Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 16 at 2:00 PM EDT

Register Free →

Cybersecurity Engineering and ATO Sustainment

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

This subcontract, titled Cybersecurity Engineering and ATO Sustainment, supports prime contractors on Department of Veterans Affairs projects through the Technology Acquisition Center Nj. The scope of work focuses on cybersecurity engineering, vulnerability remediation, and the sustainment of Authority to Operate (ATO) certifications. Key technical requirements include executing continuous monitoring, ensuring RMF compliance, and performing vulnerability scanning in accordance with NIST guidance and VA security policies. The contractor is responsible for delivering critical security documentation, including vulnerability reports and a Software Bill of Materials (SBOM). Classified under NAICS code 541519, the contract ensures that all systems meet rigorous federal security standards to maintain operational authorization within the VA environment.

General Info

Cybersecurity engineering and ATO sustainment for VA projects ensuring NIST and RMF compliance.

Agency

Department Of Veterans Affairs → Technology Acquisition Center Nj (36C10B)View Agency

NAICS

541519 - Other Computer Related ServicesView NAICS

Place of Performance

NJ

Set-Aside

NONE

Documents

This scope was carved out of 36C10B26Q0625.

The full solicitation package (5 documents), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

DA01--VA-26-00071371 Memorials Integration Services and Innovation

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Veterans Affairs → Technology Acquisition Center Nj (36C10B)
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Veterans Affairs → Technology Acquisition Center Nj (36C10B)
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Performs cybersecurity engineering, vulnerability remediation, and ATO sustainment for prime contractors on Department of Veterans Affairs (VA) projects. Executes continuous monitoring, RMF compliance, and vulnerability scanning per NIST guidance and VA security policies. Provides a Software Bill of Materials (SBOM). Delivers ATO sustainment documentation, vulnerability reports, and the SBOM.

Similar Contracts

Same NAICS industry code

More opportunities from Department Of Veterans Affairs → Technology Acquisition Center Nj (36C10B)

Same awarding agency

NAICS: 541512
Federal
DA01--VA-26-00071371 Memorials Integration Services and Innovation
Solicitation # 36C10B26Q0625
The Memorials Integration Services and Innovation (MISI) project is a Department of Veterans Affairs initiative managed by the Technology Acquisition Center in Eatontown, New Jersey. The primary objective is to provide a Systems Team to deliver expertise and support for application systems, specifically focusing on implementing the VA-EISS system to replace legacy systems such as BOSS-E and MBMS. This effort aims to enhance burial and memorial benefit services across VA national cemeteries through modernization, automation, and the use of DevSecOps pipelines, cloud-based technologies, and GIS integrations. The requirement is currently in the planning phase, utilizing a Sources Sought and Request for Information (RFI) process to gather vendor capabilities regarding migration methodologies, agile development, and technical experience in the memorials space. The procurement is forecasted as a first quarter FY27 requirement and is intended to be a set-aside for Service-Disabled Veteran-Owned Small Businesses (SDVOSB) under NAICS code 541512. The proposed contract structure includes a six-month base period followed by two twelve-month option periods, with additional optional tasks for systems, agile development, and training teams. Key requirements include strict adherence to NIST and RMF security standards, the provision of a software bill of materials (SBOM), and the use of tamper-evident packaging for hardware deliveries. All operations must be performed within the United States, and the government intends to utilize a Firm Fixed Price (FFP) basis for future negotiated support efforts.
Computer Systems Design Services

POSTED

9 days ago

DEADLINE

N/A
View Details
NAICS: 541512
Federal
Post-Traumatic Stress Disorder - Specific UX, Design, Testing, and Content Development for Mobile Apps
Solicitation # 36C10B26Q0676
The Department of Veterans Affairs Technology Acquisition Center is soliciting a firm-fixed-price contract for specialized clinical expertise to support the development of mobile applications for Post-Traumatic Stress Disorder (PTSD). The scope of work includes trauma-informed mobile application testing, clinically informed user experience (UX) research, and evidence-based clinical content writing. A key requirement is the maintenance of a standing pool of at least 300 verified Veterans with PTSD to support qualitative studies and surveys. Work is structured in recurring two-week sprints, with a base period baseline of 25 sprints. The contract is a total small business set-aside under NAICS code 541512, with a total duration not to exceed five years, consisting of a 12-month base period and four subsequent 12-month option periods. Award will be granted to the lowest priced, technically acceptable proposal. Technical evaluation requires a rating of acceptable across seven separate elements, and any single unacceptable rating will disqualify the proposal. The contractor must designate a clinically qualified Project Manager and at least one additional clinical staff member as key personnel, as substantive clinical testing and therapeutic content assessment cannot be delegated to non-clinical staff. Deliverables include weekly activity reports, monthly progress reports, and a quality control plan due within 10 days of award. All content must adhere to VA/DoD clinical guidance and target a Flesch-Kincaid Grade Level of 6 or below. Additionally, the contractor must provide one year of identity theft insurance with 20,000 dollars in coverage and ensure all deliverables meet Section 508 compliance standards.
Computer Systems Design Services

POSTED

9 days ago

DEADLINE

in 1 day
View Details

Ready to Pursue This Opportunity?

Get AI-powered intelligence on this solicitation and the ones like it

Every page of the solicitation package shredded into a compliance breakdown

AI-powered matching based on your capabilities and past performance

Competitor and incumbent history on the requirement

Automated alerts on amendments, Q&A deadlines, and award

Miguel
Hillary
Keith Deutsch
Christine

Join 650+ contractors already using CLEATUS