Cybersecurity rules in this supplement
The FEGLI acquisition rules (LIFAR) do not add a general cybersecurity-safeguarding clause. Their information rules cover program standards and confidentiality:
LIFAR Section 2109.7001 — Minimum Standards for FEGLI Program Contractors and Subpart 2124.70 — Protection of Individual Privacy with clause 2152.224-70 — Confidentiality of Records. Set program suitability and records-confidentiality requirements for the life-insurance carrier.
For cybersecurity obligations, FEGLI contractors look to the FAR baseline.
In plain terms
The FEGLI rules focus on program standards and keeping enrollee records confidential, not a dedicated cyber clause. Core cyber duties come from the FAR baseline.
Who it applies to
The carrier and subcontractors administering the FEGLI program and handling enrollee records.
What it requires
Follow the FAR baseline for safeguarding information, meet FEGLI program minimum standards, and keep records confidential under the program clauses.
Why it matters
FEGLI involves personal and beneficiary data, so confidentiality is central even though the cyber floor itself is the FAR baseline.
Citation
Federal Employees' Group Life Insurance Federal Acquisition Regulation (LIFAR), codified at 48 C.F.R. Chapter 21.