NIH | National Cancer Institute | NCI Wiki  

Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

The NCI Information System Security Officer (ISSO) is part of the review process for acquisitions to evaluate if federal cybersecurity (FISMA, FedRAMP, etc.) language needs to be included in the statement of work (SOW) for an upcoming request for proposal (RFP).  e

To complete this review there are three steps: 

  1. Completing the pre-solicitation questionnaire in the RFP development process.
  2. Completing the pre-solicitation checklist and review process prior to the RFP being released.
  3. Completing the pre-award checklist and review process prior to the contract being awarded.

Pre-solicitation Questionnaire

The pre-solicitation questionnaire gathers the required information for an upcoming RFP for the ISSO.

Please see the link to the ISSO Pre-solicitation Questionnaire below:

ISSO Pre-solicitation Questionnaire

Pre-solicitation Review

In doing the Pre-sol In doing this review, the NCI ISSO makes determinations if:

  • The acquisition involves one or more information technology (IT) systems
  • If there is an IT system(s) involved, will it be a Federal system?
    • If there is a federal system involved, it will be subject to FISMA requirements
      • What Answers what kind of data will the system create, process, store, transmit, or receive? 

      • If there is a federal system, determine Determines preliminary categorization (impact level) , of either Low, Moderate, or High

      • Where will the system be hosted?

    • If not, then no FISMA requirements apply, and the review is complete

...

    • complete

...

  1. Completing the pre-solicitation questionnaire in the RFP development process.
  2. Completing the pre-solicitation checklist and review process prior to the RFP being released.
  3. Completing the pre-award checklist and review process prior to the contract being awarded.

Pre-solicitation Questionnaire

The pre-solicitation questionnaire gathers the required information for an upcoming RFP for the ISSO.

Please see the link to the ISSO Pre-solicitation Questionnaire below:

ISSO Pre-solicitation Questionnaire

...

Please see the link to the ISSO Pre-solicitation Checklist below:

...