Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 2 at 2:00 PM EDT

Register Free →

Cybersecurity Compliance & Incident Response

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract requires the implementation and ongoing maintenance of cybersecurity controls aligned with NIST Special Publication 800-171 to ensure the protection of controlled unclassified information within the defense industrial base. This includes establishing, monitoring, and updating technical and administrative safeguards across systems and networks to meet federal compliance standards. The contractor is also responsible for timely cyber incident reporting through the Defense Industrial Base Net (DIBNet) to the Defense Cyber Crime Center (DC3), ensuring adherence to mandated reporting timelines and procedures following any security breach or suspicious activity. Additionally, the contractor must preserve forensic media in a secure, evidentiary-quality manner to support incident investigations, legal proceedings, and compliance audits, with processes in place to prevent tampering or loss of critical digital evidence. The work is performed under a subcontract awarded by the Defense Logistics Agency on behalf of the Department of Defense, with the North American Industry Classification System code 541512 indicating it involves computer systems design services.

General Info

Implement and maintain NIST 800-171 cybersecurity controls with DIBNet incident reporting and forensic evidence preservation.

Agency

Department Of Defense → Defense Logistics AgencyView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

Not specified

Set-Aside

NONE

Documents

This scope was carved out of SPE7M5-26-T-154T.

The full solicitation package (1 document), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

SEMICONDUCTOR DEVIC

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → Defense Logistics Agency
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → Defense Logistics Agency
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Implementation and maintenance of NIST SP 800-171 controls, cyber incident reporting to DC3 via DIBNet, and forensic media preservation.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
Federal
CIO Microsoft Sentinel Implementation FY26
Solicitation # W91QF026QA015
This sources sought notice, identified as W91QF026QA015 and titled CIO Microsoft Sentinel Implementation FY26, is issued by the Department of Defense’s W6QM Micc-Carlisle Barracks to gather market interest for the procurement of highly specialized commercial professional services aimed at designing, implementing, and operationalizing the Microsoft Sentinel platform for the Army University. The requirement centers on establishing a fully functional Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) system integrated with Microsoft 365 A5 licensing, requiring expert-level knowledge of the DoD’s security and compliance environment. The contractor must successfully onboard approximately 350 endpoints and all mandated M365 data sources with a minimum 98% ingestion success rate while ensuring full compliance with NIST SP 800-53 security controls and OMB M-21-31 Event Logging Tier 2 maturity standards. All work must be delivered remotely, with no physical delivery or on-site presence required, and the contractor must provide comprehensive as-built documentation and formal training to ensure government self-sufficiency. The vendor must be a registered Microsoft Solution Partner and Tier-1 Cloud Solution Provider, actively registered in SAM.gov, and demonstrate proven experience with DoD, federal compliance frameworks, and Microsoft Sentinel in enterprise cloud or hybrid environments. The offeror must submit a statement of interest and supporting documentation by the July 8, 2026 deadline to demonstrate technical capability and compliance with stringent personnel qualifications. Proposed key personnel must meet mandatory experience thresholds including three years of IT or cybersecurity project management leadership, two years of hands-on Microsoft Sentinel architecture and tuning, and direct experience implementing OMB M-21-31 event logging. Each individual must hold at least one active certification—SC-100, SC-200, or CISSP—and maintain DoD 8570.01-M baseline certifications throughout performance. All personnel require signed NDAs submitted at least 10 days before work begins and must complete annual DoD Cyber Awareness Challenge and OPSEC Level I training. The Government will conduct full documentation review, including 100% inspection of deliverables, design artifacts, and personnel credentials using a Quality Assurance Surveillance Plan. Evaluation will follow Low Price Technically Acceptable procedures under FAR 15.101-2, where only technically acceptable offers will be considered, with award going to the lowest-priced submitter
W6QM Micc-Carlisle Barracks

POSTED

about 12 hours ago

DEADLINE

in 11 days
View Details

More opportunities from Department Of Defense → Defense Logistics Agency

Same awarding agency