Understanding FOCI in Government Contracting:
Regulatory Framework
The primary regulatory body overseeing FOCI issues is the Defense Counterintelligence and Security Agency (DCSA), which operates under the Department of Defense (DoD). The National Industrial Security Program Operating Manual (NISPOM) provides detailed guidance on managing FOCI concerns. Key regulations include:
- NISPOM (which replaced the DoD 5220.22-M): Establishes procedures for safeguarding classified information and outlines FOCI mitigation measures.
- Federal Acquisition Regulation (FAR): Contains clauses that require contractors to disclose FOCI-related information and comply with security requirements.
Mitigation Measures
To mitigate FOCI risks, companies may need to implement specific measures to insulate their operations from foreign influence. These measures include:
Board Resolution: A formal commitment by the company's board to comply with U.S. security requirements.
Security Control Agreement (SCA): Limits foreign owners' ability to influence the management or policies of the company.
Special Security Agreement (SSA): Allows foreign ownership but includes robust oversight and control mechanisms to ensure that national security is not compromised.
Voting Trust Agreement (VTA): Transfers voting rights to U.S. citizens approved by the DCSA, ensuring that foreign owners cannot influence company decisions.
Proxy Agreement (PA): Similar to VTA, but more stringent, often used when the foreign entity has significant control over the company.
Compliance and Monitoring
Once a mitigation plan is approved, the company must comply with ongoing monitoring and reporting requirements to ensure continued adherence to FOCI regulations. This includes regular audits, reporting any changes in ownership or control, and allowing government inspections.
Consequences of Non-Compliance
Failure to comply with FOCI regulations can lead to severe consequences, including:
Revocation of Facility Security Clearance (FCL): Without an FCL, a company cannot access classified information or bid on classified contracts.
Contract Termination: Existing contracts may be terminated, and the company may be disqualified from future contracts.
Legal Penalties: Potential fines and other legal actions for violating national security regulations.
Conclusion
FOCI is a vital consideration in government contracting, especially for contracts involving classified information and national security. Companies must understand and navigate the complexities of FOCI regulations to ensure compliance and protect sensitive information from foreign threats. By implementing appropriate mitigation measures and maintaining rigorous compliance, companies can safeguard their operations and contribute to national security.
Government FOCI Resources
Read more about the NISPOM here.
See what the FAR says about FOCI here.
|