Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 16 at 2:00 PM EDT

Register Free →

RFI - DCSA Personnel Security Alert Management (PSAM) Platform

Active
DCSAPSAMRFI2026001Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

General Info

Agency

Department Of Defense → Defense Ci And Security AgencyView Agency

NAICS

541512 - Computer Systems Design ServicesView NAICS

Place of Performance

64475, VA, USA

Set-Aside

NONE

Documents

(1)

DCSA-PSAM-RFI-2026-001: Personnel Security Alert Management Platform

DOCXrfi

AI Contract Breakdown

Uniform Contract Format

Sign up to view the full breakdown with detailed analysis of each section.

Timeline

PhaseSources Sought
Posted

Sources Sought

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → Defense Ci And Security Agency
Contacts1 person available
OfficeQUANTICO, VA, 22134, USA
Organization / Agency
Department Of Defense → Defense Ci And Security Agency
View Agency Profile
Office AddressQUANTICO, VA, 22134, USA
Contacts

Full Description

Show more

REQUEST FOR INFORMATION (RFI)


Personnel Security Alert Management (PSAM) Platform


Defense Counterintelligence and Security Agency (DCSA)


RFI Reference: DCSA-PSAM-RFI-2026-001


Response Instructions: 


  • Due Date: September 22, 2026 @ 1:00pm ET
  • Vendors shall fill out the attached questionnaire and submit it via email to
    • Lindsay Weindruch: lindsay.a.weindruch.civ@mail.mil

Disclaimer: This RFI is for informational and planning purposes only. It is not a Request for Proposal, does not commit the Government to any award, and responses are not offers the Government can accept to form a contract. The Government will not pay for information submitted. Do not include classified information in responses; proprietary information will be protected to the extent permitted by law.


1. Purpose


DCSA seeks information from Security Information Event Management (SIEM) and Security Operations Center (SOC) platform vendors on commercial capabilities that can support personnel-security operations through cybersecurity event correlation, alert triage, risk-based prioritization, and workflow automation.


DCSA is particularly interested in solutions that can identify, correlate, prioritize, and route cybersecurity alerts and incidents associated with members of the trusted workforce for appropriate personnel-security review.


2. Problem Statement


DCSA's Continuous Vetting (CV) program faces high daily detection volumes from many sources, much of it low-value noise.  Alerts which are drawn from dozens of criminal, financial, terrorism-screening, foreign-contact, foreign-travel, and public-record data sources are still worked largely first-in-first-out rather than by risk, so high-consequence alerts can wait behind routine, low-risk items and case queues have grown faster than staffing. While CV has made progress in detecting potential risk indicators far faster than legacy periodic-reinvestigation models, it is still triaging risk with case-management approaches built for a lower-volume era.


3. Desired Capability


DCSA seeks a solution that will incorporate the following capabilities:


  • Ingests and normalizes 40+ structured and unstructured data sources—including APIs, databases, PDFs, and open-source information—into a unified alert stream.
  • Correlates alerts to individual subjects using privacy-preserving tokenization, enabling cross-source analysis without unnecessary exposure of personal data.
  • Applies explainable AI/ML risk scoring aligned with federal adjudicative guidelines—such as financial considerations, criminal conduct, and foreign influence—rather than generic threat categories. Analyst-facing outputs must provide clear rationale (for example, LIME, SHAP, or an equivalent method).
  • Automates low-value alert handling through configurable business rules that suppress duplicates, auto-clear qualifying low-risk alerts, and reduce false positives.
  • Routes alerts through tiered, human-in-the-loop workflows for validation, investigation, and adjudication. The system must prioritize alerts by assessed risk—not age—and immediately escalate critical or high-risk alerts.
  • Supports continuous improvement by feeding adjudicator outcomes back into the rules engine and AI/ML models, subject to appropriate oversight and validation.
  • Integrates with—not replaces—authoritative case-management systems of record through documented, open-standard APIs, including OpenAPI 3.1 and REST. The capability must generate upstream triage signals rather than create a parallel case-management silo.
  • Provides leadership and operational dashboards showing key performance measures, including time to detect, time to respond, false-positive rate, and backlog by priority, with near-real-time visibility into detection, response, and workload status.
  • Avoids vendor lock-in. Proprietary data formats or closed APIs are disqualifying.
  • Can operate in controlled IL5 and classified IL6 environments appropriate for intelligence-derived derogatory information and consistent with Department of War cross-domain security requirements.

Similar Contracts

Same NAICS industry code

NAICS: 541512
New
Utilization Management Technical Solutions RFI
Solicitation # utilization-management-technical-solutions-rfi
Noridian Healthcare Solutions, LLC is issuing a Request for Information (RFI) to identify qualified technology providers and strategic partners capable of delivering configurable technical solutions for end-to-end utilization management (UM) workflows. The primary objective is to modernize the evaluation of medical necessity, appropriateness of care, provider compliance, and program integrity for federal and state healthcare programs. The scope of the RFI covers a wide range of capabilities, including clinical operations such as intake, prior authorization, and appeals, as well as workflow automation, provider engagement portals, data interoperability using HL7, FHIR, and X12 standards, and the integration of AI and advanced intelligence. This opportunity is open to a broad range of small business entities, including SDB, WOSB, HUBZone, VOSB, and SDVOSB certifications, under NAICS code 541512. Interested respondents must notify Noridian via email to gain access to the Agiloft Contract Management System, where all official correspondence and submissions must be conducted. Responses are required to be submitted using a specific templated spreadsheet by September 21, 2026. Following a comprehensive review of the submissions, Noridian may invite selected respondents to participate in solution demonstrations during the fourth quarter of 2026. Respondents must certify that they are not debarred or suspended and have no conflicts of interest that would prohibit contracting with Noridian.
Noridian Healthcare Solutions, LLC

POSTED

about 2 hours ago

DEADLINE

in 6 days
View Details
NAICS: 541512
New
SLED
NHDES Watershed Management Bureau (WMB) monitors surface waters in New Hampshire through a variety of programs that largely operate out of the Jody Connor Limnology Center (JCLC). These programs generate a variety of data types (physical/chemical,...
Solicitation # 2026-093
The New Hampshire Department of Environmental Services and the Department of Information Technology are seeking a vendor under solicitation 2026-093 to implement a modern Laboratory Information Management Services (LIMS) platform. This system will replace an obsolete Microsoft Access database used by the Jody Connor Limnology Center to track physical, chemical, and biological water quality samples. The primary objective is to establish a data management environment that automates sample tracking, generates labels compatible with Zebra ZD220 TTLabel printers, and ensures a two-way synchronization with the Oracle-based Environmental Monitoring Database (EMD). The resulting non-exclusive, not-to-exceed contract will be based on the P-37 State of New Hampshire General Provisions. The initial term begins upon the effective date and continues through March 31, 2032, with a potential five-year extension at the state's option. Vendors must adhere to strict cybersecurity standards, including NIST SP 800-171, 800-53 Revision 5, and 800-63, with a preference for FedRAMP or FISMA level 3 ATO certified data centers. Evaluation is based on a 110-point scale considering staffing qualifications, technical solutions, and price. Proposals are due by October 23, 2026, and must include a separate technical and price proposal.
Department Of Environmental Services

POSTED

about 24 hours ago

DEADLINE

in about 1 month
View Details

More opportunities from Department Of Defense → Defense Ci And Security Agency

Same awarding agency

Ready to Pursue This Opportunity?

Get AI-powered intelligence on this solicitation and the ones like it

Every page of the solicitation package shredded into a compliance breakdown

AI-powered matching based on your capabilities and past performance

Competitor and incumbent history on the requirement

Automated alerts on amendments, Q&A deadlines, and award

Miguel
Hillary
Keith Deutsch
Christine

Join 650+ contractors already using CLEATUS