Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 5 at 2:00 PM EDT

Register Free →

Cybersecurity Compliance Support (NIST SP 800-171)

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract supports a prime contractor in achieving cybersecurity compliance by implementing the controls outlined in NIST Special Publication 800-171 and meeting the requirements of DFARS 252.204-7012 for the safeguarding of covered defense information. The scope of work involves providing expert assistance to ensure that systems, processes, and documentation align with federal cybersecurity standards, particularly as they relate to protecting sensitive defense data across the supply chain. This support is critical for maintaining eligibility to handle controlled unclassified information in a defense environment and may include gap analysis, policy development, training, audit preparation, and ongoing monitoring of compliance posture. The contract is classified as a subcontract under the NAICS code 541512 for custom computer programming services and is associated with the Department of Defense through the Aviation Supply Chain organization. Performance is required at a designated location in Tracy, California with a zip code of 95304-5000. The solicitation was posted on July 21, 2026, with a response deadline of July 29, 2026. While no set-aside designation is specified, the subcontractor must possess the technical capability to deliver immediate and sustained compliance support in alignment with current Department of Defense cybersecurity mandates, ensuring uninterrupted operations for the prime contractor under stringent federal security conditions.

General Info

Supports NIST 800-171 and DFARS 252.204-7012 compliance for defense cyber security in Tracy, CA.

Agency

Department Of Defense → AVIATION SUPPLY CHAINView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

TRACY, CA, 95304-5000, US

Set-Aside

NONE

Documents

(0)

No documents available

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → AVIATION SUPPLY CHAIN
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → AVIATION SUPPLY CHAIN
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Support prime contractor in implementing NIST SP 800-171 controls and meeting DFARS 252.204-7012 requirements for safeguarding covered defense information.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
SLED
Azure Consulting IDIQThe Port of Seattle is preparing to engage a qualified cloud services partner through an Indefinite Delivery/Indefinite Quantity (IDIQ) contract to support the modernization and optimization of its Microsoft Azure and Hybrid cloud environment. The contractor will be tasked with validating and enhancing the existing Azure architecture, guiding the implementation of new services, and strengthening the organization’s security posture, system resiliency, and operational efficiency. Work will focus on ensuring all cloud designs and deployments align with the Port’s enterprise standards, operational demands, and long-term scalability goals, with an emphasis on best practices in cloud governance and architecture. The contract is classified under NAICS code 541512 for Computer Systems Design Services and is managed by the ICT Enterprise Infrastructure Services division under the Port of Seattle. Primary point of contact is Carol Hassard, with Jim Dawson serving as the Project Manager; inquiries can be directed via their provided email addresses and phone numbers. The solicitation is forecasted for release in July 2026, with no set-aside designation specified, and will be executed under a single contract vehicle to allow for flexible, task-order-based engagements as needs arise. The place of performance and administrative details are not yet defined, but work is expected to primarily support the Port’s internal infrastructure and cloud initiatives.
ICT Enterprise Infrastructure Services

POSTED

about 4 hours ago

DEADLINE

N/A
View Details
NAICS: 541512
New
SLED
FIDS Software ReplacementThe Port of Seattle is forecasted to procure a new software solution for its Flight Information Display System, aiming to replace legacy systems with modern, reliable technology that enhances passenger information delivery at airport terminals. The solicitation, posted on July 24, 2026, falls under NAICS code 541512, indicating it is for custom computer programming services, and is managed by ICT Enterprise Infrastructure Services. The project will require a vendor to deliver a fully functional, scalable, and secure software platform capable of integrating with existing airport systems while supporting real-time flight updates, multilingual displays, accessibility features, and high availability under heavy operational loads. Performance is expected to occur at the Port of Seattle’s facilities, though specific location details are not provided. Primary point of contact for inquiries is Farlis Lewis, reachable via phone or email, with Krista Sadler listed as the Project Manager for operational coordination. While the contract has not yet been solicited and no set-aside provisions are indicated, interested vendors should prepare proposals that demonstrate technical expertise in aviation display systems, experience with airport infrastructure, and adherence to industry standards for reliability and uptime. The official solicitation details and submission instructions can be accessed through the provided UI link, and responses should be tailored to meet the Port’s operational requirements for seamless integration, minimal downtime during transition, and long-term support capabilities.
ICT Enterprise Infrastructure Services

POSTED

about 4 hours ago

DEADLINE

N/A
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance and NIST SP 800-171 Assessment SupportThe contract requires support for achieving and maintaining NIST SP 800-171 compliance in alignment with DFARS requirements, encompassing comprehensive system assessments, detailed documentation of security controls, and robust cyber incident reporting procedures. The effort is geared toward ensuring that covered systems meet federal standards for protecting controlled unclassified information, with a focus on thorough evaluations of security posture, control implementation, and continuous compliance monitoring. All activities must adhere strictly to the framework established by NIST and the Department of Defense, with deliverables including validated assessment reports and timely incident notifications as mandated by regulation. This subcontract is issued under the NAICS code 541512 for computer systems design services by the Strategic Acquisition Program Directorate within the Department of Defense, and responses are due by July 28, 2026. The work will be performed in support of defense-related operations, though the specific location of performance is not outlined. The solicitation is part of a broader initiative to strengthen cybersecurity readiness across the defense industrial base, emphasizing accountability, documentation integrity, and rapid response to cyber threats. Contractors must demonstrate proven experience in NIST SP 800-171 assessments and DFARS compliance, and the selection process will prioritize technical capability and demonstrated success in similar government cybersecurity engagements.
STRATEGIC ACQ PROGRAM DIRECTORATE

POSTED

about 18 hours ago

DEADLINE

in 4 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance & Incident ReportingThis contract requires the implementation of NIST Special Publication 800-171 cybersecurity controls to protect covered defense information on nonfederal systems, ensuring alignment with federal standards for safeguarding sensitive data. The contractor must establish and maintain a comprehensive cybersecurity framework that meets all applicable requirements under NIST SP 800-171, including access control, audit and accountability, configuration management, and incident response measures. Compliance must be demonstrated through documented policies, procedures, and technical safeguards validated to the standards outlined in the publication. In addition to implementing the controls, the contractor is obligated to report any cyber incidents involving covered defense information within 72 hours of discovery, providing full detail of the nature, scope, and impact of the incident to the appropriate government entities. The contract is structured as a small business set-aside under SBA guidelines, specifically reserved for total small businesses, and falls under the NAICS code 541512 for computer systems design services. The solicitation is issued by the Department of Defense’s Strategic Acquisition Program Directorate, with a response deadline of July 28, 2026, and is intended for subcontracting purposes under a broader defense acquisition effort.
STRATEGIC ACQ PROGRAM DIRECTORATE

POSTED

about 18 hours ago

DEADLINE

in 4 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity and NIST SP 800-171 Compliance SupportThe contract requires full compliance with DFARS 252.204-7012 and NIST SP 800-171 to ensure the proper safeguarding of controlled unclassified information across all systems and processes involved in the performance of work. This obligation extends to implementing the full spectrum of security controls outlined in NIST SP 800-171, including access control, audit, configuration management, identification and authentication, incident response, maintenance, media protection, personnel security, physical protection, risk assessment, system and communications protection, and system and information integrity. The subcontractor must demonstrate a formal, documented cybersecurity program aligned with these standards and be prepared to validate compliance through assessments or audits as required by the Department of Defense. The effort is classified as a subcontract under the NAICS code 541512 for computer systems design services and is managed by the Strategic Acquisition Program Directorate within the Department of Defense. The solicitation was posted on July 23, 2026, with a strict response deadline of July 28, 2026, indicating a limited window for qualified vendors to submit proposals. Performance location details are not specified, but the work likely involves supporting DoD systems handling CUI, requiring secure, controlled environments and potentially remote or onsite support. Compliance is non-negotiable and forms the core requirement for award and continued contract execution, with failure to meet these standards resulting in immediate disqualification or contract termination.
STRATEGIC ACQ PROGRAM DIRECTORATE

POSTED

about 18 hours ago

DEADLINE

in 4 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance (NIST SP 800-171)The contract requires the implementation and documentation of NIST SP 800-171 security controls to safeguard Controlled Unclassified Information (CUI) on contractor systems. This effort is critical to ensuring compliance with federal cybersecurity standards for handling sensitive but unclassified data, and all required controls must be fully activated, tested, and formally recorded to demonstrate adherence. The subcontract is under the Department of Defense, specifically managed by PUGET SOUND, with performance taking place in BREMERTON, WA, at the zip code 98314-6001. The solicitation is categorized under NAICS code 541512, which corresponds to Computer Systems Design and Related Services, indicating the technical nature of the work involved. Responses are due by July 28, 2026, and the opportunity was posted on July 23, 2026, providing a limited window for interested parties to submit proposals. The work is part of a broader initiative to enforce cybersecurity hygiene across the defense industrial base, and successful execution demands thorough understanding of NIST SP 800-171 requirements, including risk assessments, access controls, audit and accountability measures, system and communications protection, and continuous monitoring. Documentation must be precise and auditable, as non-compliance could jeopardize the contractor’s ability to handle CUI and may lead to termination or penalties. All activities must align with the Department of Defense’s expectations for protecting sensitive information on non-federal systems.
PUGET SOUND

POSTED

about 18 hours ago

DEADLINE

in 4 days
View Details
NAICS: 541512
New
DIBBS
Cybersecurity Compliance & NIST SP 800-171 ImplementationThe contract requires the implementation and ongoing maintenance of NIST SP 800-171 cybersecurity controls to safeguard controlled unclassified information within manufacturing and supply chain systems operated by the Department of Defense. This subcontract aims to ensure that all relevant technical, administrative, and physical security measures are properly configured and continuously monitored to meet federal standards for protecting sensitive data handled in operational environments. The work is tied to a NAICS code of 541512, indicating a focus on computer systems design and related services, with performance expected to align with DoD-specific requirements for securing information across industrial and logistical networks. The solicitation was posted on July 23, 2026, with a response deadline set for August 24, 2026, giving potential contractors approximately one month to submit proposals. The contract is managed under the ASC SUPPLIER OPER AE AND AF DIV, a division within the Department of Defense, and although no specific location is provided for performance, the nature of the work implies that compliance activities will be executed at facilities connected to the defense supply chain. The contractor must deliver a robust, auditable cybersecurity posture capable of withstanding inspection and maintaining continuous adherence to NIST 800-171 controls throughout the life of the agreement.
ASC SUPPLIER OPER AE AND AF DIV

POSTED

about 18 hours ago

DEADLINE

in about 1 month
View Details

More opportunities from Department Of Defense → AVIATION SUPPLY CHAIN

Same awarding agency

NAICS: 332510
New
DIBBS
STUD, TURNLOCK FASTENERThis contract is for the procurement of 2,624 units of a STUD, TURNLOCK FASTENER under NSN 5325-00-400-8683, issued as a total small business set-aside with NAICS code 332510 through solicitation SPE4A1-26-T-2457. The item is classified as a commercial item and must comply with stringent military standards for identification, packaging, and quality assurance. All units must be physically marked per MIL-STD-130N, externally labeled and barcoded using MIL-STD-129 with a 2D Data Matrix, and packaged in accordance with MIL-STD-2073-1E using clean and dry preservation method code 33, with no additional preservation, wrap, or cushioning materials required. Palletization must follow DLA’s packaging requirements, and delivery is to be made FOB origin to Tinker AFB, Oklahoma, with a 99-day delivery window from award and a firm delivery deadline of March 6, 2027. Inspection and acceptance occur at the destination under MIL-STD-1916 or comparable zero-based sampling, with critical attributes requiring zero defects and AQL 0.1. The contract explicitly prohibits intentional addition of mercury or mercury compounds except in specified exempted uses such as batteries, fluorescent lights, sensors, and weapon systems, with portable mercury-containing devices requiring a second containment boundary. All offers must be submitted electronically via DIBBS, and the contractor must comply with cybersecurity requirements under CMMC Level 2 and safeguarding covered defense information per DFARS 252.204-7012 and NIST SP 800-171. Contract clauses enforce compliance with employment verification, trafficking in persons prevention, sustainable product procurement, and hazardous material labeling, including mandatory disclosure of radioactive materials exceeding specified thresholds. The contractor is required to maintain a valid UEI and CAGE code, and the pricing is fixed at $1.00 per unit for a total contract value of $2,624. Accelerated payments to small business subcontractors are mandated, and all invoices must be submitted via WAWF.
Hardware Manufacturing

POSTED

about 18 hours ago

DEADLINE

in 4 days
View Details