PDF PAGE OF INTERAGENCY AGREEMENT

INTERAGENCY AGREEMENT

1.IAANO.

NRC-HQ-21-14-I-0008

.

PAGE

OF

ORDER NO..

S.EFFECTIVE DATE

09/08/2014

6. AVARD DATE

09/08/2014

SERVICINGAGENCY

DEFENSE INFORMATION SYS AGENCY

Payment/Main Address: 2300 EAST DRIVE

SCOTT AFB, IL 62225-5406

3 REQUISITIONNO.

NSIR-14-0138

Servicing Division: Attn: PEO-MA/IA4, PO BOX 549 FORT MEADE, MD 20755-0549

POC

Juan Ramirez

TELEPHONENO. 301-225-4240

10. REQUESTING AGENCY

US NRC - NSIR ALC: 31000001 DUNS: 040535809 11555 ROCKVILLE PIKE RICHARD.PETRUCELLI@ MROACILKSVTIOLPLE 3MWDFN2S0-C86542M-2P738

4 SLICITATION NO.

7 PERIOD OF PERFORMANCE

08/01/2014 TO 07/31/2021

9. DELIVER TO

US NUCLEAR REGULATORY COMMISSIONMAIL PROCESSING CENTER 4930 BOILING BROOK PARKWAY ROCKVILLE MD 20852 Attn: RICHARD.PETRUCELLI@

11. INVOICEOFFICE

US NUCLEAR REGULATORY COMMISSION Email: NRCTPAC.Resource~nrc.qov 11555 ROCKVILLE PIKE MAILSTOP 03-E17A ROCKVILLE MD 20852-2738

POC

Richard Petrucelli

TELEPHONENO 301-415-2100

12.ISSUING OFFICE

US NRC - HQ

ACQUISITION MANAGEMENT DIVISION

MAIL STOP 3WFN-05-C64MP

ATTN CAROL GREENWOOD - 301-287-0882

WASHINGTON DC 20555-0001

16. ACCOUNTING DATA

2014-X0200-FEEBASED-1I-11D002-51-I-156-IlII5-251B

17

18

ITEM NO.

SUPPLIES/SERV1CES

13. LEGISLATIVrAUTHORITY

Economy Act (31 U.S.C. 1535)

14 PROJECT ID

PMA-14-504 I.PROJECTTLE

TIER 2 PKI SERVICES

19. OUANTrIY

20. UNIT

21. UNITPRICE

22 AMOUNT

Tier 2 PKI Services - FY2014 Fees:

See attached Forms 7600A, 7600B & Attachment 1: Roles & Responsibilities & Attachment 2: General Provisions

Period of Performance: 08/01/14 - 07/31/21

Total Obligated Amount $11,542 Estimated Total IAA Amount: $102,632.00

$11,542.00

23. PAYMENT PROVISIONS 25a. SIGNATUREOF GOVERNMENTREPRESENTATIVE (SERVICING) 25b.NAMEAND TITLE

125c DATE

24. TOTALAMOUNT

$11, 542 .00

26.. IGNAREOF OVEJ M

PESEAIVE (REOU ING)

1'b=. LCEO-!E\"M ?TR. ATIW"OHFEINPP'PPLE| E

?"o

I.

TTIMPLA7E -ADMOtJ

SUNSI REVIEW COMPLETE SEP 1 5 2014

United States Government Interagency Agreement (IAA) - Agreement Between Federal Agencies

General Tcrms and Conditions (GT&C) Section

IAA NmnbcrPMA-14-504 GT"&C II

- 0000- 00 Order # Amendment/Mod 11

DEPARTMENT ANDIOR AGENCY

i.

Requesting Agency of Products/Services

Servicing Agency Providing Products/Services

UO.nSe. WNuhcitleeaFrliRntegNuolratthory Commission

ADtetnf:enPsEeOI-nMfoAr/mIAat4ion Systems Agency (DISA)

AR11o5ck5v5ilRleo, cMkvDill2e08P5ik2e, MIS 02D15

PFo.Ort. MBoexad5e4,9MD 20755-0549

2. Requesting Agency Agreement Number (Optional)

El 3. Assisted Acquisition Agreement Yes

NoO

4. GT&C Action (Check action being taken) M New

El Amendment - Complete only the GT&C blocks being changed and explain the changes being made.

El Cancellation - Provide a brief explanation for the IAA cancellation and complete the effective End Date.

5. Agreement Period Start Date 10-01-2013 End Date 09-30-2021 of lAA or effective cancellation date

MM-DD-YYYY

MM-DD-YYYY

6. Recurring Agreement (Check One) A Recurring Agreement will continue, unless a notice to discontinue is received.

Yes ;0

If Yes, is this an: Annual Renewal

No MZ"

Other Renewal

State the other renewal period:

7. Agreement Type (Check One) OSingle Order IAA

8. Are Advance Payments Allowed for this IAA (Check One) Statutory Authority:

MlMultiple Order IALA

EJ Yes

[] No

FMS Form 7600A

DEFPIANARNTCMIAELNMTAONFAGTEHMEETNRT ESAERSVUIRCYE Page 1 of 4

IAA Number

I

United States Government

Interagency Agreement (IAA) - Agreement Between Federal Agencies

General Terms and Conditions (GT&C) Section

PMA-14-504

G'r&C II

-0000- 00

Order // Amendment/Mod II

9. Estimated Agreement Amount (The Servicing Agency complete-, all information for the estimated agreement amount.)

(Optional for Assisted Acquisitions)

Direct Cost

Provide a general explanation of the Overhead Fees & Charges $102,632.00 See Attachment 2.

Overhead Fees & Charges

Total Estimated Amount

$102,632.00

10. STATUTORY AUTHORITY

a. Requesting Agency's Authority (Check One)

Franchise Revolving

Working

Economy Act

Fund

Fund

Capital Fund (31 U.S.C. l535/I-AR.4-:14

El

Ml

El

M

Other Authority

1

Fill in Statutory Authority Title and Citation for Franchise Fund, Revolving Fund, Working Capital Fund, or Other Authority NOTE: FAR 17.5 dated February 2, 2010 now only applies to Assisted Acquisitions.

b. Servicing Agency's Authority (Check One)

Franchise Revolving

Working

Economy Act

Fund

Fund

Capital Fund (31 U.S.C. 15354FAR44)

Other Authority

Fill in Statutory Authority Title and Citation for Franchise Fund, Revolving Fund, Working Capital Fund, or Other Authority NOTE: FAR 17.5 dated February 2, 2010 now only applies to Assisted Acquisitions.

11. Requesting Agency's Scope (State and/or list attachments that support Requesting Agency's Scope.)

DISA will establish the initial and sustainment Public Key Infrastructure (PKI) capability for U.S.N.R.C. The National Security System (NSS) PKI provides logical access credenlials to support interoperable identity authentication, technical non-repudiation, data integrity, and communications privacy on Secret level networks. NSS PKI policies and infrastructure do not apply to systems processing Top Secret information managed by the Office of the Director of National Intelligence (ODNI); nor do they apply to systems operating at the unclassified level that obtain PKI support from the Federal PKI Architecture. NSS PKJ certificate credentials are intended to be part of an overall identity, credential, and access management architecture such as that described in the Federal Identity Credential and Access Management (FICAM) Road map, The certificate life cycle management process leverages identity information from authoritative data sources to validate the entity obtaining the certificate and subscriber informaabon contained in the certificate. Certificates are used to support logical access control decisions and authentication to classified networks and applications through the NSS PKI credential. However, certificates themselves contain only limited Subscriber information e.g., for the NSS PKI, a named certificate provides the subjects name, agency association, affiliation type and citizenship. Other attributes necessary for access control decisions are not provided by the NSS PKI. Authoritatime attribute sources maintained by the Requesting Agency should link to the identifier provided by NSS PKI credentials.

12. Roles & Responsibilities for the Requesting Agency and Servicing Agency (State and/or list attachments for the roles and responsibilities for the Requesting Agency and the Servicing Agency.)

See Attachment 1.

FMS F6-o1r0m 7600A

DEPARTMENT OF THE TREASURY FINANCIAL MANAGEMENT SERVICE

Page 2 of 4

IAA Number

United States Government Interagency Agreement (IAA) - Agreement Between Federal Agencies

General Terms and Conditions (GT&C) Section

PMA-14-504 GT&C ..

- 0000- 00 Ordcr AniendmcnTiMod I/

13. Restrictions (Optional) (State and/or attach unique requirements and/or mission specific restrictions specific to this IAA).

The token approved for use with the Common Service Provider (CSP) is the SafeNet Smart Card 650. All NSS PKI hardware certificates must be issued on SafeNet SC650 tokens.

14. Assisted Acquisition Small Business Credit Clause (The Servicing Agency will allocate the socio-economic credit to the Requesting Agency for any contract actions it has executed on behalf of the Requesting Agency.)

15. Disputes . See Attachment 2.

16. Termination This agreement may be cancelled by either party upon giving at least 180 days written notice to the other party, Per DoD's Financial Management Regulation.7000.14-R, (DoDFMR) the Requesting Agency is responsible for notifying DISA within 180 days if It wishes to terminate service. The Requesting Agency is liable for funding all costs associated with service delivery until termination, as well as all termination costs incurred by DISA, This agreement may be cancelled at any time by mutual consent of the parties concerned.

If the Servicing Agency incurs costs due to the Requesting Agency's failure to give the requisite notice of its intent to terminate the IAA. the Requesting Agency shall pay any actual costs incurred by the Servicing Agency as a result of the delay in notification, provided such costs are directly attributable to the failure to give notice. In the event of the termination of service, the Requesting Agency shall submit full payment to the Servicing Agency for all services rendered no later than 30 days after the termination of services.

17. Assisted Acquisition Agreements - Requesting Agency's Organizations Authorized To Request Acquisition Assistance for this IAA. (State or attach a list of Requesting Agency's organizations authorized to request acquisition assistance for this IAA.)

N/A

18. Assisted Acquisition Agreements - Servicing Agency's Organizations authorized to Provide Acquisition Assistance for this JAA. (State or attach a list of Servicing Agency's organizations authorized to provide acquisition for this IAA.)

NIA

19. Requesting Agency Clause(s) (Optional) (State and/or attach any additional Requesting Agency clauses.) N/A

FMS 6F-o1r0m 7600A

DEPARTMENT OF THE TREASURY FINANCIAL MANAGEMENT SERVICE Page 3 of 4

IAA Number

United States Government Interagency Agreement (IAA) - Agreement Between Federal Agencies

General Terms and Conditions (GT&C) Section

PMA-14-504 GT&C II

- 0000- 00 Order II Amendment/Mod II

20. Servicing Agency Clause(s) (Optional) (State and/or attach any additional Servicing Agency clauses.) See Attachment 2.

21. Additional Requesting Agency and/or Servicing Agency Attachments (Optional) (State and/or attach any additional Requesting Agency and/or Servicing Agency attachments.)

List of attachments: 1. Attachment 1 - Roles & Responsibilities for Tier 2 PKI Services, 27 August 2013, 6 pages. 2. Attachment 2 - General Provision for Tier 2 PKI Services, 27 August 2013, 3 pages.

22. Annual Review of IAA

By signing this agreement, the parties agree to annually review the IAA if the agreement period exceeds one year. Appropriate changes will be made by amendment to the GT&C and/or modification to any affected Order(s).

AGENCY OFFICIAL The Agency Official is the highest level accepting authority or official as designated by the Requesting Agency and Servicing Agency to sign this agreement. Each Agency Official must ensure that the general terms and conditions are properly defined, including the stated statutory authorities, and, that the scope of work can be fulfilled per the agreement.

The Agreement Period Start Date (Block 5) must be the same as or later than the signature dates.

Actual work for this IAA may NOT begin until an Order has been signed by the appropriate individuals, as stated in the Instructions for Blocks 37 and 38.

?23; Name

Requesting Agency Patricia Holahan

Servicing Agency Mr. Mark Omdorff

Title TNeulmepbheorn(se)

Fax Number Email Address EmailAddress

SIGNATURE Approval Date

Director, Division of Security Operations (301) 287-3674 (301) 415-2190

patricia.holahan@

Aa

Mission Assurance Executive (301) 225-7900

Mark.s.omdorff.civ@mail.mil

O-)

0,

/ yV21

FMS Forf 7600A

DEFPIANARNTCMIAELNMTAONFAGTEHMEENTTRESAERSVUIRCEY Page 4 of 4

TO

ACTION TYPED NAME

z1. SAM Review

V./ Hal_____fA

MA3 Review R. Mathews

.MA3 Review D. Gentile

SSUUMMMMAARRYYSSHHEEEETT

CONCUR INITIALS DATE TO

ACTION

12.1

t2 rA

____

0P14q

3

_PMA-14-504

TRACKING NUMBER

TYPED NAME CONCUR INMALS

"*f40A

DATE

MAt Review C. Rumsey

J '( ,, lwlI)

__

&PEO-

MA Review M.Powell

7.

7

CFEB1 Review B. Myles

4,4, C f

_

6

HOMAS.K i.THRY ..,'"'IV-,. 110,

OGC Approve 1K Thomas

i.A.1269335919 .

.

CFE~5

__________

MAE Sign

M. Omdorff

SUBJECT

-

Interagency Agreement (tAA) between the Nuclear Regulatory

Commission (NRC) and DISA funding document for FYI14

SUSPENSE DATE:

2014-07-18

SUMMARY

PURPOSE: Approval and signature of PKI Services Nuclear Regulatory Commission (NRC) FY14 funding.

OBJECTIVE: DISA and the DoD PKI have been identified as the Federal Agency Classified PKI Common Service Provider (CSP). This part of the IAA serves as the funding document that provides $11,542 In FY14 funds per the CSP IAA between DISA and NRC.

BACKGROUND: In response to WildLeaks, the Office of Management and Budget (OMB) and the Committee for National Security Systems determined that all federal agencies that operate on the federal classified/secret networks must Implement a hardware based PKI solution to protect their Information and networks. DISA will be the CSP for the other federal agencies. The agreement provides funding for IAA between Nuclear Regulatory Commission and PKI Common Services Provider. FACTS AND ASSUMPTIONS: None

ADVANTAGES AND DISADVANTAGES: It is more cost effective for the agencies to use the CSP.

CONCLUSION: This IAA covers all work that must be accomplished to provide classified PKI tokens.

RECOMMENDATION: NRC IAA funding document signed by Mr. Omdorff

ACTION OFFICER Merkeshia Hines-McKnight SIGNATURE HO ES-MOCNIGhT.&iRSHLI 245?78750 ....

DISA Form 9, APR 09

OFFICE CODE

PHONE NUMBER

JDATE MA32 PREPARED

301-225-5683

.

7D14t14

Previous eddions; am obsolete.

. i. nunuaa)

ZOMMENTS (requiredby all who select "no under concur) Agreement #: PMA-14-504

This Agreement is approved by the Chief Financial Executive/Comptroller with the understanding that this does not include CFE approval for the hiring of new DISA government personnel now and/or in the future to complete the services listed in this Agreement.

AA FFoorrmm 99,.AAPPRR 0099

PPrreevviioouuss

editions

editions

are

are

obsolete.

obsolete.

PMA- 14-504 Attachment I - Roles & Responsibilities for Tier 2 PKI Services 27 August 2013

A. INITIAL CAPABILITIES ROLES AND RESPONSIBILITIES

I. DISA Roles and Responsibilities

a. Establish and maintain Registration Authority (RA) Officers to support the needs of the Requesting Agencies.

b. Establish and maintain Registration Authority (RA) Officers to support certificate issuance, management, and revocation.

c. Eslablish Trusted Agent (TA) training. (TA) roles and responsibilities will be fully described in the DISA Registration Practice Statement (RPS) that the Common Service Provider (CSP) provides.

d. Establish Tier 2 helpdesk support for issues beyond the expertise of the local help desk. Problems that go beyond the capabilities of Tier 2, typically system-wide issues, will be referred to the engineering team for Tier 3 support.

e. Provide workstation configuration guidance to support the use of hardware-based PKI.

f. Distribute card reader specifications on appropriate card readers. Establish a contract vehicle for middleware purchases with maintenance support as well as the purchase of smartcard stock.

g. The GDS PMO, Tim Wilson, 301-225-8613, timothy.w.wilson2.civ@mail.mil, shall grant and provide timely, secure access to the GDS repository for the receipt of the agency's data. The GDS PMO shall provide the necessary authentication credentials in coordination with POCs.

h. The GDS PMO shall restrict access to the repository receiving attributes from NASA. Approved individuals representing the GDS Program Management Office (PMO) must be able to view security documentation pertaining to the server providing NASA data. A copy of the NASA system ATO shall be provided to the GDS PMO, and the GDS PMO shall provide a copy of the GDS ATO to the NASA

i. The GDS PMO shall maintain data integrity with Requesting Agency's PMO for the agency's attributes it provides.

j. The GDS PMO shall ensure the Requesting Agency's data is protected within the GDS infrastructure as outlined in the GDS System Security Authorization Agreement (SSAA).

I

................
................

In order to avoid copyright disputes, this page is only a partial summary.

Google Online Preview   Download