Information Assurance Menu

About IA at NSA Partners Rowlett Awards Award Recipients Background Nomination Procedures Links IA News IA Events Open for Registration Closed for Registration Scheduled IA Guidance Media Destruction Guidance Security Configuration Guides Applications Archived Guides Cisco Router Guides Current Guides Database Servers Fact Sheets IPv6 Operating Systems Apple Mac Operating Systems Linux Microsoft Windows Sun Solaris Supporting Documents Switches VoIP and IP Telephony Vulnerability Technical Reports Web Server and Browser Guides Wireless Standards Profiles System Level IA Guidance TEMPEST Overview TEMPEST Products: Level I Certified Confirmed Deficiencies Suspended Terminated No Longer Produced TEMPEST Products: Level II Certified Confirmed Deficiencies Suspended Terminated No Longer Produced TEMPEST Company POCs Certified Suspended Terminated TEMPEST Zoned Equipment IA Academic Outreach National Centers of Academic Excellence in IA Education CAE/IAE Program Criteria CAE-R Program Criteria Colloquium Institutions SEAL Program Applying FAQs IA Courseware Evaluation Program Institutions FAQs Student Opportunities IA Business and Research IA Business Affairs Office Certified Product Sales and Support Commercial COMSEC Evaluation Program Commercial Satellite Protection Program Independent Research and Development Program User Partnership Program National IA Research Laboratory Partnerships with Industry NIAP and COTS Product Evaluations IA Programs Global Information Grid High Assurance Platform Releases Computing Platform Architecture and Security Criteria IA Training and Rating Program Inline Media Encryptor Suite B Cryptography IA Careers Contact Information
.
Skip Search Box

Commercial COMSEC Evaluation Program

The Commercial COMSEC Evaluation Program (CCEP) is a development program for IA products. Under the CCEP, NSA enters into a business relationship with a vendor to develop and produce products that are of direct and obvious benefit to improving the IA posture for DoD customers.

NSA applies its limited IA resources to evaluate those products that best provide for widespread availability of quality, inexpensive, secure communications systems for use by the U.S. Government. Interested vendors must complete a CCEP Product Summary Questionnaire. The answers to that questionnaire are the basis for the CCEP decision. Information in the vendor's product proposal is measured against national IA needs and priorities to determine the suitability of a potential product.

What is the process to initiate a CCEP agreement?

  1. Product vendor contacts Business Affairs Office
  2. NSA provides vendor with Product Summary Questionnaire (PSQ)
  3. Vendor completes and submits PSQ
  4. Business case is determined
  5. Vendor then submits a detailed proposal
  6. Detailed proposal is reviewed for technology and market
  7. Product is accepted into program
  8. NSA and Vendor enter into a legal agreement
  9. NSA and Vendor participate in a security evaluation
  10. NSA certifies the security embedded within the product/service
 

Date Posted: Jan 15, 2009 | Last Modified: Jan 15, 2009 | Last Reviewed: Jan 15, 2009

 
bottom

National Security Agency / Central Security Service