Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 5 at 2:00 PM EDT

Register Free →

Cyber Incident Reporting & Data Security (Flow-Down Compliance)

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

This contract implements cyber incident reporting protocols in accordance with DFARS 252.204-7009 for subcontracted IT or data handling systems, ensuring compliance with Department of Defense cybersecurity requirements. The subcontractor is obligated to establish and maintain processes that detect, report, and respond to cyber incidents involving covered defense information or controlled unclassified information, including timely notification to the government and preservation of forensic evidence. The contract mandates adherence to NIST SP 800-171 security controls and requires the flow-down of these obligations to all tiered subcontractors handling sensitive data, creating a chain of accountability across the supply chain. The work is associated with the Defense Logistics Agency under the Department of Defense, classified under NAICS code 541512 for computer systems design services, and reflects a critical focus on enhancing the security posture of defense-related IT infrastructure. Performance is expected to align with federal mandates without a specified geographic location, indicating the work may be performed remotely or across multiple sites as needed. Compliance is non-negotiable, and failure to meet reporting timelines or security standards may result in contract non-compliance actions. The requirement is triggered by the receipt of covered information and continues for the duration of the subcontract, ensuring ongoing vigilance and operational readiness throughout the lifecycle of the contracted services.

General Info

Subcontractor must report cyber incidents, comply with DFARS and NIST SP 800-171, flow down obligations, and preserve evidence for DoD.

Agency

Department Of Defense → Defense Logistics AgencyView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

Not specified

Set-Aside

NONE

Documents

(0)

No documents available

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → Defense Logistics Agency
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → Defense Logistics Agency
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Implementation of cyber incident reporting protocols per DFARS 252.204-7009 for subcontracted IT or data handling systems.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
SLED
FIDS Software ReplacementThe Port of Seattle through its ICT Enterprise Infrastructure Services is forecasting the replacement of its existing Flight Information Display System software, seeking a modern solution to enhance operational efficiency and passenger experience at airport terminals. This initiative aims to procure new software that will serve as a centralized, reliable platform for real-time flight data dissemination across multiple displays throughout the airport, ensuring accuracy, scalability, and seamless integration with existing infrastructure. The solicitation, identified by NAICS code 541512 for custom computer programming services, is currently in the pre-solicitation phase with no formal solicitation number assigned yet, indicating that vendors may prepare for a future request for proposal. Primary point of contact for inquiries is Farlis Lewis, who can be reached via email or phone, while Krista Sadler serves as the project manager overseeing technical requirements and implementation planning. The system is expected to be deployed at Port of Seattle facilities, though specific locations are not detailed. There is no set-aside classification indicated, meaning the contract is open to all responsible vendors regardless of size or certification status. Interested parties are encouraged to monitor the official portal for the upcoming formal solicitation, as no deadline or evaluation criteria have been released at this early forecast stage.
ICT Enterprise Infrastructure Services

POSTED

about 12 hours ago

DEADLINE

N/A
View Details
NAICS: 541512
New
SLED
Landfill SCADA ProjectThe City of Denton is soliciting proposals for the installation and programming of a new SCADA system to monitor and control its landfill’s leachate collection system, under solicitation number 9013 with an estimated budget of $500,000. Proposals must be submitted as sealed hard copies by 2:00 PM CST on August 26, 2026, to the City of Denton Materials Management office, with a required original bid bond bearing a raised seal delivered by the deadline—email submissions are strictly prohibited. An electronic copy of the proposal must be uploaded via the official ionwave.net portal, accompanied by a USB drive containing all documents in PDF or Excel format, including the mandatory Unit Price Proposal form, past experience records, key personnel resumes, safety documentation, and a detailed schedule for project completion. A mandatory pre-proposal meeting and site walkthrough will be held in person on August 4, 2026, at the Solid Waste Administration building, and the public bid opening will occur on August 26, 2026, at the Development Services Building, with a virtual option available. The evaluation process is weighted toward total cost of ownership at 50%, followed by the quality and achievability of the proposed schedule at 25%, with the remaining 25% distributed among key personnel qualifications, past performance reputation, and safety record. The award will be based on best value through trade-off analysis, not lowest price technically acceptable. Offerors must comply with Texas state laws including prevailing wage requirements under Davis-Bacon, submission of performance and payment bonds per Texas Government Code §2253.021, and obtaining sales tax exemptions via Comptroller rulings #95-0.07 and #95-0.09. Contractors must certify they do not boycott Israel, provide lien releases from all subcontractors prior to final payment, and disclose any OSHA violations or safety incidents from the past five years. Key personnel must be identified with resumes demonstrating relevant experience and time allocation commitments. All documentation must be formatted on letter-size paper, not exceed 200 pages in hard copy, and adhere strictly to the required form templates without modification. The work will be performed at the Denton landfill site, and final acceptance is contingent upon the City’s inspection and approval of system functionality, compliance with specifications, and submission of all required compliance documentation.
City Of Denton

POSTED

about 23 hours ago

DEADLINE

in about 1 month
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance and CMMC Level 2 AssessmentThis contract is for a third-party cybersecurity assessment and compliance management service focused on handling Covered Defense Information in alignment with the Cybersecurity Maturity Model Certification Level 2 requirements. The subcontractor will be responsible for preparing the prime contractor for an audit by a Certified Third-Party Assessment Organization, ensuring all NIST SP 800-171 controls are properly implemented, documented, and maintained. The scope includes ongoing compliance management, gap analysis, policy development, employee training, and remediation efforts to meet CMMC Level 2 standards, with the ultimate goal of achieving successful certification through the official assessment process. The contract is issued under the Department of Defense’s LAND SUPPLIER OPERATIONS SMSG and falls under NAICS code 541512 for computer systems design services. It is structured as a subcontract with a response deadline of August 23, 2026, and is aimed at organizations with proven expertise in defense cybersecurity frameworks. The place of performance and specific location details are not provided, indicating the work may be performed remotely or at any location where Covered Defense Information is processed or stored. Participation requires a clear understanding of DoD contractual obligations and demonstrated experience with CMMC readiness activities, particularly in supporting entities that handle sensitive federal defense data.
LAND SUPPLIER OPERATIONS SMSG

POSTED

about 23 hours ago

DEADLINE

in 29 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance Support (CMMC Level 2)The contract requires comprehensive support for achieving CMMC Level 2 compliance, focusing on conducting a self-assessment, developing and implementing cybersecurity policies, and hardening information systems to meet the requirements of NIST SP 800-171 and DFARS 252.204-7012. This encompasses identifying gaps in current security practices, establishing documented procedures aligned with federal standards, configuring systems to mitigate vulnerabilities, and ensuring ongoing adherence to the framework necessary for handling controlled unclassified information. The effort is designed to enable the contractor to operate securely within the Department of Defense supply chain by fulfilling the mandated cybersecurity controls. This is a total small business set-aside subcontract under NAICS code 541512, intended exclusively for small businesses qualifying under SBA guidelines. The solicitation was posted on July 24, 2026, with responses due by August 1, 2026, and the performance will be carried out under the auspices of the Department of Defense, specifically linked to the Construction & Equipment Manu & Con organization. The contract is accessible through the DIBBS platform, and all work must align with federal cybersecurity obligations without the use of third-party certifications, relying instead on internal implementation and documentation to substantiate compliance.
CONSTRUCTION & EQUIPMENT MANU & CON

POSTED

about 23 hours ago

DEADLINE

in 7 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance and CUI Safeguarding SupportThis contract entails the implementation and assessment of cybersecurity controls aligned with NIST Special Publication 800-171 and the Defense Federal Acquisition Regulation Supplement clause 252.204-7012 to ensure the protection of covered defense information throughout contract performance. The work requires a thorough alignment of organizational policies, technical safeguards, and procedural controls to meet federal standards for safeguarding controlled unclassified information. All activities must be conducted with strict adherence to the requirements designed to prevent unauthorized access, disclosure, or compromise of sensitive defense data during execution of subcontracted services. The contract is classified as a subcontract under the North American Industry Classification System code 541512, indicating it involves computer systems design and related services. It is managed by the Defense Logistics Agency within the Department of Defense and is intended to support operational cybersecurity resilience across the defense supply chain. The place of performance and specific location details are not enumerated, but the work is expected to be carried out in alignment with federal cybersecurity mandates regardless of geographic location. Compliance will be continuously monitored and assessed to maintain the integrity and confidentiality of covered defense information.
Defense Logistics Agency

POSTED

about 23 hours ago

DEADLINE

N/A
View Details

More opportunities from Department Of Defense → Defense Logistics Agency

Same awarding agency

NAICS: 541611
New
DIBBS
ITAR Compliance and Technical Data ManagementThe contract requires comprehensive management of ITAR-controlled technical data, ensuring strict adherence to U.S. export control regulations and seamless coordination with the Directorate of Defense Trade Controls and the Joint Certification Program. The contractor will be responsible for implementing and maintaining compliance protocols to safeguard sensitive defense-related information, handling all aspects of documentation, access controls, and reporting procedures mandated by ITAR. This includes establishing internal processes to monitor, classify, and transfer technical data while ensuring all personnel and partners follow export compliance standards and engage effectively with DDTC and JCP requirements. As a subcontract under the Department of Defense through the Defense Logistics Agency, the engagement demands a high level of operational precision and regulatory expertise, particularly in navigating the complex landscape of international defense trade controls. The work is governed by NAICS code 541611, indicating a focus on management consulting services related to administrative and general management. The response deadline is August 3, 2026, and performance may occur at any location as no specific place of performance is defined, allowing flexibility for remote or distributed operations as long as compliance obligations are fully met without compromise.
Administrative Management and General Management Consulting Services

POSTED

about 23 hours ago

DEADLINE

in 9 days
View Details
NAICS: 331110
New
DIBBS
Qualified Supplier of Bipod Raw Materials and ComponentsThe contract seeks qualified suppliers to provide defense-qualified raw materials and subcomponents, including steel forgings, pins, and springs, exclusively from sources listed on the Qualified Products List or Qualified Manufacturer List. These materials must meet stringent military standards for use in defense applications, ensuring reliability, durability, and compliance with defense specifications. The opportunity is structured as a subcontract under NAICS code 331110, indicating primary focus on iron and steel mills and ferroalloy manufacturing, and is managed by the Defense Logistics Agency under the Department of Defense. Interested parties must respond by the deadline of August 3, 2026, with proposals demonstrating proven ability to supply certified materials from authorized sources. The contract does not specify a set-aside category, meaning it is open to all eligible contractors regardless of business size or demographic designation. Performance location details are not provided, implying nationwide or global delivery capability subject to defense transport and security requirements. All submissions must align with the Defense Logistics Agency’s procurement guidelines, and interested suppliers should reference the official DIBBS portal link for detailed solicitation terms and submission instructions.
Iron and Steel Mills and Ferroalloy Manufacturing

POSTED

about 23 hours ago

DEADLINE

in 9 days
View Details