Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, October 14 at 2:00 PM EDT

Register Free →

Cybersecurity Compliance for Subcontractors Handling CDI

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

This contract requires subcontractors to provide IT or engineering services that involve handling Covered Defense Information, with strict adherence to NIST SP 800-171 cybersecurity requirements. All parties must implement the full set of security controls outlined in the standard to protect sensitive defense data throughout the lifecycle of the services performed. Compliance is mandatory and subject to verification, with no deviations or exceptions permitted. Any security incident involving the compromise, loss, or unauthorized access to Covered Defense Information must be reported promptly according to established federal guidelines, ensuring timely response and mitigation. The work is performed under a subcontract issued by the Defense Logistics Agency within the Department of Defense, categorized under NAICS code 541512 for computer systems design and related services. The contract does not specify a geographic location for performance, nor does it include set-aside provisions, meaning it is open to all qualified subcontractors regardless of size or status. The solicitation was posted in July 2026, and full compliance with the cybersecurity framework is a condition of contract award and continued performance, with failure to meet requirements potentially resulting in termination or penalties.

General Info

Subcontractors must fully comply with NIST SP 800-171 to protect Covered Defense Information for DLA under NAICS 541512.

NAICS

541512 - Computer Systems Design Services

Place of Performance

Not specified

Set-Aside

NONE

Documents

This scope was carved out of SPE7M126F4569.

The full solicitation package (2 documents), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

DETECTOR, GAS

AI Contract Breakdown

Uniform Contract Format

No documents to break down

The breakdown needs solicitation documents. None were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → Defense Logistics Agency
ContactsNo contacts available
OfficeN/A
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Provide IT or engineering services involving handling of Covered Defense Information (CDI), requiring full NIST SP 800-171 compliance and incident reporting.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
Federal
Request for Information Cyber Support Services
Solicitation # NSWCDD_CYBER_SUPPORT_SERVICES
The Naval Surface Warfare Center Dahlgren Division (NSWCDD) Integrated Engagement Systems (E) Department is issuing a Request for Information (RFI) for comprehensive Cyber Support Services. The government is seeking industry feedback to assist in planning its acquisition strategy, specifically regarding the conversion of a draft Statement of Work into a hybrid Firm-Fixed-Price (FFP) and Cost-Plus-Fixed-Fee (CPFF) contract structure to comply with Executive Order 14402. The procurement is planned for execution via the SeaPort-NxG Multiple Award Contract vehicle under NAICS code 541512. Responses are due by November 16, 2026, and should include company identification, business size status, and feedback on risk mitigation, CLIN structuring, and performance metrics. The scope of work involves cybersecurity system engineering, risk management, Assessment and Authorization (A&A), continuous monitoring, and network engineering for tactical systems, weapon systems, and RDT&E environments. Technical requirements emphasize the implementation of the DoD Zero Trust Strategy, Continuous Threat Coverage, and the Cybersecurity Risk Management Construct framework. The estimated period of performance includes a base year and four option years, with potential travel to various domestic and international locations. Personnel must meet specific Department of Defense Cyber Workforce Framework qualifications and adhere to strict security clearance and non-disclosure requirements. Material deliveries and invoicing will be managed through the Wide Area Workflow system using DD Form 250.
Nswc Dahlgren

POSTED

about 16 hours ago

DEADLINE

in about 1 month
View Details
NAICS: 541512
New
Federal
DE01--ECO Enterprise Service Desk (ESD) Consolidated Effort - RFI (VA-27-00011677)
Solicitation # 36C10B27Q0035
The Department of Veterans Affairs Office of Information and Technology is issuing a Request for Information to conduct market research for a future acquisition strategy regarding its Enterprise Service Desk Tier 0/1 support and associated Contact Center Infrastructure. The agency aims to transition from its current Multi-Vendor Service Provider model, which separates agent services and infrastructure management, toward an integrated service delivery model. This strategic shift focuses on moving away from labor-centric operations toward a model centered on demand elimination, a unified channel-agnostic customer experience, and outcome-based accountability. The VA specifically seeks to leverage AI, conversational automation, and predictive capabilities to reduce the volume of human-assisted contacts for its approximately 600,000 end users. A primary focus of this research is the implementation of outcome-based, automation-linked, or gainshare pricing models. The VA is seeking industry input on how to ensure the integrity of billing classifications to prevent contractors from gaming the system, including whether an independent oversight function is necessary for validating outcomes and SLA compliance. Additionally, the agency is evaluating whether to retain its current NICE CXOne platform and Medallia QA tooling or transition to alternatives like Genesys. Responses must address technical integration with ServiceNow, FedRAMP and ATO security authorizations, and Section 508 accessibility compliance. This RFI is for planning purposes only, does not commit the government to a specific acquisition approach, and requires a response by October 21, 2026.
Technology Acquisition Center Nj (36C10B)

POSTED

about 16 hours ago

DEADLINE

in 13 days
View Details

More opportunities from Department Of Defense → Defense Logistics Agency

Same awarding agency

Ready to Pursue This Opportunity?

Get AI-powered intelligence on this solicitation and the ones like it

Every page of the solicitation package shredded into a compliance breakdown

AI-powered matching based on your capabilities and past performance

Competitor and incumbent history on the requirement

Automated alerts on amendments, Q&A deadlines, and award

Miguel
Hillary
Keith Deutsch
Christine

Join 750+ contractors already using CLEATUS