Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 2 at 2:00 PM EDT

Register Free →

Cyber Incident Reporting and CUI Protection (Subcontract Flow-Down)

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

This contract requires strict compliance with DFARS 252.204-7012 for the protection of covered defense information and the timely reporting of cybersecurity incidents, particularly when information technology or data handling services are delegated to subcontractors. All parties involved must implement safeguarding measures consistent with NIST SP 800-171 to ensure that controlled unclassified information is adequately secured against unauthorized access or disclosure. Any cyber incident affecting covered defense information must be reported to the Department of Defense within 72 hours of discovery, accompanied by comprehensive forensic evidence and supporting documentation to facilitate analysis and response. The contract applies to subcontractors engaged under the Defense Logistics Agency and pertains specifically to services falling under NAICS code 541512, which covers computer systems design and related services. Flow-down provisions mandate that all subcontractors adhere to the same cybersecurity requirements as the prime contractor, ensuring a consistent security posture throughout the supply chain. Performance of work under this agreement may occur anywhere, with no specific geographic restrictions indicated, but full compliance with federal cybersecurity standards remains non-negotiable regardless of location. Failure to meet these obligations may result in contractual penalties, loss of eligibility for future work, or legal liability under applicable defense acquisition regulations.

General Info

Subcontractors must comply with DFARS 252.204-7012 and NIST SP 800-171, report cyber incidents within 72 hours.

Agency

Department Of Defense → Defense Logistics AgencyView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

Not specified

Set-Aside

NONE

Documents

This scope was carved out of SP4500-26-F-6500.

The full solicitation package (2 documents), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

TX06C4

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → Defense Logistics Agency
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → Defense Logistics Agency
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Safeguarding covered defense information and reporting cyber incidents per DFARS 252.204-7012, if IT or data handling services are subcontracted.

Similar Contracts

Same NAICS industry code

More opportunities from Department Of Defense → Defense Logistics Agency

Same awarding agency