Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 16 at 2:00 PM EDT

Register Free →

Cybersecurity Compliance and CUI Protection

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

This contract requires the implementation of NIST SP 800-171 security controls to protect covered defense information, ensuring compliance with DFARS 252.204-7012 requirements for safeguarding controlled unclassified information. The subcontractor must establish and maintain robust cybersecurity measures to prevent unauthorized access, disclosure, or loss of sensitive data, and is obligated to promptly report any cyber incidents affecting the integrity or confidentiality of covered defense information. The obligation extends throughout the contract’s five-year term, which runs from February 2024 to January 2029, and applies to all systems and processes handling such information regardless of location. The contract falls under NAICS code 541512, indicating it involves computer systems design and related services, and is issued under the Department of Defense through the Medical Supply Chain FSC. Although specific performance locations and point of contact details are not provided, the subcontractor is expected to adhere to federal cybersecurity standards across all operational environments. Compliance is mandatory and ongoing, with no set-aside provisions, meaning any qualified entity may respond. The requirement places full responsibility on the subcontractor to demonstrate and maintain a security posture aligned with NIST guidelines and to support DoD’s broader mission of protecting critical defense data.

General Info

Implement NIST SP 800-171 controls for DFARS compliance, protect covered defense information, report cyber incidents, five-year term.

Agency

Department Of Defense → MEDICAL SUPPLY CHAIN FSCView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

USA

Set-Aside

NONE

Documents

This scope was carved out of SPE2DE-24-R-0001.

The full solicitation package (10 documents), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

ELECTR CAT (ECAT) I DIV - FSC

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → MEDICAL SUPPLY CHAIN FSC
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → MEDICAL SUPPLY CHAIN FSC
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Implementation of NIST SP 800-171 controls to safeguard covered defense information (CDI) and report cyber incidents per DFARS 252.204-7012.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
Federal
SOLICITATION _ SERVICENOW STAFF AUGMENTATION SERVICES - AMEND 0001
Solicitation # N5523626Q0114
Request for Quotation N5523626Q0114 is a total small business set-aside for professional technical services to support the Southwest Regional Maintenance Center (SWRMC) at Naval Base San Diego. The primary objective is to provide ServiceNow staff augmentation services to migrate a legacy Oracle APEX web portal to the ServiceNow platform, expand IT Service Management (ITSM) capabilities for IT and facilities help desk ticketing, and develop custom applications on the ServiceNow App Engine. Key deliverables include the creation of specialized modules for apprenticeship tracking, cell phone management, and logistics workflows, as well as a comprehensive technical training and knowledge transfer program. The engagement is structured as a one-year period of performance consisting of a base period and two consecutive option periods, with invoicing based on a monthly fixed-rate professional services model. The contractor must provide two full-time equivalent ServiceNow developers stationed onsite at Naval Base San Diego, supported by an offsite governance team. Required qualifications for onsite personnel include a minimum of five years of IT experience, active or eligible Top Secret security clearance, IAT Level 2 certification, and active ServiceNow Certified System Administrator (CSA) and Certified Implementation Specialist (CIS) certifications. Evaluation will be based on Lowest Price Technically Acceptable (LPTA), technical acceptability, and past performance via the Supplier Performance Risk System. The solicitation deadline has been extended to September 4, 2026, at 11:00 AM PST, and quotes must be submitted via email to the designated SWRMC procurement points of contact.
Southwest Regional Maintenance Center

POSTED

1 day ago

DEADLINE

in 1 day
View Details
NAICS: 541512
New
Federal
Call for Solutions - Information and Communications Technology (ICT) Supply Chain Risk Management (SCRM) Monitoring Tool
Solicitation # W519TC-26-R-SCRM
The Army's Capability Program Executive Enterprise Software and Service is seeking a Commercial Off-the-Shelf (COTS) or Software-as-a-Service (SaaS) monitoring tool for Information and Communications Technology Supply Chain Risk Management (ICT-SCRM). This initiative, identified by project number W519TC-26-R-SCRM and associated with open solicitation W9128Z-25-S-A002, aims to implement an automated continuous surveillance engine to vet vendors and products for cybersecurity vulnerabilities, compliance, and Foreign Ownership, Control, or Influence (FOCI). The tool must provide real-time risk scoring via RESTful APIs to integrate with the Digital Market IT e-Mart portal and support the monitoring of high-volume vendor catalogs and corporate structures. The procurement follows a two-phase evaluation process. Phase 1 requires a solution brief consisting of a seven-page technical white paper and a 15-minute unlisted YouTube video demonstration using mock data. Submissions must pass five binary compliance gates regarding completeness, formatting, software availability, API readiness, and video compliance to proceed to a weighted technical evaluation. Technical scoring focuses on system architecture, continuous corporate monitoring, workflow management, and support services. Successful Phase 1 offerors may be invited to Phase 2 for a formal Request for Proposal. The resulting contract will be subject to the Revolutionary FAR Overhaul Part 12 and DFARS Part 212. Vendors must comply with strict supply chain prohibitions, including NDAA FY19 Section 889 and the exclusion of Kaspersky Lab products. The requested pricing model is a Rough Order Magnitude covering one twelve-month base period and four twelve-month options. Solution briefs are due by September 9, 2026, at 1200 Eastern Standard Time, and should be submitted via email to the designated Contracting Officer and Specialist.
W6QK Acc-Ri

POSTED

1 day ago

DEADLINE

in 6 days
View Details
NAICS: 541512
New
Federal
W912DY26RA030 OFFICIAL SOLICITATION_ AMENDMENT 1 FOR UTILITY MONITORING AND CONTROL SYSTEMS VI
Solicitation # W912DY26RA030
Solicitation W912DY26RA030 is for the Utility Monitoring and Control Systems (UMCS) VI Multiple Award Task Order Contract (MATOC), issued by the U.S. Army Corps of Engineers, Huntsville Engineering and Support Center. This contract seeks qualified contractors to provide procurement, installation, maintenance, and service support for Facility Related Control Systems (FRCS) across U.S. Army and Department of Defense facilities. The scope of work is comprehensive, covering HVAC, SCADA, fire alarm and life safety systems, electronic security, utility metering, and power distribution systems. The contract has an estimated maximum capacity of 5.1 billion dollars over a potential duration of 90 months, consisting of a 36-month base period and two 24-month optional periods. The award process utilizes a qualifying offer approach where the government intends to award the MATOC to all offerors who meet the mandatory pass/fail criteria. Evaluation factors include technical and management approach, past performance, and small business participation, all rated on an acceptable or unacceptable basis. Price is not evaluated at the base contract level but will be a factor for individual task orders. Offerors must demonstrate capability through project reporting forms and past performance questionnaires and must comply with strict cybersecurity standards, including CMMC requirements and SPRS verification. Security requirements may include facility and personnel clearances up to the Secret level, and contractors must maintain a corporate safety and health program compliant with EM 385-1-1 and OSHA regulations. Proposals are due by 12:00 PM Central Time on September 17, 2026.
W2V6 USA Engineering Spt Ctr Huntsvil

POSTED

1 day ago

DEADLINE

in 14 days
View Details
NAICS: 541512
New
SLED
Office of Workforce Development Case Management System
Solicitation # STATE 0000000437SL
The State of Missouri, through the Office of Administration and the Department of Higher Education and Workforce Development, is soliciting proposals for a new Case Management/Learning Experience (CM/LX) Solution for the Office of Workforce Development. This Blanket Purchase Agreement aims to replace or integrate existing systems to improve automation, scalability, and compliance with the Workforce Innovation and Opportunity Act of 2014 and Wagner Peyser of 1933. The solution must support integrated workforce service delivery, end-to-end job seeker journeys, and comprehensive case management. The contract period extends from the effective date through one year following system implementation, warranty, and final acceptance by the Office of Workforce Development. The procurement process utilizes a multi-attribute scoring method based on organizational experience, team qualifications, and technical methodology. Vendors must provide firm, fixed pricing for implementation deliverables and recurring costs, including subscriptions, hosting, and ongoing maintenance. Key requirements include adherence to HIPAA and HITECH regulations via a Business Associate Agreement, compliance with federal funding mandates, and the use of a software escrow agent for quarterly updates. Final system acceptance is contingent upon the system being installed in a production environment and the completion of a twelve-month warranty period. Proposals must be submitted electronically via MissouriBUYS, including all required technical and business compliance exhibits.
PROC OA DIVISION OF PURCHASING PROCUREMENTS

POSTED

1 day ago

DEADLINE

in 6 days
View Details