MODIFICATION
R -- FSA FISMA - RFI with DRAFT L&M
- Notice Date
- 1/7/2013
- Notice Type
- Modification/Amendment
- NAICS
- 541211
— Offices of Certified Public Accountants
- Contracting Office
- Other Defense Agencies, National Geospatial-Intelligence Agency, OCSU - Headquarters Support, Attn: OCSU Mail Stop S84-OCSU, 7500 Geoint Drive, Springfield, Virginia, 22150, United States
- ZIP Code
- 22150
- Solicitation Number
- HM0177-13-R-0002
- Point of Contact
- Candace I. Johnson, Phone: 571-557-2434, Patricia D. Hill, Phone: 571-557-2431
- E-Mail Address
-
Candace.I.Johnson@nga.mil, Patricia.D.Hill@nga.mil
(Candace.I.Johnson@nga.mil, Patricia.D.Hill@nga.mil)
- Small Business Set-Aside
- N/A
- Description
- Questions and Answers Question 1: Apart from NRO, are SSAE 16 or equivalent reports received from service providers to provide confidence over the operating effectiveness of controls? Answer 1: Please see the Classified ARC for the response to this question. Question 2: The Government is requesting a 10 page executive summary. How will this section be evaluated and scored? Or does the Government intend to provide the executive summary to each review team as background information to assist them in understanding the proposal? Answer 2: The Executive Summary will not have its own evaluation factor. It will be provided to each evaluator to provide background and company information that may be considered in the evaluation of the factors as applicable. It is important to note that although information in the Executive Summary MAY BE considered in the evaluation of the factors, Offerors shall ensure that all information that they wish to be considered in the evaluation of a particular factor be included in that factor's volume. Question 3: The draft RFP references an NDA to be signed by contractor personnel. Can the Government confirm that this will be a POST-AWARD requirement? Answer 3: Yes, this is a Post- Award requirement that MUST be completed before the Contractor's Employees are able to begin work on the contract. Question 4: The initial period of performance begins at contract award and ends January 14, 2014. When do you anticipate awarding the contract? Answer 4: The Government does not know the anticipated award date at this time. Question 5: Can offerors submit proposals to complete the work on just one (either FSA or FISMA) of the tasks detailed in the SOW? Answer 5: The proposal that will offer the best value to the Government will contain a comprehensive approach on completing ALL (both FSA and FISMA) of the tasks as detailed in the requirement. The offeror's proposal may contain a teaming approach (subcontracting) if they so choose. However, it is important to note that only one contract will be awarded for this effort to one Prime contractor submitting the proposal. ******************************************************************* INTRODUCTION This Request for Information (RFI) lists the National Geospatial - Intelligence Agency's (NGA) requirements for Financial Statement Audit and Federal Information Security Management Act (FISMA) evaluation services in conjunction with the NGA Office of the Inspector General (OIG). OIG is seeking information concerning industry capabilities and best practices concerning obtaining Financial Audit and FISMA evaluation services. This RFI is being issued solely for information and planning purposes and does not constitute an Invitation for Bids (IFB), a Request for Proposals (RFP), a Request for Quotations (RFQ) or an indication that the Government will contract for any of the items and/or services contained in this notice (FAR 15.201(e)). This RFI does not commit the Government to award a contract. No determination as to the viability of this requirement has been made at this point and there is currently no solicitation for this effort. Any solicitation resulting from this RFI will be announced separately. Based on your response to this RFI, the Government may contact you for follow-up questions and/or a one-on-one session. Not responding to this RFI does not preclude participation in any future RFP or RFQ. If a solicitation is released, it will be synopsized on the Federal Business Opportunities (FedBizOpps) website. It is the responsibility of the potential offerors to monitor these sites for additional information pertaining to this requirement. Based on the information received in response to this RFI, NGA may build a RFP or RFQ. Although "proposal" and "offeror" are used in the draft documents requested for review and comment, your response will be treated as information only and will not be treated as a proposal or offer as those terms are utilized in the FAR RESPONSE SUBMISSION INSTRUCTIONS AND DUE DATE This RFI shall focus on your company's experiences and capabilities for providing Financial Audit and FISMA evaluation services to federal government entities. NGA is also seeking industry's feedback concerning the Section L Instructions, Conditions, and Notices as well as Section M - Evaluation Factors for Award along with other supporting documentation. The draft version of the Statement of Work (SOW), Sections L&M and other documentation notes the current state of the government's requirement for these services. Please note that this is a draft version and is subject to change with no limit on the extent of the changes. In accordance with FAR 52.215-3 - Requests for Information or Solicitation for Planning Purposes (Oct 1997), the Government will not pay for any information/items submitted in response to this RFI. All data submitted shall be retained as government property and shall not be returned. a. For your responses to be considered, they must be submitted or received by the Due Date-Time, and Method for Submittal specified below without exception. b. Electronically submitted responses shall not exceed 6 double-sided pages and shall be submitted electronically in Portable Document Format (PDF). Only electronic submissions will be accepted. A submission may not be larger than 3MB; if any responsive document is larger than 3 MB, you may send it in more than one submission. The first page of the submission must state the RFI title and provide the name, e-mail address and telephone number for an individual that can be contacted for clarification or questions regarding this submission. The first page should also provide a short description of the company to include capabilities, company size and category (e.g., large, small, small-disadvantaged). Responses must contain only UNCLASSIFIED information and be MARKED "UNCLASSIFIED" on each page of the response. No Classified information may be included anywhere in the response. This information will be used by the government program manager to refine the approach for the final RFP or RFQ. c. All responses to the RFI shall be received no later than 11 January 2013 12:00 PM EST. All responses received after the due date will not be considered. The Government is not obligated to review responses to the RFI received after the deadline specified above. d. All RFI responses shall be emailed to Candace.I.Johnson@nga.mil or Patricia.D.Hill@nga.mil by the due date stated. RFI responses will not be accepted by Fax, the Submit Unsolicited link on the IC-Arc homepage or any other means. e. Phone calls pertaining to this RFI WILL NOT BE ACCEPTED f. Responses shall not include proprietary information. Any responses that are marked proprietary will not be considered. g. The Government will entertain questions on a case by case basis. Written requests for clarification may be sent to the Contract Specialist via e-mail at the title of the e-mail must include "RFI# FSA FISMA QUESTION". The content of a question may be included in a notification or answer to all Offerors, and will not divulge the source of the question. All questions and answers will be posted on the FedBizOpps website prior to the closing date of the RFP. All questions need to be submitted to Candace.I.Johnson@nga.mil no later than 4 January 2013 5:00 PM Eastern Daylight Savings Time. h. ALL QUESTIONS CONCERNING CLASSIFIED DOCUMENTATION: All questions requiring clarification on the Documents in the Classified ARC reading room MUST BE SUBMITTED on the CLASSIFIED ARC ONLY. The responses to those questions will be posted on the Classified ARC for all respondents DOCUMENTATION AVAILABLE FOR REVIEW & COMMENT: The following documents are available on FBO.Gov • Draft SOW • Draft Sections L and M with the Draft CDRL list attached • Draft QASP Additional documentation is available on the Classified ARC website for informational purposes and for respondents to provide feedback. Please follow the instructions on page 2 in Section L.8 on the of the Sections L and M attachment for additional information on accessing the Classified ARC reading for this effort, "NGA-FSA FISMA". REQUIREMENT The information below has been extracted from the SOW and is described in further detail within attachment 1 - Draft Statement of Work (SOW) for the National Geospatial-Intelligence Agency (NGA) Financial Statement Audit and Federal Information Security Management Act of 2002 Evaluation. This RFI seeks to ascertain an understanding of your company's experience and capabilities performing the requirements listed below: Financial Statement Audit: • Perform an independent audit of NGA's stand-alone basic financial statements in accordance with generally accepted government auditing standards (GAGAS) as indicated in the Government Accountability Office's (GAO) Government Auditing Standards and Office of Management and Budget (OMB) Bulletin No. 07-04, Financial Reporting Requirements. Execute audit procedures in accordance with the GAO/ President Council on Integrity and Efficiency (PCIE) Financial Audit Manual (FAM) and other GAO guidance as detailed in the SOW attachment 1. • Financial audit procedures include tests of manual or automated internal controls, tests of details and balances, and tests of compliance with applicable laws and regulations. • Information technology (IT) audit procedures include tests of the IT control environment in accordance with the GAO's Federal Information System Controls Audit Manual. • Prepare and issue audit reports as required by OMB Bulletin No. 07-04. Federal Information Security Management Act (FISMA) Evaluation: • Perform an annual independent evaluation of the information security programs in accordance the Federal Information Security Management Act (FISMA) of 2002 and applicable guidance from the following: 1) Director of National Intelligence (DNI), 2) OMB, and 3) Department of Homeland Security (DHS). • Prepare and issue the annual FISMA evaluation report with guidance provided by the DNI, OMB, and DHS. INFORMATION REQUESTED RFI responses shall provide, at a minimum, clearly annotated answers to all of the following questions: Question 1) In reviewing the Acceptable Quality Levels (AQLs) noted in the QASP, are the levels reasonable and achievable? Question 2) Will you please note what auditing and other computer software you would propose in the execution of the tasks as detailed in the SOW ? Question 3) In reviewing the page limits per volume noted on page 5 of Sections L&M, are the page limits sufficient? Question 4) In reviewing the Security section on page 15 of Sections L&M, are the goals of "at least 85% of non-key personnel and 100% of key personnel" reasonable and achievable? Question 5) In reviewing the Small Business Participation Plan goal noted on page 42 of Section L&M, is the goal of "25% of the total contract value" reasonable and achievable. Question 6) After reviewing all of the documentation made available on FBO.gov and the Classified ARC, do you require additional information to submit a proposal? if so, what type of additional information would be most helpful to you? Question 7) Please provide feedback concerning the clarity and correlation of Sections L & M to one another. Please suggest how this document can be improved to elicit the best responses from industry if a RFP were to be released. Question 8) Please provide any additional feedback or suggestions that you think the Government would find helpful.
- Web Link
-
FBO.gov Permalink
(https://www.fbo.gov/notices/01868d6ac1c8d02b57dc4027ef0d456d)
- Place of Performance
- Address: 7500 GEOINT DRIVE, Springfield, Virginia, 22150, United States
- Zip Code: 22150
- Zip Code: 22150
- Record
- SN02960340-W 20130109/130107234244-01868d6ac1c8d02b57dc4027ef0d456d (fbodaily.com)
- Source
-
FedBizOpps Link to This Notice
(may not be valid after Archive Date)
| FSG Index | This Issue's Index | Today's FBO Daily Index Page |