Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 5 at 2:00 PM EDT

Register Free →

Authorization to Operate (ATO) Package Development

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract seeks the development and delivery of Authorization to Operate ATO packages for 45 enterprise systems, requiring full compliance with the Risk Management Framework RMF including security categorization selection of appropriate controls implementation and comprehensive documentation to maintain continuous authorization. The work demands expertise in federal information security standards and the ability to produce accurate, auditable artifacts that meet the stringent requirements of a government authorization process. All deliverables must align with the agency’s ongoing security posture and support a streamlined, sustainable authorization lifecycle. This is a women-owned small business WOSB sole source subcontract under NAICS code 541512 for information technology services. The opportunity was posted on July 21 2026 with a response deadline of August 15 2026. Performance will be centered in Washington DC with a postal code of 20002. The agency responsible is the Court Services and Offender Supervision Agency and the contract is structured as a subcontract meaning the successful vendor will be working under a prime contractor. Participation is restricted exclusively to certified WOSB entities as defined by the sole source set aside provisions.

General Info

WOSB subcontract to deliver 45 ATO packages under RMF for DC-based federal agency with strict security compliance.

Agency

Court Services And Offender Supervision Agency → Court Services Offender Supv AgcyView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

Washington, DC, 20002, USA

Set-Aside

WOSB

Documents

(0)

No documents available

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyCourt Services And Offender Supervision Agency → Court Services Offender Supv Agcy
ContactsNo contacts available
OfficeN/A
Organization / Agency
Court Services And Offender Supervision Agency → Court Services Offender Supv Agcy
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Develop and deliver ATO packages for 45 enterprise systems, including security categorization, control implementation, and RMF documentation to support continuous authorization.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
SLED
FIDS Software ReplacementThe Port of Seattle is forecasted to procure new software for the Flight Information Display System (FIDS) under the NAICS code 541512, targeting software development and related services. The contract aims to replace existing FIDS software to enhance the accuracy, reliability, and user experience of flight information displays throughout the airport facilities. While the solicitation number is not yet assigned and the posting date is listed as July 29, 2026, the opportunity is positioned as a forecasted procurement, indicating planning and preparation for a future competitive bid process. The place of performance and specific delivery locations are not yet defined, but the system will support operations at the Port of Seattle’s aviation facilities. Primary point of contact for this initiative is Farlis Lewis, who can be reached via email or phone, with Krista Sadler serving as the Project Manager for technical coordination and oversight. The contracting entity is ICT Enterprise Infrastructure Services, working under the Port of Seattle’s infrastructure and technology modernization objectives. There is no specified set-aside designation, suggesting the opportunity is open to all qualified vendors without gender, minority, or small business preferences. Stakeholders are encouraged to monitor the official portal listed in the document for formal solicitation release, which will include detailed requirements, submission guidelines, and evaluation criteria.
ICT Enterprise Infrastructure Services

POSTED

about 11 hours ago

DEADLINE

N/A
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance (NIST SP 800-171)The contract entails the implementation and assessment of cybersecurity controls as specified in NIST Special Publication 800-171 for systems that handle controlled unclassified information, ensuring compliance with federal requirements for protecting sensitive but unclassified data. The work is structured as a subcontract and is focused on the NEW CUMBERLAND facility with a ZIP code of 17070-5002, under the oversight of the Department of Defense through its DDSP NEW CUMBERLAND FACILITY. The effort requires a thorough evaluation of existing security postures, configuration of required controls, documentation of implementation, and formal assessment to verify adherence to the NIST framework, with all activities tied to the NAICS code 541512 for computer systems design services. Proposals must be submitted by the deadline of July 31, 2026, with the solicitation posted on July 28, 2026. The performance location is restricted to the specified facility, and while no set-aside provisions are identified, the subcontract nature implies the prime contractor will delegate this specialized cybersecurity compliance task to a qualified third party. There is no designated point of contact provided in the data, and all inquiries must be addressed through the official solicitation link hosted on the DIBBS platform. Successful execution of this contract will ensure that sensitive information processed within the designated system meets DoD cybersecurity standards, reducing risk and enabling continued eligibility for defense-related work involving CUI.
DDSP NEW CUMBERLAND FACILITY

POSTED

about 23 hours ago

DEADLINE

in 2 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance and CDI ProtectionThe contract requires full implementation of NIST SP 800-171 controls to protect Covered Defense Information, ensuring that all systems and processes handling such data meet federal cybersecurity standards. Compliance includes establishing robust access controls, audit logging, configuration management, and incident response procedures, with immediate reporting of any cybersecurity incidents affecting CDI. The requirement extends to all subcontractors through mandatory flow-down clauses, ensuring third-party entities adhere to the same security protocols and remain accountable for compliance. Work must be performed at the specified location in Alameda, California, with the North American Industry Classification System code 541512 indicating the scope centers on computer systems design and related services. Proposals must be submitted by the deadline of August 10, 2026, with this being a subcontract opportunity under the Department of Defense’s Maritime Supply Chain initiative. While no set-aside type is specified, the solicitation emphasizes stringent security expectations tied to defense information handling, making vendor experience with NIST 800-171 and prior DoD compliance efforts critical for successful bid evaluation. Although no point of contact is listed, all correspondence and submissions must follow the official DIBBS portal process via the provided link.
MARITIME SUPPLY CHAIN

POSTED

about 23 hours ago

DEADLINE

in 12 days
View Details

More opportunities from Court Services And Offender Supervision Agency → Court Services Offender Supv Agcy

Same awarding agency

NAICS: 513210
New
Federal
Personal Property Management SystemThe Court Services and Offender Supervision Agency is soliciting a Software as a Service (SaaS) solution for a Personal Property Management System that must be FedRAMP Moderate Authorized at the time of quote submission, with no tolerance for systems labeled “In Process,” “FedRAMP Ready,” or below Moderate authorization—failure to meet this requirement results in automatic elimination. Amendment 0001 updates the solicitation by revising key attachments including the Statement of Work, Compliance with Personal Property Management System Requirements, and the Solicitation Price Sheet, all of which must be fully completed and submitted with any response. The quote deadline has been extended, with submissions due by August 4, 2026, and all communications must reference the solicitation number 9594CS26Q0025, not the SAM.gov notice ID. Offers must comply with extensive documentation requirements detailed in Sections L.5, L.6, and L.7, and must include verifiable proof of FedRAMP Moderate authorization. Performance is to occur in Washington, DC, with the contractor responsible for providing ongoing support services. All contractor personnel are subject to rigorous background checks, mandatory PIV card issuance, and strict access controls, with no work permitted until cleared by the agency’s Office of Security. The system must handle highly sensitive data under multiple federal and local regulations including HIPAA, FERPA, and 42 C.F.R. Part 2, and contractors are bound by stringent confidentiality obligations that survive contract termination, including prohibitions on unauthorized recording, reverse engineering, or disclosure. CSOSA retains full ownership of all deliverables, including podcasts produced during performance. While no formal contract type, pricing structure, or evaluation weighting factors are specified, the agency has reserved the right to assign the contract without consent and has no obligation to extend work beyond the initial term. No set-aside provisions apply, the NAICS code is 513210, and the contracting office is located in Washington, DC.
Software Publishers

POSTED

2 days ago

DEADLINE

in 12 days
View Details
NAICS: 541519
Federal
Notice of Intent to Award a WOSB Sole Source - Underrepresented NAICSThe Court Services and Offender Supervision Agency (CSOSA) intends to award a sole-source purchase order to Business Operational Concepts, LLC, a certified Women-Owned Small Business (WOSB), under NAICS code 541519, which is designated by the SBA as substantially underrepresented by WOSBs. This action is authorized under FAR 6.302-5(b)(7) and Section 8(m) of the Small Business Act, eliminating the need for competitive bidding and making award contingent solely on the contractor’s WOSB certification and demonstrated capability to deliver specialized cybersecurity, privacy engineering, and program management services. The contractor must be actively certified as a WOSB in SAM.gov under NAICS 541519 and provide evidence of at least one relevant project involving Caveonix GRC, migration to NIST Cybersecurity Framework 2.0, delivery of Authorization to Operate (ATO) packages for a minimum of 15 federal systems within a 12-month period, or staffing qualified personnel with certifications including PMP, CISSP, CISM, CISA, or SAFe. The work requires on-site performance at CSOSA’s facility at 800 North Capitol Street, NW, Washington, DC, 20002-4260, and includes engineering continuous monitoring workflows, implementing an agency-wide AI Threat Strategic Plan and Playbook per Executive Order 14110, conducting Privacy Threshold Analyses and Privacy Impact Assessments, and preparing full FISMA audit packages for 45 enterprise information systems transitioning from static to continuous authorization models. All proposed personnel must hold required certifications, and the Program Manager must have seven years of progressive federal cybersecurity program management experience with demonstrable expertise in RMF, NIST SP 800-53, and compliance reporting. The response must be submitted by August 5, 2026, to catherine.collins@csosa.gov and include project titles, descriptions, performance periods, contract values, and client references, along with resumes of proposed staff, with no telephone inquiries accepted. The contract value is not specified, payment mechanisms are not detailed, and no formal evaluation factors or weighting system apply—award is based strictly on mandatory pass/fail compliance with these statutory and technical requirements. The acquisition is non-competitive, with inspection and acceptance conducted by CSOSA at the performance location based on adherence to NIST CSF 2.0, RM
Other Computer Related Services

POSTED

8 days ago

DEADLINE

in 17 days
View Details