Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 5 at 2:00 PM EDT

Register Free →

XOR SECURITY LLC

UEI: NV1MK89XJ2J7CAGE: 4SUJ4

XOR SECURITY LLC is a federal contractor, registered under UEI NV1MK89XJ2J7 and CAGE code 4SUJ4. It has been awarded $158,583,040 across 57 federal contracts. Primary work spans Computer Facilities Management Services, Other Computer Related Services, and Engineering Services. Top awarding agencies include Commodity Futures Trading Commission, Department Of Commerce, and Department Of Homeland Security.

Contact Information

Registration and classification details

Registration

UEI Code

NV1MK89XJ2J7

CAGE Code

4SUJ4

Entity Structure

Corporate Entity (Not Tax Exempt)

Established

N/A

Business Classifications

2XLJ

NAICS Codes

517410Satellite Telecommunications
518210Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services
541330Engineering Services
541511Custom Computer Programming Services
541512Computer Systems Design Services
+7 more

Federal Contracting Overview

Award totals, agency breakdown, NAICS distribution, and geographic footprint.

AI Capability Profile

XOR SECURITY LLC specializes in cybersecurity operations and facilities management services for federal agencies, with deep expertise in Security Operations Center (SOC) support, network defense, and configuration management. The company delivers end-to-end cybersecurity infrastructure services, inc...

XOR SECURITY LLC specializes in cybersecurity operations and facilities management services for federal agencies, with deep expertise in Security Operations Center (SOC) support, network defense, and configuration management. The company delivers end-to-end cybersecurity infrastructure services, including Virtual SOC and Network SOC operations, penetration testing, audit support, and change/release management for critical IT environments. Their technical capabilities encompass threat detection and response, security monitoring, vulnerability assessment, and secure configuration control, with a focus on maintaining continuous authorization and operational resilience across complex federal networks. A key differentiator is their ability to integrate security operations with enterprise IT governance frameworks, ensuring alignment between technical execution and programmatic compliance requirements. XOR SECURITY LLC maintains a consistent presence with high-risk regulatory and financial agencies, including the Commodity Futures Trading Commission, Federal Communications Commission, and Department of the Treasury, where they provide mission-critical cybersecurity operations and system hardening services. They also support the Department of Homeland Security and Department of Agriculture with focused operational support and penetration testing, indicating a pattern of engagement with agencies requiring rigorous threat mitigation and audit readiness. Their work is characterized by sustained, long-term partnerships centered on securing sensitive data environments and enabling secure IT modernization. The contractor’s primary focus is on Computer Facilities Management Services (NAICS 541513), which in practice means managing and securing the operational infrastructure that underpins federal IT systems—rather than designing new architectures. This positions them as an operational cybersecurity service provider rather than a systems integrator, specializing in the sustainment and defense of existing environments. Their secondary focus on Computer Systems Design Services (NAICS 541512) reflects limited but strategic involvement in architectural planning for federal acquisition systems. XOR SECURITY LLC is a small business structured as a 2L entity, headquartered in Falls Church, Virginia, with no formal government certifications listed. Their geographic proximity to federal decision-makers and operational centers enhances their responsiveness to mission-critical requirements across the national capital region.

Key Performance Metrics

Awards Count

0

All time

Active

0

Currently performing

Completed

0

Past period of performance

Total Awards

All time

Contracts

Prime · all time

Subcontracts

Sub · all time

Grants

Prime · all time

Subgrants

Sub · all time

Award Analytics & Distribution

Awards by Agency
Commodity Futures Trading Commission$42.0M26.5%
Department Of Commerce$39.9M25.2%
Department Of Homeland Security$38.0M24%
Federal Communications Commission$17.3M10.9%
Department Of Homeland Security (dhs)$6.4M4.1%
Department Of The Treasury$4.7M3%
Department Of Justice (doj)$3.4M2.2%
Department Of State (dos)$1.8M1.1%
General Services Administration$1.1M0.7%
General Services Administration (gsa)$886.7K0.6%
Department Of Defense (dod)$793.6K0.5%
Other agencies (8 agencies, <0.5% each)$2.1M1.4%
Awards by NAICS
Export
541513 - Computer Facilities Management Services$128.0M80.7%
541519 - Other Computer Related Services$15.2M9.6%
541330 - Engineering Services$7.4M4.7%
541512 - Computer Systems Design Services$7.2M4.5%
Others - Other NAICS codes (4 codes, <0.5% each)$894.6K0.6%
Awards by Agency Over Time
Export
Awards by Place of Performance

Open opportunities in XOR SECURITY LLC's top NAICS codes and agencies

NAICS: 541512
New
DIBBS
Cybersecurity and Controlled Unclassified Information (CUI) SafeguardingThe contract requires the implementation of NIST SP 800-171 safeguards to protect Covered Defense Information, encompassing the development of a comprehensive System Security Plan, enforcement of strict access controls, and establishment of protocols for timely incident reporting. All security requirements must be fully aligned with federal standards for safeguarding Controlled Unclassified Information, ensuring that systems and processes are configured to mitigate risks associated with unauthorized access, disclosure, or compromise. The scope includes not only the primary contractor’s environment but also mandates the flow-down of these cybersecurity obligations to all subcontractors, requiring consistent compliance across the entire supply chain. This subcontract, issued by the Department of Defense’s ASC Commodities Division under NAICS code 541512, is focused on cybersecurity services for defense-related information systems. The response deadline is August 12, 2026, with the solicitation posted on July 29, 2026, indicating a compressed timeline for qualification and proposal submission. Performance is expected to support DoD missions where the protection of sensitive data is critical, and all parties must demonstrate proven capability in implementing and maintaining NIST 800-171 controls without exception. Failure to meet these requirements may result in noncompliance penalties or termination of contractual obligations.
ASC COMMODITIES DIVISION

POSTED

about 8 hours ago

DEADLINE

in 14 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance & NIST SP 800-171 Assessment SupportThe contract seeks to secure advisory and implementation support to achieve NIST SP 800-171 compliance for a Department of Defense entity, specifically the ASC Commodities Division. The scope includes developing a System Security Plan, managing the Plan of Action and Milestones, and preparing the organization for a CMMC Level 2 third-party assessment. The work requires deep expertise in cybersecurity frameworks and hands-on experience guiding contractors through the entire compliance lifecycle from documentation to readiness evaluation. All tasks must be performed under the strict guidelines of NIST standards and aligned with the requirements of the Cybersecurity Maturity Model Certification program. This is a total small business set-aside under the SBA program with a NAICS code of 541512, indicating it is scoped for information technology consulting services. The solicitation was posted on July 29, 2026, with a response deadline of August 11, 2026, and is structured as a subcontract. Performance location details are unspecified, but the work is tied to the defense supply chain operations managed by the ASC Commodities Division. The contract is managed through the DLA DIBBS platform and targets qualified small businesses capable of delivering rapid, effective cybersecurity compliance support under tight timelines and stringent DoD requirements.
ASC COMMODITIES DIVISION

POSTED

about 8 hours ago

DEADLINE

in 13 days
View Details
NAICS: 541330
New
SLED
Construction Management (CM) & Constructability Review (CR) Services For The North Park| Mid-City Howard Bikeway Project
Solicitation # 20260728034
The contract invites bids for Construction Management and Constructability Review services for the North Park | Mid-City Howard Bikeway Project in San Diego, California, under solicitation number 20260728034. The work is being procured by the San Diego Association of Governments (SANDAG), a SLED-level agency, with a North American Industry Classification System code of 541330, indicating professional, scientific, and technical services related to architectural and engineering activities. The solicitation was posted on July 29, 2026, and responses are due by August 22, 2026. Performance of the contract will occur entirely within San Diego, California, focusing on ensuring the bikeway project’s design is feasible, efficient, and compliant with construction standards through expert review and management. Paola Neira of SANDAG serves as the primary point of contact, reachable via phone at 619-595-5308 or email at paola.neira@sandag.org for inquiries related to the bid. There is no set-aside designation for small businesses or other categories, meaning the opportunity is open to all eligible vendors. The bid amount is listed as $16, which may reflect a nominal fee for accessing the solicitation or a placeholder value, as the actual contract value is not specified. Interested parties must access the full solicitation and submit responses through the provided BidAmerica portal link.
SAN DIEGO ASSOCIATION OF GOVERNMENTS (SANDAG)

POSTED

about 10 hours ago

DEADLINE

in 23 days
View Details
NAICS: 541519
New
Federal
National Provider Directory (NPD) Data Sourcing, Aggregation, and Quality Assurance Services
Solicitation # 75FCMC26R0063
The contract seeks qualified vendors to provide National Provider Directory (NPD) Data Sourcing, Aggregation, and Quality Assurance Services for the Department of Health and Human Services, specifically managed by the Office of Acquisition and Grants Management. The solicitation, identified as 75FCMC26R0063, was posted on July 29, 2026, with responses due by August 12, 2026, at 4:00 p.m. Eastern Time. The work involves collecting, consolidating, validating, and maintaining accurate provider data to support federal healthcare operations, with performance expected to occur in Baltimore, Maryland, at the zip code 21244. The North American Industry Classification System (NAICS) code is 541519, indicating it is targeted toward other scientific and technical consulting services, and no small business set-aside is in effect, making it open to all eligible contractors. Primary contact for inquiries is Alex Jarema, reachable at 410-786-8814 or Alex.Jarema@cms.hhs.gov, with Walker Hare as the secondary point of contact at 410-786-8587 or walker.hare@cms.hhs.gov. The solicitation is a combined synopsis and request for proposal, meaning the full requirements, evaluation criteria, and submission guidelines are detailed in the attached documents accessible via the SAM.gov workspace link. Vendors must ensure compliance with all technical, administrative, and quality standards outlined in the attachments, and successful bidders will be expected to deliver ongoing data stewardship services critical to the integrity of national healthcare provider information systems.
Ofc Of Acquisition And Grants Management

POSTED

about 13 hours ago

DEADLINE

in 14 days
View Details
NAICS: 541330
New
Federal
MAGTF Staff Training Program (MSTP) Support Services
Solicitation # M6785426R3009
This solicitation is exclusively for Small Business SeaPort-NxG MAC holders, with no offers from non-MAC holders being considered. Proposals must be submitted through the Procurement Integrated Enterprise Environment (PIEE) Solicitation Module, requiring MAC holders to register for PIEE accounts to access the full RFP and submit responses. The requirement is to provide comprehensive support services for the Marine-Air Ground Task Force (MAGTF) Staff Training Program (MSTP), established under Marine Corps Order 1500.53B, to enhance the warfighting capabilities of senior commanders and staffs in Joint and Combined Task Force environments. Services span seven functional areas: Exercise Design, MAGTF Analytics, Modeling and Simulation, Documentation, Security, Command and Control/Information Management/Knowledge Management, and Communications and Information Systems, all governed by the Performance Work Statement and its Part 5 workbook. The contract is structured as a hybrid firm-fixed-price/cost-reimbursement instrument with a base period from March 27, 2027, through February 26, 2028, and up to five option periods extending performance through August 26, 2032. All work is to be performed at the Training and Education Command in Quantico, Virginia, with inspection and acceptance occurring at that location. Evaluation of proposals is based on three factors—Technical Expertise, Staffing Approach, and Price—with non-price factors being significantly more important than price, indicating a best-value trade-off selection process rather than lowest price technically acceptable. Offerors must demonstrate technical proficiency in specified PWS tasks, provide detailed staffing plans with qualified personnel and subcontractor information, and submit fair and reasonable pricing via the required Excel-based Pricing Proposal Workbook. Compliance with numerous FAR and DFARS clauses is mandatory, including protections for covered defense information, prohibitions on certain foreign-supplied telecommunications equipment, Buy American requirements, and trafficking in persons compliance. All offers must include current Unique Entity ID and CAGE codes, valid SAM registration, and attestations regarding small business status and socioeconomic certifications. Invoicing is exclusively through the Wide Area WorkFlow system using DoDAAC codes, and submissions require a two-step process: an initial written proposal with formatting restrictions and a final step involving PIEE upload and email submission of pricing, staffing matrices, and PowerPoint slides for oral presentations. Security requirements include adherence to DD Form 254, safeguarding controlled unclassified information, and identification of contractor personnel through badges and verbal disclosure. Subcontract
Commander

POSTED

about 13 hours ago

DEADLINE

in 23 days
View Details
NAICS: 541330
New
Federal
Advance Notice: N6660426R3106 Code 45 Technical Engineering, Survivability, Testing, and Environmental Qualification Testing (EQT) Design (TESTED) Services
Solicitation # N6660426R3106
The U.S. Navy’s NUWC Division Newport is issuing a presolicitation for Technical Engineering, Survivability, Testing, and Environmental Qualification Testing (EQT) Design services under contract number N6660426R3106, with the solicitation set to be released in July 2026. This effort is designated as a Small Business Set Aside - Total, meaning only small businesses can compete, and it falls under NAICS code 541330 for Other Engineering Services. The work will involve providing engineered solutions to support system survivability, performance validation under extreme conditions, and comprehensive environmental qualification testing, ensuring military systems meet operational standards in harsh environments. All performance is expected to occur at Newport, Rhode Island, 02841. The primary point of contact for inquiries is Madison Rowland, who can be reached via email at madison.b.rowland.civ@us.navy.mil or by phone at 401-832-3648. The contract is managed under the Department of Defense, with the office located at the NUWC Division Newport facility in Rhode Island. This acquisition aims to secure qualified small business partners capable of delivering advanced testing and engineering support critical to maintaining naval system readiness and resilience. Prospective bidders should monitor the SAM.gov portal for the official solicitation, with the presolicitation notice available through the provided UI link to prepare for a competitive response.
Nuwc Division Newport

POSTED

about 13 hours ago

DEADLINE

N/A
View Details
NAICS: 541519
New
Federal
DA01--Summit Data Platform Analytics Solution (VA-26-00024220)
Solicitation # 36C10B26Q0234
The Department of Veterans Affairs is conducting market research through a Request for Information (RFI) to shape the acquisition of the Summit Data Platform Analytics Solution, aimed at modernizing its enterprise cloud-based data and analytics infrastructure. This initiative seeks to enhance the platform’s capabilities in customer onboarding, data migration, governance, security, AI enablement, user support, and change management to better serve over 2,500 users and migrate remaining CDW workgroups. The effort will leverage Azure and AWS cloud environments with integrated tools such as Collibra, Immuta, and Databricks, following Agile methodologies and compliance-by-design principles aligned with FedRAMP, RMF, Zero Trust Architecture, Section 508, and VA-specific data and AI governance policies. Responses to the RFI, originally due March 18, 2026 and extended to March 23, 2026, will inform the development of a formal solicitation expected in late summer 2026 and will not result in an award. Offerors are required to address six key areas including technical architecture, staffing models, cybersecurity controls, data migration strategies, implementation timelines with ROM estimates, and unique competitive advantages, with submissions accepted solely via email to designated VA contacts. The upcoming procurement will be issued under GSA MAS Schedule 54151S and will remain open to all business sizes, including small businesses, SDVOSBs, VOSBs, woman-owned small businesses, and historically underutilized business zone concerns, fostering broad competition to achieve the best value for the government. The anticipated contract will reflect a 12-month base period with two optional 12-month extensions for a potential total performance period of three years, with work to be performed anywhere in the United States. Evaluation for the future solicitation is expected to emphasize technical excellence over price, likely utilizing a trade-off approach due to the mission-critical nature and complexity of the platform modernization. Contractors must demonstrate proven expertise in cloud data platforms, AI/ML workflow development, automated governance, and user-centered design, with compliance requirements extending to financial and operational transparency, including potential subcontracting obligations under small business set-aside provisions. While no formal contract clauses or funding identifiers are yet defined, the effort is supported by Recovery Act funds, and all deliverables must adhere to federal privacy, accessibility, and cybersecurity standards with no physical packaging or MIL-STD requirements applicable.
Technology Acquisition Center Nj (36C10B)

POSTED

about 13 hours ago

DEADLINE

in about 20 hours
View Details