Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, August 19 at 2:00 PM EDT

Register Free →

Enterprise Privacy Policy Engine (EPPE) Recompete

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The Enterprise Privacy Policy Engine (EPPE) is a critical system managed by the Data and Information Dissemination Group within the Centers for Medicare and Medicaid Services Office of Enterprise Data and Analytics, tasked with tracking all disclosures of CMS data. A contractor is required to comprehensively manage all facets of EPPE’s lifecycle, including research, development, ongoing maintenance, and support. This encompasses developing new features, providing DevOps and incident response, conducting user research, maintaining documentation, operating a helpdesk, supporting infrastructure, and transitioning the system to a new cloud environment, as well as any additional responsibilities determined necessary by CMS to ensure the system’s continued functionality and compliance. The procurement is designated as a Total Small Business Set-Aside under NAICS code 541512, emphasizing participation by small businesses. The contract is forecasted under the title Enterprise Privacy Policy Engine (EPPE) Recompete, with key points of contact being Rebecca Dorman as the Program Point of Contact and Walker Hare as the Contracting Officer, both affiliated with CMS. The work will be performed at an unspecified location, and while no solicitation number or posted date is available, the opportunity is intended for small business entities capable of delivering end-to-end technical and operational support for a high-impact privacy compliance system serving a major federal health agency.

General Info

Small business to manage EPPE system lifecycle for CMS, including development, cloud migration, and privacy compliance support.

Agency

Centers for Medicare and Medicaid Services → Centers For Medicare And Medicaid ServicesView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

US

Set-Aside

SBA

Documents

(0)

No documents available

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

forecast

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyCenters for Medicare and Medicaid Services → Centers For Medicare And Medicaid Services
Contacts2 people available
OfficeN/A
Organization / Agency
Centers for Medicare and Medicaid Services → Centers For Medicare And Medicaid Services
View Agency Profile
Office AddressN/A
Contacts
Rebecca Dorman
Walker HareContracting Officer

Full Description

Show more
The Enterprise Privacy Policy Engine (EPPE) is the system that tracks all disclosures of CMS data. The Data and Information Dissemination Group (DIDG) in the CMS Office of Enterprise Data and Analytics (OEDA) is responsible for managing the EPPE system. DIDG requires a Contractor to provide research, development, communications, and ongoing support of EPPE. The Contractor will be responsible for all aspects of EPPE development and ongoing maintenance of the system. This includes the development of new features, DevOps and incident support, conducting user research and maintaining user documentation, operating a helpdesk, infrastructure support, transitioning to a new cloud environment, and any other components that CMS may deem necessary in support of these efforts.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
Federal
FFRDC Mobile Lab (MITRE)The U.S. Department of Energy’s Office of Cybersecurity, Energy Security and Emergency Response is forecasting a future contract opportunity for a Mobile Lab under the FFRDC framework managed by MITRE. This effort is categorized under NAICS code 541512, which pertains to Computer Systems Design and Related Services, and is intended to support technical capabilities in cybersecurity, energy security, and emergency response missions. The place of performance is designated as Virginia, indicating that most operational activities will be conducted within that state. The acquisition is not currently set aside for any specific small business category, and the type of set aside is listed as “other,” leaving open the possibility for a range of contractor participation models. Point of contact for small business engagement includes Jennifer Passaro and Walter Yamben, both serving as Small Business Program Managers at the Department of Energy, and they can be reached via their official DOE email addresses. The solicitation is still in the forecast stage as of August 2026, meaning no formal request for proposals has been issued yet, and interested parties should monitor official DOE procurement channels for subsequent updates or formal solicitations. This forecast signals an upcoming need for advanced mobile laboratory services to enhance the Department’s operational responsiveness and technical mission support.
Office of Cybersecurity, Energy Security and Emergency Response

POSTED

about 2 hours ago

DEADLINE

N/A
View Details
NAICS: 541512
New
Federal
OREM Cybersecurity Support ServicesThe Office of Environmental Management within the Department of Energy is forecasting a cybersecurity support services contract under the NAICS code 541512, exclusively set aside for Service-Disabled Veteran-Owned Small Businesses. The opportunity is intended to provide comprehensive cybersecurity services, likely focused on protecting critical infrastructure and systems under the agency’s purview, with the primary place of performance located in Tennessee. Although the solicitation number and specific contract value are not yet available, the forecast indicates an upcoming procurement with a posting date of August 10, 2026, suggesting the formal solicitation will be released in the near future. Potential vendors should prepare to demonstrate specialized expertise in cybersecurity support aligned with federal standards and experience working in highly regulated environments. Small Business Program Manager Kenneth Johnson is the designated point of contact for inquiries related to this opportunity, reachable via kenneth.johnson@emcbc.doe.gov. Interested SDVOSBs are encouraged to monitor official channels for the official solicitation, as this forecast serves as an early indicator of the department’s intent to procure cybersecurity services for its operations. While the exact scope of work, performance timelines, and deliverables are not disclosed, the emphasis on veteran-owned small business set-aside highlights a priority for contracting with qualified disadvantaged businesses possessing proven cybersecurity capabilities. Companies should ensure compliance with all federal small business certification requirements and be ready to respond quickly once the solicitation is published.
Office of Environmental Management

POSTED

about 2 hours ago

DEADLINE

N/A
View Details