Exostar’s Partner Information Manager (PIM) risk management tool allows suppliers to complete and share the Concise DFARS / DFARS 252 CS and the NIST SP 800-171 Questionnaire and form with L3Harris. The Concise DFARS/DFARS 252 CS Form helps L3Harris decide if suppliers need to proceed with the submission of the NIST SP 800-171 Questionnaire. The information that a supplier partner provides in the NIST SP 800-171 Questionnaire is used by L3Harris to ensure that unclassified DoD information residing on the supplier's internal information system is safeguarded from cyber incidents mandated by Defense Federal Acquisition Regulation Supplement (DFARS) regulations.
L3Harris utilizes Partner Information Manager (PIM), a risk management tool that leverages information from trusted sources to provide a partner (buyer) with a supplier’s current and potential risk and impact. PIM is used behind Exostar's Managed Access Gateway (MAG). To access PIM, a Phone One Time Password (OTP) without Proofing credential is required. The Phone OTP without proofing credential is purchased from Exostar.
Click the arrows below to read further about the overall process, benefits of PIM, roles available to users, and form resources.