Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, July 22 at 2:00 PM EDT

Register Free →

Security & Compliance Monitoring (Penetration Testing & Audits)

Active
State & Local

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract requires the vendor to conduct annual security and penetration testing as well as regular vulnerability scans to ensure ongoing compliance with federal standards, specifically under CMS ARC-AMPE guidelines. All testing results must be documented and formally submitted to the South Carolina Department of Health and Human Services Office of Children’s Services. In addition to technical assessments, the contractor is responsible for maintaining, reviewing, and updating incident response policies to remain aligned with current regulatory requirements and industry best practices. The work is performed under a subcontract arrangement, with the procurement managed by Sfaa Procurement Services on behalf of the State of South Carolina, and is classified under NAICS code 541612 for computer systems design and related services. The solicitation was posted on June 23, 2026, with responses due by September 1, 2026, at 3:00 PM Eastern Time. There is no set-aside designation specified, and performance location details are not provided, implying the work may be conducted remotely or across state facilities as needed. The contract is accessible via the South Carolina Business Opportunity portal, and all deliverables are subject to oversight by state health and human services authorities to ensure the integrity, confidentiality, and availability of critical systems serving vulnerable populations.

General Info

Vendor performs annual security testing, vulnerability scans, and updates incident response policies for South Carolina Children’s Services under CMS ARC-AMPE.

Agency

South Carolina → Sfaa Procurement ServicesView Agency

NAICS

541612 - Human Resources Consulting ServicesView NAICS

Place of Performance

SC, USA

Set-Aside

NONE

Documents

(0)

No documents available

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencySouth Carolina → Sfaa Procurement Services
ContactsNo contacts available
OfficeN/A
Organization / Agency
South Carolina → Sfaa Procurement Services
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Conduct annual security and penetration testing, perform vulnerability scans, submit results to SCDHHS OCS, and maintain incident response policies per CMS ARC-AMPE.

Similar Contracts

Same NAICS industry code

NAICS: 541612
New
SLED
Employee Assistance Program ProviderThe Port of Seattle’s Employee Assistance Program (EAP) is a vital component of its Total Rewards Package, designed to support the wellbeing of employees and their families through confidential, 24/7 access to assessment, counseling, and referral services. The program offers comprehensive resources covering lifestyle and daily living needs, family support, crisis intervention, and financial and legal assistance, all accessible via phone or a dedicated online platform. These services are available not only upon employee request but also when requested by Human Resources to ensure organizational wellbeing and productivity. By addressing personal and professional challenges proactively, the EAP enhances employee engagement and effectiveness, contributing directly to the Port’s broader Century Agenda goal of becoming a highly effective public agency. The program is managed under Human Resources and seeks a qualified provider through a forecasted solicitation with a NAICS code of 541612, indicating a focus on management consulting services. Primary point of contact is Mazarine Ebengho Kyalumba, with Kecia Reichstein serving as Project Manager, both reachable through the Port of Seattle’s internal communications. The solicitation was posted on July 21, 2026, and the opportunity is intended to secure a capable partner to deliver these critical services across the Port’s workforce, reinforcing employee retention and attraction by demonstrating a commitment to holistic support and workplace wellbeing.
Human Resources

POSTED

about 9 hours ago

DEADLINE

N/A
View Details
NAICS: 541612
New
DIBBS
Cybersecurity Compliance for Third-Party AssessorsThe contract seeks qualified third-party assessors to conduct or support Cybersecurity Maturity Model Certification (CMMC) Level 2 assessments for organizations within the defense supply chain that handle controlled unclassified information. These assessments are critical for ensuring compliance with Department of Defense cybersecurity requirements and validating that contractors implement appropriate safeguards to protect sensitive data. The work is tied to a subcontracting opportunity under the ASC Commodities Division of the Department of Defense, with performance required at a designated location in Mechanicsburg, Pennsylvania, 17050-2411. Assessments must align with CMMC Level 2 standards, which encompass a comprehensive set of security practices and processes designed to mitigate cyber threats targeting information systems in the defense industrial base. Interested parties must submit responses by the deadline of July 28, 2026, with the solicitation posted on July 20, 2026. The North American Industry Classification System code 541612 identifies this as an information technology consulting service, indicating the need for specialized technical expertise in cybersecurity evaluation and compliance auditing. This opportunity does not specify a set-aside designation, so all eligible entities may respond, though the nature of the work demands proven experience in CMMC assessments and familiarity with defense-sector security protocols. The requirement will be managed through the DIBBS platform, and proposers are expected to demonstrate capability in performing objective, accredited evaluations across multiple subcontractor environments within the defense supply chain.
ASC COMMODITIES DIVISION

POSTED

about 23 hours ago

DEADLINE

in 7 days
View Details
NAICS: 541612
New
DIBBS
Cybersecurity Compliance (CMMC Level 2 Assessment Support)This contract provides third-party support to achieve Cybersecurity Maturity Model Certification (CMMC) Level 2 compliance for a Department of Defense contractor, focusing on guidance through the full certification process. The scope includes conducting a detailed gap analysis to identify current cybersecurity deficiencies relative to CMMC Level 2 requirements, developing and organizing the necessary documentation to demonstrate compliance, and coordinating directly with an accredited C3PAO to facilitate the official assessment. The support is tailored to ensure the contractor meets all technical and procedural criteria under the CMMC framework without internal expertise to manage the complexity of the certification process. The work is being performed under a subcontract tied to the Defense Logistics Agency within the Department of Defense and is categorized under NAICS code 541612, which corresponds to management consulting services. The solicitation was posted in July 2026, suggesting a forward-looking procurement aimed at preparing for upcoming compliance deadlines. There is no set-aside designation specified, indicating the contract is open to eligible small or large businesses, and performance is expected to occur wherever the contractor’s operations are located, as no specific place of performance is defined. The contract is accessible through the DIBBS platform for further procurement details.
Defense Logistics Agency

POSTED

about 23 hours ago

DEADLINE

N/A
View Details
NAICS: 541612
New
DIBBS
Cybersecurity and CDI Compliance SupportThis subcontract provides cybersecurity and controlled unclassified information compliance support to ensure adherence to NIST Special Publication 800-171 requirements, including the development and maintenance of a System Security Plan and a Plan of Action and Milestones, as well as timely cyber incident reporting in accordance with DFARS 252.204-7012. The work supports the Defense Logistics Agency under the Department of Defense and is tied to contract SPE60524D4502 with delivery order SPE60526FHSE1, focusing on protecting sensitive data handled by the prime contractor. The subcontract is classified under NAICS code 541612 for computer systems design services and is intended to bolster the cybersecurity posture of the supply chain by enforcing federal cybersecurity standards for controlled unclassified information. The performance location and point of contact details are not specified, but the contract is active as of its posting date in July 2026 and requires full implementation of NIST SP 800-171 controls and compliance documentation. The subcontractor will be responsible for ensuring that all cyber incidents are reported within the required timeframes and that all compliance artifacts remain current and accurate throughout the contract period. This engagement is critical to maintaining the integrity of defense logistics systems and protecting information critical to national security.
Defense Logistics Agency

POSTED

about 23 hours ago

DEADLINE

N/A
View Details
NAICS: 541612
New
SLED
Employee Benefits Strategy & Design ConsultingFerris State University is seeking consulting services to evaluate and enhance its employee benefits programs, focusing on health, retirement, and voluntary offerings. The contractor will analyze the current structure of these benefits, assess their competitiveness against peer institutions, and recommend designs that promote long-term sustainability and value for both the university and its employees. The engagement requires comprehensive benchmarking against industry standards to identify gaps and opportunities for improvement, with the goal of aligning benefits offerings with best practices and evolving workforce expectations. All recommendations must be data-driven and tailored to Ferris State’s unique institutional context and financial parameters. The contract is classified as a subcontract under NAICS code 541612, indicating it falls under management consulting services. The solicitation was posted on July 20, 2026, with responses due by August 14, 2026, creating a four-week window for interested parties to submit proposals. The work is to be performed in support of the university located in Michigan, though no specific physical location for performance is defined. The university is not indicating any set-aside preferences, and the contract will be awarded through a competitive process managed via the PublicPurchase platform, with all communication and submission handled through the online portal linked in the solicitation.
Ferris State University

POSTED

1 day ago

DEADLINE

in 24 days
View Details
NAICS: 541612
New
SLED
Employee Benefits Consulting ServicesFerris State University is seeking qualified firms to provide employee benefits consulting services through a solicitation numbered 27-003, posted on July 20, 2026, with proposals due by August 14, 2026. The procurement is part of the University’s regular review of service providers, and the incumbent contractor is Advantage Benefit Group. The solicitation, issued under NAICS code 541612 for management consulting services, is targeted at state and local government entities and requires responses via the Public Purchase portal, though paper submissions are also accepted. Proposals must demonstrate experience, qualifications, and the ability to deliver services aligned with the University’s needs, though specific tasks, deliverables, or performance timelines are not detailed in the available documentation. The place of performance is the State of Michigan, with no further location specifics provided. There is no stated contract value, no pricing structure, no period of performance defined, and no option periods or delivery schedules outlined. The solicitation does not include required contract clauses, evaluation factors, inspection criteria, or special requirements such as security clearances, key personnel, or organizational conflict of interest provisions. There are no specified packaging, marking, or preservation standards, nor are any federal accounting or invoicing systems referenced. No representations or certifications from offerors are included in the published materials, and while submission via the portal is preferred with no file format restrictions, no page limits or format requirements are enforced. Point of contact for questions is Adam Phillips, with email and phone provided, but there is no designated contracting officer, COR, or COTR identified.
Ferris State University

POSTED

1 day ago

DEADLINE

in 24 days
View Details

More opportunities from South Carolina → Sfaa Procurement Services

Same awarding agency

NAICS: 541512
SLED
VIRTUAL EXPERIENTIAL LEARNING PLATFORMThe contract seeks the development and delivery of a virtual experiential learning platform to support educational and training initiatives under the South Carolina state agency, Sfaa Procurement Services. The solicitation, identified by number 5400029914, was posted on June 24, 2026, with a firm deadline for responses set for August 13, 2026, at 3:00 PM Eastern Time. The platform must enable immersive, interactive learning experiences that can be accessed remotely, aligning with state-level goals for workforce development and public service training. Performance of all contracted work is exclusively tied to South Carolina, with no geographic flexibility beyond the state’s borders. The primary point of contact for inquiries and submissions is Kristen Rabon, reachable via email at khrabon@mmo.sc.gov. Although the solicitation does not specify a NAICS code or set-aside classification, it is issued under a state-level government structure, indicating eligibility is open to qualified vendors regardless of federal small business designations. All proposals must be submitted through the official online portal accessible via the provided UI link, and no physical submissions are implied. The platform must meet technical, accessibility, and scalability standards expected for statewide public-sector deployment, with an emphasis on usability, data security, and integration readiness for existing state systems.
Computer Systems Design Services

POSTED

27 days ago

DEADLINE

in 23 days
View Details