Arcutek will develop a security service called "HEAP" or "HPC Evaluation And Plan" as a complete configuration of security solutions for connection, file ingress/egress, compute, data-at-rest and other infrastructure areas. Security for HPC environments is complex and requires a holistic approach to identify, protect, detect, respond and recover from security events. Some vendor-specific guides are available through the National Institute of Standards and Technology and the Center for Internet Security, but no government or industry plan completely encompasses the security of HPC architecture. We endeavor to research common off the shelf products and open source tools which would bring HPC components into compliance with the NIST 800-53A Revision 4 and the "Security Controls Catalog and Assessment Procedures."[1]