Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 5 at 2:00 PM EDT

Register Free →

Cybersecurity Compliance for Covered Defense Information

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract requires full implementation and ongoing maintenance of NIST SP 800-171 security safeguards to protect contract-related Controlled Unclassified Information handled by the contractor’s systems. Compliance with all 110 control requirements outlined in the standard is mandatory, ensuring that sensitive data is secured against unauthorized access, disclosure, or modification. The contractor must conduct an annual self-assessment to verify adherence to these safeguards and submit a completed assessment report as part of ongoing compliance obligations. Any cyber incident compromising the confidentiality, integrity, or availability of covered defense information must be reported to the appropriate government authority within 72 hours of discovery, including details on the nature, scope, and impact of the incident. The work is designated as a subcontract under NAICS code 541512 and is being managed by the Active Devices Division of the Department of Defense, with performance expected to occur in New Cumberland, Pennsylvania, ZIP 17070-5002. The solicitation was posted on July 29, 2026, with responses due by August 10, 2026, indicating a tight turnaround for potential bidders to demonstrate technical readiness, resource allocation, and established cybersecurity processes. While no set-aside classification is specified, the requirement is clearly targeted toward qualified defense subcontractors capable of handling sensitive government data under strict federal cybersecurity standards, with non-compliance potentially leading to termination or legal liability.

General Info

Implement NIST SP 800-171 safeguards, annual self-assessments, and 72-hour cyber incident reporting for protected defense data.

Agency

Department Of Defense → ACTIVE DEVICES DIVISIONView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

NEW CUMBERLAND, PA, 17070-5002, US

Set-Aside

NONE

Documents

(0)

No documents available

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → ACTIVE DEVICES DIVISION
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → ACTIVE DEVICES DIVISION
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Implement and maintain NIST SP 800-171 safeguards for systems handling contract-related CDI, including annual assessment and cyber incident reporting within 72 hours.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
SLED
FIDS Software ReplacementThe Port of Seattle through its ICT Enterprise Infrastructure Services is forecasting the replacement of its existing Flight Information Display System software to modernize airport operations and enhance passenger experience. This initiative targets the development and deployment of new software that will replace legacy systems, ensuring real-time flight data accuracy, improved reliability, and seamless integration with current airport infrastructure. The project falls under NAICS code 541512, indicating it involves custom computer programming services tailored to the specific operational needs of the airport environment, with the primary place of performance located at the Port of Seattle facilities. The primary point of contact for this opportunity is Farlis Lewis, reachable via email and phone, with Krista Sadler serving as the project manager for technical oversight. The solicitation is classified as a forecast, meaning no formal request for proposals has been issued yet, but interested vendors should prepare for an upcoming procurement process. The agency has not specified a set-aside type, suggesting the opportunity is open to all eligible contractors without preferential sizing or socioeconomic considerations. Although the exact timeline and requirements remain undeclared, stakeholders are encouraged to monitor the official portal link for future updates and formal solicitations.
ICT Enterprise Infrastructure Services

POSTED

1 day ago

DEADLINE

N/A
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance (CMMC/NIST) ImplementationThe contract requires support for achieving Cybersecurity Maturity Model Certification (CMMC) Level 2 compliance by implementing all necessary NIST Special Publication 800-171 controls to safeguard covered defense information in accordance with Defense Federal Acquisition Regulation Supplement (DFARS) requirements. The work involves conducting a self-assessment to identify gaps in current cybersecurity practices and executing a remediation plan to meet the specified control objectives, ensuring the contractor can authentically demonstrate compliance with federal standards for handling sensitive government data. This effort is part of a broader initiative to secure the defense supply chain against cyber threats and maintain eligibility for future DoD contract work. This is a subcontract under a HUBZone Set-Aside, designated for businesses located in and controlled from historically underutilized business zones, with the North American Industry Classification System code 541512 indicating information technology consulting services. The solicitation was posted on July 29, 2026, with a response deadline of August 12, 2026, and is managed by the ASC Commodities Division within the Department of Defense. Performance is expected to occur at an unspecified location, and the contract is accessible via the DIBBS portal for interested HUBZone-qualified subcontractors seeking to support defense cybersecurity compliance initiatives.
ASC COMMODITIES DIVISION

POSTED

1 day ago

DEADLINE

in 13 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance & CUI SafeguardingThe contract requires the implementation and thorough documentation of NIST Special Publication 800-171 controls to safeguard Controlled Unclassified Information (CUI) within a Department of Defense environment. This includes developing a System Security Plan (SSP) that accurately reflects the security posture, controls in place, and risk mitigation strategies aligned with NIST standards. The contractor must ensure all systems handling CUI are fully compliant with the required cybersecurity framework, addressing technical, administrative, and physical safeguards as outlined in the publication. Additionally, the contractor is responsible for establishing and maintaining procedures for timely cyber incident reporting in accordance with federal requirements, ensuring rapid response and transparency in the event of a breach or anomaly. The work is scoped as a subcontract under the MARITIME SUPPLY CHAIN ESOC BUYS with performance centered at FPO, zip 96632, and is classified under NAICS code 541512 for computer systems design services. The solicitation was posted on July 29, 2026, with responses due by August 10, 2026, indicating a limited window for proposal submission. Compliance with these requirements is essential for maintaining the integrity and confidentiality of CUI, and failure to meet the specified controls or reporting obligations may result in contract non-compliance or termination. All activities must be conducted in alignment with Department of Defense cybersecurity policies and procedures, with documentation maintained to support audits and assessments.
MARITIME SUPPLY CHAIN ESOC BUYS

POSTED

1 day ago

DEADLINE

in 11 days
View Details

More opportunities from Department Of Defense → ACTIVE DEVICES DIVISION

Same awarding agency

NAICS: 541620
New
DIBBS
Hazardous Materials Compliance and Labeling SupportThe contract requires the provision of hazard warning labels and compliance documentation for hazardous materials linked to circuit breakers or their packaging, ensuring adherence to OSHA’s Hazard Communication Standard and MIL-STD-129 specifications. All labeling and documentation must accurately reflect the chemical and physical hazards of the materials involved, maintaining regulatory compliance for both federal safety requirements and military shipping standards. The work is to be performed at New Cumberland, Pennsylvania, with a zip code of 17070-5002, and is classified under NAICS code 541620 for scientific research and development services. The solicitation was posted on July 29, 2026, with a firm response deadline of August 10, 2026, and is structured as a subcontract under the Department of Defense’s Active Devices Division. The scope of work involves precise alignment with federal and military compliance frameworks, meaning all labels must include standardized hazard symbols, signal words, precautionary statements, and supplier information as dictated by OSHA HCS, while packaging and documentation must conform to MIL-STD-129’s marking, labeling, and handling protocols for defense logistics. Non-compliance could result in rejection of materials, delays in delivery, or contractual penalties. The contract does not specify a set-aside type, implying it is open to all eligible contractors, and the point of contact details are not available, requiring potential respondents to engage directly through the DIBBS portal using the provided solicitation number SPE7M526T357U for further information and submissions.
Environmental Consulting Services

POSTED

1 day ago

DEADLINE

in 11 days
View Details