Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 5 at 2:00 PM EDT

Register Free →

Cybersecurity Compliance for CUI Protection (NIST SP 800-171)

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract requires the implementation and ongoing maintenance of NIST SP 800-171 security controls to safeguard Controlled Unclassified Information in accordance with DFARS 252.204-7012 requirements. This subcontract is specifically focused on ensuring that all applicable cybersecurity measures are properly deployed, monitored, and updated to meet Department of Defense standards for protecting sensitive but unclassified data. The work is performed under the authority of the Defense Logistics Agency, a component of the Department of Defense, and aligns with the NAICS code 541512 for computer systems design services. The contract mandates continuous compliance with the NIST framework, including regular assessments, documentation of security posture, and prompt remediation of identified vulnerabilities. While the place of performance and point of contact details are not specified, the obligation extends to all systems and processes handling Controlled Unclassified Information, regardless of location. The subcontract is positioned as part of a broader defense contracting effort, requiring strict adherence to federal cybersecurity protocols and active maintenance of compliance throughout the contract lifecycle to avoid penalties or termination.

General Info

Implement and maintain NIST SP 800-171 controls for CUI per DFARS 252.204-7012 under DLA authority.

Agency

Department Of Defense → Defense Logistics AgencyView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

Not specified

Set-Aside

NONE

Documents

(0)

No documents available

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → Defense Logistics Agency
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → Defense Logistics Agency
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Implementation and maintenance of NIST SP 800-171 controls to protect Controlled Unclassified Information and meet DFARS 252.204-7012 requirements.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
SLED
Virtualization Consulting IDIQThe Port of Seattle is seeking a qualified technical services partner to conduct a detailed evaluation of its existing virtualization platform, focusing on performance, security, architecture integrity, and operational reliability. The assessment will examine current configurations to identify vulnerabilities, inefficiencies, and areas for improvement, with the goal of delivering a strategic, prioritized roadmap that aligns with the organization’s business goals, compliance requirements, security standards, and resilience objectives. This engagement is designed to validate the platform’s ability to support critical operations and to recommend actionable enhancements that ensure long-term stability and adaptability. The contract is issued under the Virtualization Consulting IDIQ framework, with the NAICS code 541512 indicating it pertains to computer systems design and related services. The solicitation was posted on July 25, 2026, and is part of the ICT Enterprise Infrastructure Services division. Primary point of contact is Carol Hassard, reachable via email and phone, with Jim Dawson serving as the project manager. The work will be performed at the Port of Seattle’s facilities, though specific location details are not provided. Interested vendors are directed to the official solicitation portal for further information and potential next steps in the procurement process.
ICT Enterprise Infrastructure Services

POSTED

about 3 hours ago

DEADLINE

N/A
View Details
NAICS: 541512
New
SLED
Mount Rogers Community Services is seeking proposals from qualified provides of financial software services.Mount Rogers Community Services Board is seeking qualified vendors to provide a comprehensive financial information system designed to support its operational and financial management needs. The system must include core functionalities such as general ledger, payroll, accounts payable, purchasing, petty cash, fixed assets, budgeting, credit card management, donation tracking, grant administration, and robust reporting capabilities. In addition to the software, the vendor is required to deliver full installation, testing, training, and ongoing support services to ensure seamless adoption and effective use across the organization. The solicitation is open to providers capable of delivering an integrated solution that meets the agency’s requirements for accuracy, scalability, and compliance with public sector financial standards. Proposals must be submitted by August 10, 2026, at 9:00 PM Eastern Time, and all responses should be directed through the official vendor portal. The contract will be awarded to a vendor able to demonstrate proven experience, technical competence, and a clear plan for successful implementation in a public service environment. All work under this contract is expected to be performed at or in support of the agency’s location in Wytheville, Virginia. The point of contact for questions and submissions is Jessica Money, who can be reached via email at jessica.money@mountrogers.org or by phone at 304-557-9917. The RFP is issued under solicitation number RFP-125015, posted on July 24, 2026, and is available for review through the provided online portal. There is no set-aside classification designated for this procurement, and vendors of all sizes are encouraged to respond if they meet the specified technical and service delivery criteria. The selected vendor will be responsible for ensuring the system aligns with the agency’s current and future operational demands while maintaining data integrity and security across all financial functions.
Mount Rogers Community Services Board

POSTED

1 day ago

DEADLINE

in 16 days
View Details
NAICS: 541512
New
SLED
Landfill SCADA ProjectThe City of Denton is soliciting proposals for the installation and programming of a new SCADA system to monitor and control its landfill’s leachate collection system, under solicitation number 9013 with an estimated budget of $500,000. Proposals must be submitted as sealed hard copies by 2:00 PM CST on August 26, 2026, to the City of Denton Materials Management office, with a required original bid bond bearing a raised seal delivered by the deadline—email submissions are strictly prohibited. An electronic copy of the proposal must be uploaded via the official ionwave.net portal, accompanied by a USB drive containing all documents in PDF or Excel format, including the mandatory Unit Price Proposal form, past experience records, key personnel resumes, safety documentation, and a detailed schedule for project completion. A mandatory pre-proposal meeting and site walkthrough will be held in person on August 4, 2026, at the Solid Waste Administration building, and the public bid opening will occur on August 26, 2026, at the Development Services Building, with a virtual option available. The evaluation process is weighted toward total cost of ownership at 50%, followed by the quality and achievability of the proposed schedule at 25%, with the remaining 25% distributed among key personnel qualifications, past performance reputation, and safety record. The award will be based on best value through trade-off analysis, not lowest price technically acceptable. Offerors must comply with Texas state laws including prevailing wage requirements under Davis-Bacon, submission of performance and payment bonds per Texas Government Code §2253.021, and obtaining sales tax exemptions via Comptroller rulings #95-0.07 and #95-0.09. Contractors must certify they do not boycott Israel, provide lien releases from all subcontractors prior to final payment, and disclose any OSHA violations or safety incidents from the past five years. Key personnel must be identified with resumes demonstrating relevant experience and time allocation commitments. All documentation must be formatted on letter-size paper, not exceed 200 pages in hard copy, and adhere strictly to the required form templates without modification. The work will be performed at the Denton landfill site, and final acceptance is contingent upon the City’s inspection and approval of system functionality, compliance with specifications, and submission of all required compliance documentation.
City Of Denton

POSTED

1 day ago

DEADLINE

in about 1 month
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance and CMMC Level 2 AssessmentThis contract is for a third-party cybersecurity assessment and compliance management service focused on handling Covered Defense Information in alignment with the Cybersecurity Maturity Model Certification Level 2 requirements. The subcontractor will be responsible for preparing the prime contractor for an audit by a Certified Third-Party Assessment Organization, ensuring all NIST SP 800-171 controls are properly implemented, documented, and maintained. The scope includes ongoing compliance management, gap analysis, policy development, employee training, and remediation efforts to meet CMMC Level 2 standards, with the ultimate goal of achieving successful certification through the official assessment process. The contract is issued under the Department of Defense’s LAND SUPPLIER OPERATIONS SMSG and falls under NAICS code 541512 for computer systems design services. It is structured as a subcontract with a response deadline of August 23, 2026, and is aimed at organizations with proven expertise in defense cybersecurity frameworks. The place of performance and specific location details are not provided, indicating the work may be performed remotely or at any location where Covered Defense Information is processed or stored. Participation requires a clear understanding of DoD contractual obligations and demonstrated experience with CMMC readiness activities, particularly in supporting entities that handle sensitive federal defense data.
LAND SUPPLIER OPERATIONS SMSG

POSTED

1 day ago

DEADLINE

in 29 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance Support (CMMC Level 2)The contract requires comprehensive support for achieving CMMC Level 2 compliance, focusing on conducting a self-assessment, developing and implementing cybersecurity policies, and hardening information systems to meet the requirements of NIST SP 800-171 and DFARS 252.204-7012. This encompasses identifying gaps in current security practices, establishing documented procedures aligned with federal standards, configuring systems to mitigate vulnerabilities, and ensuring ongoing adherence to the framework necessary for handling controlled unclassified information. The effort is designed to enable the contractor to operate securely within the Department of Defense supply chain by fulfilling the mandated cybersecurity controls. This is a total small business set-aside subcontract under NAICS code 541512, intended exclusively for small businesses qualifying under SBA guidelines. The solicitation was posted on July 24, 2026, with responses due by August 1, 2026, and the performance will be carried out under the auspices of the Department of Defense, specifically linked to the Construction & Equipment Manu & Con organization. The contract is accessible through the DIBBS platform, and all work must align with federal cybersecurity obligations without the use of third-party certifications, relying instead on internal implementation and documentation to substantiate compliance.
CONSTRUCTION & EQUIPMENT MANU & CON

POSTED

1 day ago

DEADLINE

in 7 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance and CUI Safeguarding SupportThis contract entails the implementation and assessment of cybersecurity controls aligned with NIST Special Publication 800-171 and the Defense Federal Acquisition Regulation Supplement clause 252.204-7012 to ensure the protection of covered defense information throughout contract performance. The work requires a thorough alignment of organizational policies, technical safeguards, and procedural controls to meet federal standards for safeguarding controlled unclassified information. All activities must be conducted with strict adherence to the requirements designed to prevent unauthorized access, disclosure, or compromise of sensitive defense data during execution of subcontracted services. The contract is classified as a subcontract under the North American Industry Classification System code 541512, indicating it involves computer systems design and related services. It is managed by the Defense Logistics Agency within the Department of Defense and is intended to support operational cybersecurity resilience across the defense supply chain. The place of performance and specific location details are not enumerated, but the work is expected to be carried out in alignment with federal cybersecurity mandates regardless of geographic location. Compliance will be continuously monitored and assessed to maintain the integrity and confidentiality of covered defense information.
Defense Logistics Agency

POSTED

1 day ago

DEADLINE

N/A
View Details

More opportunities from Department Of Defense → Defense Logistics Agency

Same awarding agency

NAICS: 541611
New
DIBBS
ITAR Compliance and Technical Data ManagementThe contract requires comprehensive management of ITAR-controlled technical data, ensuring strict adherence to U.S. export control regulations and seamless coordination with the Directorate of Defense Trade Controls and the Joint Certification Program. The contractor will be responsible for implementing and maintaining compliance protocols to safeguard sensitive defense-related information, handling all aspects of documentation, access controls, and reporting procedures mandated by ITAR. This includes establishing internal processes to monitor, classify, and transfer technical data while ensuring all personnel and partners follow export compliance standards and engage effectively with DDTC and JCP requirements. As a subcontract under the Department of Defense through the Defense Logistics Agency, the engagement demands a high level of operational precision and regulatory expertise, particularly in navigating the complex landscape of international defense trade controls. The work is governed by NAICS code 541611, indicating a focus on management consulting services related to administrative and general management. The response deadline is August 3, 2026, and performance may occur at any location as no specific place of performance is defined, allowing flexibility for remote or distributed operations as long as compliance obligations are fully met without compromise.
Administrative Management and General Management Consulting Services

POSTED

1 day ago

DEADLINE

in 9 days
View Details
NAICS: 331110
New
DIBBS
Qualified Supplier of Bipod Raw Materials and ComponentsThe contract seeks qualified suppliers to provide defense-qualified raw materials and subcomponents, including steel forgings, pins, and springs, exclusively from sources listed on the Qualified Products List or Qualified Manufacturer List. These materials must meet stringent military standards for use in defense applications, ensuring reliability, durability, and compliance with defense specifications. The opportunity is structured as a subcontract under NAICS code 331110, indicating primary focus on iron and steel mills and ferroalloy manufacturing, and is managed by the Defense Logistics Agency under the Department of Defense. Interested parties must respond by the deadline of August 3, 2026, with proposals demonstrating proven ability to supply certified materials from authorized sources. The contract does not specify a set-aside category, meaning it is open to all eligible contractors regardless of business size or demographic designation. Performance location details are not provided, implying nationwide or global delivery capability subject to defense transport and security requirements. All submissions must align with the Defense Logistics Agency’s procurement guidelines, and interested suppliers should reference the official DIBBS portal link for detailed solicitation terms and submission instructions.
Iron and Steel Mills and Ferroalloy Manufacturing

POSTED

1 day ago

DEADLINE

in 9 days
View Details