Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 19 at 2:00 PM EDT

Register Free →

Endpoint Security Compliance Integration

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract seeks to integrate and configure HCL BigFix to enforce industry-standard security benchmarks, including CIS Benchmarks and DISA STIGs, across all IRS-endpoint systems to ensure compliance with federal cybersecurity requirements. The primary objective is to automate the enforcement of security policies, reducing manual intervention and improving the consistency and accuracy of posture assessments on endpoints. This effort directly supports the Continuous Diagnostic and Mitigation (CDM) program by enabling real-time visibility, remediation, and reporting of security gaps in alignment with government-wide defense frameworks. Implementation will occur at the designated place of performance in Lanham, Maryland, with work falling under the NAICS code 541512 for computer systems design services. The contract is structured as a subcontract under the Department of the Treasury’s It Strategy And Modernization office, indicating it supports a broader federal modernization and security initiative. Automation of compliance controls will ensure ongoing adherence to mandated security standards, enhance the IRS’s cybersecurity resilience, and support federal audit and reporting obligations through continuous monitoring and policy enforcement capabilities provided by HCL BigFix.

General Info

Integrate HCL BigFix to automate CIS and DISA STIG compliance across IRS endpoints for federal cybersecurity alignment.

Agency

Department Of The Treasury → It Strategy And ModernizationView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

Lanham, MD, 20706, USA

Set-Aside

NONE

Documents

This scope was carved out of RFQ205AE9-25-Q-00148.

The full solicitation package (1 document), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

HCL BigFix Software Maintenance Support

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of The Treasury → It Strategy And Modernization
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of The Treasury → It Strategy And Modernization
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Integrate and configure HCL BigFix to enforce CIS Benchmarks, DISA STIGs, and support CDM program requirements for automated security policy enforcement on IRS endpoints.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
SLED
Juvenile Jail Compliance Platform
Solicitation # 7cd3149e-6d7b-4eaf-885f-6a49ecd93278
The New Hampshire Department of Health and Human Services is soliciting a Not To Exceed contract for a Juvenile Jail Compliance Platform to track statewide compliance with federal juvenile justice laws. The selected vendor will provide a solution hosting approximately 300 agency accounts, enabling the entry of facility information, document uploads, and detailed incident data for juveniles held in secure adult facilities. Key technical requirements include role-based access control for agencies and monitors, automated compliance alerts, and secure storage for certification and inspection records. The system must adhere to WCAG 2.1 Level AA standards, NIST 800-53 Rev 5 security controls, and utilize FIPS 140-2 or 140-3 validated encryption. Data must reside and be backed up exclusively within the continental United States. The initial contract term runs through September 30, 2028, with a potential four-year extension at the state's option. Award selection is based on a weighted scoring system focusing on the proposed solution, price, vendor experience, staffing qualifications, and FedRAMP/GovRAMP authorization status, requiring a minimum technical score of 400 points to proceed to price evaluation. The vendor is responsible for the full suite of test planning, including unit, integration, and user acceptance testing, and must provide onboarding, training, and ongoing maintenance. Compliance with various federal nondiscrimination laws, including the Civil Rights Act of 1964 and the Americans with Disabilities Act, is mandatory. Proposals are due by August 21, 2026.
Dhhs-Department Of Health & Human Services

POSTED

about 8 hours ago

DEADLINE

in 9 days
View Details
NAICS: 541512
New
Federal
ATEC HQ 005 - Expeditionary Secure Cross-Domain Modernization
Solicitation # ATEC_RIW26_005
The Army Contracting Command - Aberdeen Proving Ground (ACC-APG), on behalf of the Army Test and Evaluation Command (ATEC), is issuing a Call for Solutions (CfS) under solicitation ATEC_RIW26_005 for Expeditionary Secure Cross-Domain Modernization. This effort, conducted under the authority of DFARS 212.70 and the Army Open Solicitation W9128Z-25-S-A002, seeks innovative solutions to create a secure data-sharing environment for assessing system interoperability and performance within joint and coalition battlespaces. Key technical requirements include a drone-based optical observation system for capturing munition impacts in restricted zones and the secure transfer of LVC entities, instrumentation, and sensor feeds across all multi-domain operations environments. The acquisition process follows a three-phase structure: a Phase 1 Solution Brief, a potential Phase 2 Pitch, and a Phase 3 Solution Proposal. The deadline for Phase 1 submissions is August 19, 2026, at 1500 EDT. Evaluations are based on pass/fail gates regarding merit, government need, and funding, followed by weighted assessments of technical merit, schedule, and viability. Preference is given to innovative, reference-verifiable commercial capabilities. Eligible respondents must be registered in SAM.gov with an active UEI and CAGE code, provide an OCI Mitigation Plan, and submit an estimated out-the-door total cost. Performance will take place at Aberdeen Proving Ground, Maryland, under NAICS code 541512.
W6QK Acc-Apg

POSTED

about 10 hours ago

DEADLINE

in 7 days
View Details

More opportunities from Department Of The Treasury → It Strategy And Modernization

Same awarding agency