Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 2 at 2:00 PM EDT

Register Free →

This Government Contract opportunity from Department Of Defense was posted on July 16, 2026. The submission period has ended. Browse the details below for market research, or find similar active opportunities.

Cybersecurity Compliance (CMMC Level 2 Implementation)

Closed
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

Active Opportunities Like This One

NAICS: 541512
New
Federal
CIO Microsoft Sentinel Implementation FY26
Solicitation # W91QF026QA015
This sources sought notice, identified as W91QF026QA015 and titled CIO Microsoft Sentinel Implementation FY26, is issued by the Department of Defense’s W6QM Micc-Carlisle Barracks to gather market interest for the procurement of highly specialized commercial professional services aimed at designing, implementing, and operationalizing the Microsoft Sentinel platform for the Army University. The requirement centers on establishing a fully functional Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) system integrated with Microsoft 365 A5 licensing, requiring expert-level knowledge of the DoD’s security and compliance environment. The contractor must successfully onboard approximately 350 endpoints and all mandated M365 data sources with a minimum 98% ingestion success rate while ensuring full compliance with NIST SP 800-53 security controls and OMB M-21-31 Event Logging Tier 2 maturity standards. All work must be delivered remotely, with no physical delivery or on-site presence required, and the contractor must provide comprehensive as-built documentation and formal training to ensure government self-sufficiency. The vendor must be a registered Microsoft Solution Partner and Tier-1 Cloud Solution Provider, actively registered in SAM.gov, and demonstrate proven experience with DoD, federal compliance frameworks, and Microsoft Sentinel in enterprise cloud or hybrid environments. The offeror must submit a statement of interest and supporting documentation by the July 8, 2026 deadline to demonstrate technical capability and compliance with stringent personnel qualifications. Proposed key personnel must meet mandatory experience thresholds including three years of IT or cybersecurity project management leadership, two years of hands-on Microsoft Sentinel architecture and tuning, and direct experience implementing OMB M-21-31 event logging. Each individual must hold at least one active certification—SC-100, SC-200, or CISSP—and maintain DoD 8570.01-M baseline certifications throughout performance. All personnel require signed NDAs submitted at least 10 days before work begins and must complete annual DoD Cyber Awareness Challenge and OPSEC Level I training. The Government will conduct full documentation review, including 100% inspection of deliverables, design artifacts, and personnel credentials using a Quality Assurance Surveillance Plan. Evaluation will follow Low Price Technically Acceptable procedures under FAR 15.101-2, where only technically acceptable offers will be considered, with award going to the lowest-priced submitter
W6QM Micc-Carlisle Barracks

POSTED

about 22 hours ago

DEADLINE

in 10 days

AI Contract Overview

Show more

The contract requires the implementation and ongoing maintenance of CMMC Level 2 cybersecurity controls for systems that handle Covered Defense Information, ensuring full alignment with the technical safeguards outlined in NIST SP 800-171 and the contractual requirements of DFARS 252.204-7012. This effort is focused on establishing a robust, auditable security posture that meets Department of Defense standards for protecting sensitive unclassified information within the supply chain, with all activities centered around a designated place of performance in New Cumberland, Pennsylvania, under a subcontract structure. The contract falls under NAICS code 541512, indicating it pertains to computer systems design and related services, and is managed by the ASC Commodities Division within the Department of Defense. The solicitation was posted on July 16, 2026, with responses due by July 24, 2026, allowing contractors a limited window to submit proposals. While no set-aside classification is specified, the work is expected to involve a comprehensive assessment of existing systems, documentation of security policies and procedures, implementation of technical and administrative controls, and continuous monitoring to maintain compliance. Successful performance will require proven expertise in CMMC Level 2 frameworks, experience with DoD contract compliance, and the ability to sustain controls through periodic audits and evolving threat landscapes.

General Info

Implement and maintain CMMC Level 2 controls for Covered Defense Information at New Cumberland, PA, per NIST SP 800-171 and DFARS 252.204-7012.

Agency

Department Of Defense → ASC COMMODITIES DIVISIONView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

NEW CUMBERLAND, PA, 17070-5002, USA

Set-Aside

NONE

Documents

This scope was carved out of SPE4A6-26-T-07HA.

The full solicitation package (1 document), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

CABLE ASSEMBLY, SPEC

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

PhaseClosed
Posted

subcontract

Response Deadline

Deadline has passed

Submission Closed

Find active opportunities like this

Start your free trial to discover similar active contracts, track opportunities, and build proposals with AI assistance.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → ASC COMMODITIES DIVISION
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → ASC COMMODITIES DIVISION
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Implementation and maintenance of CMMC Level 2 cybersecurity controls for systems handling Covered Defense Information, aligned with NIST SP 800-171 and DFARS 252.204-7012.

More opportunities from Department Of Defense → ASC COMMODITIES DIVISION

Same awarding agency