|
Dept of Labor, Employment Standards Administration (DITMS)(ESA)
Dept of Labor, Employment Standards Administration, Wage & Hour Division (WHD)
Drug Enforcement Administration (DEA)
Nuclear Regulatory Commission (NRC)
Bureau of Alcohol, Tobacco and Firearms (ATF)
Department of Labor, Employment Standards Administration, Division of Information Technology Management and Support (DITMS) (ESA)
Description of Work Performed
Radius performs information security and Disaster Recovery services for the DOL ESA Division of Information Technology Management and Support (DITMS). These services include:
- Continuity of Operations Planning support - We develop, implement, update and test contingency plans/disaster recovery plans for the General Support System (GSS) in DITMS, as well as for the 10 major applications that DITMS supports.
- System Development Lifecycle (SDLC) support - Our team develops SDLC documents for the GSS in DITMS, and reviews SDLC documents developed by the Program Offices that own the major applications that are supported by DITMS.
- System Security Plan and Risk Assessment support - Our team implemented and maintains all the risk assessment and system security plan documentation for the GSS in DITMS.
- System Security Documentation Methodologies - Our team developed the methodologies for the system security plan, risk assessment and security, test and evaluations used for the GSS in DITMS. We also developed the methodologies for the system security plan, risk assessment and security, test and evaluations used for the major applications that DITMS supports.
- Security Consulting Support - Our team provides overall security consulting support to DITMS security managers in all areas of management, operational and technical security.
Back to Top
Department of Labor, Employment Standards Administration, Wage and Hour Division (WHD)
Description of Work Performed
Radius performs information security, configuration management and IT capital planning support services for the Wage and Hour Division (WHD). These services include:
- Continuity of Operations Planning support - We created and tested WHD's contingency planning capability.
- System Development Lifecycle (SDLC) support - Our team developed a series of SDLC documents, which include: functional requirements, internal and external system design documents. In addition we integrate these system changes into the business cases needed to obtain funding for WHD IT projects.
- System Security Plan and Risk Assessment support - Our team implemented and currently maintains all the risk assessment and system security plan documentation for WHD.
- IT Capital Planning support - We helped develop the Exhibit 300s and 53s for WHD systems. This includes business cases, data gathering and tracking.
- Enterprise Architecture - We developed from the ground up, an Enterprise Architecture for this organization, fully compliant with the FEA model and applicable laws.
Back to Top
Drug Enforcement Administration (DEA)
Description of Work Performed
Radius performs physical security and technical surveillance services for the Drug Enforcement Administration (DEA). These services include:
- Physical Security
- Program Management Support
- Domestic Field Division Support
- Information and Personnel Security
- Site Inspects
- Vulnerability Assessment
- Operations Security Support
- Security Incidents
- Control of Classified Material
Back to Top
Nuclear Regulatory Commission (NRC)
Description of Work Performed
Radius provides the following services to the Nuclear Regulatory Commission:
- Security Support
- IT Security Training
- Certification and Accreditation
- Documentation Management
- Administrative Support
- IT Coordination
- Independent Verification and
- IT Validation (IV & V)
- Systems Integration
Back to Top
Bureau of Alcohol, Tobacco and Firearms (ATF)
Description of Work Performed
Radius provided program management and logistical support services for ATF's Information System Security program. The program consists of one Federal employee, the Information Systems Security Officer (ISSO) and 10 support contractors. Radius' primary tasks include:
- Financial statement and Federal Information Security Management Act (FISMA) audit support - Our team develops strategies to reduce and respond to IT audit findings and manage ATF plan of actions and milestones report.
- Continuity of Operations/Disaster Recovery support - We perform contingency plan development and testing for all ATF applications and systems.
- System change control support (configuration management) - We review all ATF system changes on behalf of the ISSO to determine the level of compliance with ATF's System Development Lifecycle (SDLC). We provide system change control solutions to help meet ATF's business requirements. We also help maintain the IT security folder for ATF's Configuration Management Tool Polytronic Version Control System (PVCS).
- Database security standards development - Our team develops and helps implement security standards to protect ATF's databases in addition to servers, routers, and switches.
- Website development and maintenance - We developed and maintain ATF's computer security website. Also, we develop all security requirements for ATF's web-based applications and general support systems.
- Vulnerability/Penetration analysis - On a reoccurring basis our team perform a series of technical tests to identify and mitigate vulnerabilities in ATF's operating systems, databases, modems, routers and switches.
- Computer security awareness and training - We manage ATF's computer security awareness program, which includes a web-based and classroom component.
- Certification and Accreditation (C&A) - Perform security test and evaluation to determine if ATF's IT systems meet the requirements for certification and accreditation.
- Risk assessment and system security plan - We train system owners and representatives on the development, implementation and maintenance of risk assessments and system security plans.
- Smart Card Support - Functioning as the primary support component for ATF's Smart Card pilot program, our team assisted the program's implementation. We continue to provide day-to-day support for pilot.
- Computer Security Incident Response and Forensics Support - Our team functions as the lead Computer Security incident Response mechanism for ATF. We track, report and remediate all computer security incidents. This includes forensic investigation to determine the nature, scope and cause of a given incident.
- Intrusion Detection System Support - Developing the strategy and working to implement and maintain ATF's new intrusion detection system.
Back to Top
|