Frequently Asked Questions

Data at Rest Agreements
  1. What SmartBUY Data at Rest agreements are in place?
  2. Will the entire Federal government use SmartBUY DAR Encryption agreements?Can you be more specific?
  3. How do we place a SmartBUY order?
  4. Are volume discounts available under the SmartBUY DAR Encryption agreements?
  5. May we attempt to negotiate lower prices when placing an order?
  6. Do we have to assess the validity of the items in conformance with FISMA specifically FIPS 140 2 Security Requirements for Cryptographic Modules?
  7. We currently have DAR encryption software maintenance agreements expiring which we believe are not FIPS 140 2 validated. Do we have to switch to FIPS 140 2 validated items?
  8. Will each SmartBUY DAR Encryption product BPA have the same terms and conditions?
  9. How does SmartBUY compare to DODs Enterprise Software Initiative, ESI?
  10. How were DAR Encryption products evaluated prior to BPA awards?
Program Overview
  1. What is SmartBUY?
  2. Why is SmartBUY relevant?
  3. Which aspects of SmartBUY will be mandatory? Which Federal agencies can use the SmartBUY Program?
  4. Does SmartBUY apply to all software?
  5. Are volume discounts available under the SmartBUY agreements?
  6. Can an agency attempt to negotiate lower prices when placing an order?
  7. Will the agencies have an opportunity to purchase non-SmartBUY software?
  8. How does SmartBUY compare to DOD’s Enterprise Software Initiative (ESI)? What parts of ESI are you looking to replicate through SmartBUY and what aspects are you looking to de-emphasize?
  9. Will each SmartBUY agreement have the same terms and conditions? Will those terms and conditions be commercial terms and conditions?
  10. What will the process be when agencies want a software package that is different than that offered on a SmartBUY contract? Will the agency have to get approval from OMB or GSA? What will an agency need to provide in order to be approved?
  11. How will full and open competition be maintained? In other words, if one software company has a SmartBUY contract and a competing company does not, how will agencies still have the opportunity to evaluate and acquire the software program that best meets its needs without seeking waivers?
  12. How will resellers be involved in SmartBUY?
  13. What is the process for migrating an existing BPA or ESA into a SmartBUY contract?
  14. How would GSA provide asset management for the SmartBUY? e.g., who keeps track of the licenses, keys, versions etc.?
Data at Rest Agreements
  1. What SmartBUY Data at Rest agreements are in place?

    There are eleven SmartBUY ESI agreements for DAR Encryption products. The DAR Encryption agreements include Merlin GuardianEdge, GovBuys WinMagic SecureDoc, MTM Mobile Armor Data Armor, RMR SafeBoot SafeBoot Device Encryption, Spectrum SafeBoot SafeBoot Device Encryption, Autonomic WinMagic SecureDoc Spyrus Talisman DS Data Security Suite, immixGroup Pointsec Mobile Technologies Pointsec, SafeNet ProtectDrive, HITS ESI SkyLOCK at Rest, ID CREDANT CREDANT Mobile Guardian, and Carahsoft ISC Secret Agent.

  2. Will the entire Federal government use SmartBUY DAR Encryption agreements?Can you be more specific?

    Authorized Users, All Executive Agencies, DOD components, NATO, and State and Local governments are authorized to place orders under this Blanket Purchase Agreement. This BPA is also open to Government Contractors authorized to order for participating agencies, in accordance with FAR Part 51. In order for authorized contractors to purchase from this vehicle, the following must provided to the Industry Partner, A letter on Government letterhead signed by a Government Contracting Officer stating that the contractor may purchase from the vehicle in support of the activity.

  3. How do we place a SmartBUY order?

    SmartBUY agreements are GSA Multiple Award Schedule BPAs. Use standard MAS BPA procedures including contacting the Industry Partner, asking for spot discounts, accepting and paying the Industry Partners invoice, etc. Ordering via this BPA is decentralized. Orders are prepared by a Government Ordering Officer,a Contracting Officer whose warrant authorizes purchases from the GSA Schedule, in accordance with the terms and conditions of this BPA and the GSA Schedule. Orders may be placed against this BPA via EDI, credit card, facsimile, on an authorized form such as a Standard Form SF 1449, GSA Form 300, or Department of Defense DD Form 1155. Orders must include ordering activity, administrative office,if different, payment office, point of contact telephone number, acceptance authority COR and email address.

  4. Are volume discounts available under the SmartBUY DAR Encryption agreements?

    Yes. Volume discounts on DAR products are available when purchasing in tiers of 10,000, 33,000, and 100,000 users. Call the Industry Partner or refer to SmartBUY DAR Encryption documentation for details.

  5. May we attempt to negotiate lower prices when placing an order?

    Yes. All Industry Partners under the SmartBUY DAR Encryption program are encouraged to offer spot discounts whenever practicable.

  6. Do we have to assess the validity of the items in conformance with FISMA specifically FIPS 140 2 Security Requirements for Cryptographic Modules?

    No, the DAR Encryption Acquisition Evaluation criteria required successful vendors to verify that cryptographic modules used in products offered were FIPS 140 2 validated. The evaluation team confirmed that the awarded BPAs offer only products with FIPS 140 2 validated cryptographic modules. Additionally all awarded BPA holders signed FIPS 140 2 Confirmation letters.

  7. We currently have DAR encryption software maintenance agreements expiring which we believe are not FIPS 140 2 validated. Do we have to switch to FIPS 140 2 validated items?

    Yes, non validated agreements in place may be grandfathered until expiration, but may not be extended. All SmartBUY DAR BPAs are in compliance with stringent NIST information assurance standards and OMB guidelines. They also meet strict interoperability requirements.

  8. Will each SmartBUY DAR Encryption product BPA have the same terms and conditions?

    No. Terms and conditions may differ somewhat from one DAR Encryption BPA to another.

  9. How does SmartBUY compare to DODs Enterprise Software Initiative, ESI?

    These are co-branded SmartBUY ESI agreements. SmartBUY often partners with the DoD Enterprise Software Initiative,ESI. ESI has similar goals and objectives as SmartBUY except that ESI Blanket Purchase Agreements, BPAs, cover only DoD agencies and NATO. When ESI initiates an agreement and partners with SmartBUY, the agreement expands to all federal agencies. ESI is the managing partner for the DAR BPAs. Therefore all DoD and NATO organizations should contact the ESI points of contact,POC, and all civilian agencies and state and local governments should contact the SmartBUY POCs. POCs are listed at the end of the document.

  10. How were DAR Encryption products evaluated prior to BPA awards?

    Product proposals were evaluated against very rigid technical requirements.In addition, evaluators were allowed to consult with DoD and Federal Agency subject matter experts who had tested/evaluated the products under consideration.The DAR Encryption Acquisition evaluation process did not allow for time or resources to formally test products.

Back to Top Program Overview
  1. What is SmartBUY?

    SmartBUY is an initiative of the Federal government to support effective enterprise-level software management through the aggregate buying of commercial software government-wide.SmartBUY officially began June 2, 2003 with the issuance of a memorandum from OMB directing agencies to participate in the SmartBUY initiative and designating GSA as the Executive Agent for SmartBUY, in accordance with the provisions of the Clinger-Cohen Act of 1996.

  2. Why is SmartBUY relevant?

    The government spends approximately $65 billion on IT each year, a significant portion of which is software. A wide disparity exists in prices paid by different agencies for the same software products. By leveraging the government’s immense buying power, SmartBUY can potentially save taxpayers hundreds of millions of dollars through reduced prices and more favorable terms and conditions.

  3. Which aspects of SmartBUY will be mandatory? Which Federal agencies can use the SmartBUY Program?

    If an agency has a requirement for software, specific brand and model that is covered by SmartBUY, they need to acquire that software via the respective SmartBUY agreement.All Executive agencies and DoD components are authorized to place orders under the SmartBUY BPA.

  4. Does SmartBUY apply to all software?

    No, the program applies only to commercially available, commodity-type software covered by SmartBUY.SmartBUY will initially focus on those market areas in which the Government invests the most money.

  5. Are volume discounts available under the SmartBUY agreements?

    Yes, typical banded pricing levels are available along with traditional volume discounts on selected agreements.Call the Industry Partner or refer to SmartBUY documentation for details.

  6. Can an agency attempt to negotiate lower prices when placing an order?

    All Industry Partners under the SmartBUY program are encouraged to offer spot discounts whenever practicable.

  7. Will the agencies have an opportunity to purchase non-SmartBUY software?

    If a SmartBUY agreement exists for a particular software product that can meet an agencys needs, the agency must use the SmartBUY agreement.SmartBUY does NOT enforce the use of certain titles of software as opposed to others.  It is up to the agencies to determine which software best meets their needs.

  8. How does SmartBUY compare to DOD’s Enterprise Software Initiative (ESI)? What parts of ESI are you looking to replicate through SmartBUY and what aspects are you looking to de-emphasize?

    DoDs Enterprise Software Initiative (ESI) is participating in the government-wide SmartBUY effort. There are no aspects of ESI we are looking to de-emphasize. We are leveraging their significant experience in these enterprise software activities.

  9. Will each SmartBUY agreement have the same terms and conditions? Will those terms and conditions be commercial terms and conditions?

    Across a given market space, terms and conditions may vary based on commercial practices. Our experience has demonstrated that no one model can be employed for all SmartBUY agreements. At a minimum, SmartBUY agreements reflect the most favorable terms and conditions already awarded to individual agencies. SmartBUY agreements will be tailored to meet the specific demands of the parties involved.

  10. What will the process be when agencies want a software package that is different than that offered on a SmartBUY contract? Will the agency have to get approval from OMB or GSA? What will an agency need to provide in order to be approved?

    If agencies want a software package that is functionally different from those within current SmartBUY agreements, the agency needs no approval from GSA. (The CIO.gov secure site contains a list of software under consideration for SmartBUY).

  11. How will full and open competition be maintained? In other words, if one software company has a SmartBUY contract and a competing company does not, how will agencies still have the opportunity to evaluate and acquire the software program that best meets its needs without seeking waivers?

    The SmartBUY acquisition strategy already reflects the existing base of requirements for software that agencies have fulfilled through a competitive process. By combining the buying power of the Federal government, SmartBUY merely leverages these previous competitive decisions in an attempt to obtain better services and prices. SmartBUY targets an existing base of software throughout the Federal government. Agencies have total discretion in establishing their software requirements.

  12. How will resellers be involved in SmartBUY?

    SmartBUY does not reorganize the software distribution and sales marketplace. SmartBUY does not interfere with the software publishers decision whether or not to use resellers. The focus is on the terms, conditions, and prices.

  13. What is the process for migrating an existing BPA or ESA into a SmartBUY contract?

    When appropriate, language in SmartBUY agreements will allow for the migration of existing BPAs and ESAs into SmartBUY.

  14. How would GSA provide asset management for the SmartBUY? e.g., who keeps track of the licenses, keys, versions etc.?

    Agencies should be conducting asset management as part of their responsibilities under the Clinger-Cohen Act and Executive Order 13103.

Back to Top