Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 16 at 2:00 PM EDT

Register Free →

Cybersecurity Compliance & ATO Support

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The Cybersecurity Compliance and ATO Support subcontract focuses on providing security categorization and documentation for prime contractors working on HHS ORR projects to secure an Authority to Operate. The scope of work involves determining risk levels based on FIPS 199 and NIST SP 800-60, implementing controls according to NIST SP 800-53, and managing the System Security Plan and Plan of Action and Milestones. Utilizing the NIST Risk Management Framework, the contractor is responsible for delivering an approved SSP and final ATO certification. This effort is managed under the Department of Health and Human Services Omas Strategic Buying Center with a NAICS code of 541519.

General Info

Subcontract providing security documentation and NIST compliance to secure HHS ORR ATO certification.

Agency

Department Of Health And Human Services → Omas Strategic Buying Center - HHS MissionView Agency

NAICS

541519 - Other Computer Related ServicesView NAICS

Place of Performance

MD

Set-Aside

NONE

Documents

This scope was carved out of 7571MN26Q00111.

The full solicitation package (1 document), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

ORR Process and Technology Modernization (OPTM) Platform and Home Studies/Post-Release Services (HS/PRS) Application Enhancement and Support

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Health And Human Services → Omas Strategic Buying Center - HHS Mission
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Health And Human Services → Omas Strategic Buying Center - HHS Mission
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Performs security categorization and documentation for prime contractors on HHS ORR projects to achieve Authority to Operate (ATO). Determines risk levels per FIPS 199 and NIST SP 800-60, implements controls per NIST SP 800-53, and manages the System Security Plan (SSP) and POA&M. Utilizes NIST Risk Management Framework (RMF). Delivers approved SSP and ATO certification.

Similar Contracts

Same NAICS industry code

NAICS: 541519
New
Federal
ISBEE: Brand Name-Grammarly Business Enterprise (Base + 4)
Solicitation # 75H70426Q00025
The Indian Health Service (IHS) is conducting a sources sought notice under the authority of the Buy Indian Act, 25 U.S.C. 47, to identify qualified Indian Small Business Economic Enterprises (ISBEEs) and other Indian Economic Enterprises (IEEs) capable of providing Grammarly Business Enterprise (Part Number GRMLYENT-200), a cloud-based writing assistance software tool, for approximately 600 employees across IHS facilities. This notice is not a solicitation for proposals but a market research initiative to assess the availability and capability of small Indian-owned businesses to fulfill this requirement, with the intent to potentially structure a future acquisition using a set-aside reserved exclusively for ISBEEs. Interested parties must submit a complete response by 11:00 a.m. EST on May 11, 2026, to Javier.medina-velazquez@ihs.gov, including their company name, address, Unique Entity ID and CAGE code, point of contact, size classification under NAICS code 541519 (150-employee size standard), a capability statement, and a signed Buy Indian Act Indian Economic Enterprise Representation Form. Responses are restricted to five pages total and must not include proprietary, classified, or sensitive information, as the government reserves the right to use non-proprietary details in any future solicitation without obligation to compensate respondents. The requirement involves licensing Grammarly Business Enterprise, with baseline authorization for 600 users in the base year and anticipated increases of 80 users annually across four option years, extending the potential contract period through June 14, 2031. Performance is entirely electronic, with no physical delivery, and all services must be accessed via secure online platforms. Compliance with federal cybersecurity and privacy standards is mandatory, including adherence to FedRAMP Moderate authorization, HIPAA, the Privacy Act, FISMA, NIST SP 800-53, and SOC 2 Type II certification. Contractors must execute a Business Associate Agreement, prevent the input of protected health information, ensure data remains under IHS ownership with no secondary use, implement SCIM for identity provisioning, enable BYOK and Confidential Mode, and provide annual compliance reporting. Any data breach must be reported within 24 hours. The contracting officer is Javier Medina-Velazquez, with Kevin Fulbright serving as the technical point of contact. The government will not acknowledge receipt, guarantee an award, or pay for submissions
Division Of Acquisitions Policy Hq

POSTED

about 24 hours ago

DEADLINE

in 6 days
View Details

More opportunities from Department Of Health And Human Services → Omas Strategic Buying Center - HHS Mission

Same awarding agency

Ready to Pursue This Opportunity?

Get AI-powered intelligence on this solicitation and the ones like it

Every page of the solicitation package shredded into a compliance breakdown

AI-powered matching based on your capabilities and past performance

Competitor and incumbent history on the requirement

Automated alerts on amendments, Q&A deadlines, and award

Miguel
Hillary
Keith Deutsch
Christine

Join 750+ contractors already using CLEATUS