SOURCES SOUGHT
70 -- Internet Scanning Software
- Notice Date
- 8/2/2002
- Notice Type
- Sources Sought
- Contracting Office
- Social Security Administration, Deputy Commissioner for Finance, Assessment and Management, Office of Acquisition and Grants, 1710 Gwynn Oak Avenue, Baltimore, MD, 21207-5279
- ZIP Code
- 21207-5279
- Solicitation Number
- 08022002
- Response Due
- 8/17/2002
- Point of Contact
- Phyllis Porter, Contract Specialist, Phone 410-965-9502, Fax 410-965-9310, - Phyllis Porter, Contract Specialist, Phone 410-965-9502, Fax 410-965-9310,
- E-Mail Address
-
phyllis.porter@ssa.gov, phyllis.porter@ssa.gov
- Description
- The Social Administration (SSA) is seeking commercial-off-the-shelf (COTS) Internet scanning software. SSA's network is worldwide in scope and includes in excess of 100 thousand devices. It is comprised of multiple platforms. It is in a state of change from CAU/Bridge and token ring with static IP?s to Router/Switch and Ethernet with DHCP. The client/server operating system is Windows NT 4 Sp 6a Server and Workstation and is in the midst of change to Windows 2000 Server and Windows 2000 Pro Workstation. There are currently 22 domains each having a Primary Domain Controller (PDC). There are a total of approximately 2,300 Backup Domain Controllers (BDCs). There are basically 4 workstation build types. The Office of Telecommunications (OTSO), Division of Telecommunications Security and Standards (DTSS) is looking for one or two software packages which will provide the following: 1) Scanning for security vulnerabilities. 2)Scanning for Service Pack, patches and fixes. 3) Scanning for Registry Settings. 4)Monitoring of user accounts, especially for password exists and strength. 5) Scanning of NTFS Permissions. 6) Scanning for domain policy. 7) Scanning of Windows 2000 security templates. 8) Scanning of Active Directory settings. 9) Autofix of 1?6. customizable in relationship to build specifications. 10) Service Account management with programming hooks to change account information embedded in code. 11) Ability to discover all devices on the network, including hidden ones. 12) Scan output that includes information concerning success or failure of scan and reason (i.e. machine inaccessible based on lack of permissions or machine is off or not on the domain). 13) Output in Access or SQL format. 14) 24/7 support 15) Regular updates of confirmed vulnerabilities within 30 days of CERT, SANS or Microsoft discovery. 16) Includes comprehensive Windows NT, Windows 2000, SQL and Exchange checks and a commitment to update with next generations of Microsoft O/S. 17) Ability to perform the functions of this list without requiring an agent on every device. 18) Allows for customizable scan of one, many or all selected settings. 19) Allows for use of Visual Basic development tools. 20) Allows for batch or command line processing to run unattended on multiple machines 24/7. 21) Capable of scanning worldwide network of 100,000 plus devices in 30 days using 2 to 4 dedicated workstations running 24/7. 22) Capable of control from primary machines running the scans and remote consoles. 23) Software package includes enterprise license which allows for scanning of unlimited devices and at least 20 remote consoles. 24) Produces stock reports for multiple levels of intended audience (i.e. executive, line management, and technical). 25) Allows for creation of custom reports. Interested vendors able to provide the required software are invited to submit information in sufficient detail to demonstrate their ability to meet SSA's requirements. Vendors responding should indicate whether the products are available on the GSA Federal Supply Schedule. Cross-reference to previously submitted material is discouraged. Cost or pricing data may be submitted. This is not a request for proposal (RFP) and the Government does not intend to pay for information submitted; respondents should refer to AVPMMY600. Respondents will not be notified of the results of the evaluation of the data received. Requests for updates and status after the closing date will not be honored. Requests for copies of a solicitation will not be honored or acknowledged. No contract award will be made on the basis of responses received; however, this information will be used in SSA's assessment of capable sources. Responses to this notice should be submitted via mail, in duplicate within 15 days of the publication of this notice. FAXED RESPONSES ARE NOT PERMITTED. Questions concerning this announcement may be submitted via email. The = size limitation for email attachments is five megabytes per individual = email message. The SSA utilizes Microsoft Word 97 as the standard = word processing software.
- Place of Performance
- Address: Social Security Administration 6201 Security Blvd Baltimore MD
- Zip Code: 21235
- Country: USA
- Zip Code: 21235
- Record
- SN00131784-W 20020804/020802213821 (fbodaily.com)
- Source
-
FedBizOpps.gov Link to This Notice
(may not be valid after Archive Date)
| FSG Index | This Issue's Index | Today's FBO Daily Index Page |