February 2020

The Department of Veteran Affairs (VA) manages nine healthcare related ‘schedules,’ groups of umbrella contracts used to order medical supplies and services, under the Federal Supply Schedules (FSS) program. These schedules allow VA medical centers to more easily obtain goods and services to support veterans.

The VA requested the Government Accountability Office (GAO) to produce a report focusing on the following:

  • Program challenges.
  • The timeliness of contract awards.
  • The extent to which the schedules and the Medical Surgical Prime Vendor-Next Generation (MSPV-NG) program provide overlapping or duplicative offerings.

In addition to analyzing the requested issues, the report also contains a series of corrective recommendations to which the VA has largely agreed.Continue Reading GAO Recommends Steps to Ensure VA FSS Program Remains Useful

By failing to object to solicitation terms before the close of bidding, a protester typically waives those objections in a post-award bid before the Court of Federal Claims (COFC). An exception exists, however, where a protester filed a timely pre-award agency-level protest challenging patent errors or ambiguities.

But, as powerfully illustrated by the COFC’s decision in Harmonia Holdings Group, LLC v. United States, this exception is limited. In that case, Harmonia, one of the offerors on the procurement, initially brought an agency-level protest to challenge the U.S. Customs and Border Protection’s (CBP) issuance of two amendments to the solicitation, arguing that the agency improperly denied offerors the opportunity to revise their proposals in response to these amendments. CBP denied the protest.Continue Reading The Importance of Being Timely: Protester Waives Protest Ground by Unduly Delaying Protest

In case you missed it, I provided insight on U.S. sanctions risks in the context of international supply chains to Supply Chain Management Now last month.

Citing examples, such as e.l.f. Cosmetics’s 2019 settlement for nearly $1 million for sanctions violations, I asserted in the article that both U.S. and non-U.S. companies need to understand how broadly U.S. sanctions are enforced.

In the article, I provided an overview of the current sanctions landscape in the U.S. and highlights particular challenges such as avoiding dealing with specially designated nationals (SDNs). The SDN list is vast and includes parties that reside nearly everywhere in the world. As I said in the article, “this creates a challenge because many of them are in countries not otherwise subject to U.S. sanctions.”Continue Reading U.S. Sanctions Risk to International Supply Chains

In case you missed it, we ended 2019 with a webinar on current topics in U.S. economic sanctions.  Below are key points from the webinar:

  1. Types of sanctions vary. Broad country-based sanctions prohibit transactions between a U.S. individual or company and a party or company located in certain countries (current examples include Cuba, Iran, North Korea and Syria). These types of sanctions involve U.S. individuals wherever they are located, any company based or headquartered in the United States, subsidiaries of non-U.S. companies, and any person in the United States regardless of nationality.
    Continue Reading 5 Key Takeaways from Our Sanctions Update Webinar

A recent dispute between a government contractor and the Army in the Court of Federal Claims has raised the issue of whether procedures for validating restrictions on technical data apply to military contractors’ vendor lists. In Raytheon Co. v. United States, Raytheon had a contract with the Army to provide engineering support for the Patriot weapon system. The contract required Raytheon to supply the Army with vendor lists. The company, however, attached legends to those lists which purported to limit the Army’s ability to disclose the lists’ contents. The Army objected to these markings, and a contracting officer eventually ordered Raytheon to replace the offending legends with a standardized legend granting the Army “government purpose rights,” in their vendor lists.
Continue Reading Are Vendor Lists Technically Technical Data?

The Department of Defense (DoD) has now finalized its new cybersecurity standards, which we discussed last year.  The new cybersecurity standards, which are intended to protect controlled unclassified information, will be implemented by the Cyber Maturity Model Certification program (CMMC), which was finalized last week after multiple draft iterations.  CMMC Version 1.0 is available here.

CMMC Will Require Third-Party Certification of Cybersecurity Maturity Level

Among other changes from the prior cybersecurity compliance regime, this new approach will require that to be eligible for DoD awards, contractors must be certified by a third-party commercial certification organization to have achieved one of five cybersecurity maturity levels, with higher levels representing more advanced cybersecurity. Later this year, DoD solicitations will contain the applicable CMMC requirement, and contractors failing to meet this standard will be unable to bid. The requirements will apply to all parties within the supply chain (although subcontractors may not have to meet as high a CMMC standard as the prime contractor, depending on their scope of work).Continue Reading DoD Finalizes Cybersecurity Maturity Model Certification