Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, September 16 at 2:00 PM EDT

Register Free →

Software Cybersecurity & STIG Compliance Services

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

This subcontract, titled Software Cybersecurity and STIG Compliance Services, is a total small business set-aside under NAICS 541519 for the Department of Defense, specifically supporting the FA2330 Arspc Mgnt Systms Aflcmc/hba. The contractor is responsible for providing cybersecurity auditing and compliance services for prime contractors on U.S. Air Force software projects. Key deliverables include the generation of Software Bill of Materials, the execution of SAST and DAST scanning, and the verification of DISA Application Security Technical Implementation Guides compliance. The technical scope requires the use of FIPS 140-2/3 validated cryptographic modules aligned with the Risk Management Framework to ensure secure operations. The final output consists of a comprehensive Cybersecurity Package containing the SBOM and completed STIG checklists. The opportunity was posted on September 2, 2026, with a response deadline of October 2, 2027.

General Info

DoD subcontract for software cybersecurity auditing, STIG compliance, and SBOM generation services.

Agency

Department Of Defense → FA2330 Arspc Mgnt Systms Aflcmc/hbaView Agency

NAICS

541519 - Other Computer Related ServicesView NAICS

Place of Performance

MA

Set-Aside

SBA

Documents

This scope was carved out of FA2330A1.

The full solicitation package (1 document), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

Meteorological and Weather Forecasting Software

AI Contract Breakdown

Uniform Contract Format

No contract breakdown available.

Cannot generate Contract Breakdown because no documents were found from this contract's source.

Timeline

Posted

subcontract

Response Deadline

Submission deadline

Response Deadline

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of Defense → FA2330 Arspc Mgnt Systms Aflcmc/hba
ContactsNo contacts available
OfficeN/A
Organization / Agency
Department Of Defense → FA2330 Arspc Mgnt Systms Aflcmc/hba
View Agency Profile
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Performs cybersecurity auditing and compliance for prime contractors on U.S. Air Force software projects. Generates Software Bill of Materials (SBOM), performs SAST and DAST scanning, and verifies DISA Application Security Technical Implementation Guides (STIGs) compliance. Utilizes FIPS 140-2/3 validated cryptographic modules aligned with the Risk Management Framework (RMF). Delivers a Cybersecurity Package including SBOM and STIG checklists.

Similar Contracts

Same NAICS industry code

More opportunities from Department Of Defense → FA2330 Arspc Mgnt Systms Aflcmc/hba

Same awarding agency

NAICS: 334511
Federal
Tactical Air Traffic Control (ATC) Command and Control (C2) System (TACOS)
Solicitation # FA2330_RFI_TACOS
The Air Force Life Cycle Management Center's Electronic Systems Directorate is issuing this Request for Information to conduct market research for the potential future acquisition of a Tactical Air Traffic Control (ATC) Command and Control (C2) System, known as TACOS. This system is intended to replace legacy expeditionary ATC systems that are currently ill-suited for modern multi-domain warfare due to excessive size, weight, power, and personnel footprints, as well as vulnerability to kinetic and non-kinetic threats. TACOS is envisioned as a modular, scalable, and highly interoperable platform designed to support Agile Combat Employment in contested, degraded, or operationally-limited environments. It must serve as a multi-level secure data fusion engine capable of integrating feeds from battle management, unmanned aircraft systems, and weather networks to provide a unified airspace awareness picture. Key technical requirements for the TACOS solution include a Modular Open Systems Approach to allow for rapid hardware and software decoupling, a compact footprint transportable on a single 463L pallet, and the ability to be deployed by a small team within hours. The system must maintain high operational availability and be hardened against electromagnetic pulses and electronic warfare while remaining operable by personnel in MOPP Level 4 gear. Essential capabilities include automated safety alerts such as Minimum Safe Altitude Warning and Conflict Alerts, compliance with FAA and EUROCONTROL standards, and the ability to integrate next-generation platforms like Collaborative Combat Aircraft. This RFI is for planning purposes only and does not constitute a solicitation or a commitment to award a contract. Participation is limited to United States-registered contractors, with responses due by September 11, 2026.
Search, Detection, Navigation, Guidance, Aeronautical, and Nautical System and Instrument Manufacturing

POSTED

15 days ago

DEADLINE

in 8 days
View Details