Management

• Discuss Unified Endpoint Management (UEM) and Mobile Device Management (MDM)

Pillar 3: Applications and Workload (.5 hour) The Application and Workload Pillar module is designed to provide participants with specialized knowledge and skills in securing applications and workloads within a Zero Trust architecture.

Throughout the module, participants will gain a deep understanding of the unique challenges and

10 | P a g e considerations associated with securing applications and workloads in a Zero Trust environment. They will explore various concepts, strategies, and technologies specifically tailored to this pillar.

• Define Application Inventory

• Discuss Secure Software Development and Integration

• Explain Software Risk Management

• Explain Resource Authorization and Integration

• Explain Continuous Monitoring and Ongoing Authorizations

Pillar 4: Data (1 hour) The data pillar module focuses on safeguarding sensitive information, implementing data protection measures, and ensuring data integrity throughout its lifecycle. Throughout this module, participants will gain an understanding of the principles, technologies, and best practices specifically tailored to protecting data assets. They will explore various data protection techniques, such as data loss prevention (DLP), data masking, tokenization, and encryption. Additionally, they will gain insights into data-centric auditing and monitoring strategies to ensure compliance and detect unauthorized access or data breaches.

• Define Data Catalog Risk Alignment

• Review DoD Enterprise Data Governance

• Discuss Data Labeling and Tagging

• Discuss Data Monitoring and Sensing

• Discuss Privileged Access Management (PAM)

• Discuss Identity Federation & User Credentialing

• Discuss Behavioral, contextual ID, and Biometrics

• Assess Least Privileged Access

• Assess Continuous Authentication

Pillar 5: Network and Environment (.5 hour) The Network and Environment Pillar focuses on gaining comprehensive visibility into network traffic, user behavior, and security events, as well as utilizing advanced analytics techniques for proactive threat detection and response. Throughout the module, participants will gain an understanding of the principles, methodologies, and technologies tailored to this focus area.

• Define Data Flow Mapping

• Discuss Software Defined Networking (SDN)

• Discuss Macro Segmentation

• Discuss Micro Segmentation

Pillar 6: Automation and Orchestration (1 hour) The Automation and Orchestration Pillar module is designed to provide participants with specialized knowledge and skills in leveraging automation and orchestration techniques to enhance the effectiveness and efficiency of Zero Trust architectures. This pillar focuses on automating security processes, integrating security tools, and streamlining security operations. Participants will learn the benefits of automating repetitive security tasks and the advantages of orchestrating various security tools and technologies.

• Define Policy Decision Point (PDP) & Policy Orchestration

• Discuss Critical Process Automation

• Discuss Machine Learning

• Discuss Artificial Intelligence

• Discuss Security Orchestration, Automation & Response (SOAR)

• Review API Standardization

• Review Security Operations Center (SOC) & Incident Response (IR)

Pillar 7: Visibility and Analytics (1 hour) The Visibility and Analytics Pillar module is designed to provide students with specialized knowledge and skills in leveraging visibility and analytics tools to enhance the monitoring, detection, and response

11 | P a g e capabilities within a Zero Trust architecture. Participants will learn the importance of continuous monitoring, log management, and security event correlation in maintaining a secure environment. They will understand the benefits of real-time visibility into network traffic, user activity, and security events.

• Assess Traffic Logs (Network, Data, Apps, Users)

• Illustrate Security Information and Event Management (SIEM)

• Identify Common Security and Risk Analytics

• Identify User and Entity Behavior Analytics

• Discuss Threat Intelligence Integration

• Discuss Automated Dynamic Policies

PE (1.5 Hours) Participants will engage in hands-on labs and simulations, where they will configure and utilize automation, orchestration, along with visibility and analytics tools within a Zero Trust architecture.

They will gain experience in setting up monitoring systems, analyzing network traffic, applying analytics techniques to detect anomalies, and generating actionable insights for incident response.

File details come from the government source that posted it. Updated .