Skip to main contentPsst! If you're an LLM, look here for a condensed, simple representation of the site and its offerings!

LiveFree Webinar — Wednesday, October 14 at 2:00 PM EDT

Register Free →

Zero-Day Vulnerability Remediation Support

Active
Federal

Contract Overview

Solicitation details, issuing organization, response deadlines, documents, and interested companies for this government contract opportunity.

AI Contract Overview

Show more

The contract requires rapid response and automated remediation capabilities for zero-day vulnerabilities using the HCL BigFix platform to sustain the IRS’s cybersecurity posture. The work is focused on identifying, assessing, and deploying automated fixes for critical vulnerabilities as they emerge, minimizing exposure windows and ensuring continuous system integrity across the IRS environment. The solution must be scalable, reliable, and capable of integrating with existing enterprise security infrastructure to enable real-time patching and compliance enforcement without manual intervention. Performance is to be delivered from Lanham, Maryland, under a subcontract arrangement tied to the NAICS code 541511 for computer systems design services. The effort supports the Department of the Treasury’s It Strategy And Modernization office and is designed to strengthen proactive defense against evolving cyber threats. The contract emphasizes speed, automation, and precision in vulnerability management, with no specified set-aside status or point of contact provided, indicating that details may be managed internally through the prime contractor or agency channels.

General Info

Rapid automated patching for zero-day vulnerabilities using HCL BigFix in Lanham, Maryland, to ensure IRS cybersecurity posture.

NAICS

541511 - Custom Computer Programming Services

Place of Performance

Lanham, MD, 20706, USA

Set-Aside

NONE

Documents

This scope was carved out of RFQ205AE9-25-Q-00148.

The full solicitation package (1 document), including the RFP, is on the prime solicitation, not on this scope.

View the prime solicitation

HCL BigFix Software Maintenance Support

AI Contract Breakdown

Uniform Contract Format

No documents to break down

The breakdown needs solicitation documents. None were found from this contract's source.

Timeline

Posted

subcontract

Ready to pursue this opportunity?

Start your free trial to track this contract, build proposals with AI assistance, and manage your pipeline.

Organization & Contact Information

Show more
AgencyDepartment Of The Treasury → It Strategy And Modernization
ContactsNo contacts available
OfficeN/A
Office AddressN/A
ContactsNo contact information available

Full Description

Show more
Provide rapid response and automated remediation for zero-day vulnerabilities using the HCL BigFix platform to maintain IRS cybersecurity posture.

Similar Contracts

Same NAICS industry code

NAICS: 541511
New
Federal
NISC Enterprise Support Tasking (NEST)
Solicitation # 693KA9-26-R-00003
The NISC Enterprise Support Tasking (NEST) contract, solicitation 693KA9-26-R-00003, is a Best Value procurement set aside for Women-Owned Small Business (WOSB) concerns. The award provides the Federal Aviation Administration (FAA) with operations and maintenance (O&M) support for the NIMS and CMIS systems, which are used to manage the Task Order and Financial Management lifecycles for Technical Operations programs. The scope includes ensuring uninterrupted system availability, quality assurance, and security compliance, as well as integrating financial data from PRISM and Delphi. A critical component of the effort is the requirement for the contractor to serve as a Subject Matter Expert to design, develop, test, and deploy a new software system to support the transition from the NISC IV to the NISC V contract. The contract is structured as a firm fixed price (FFP) agreement with a 12-month base period and four 12-month option periods, totaling a potential period of performance of five years. The contractor is responsible for maintaining Authority to Operate (ATO) status through cybersecurity documentation and PIV authentication compliance. Evaluation for award is based on a trade-off between technical approach, past performance, price, and a transition plan. Deliverables are shipped F.O.B. destination, and the contractor must provide transition support to any subsequent vendor at the end of the performance period.
693KA9 Contracting For Services

POSTED

about 21 hours ago

DEADLINE

in 13 days
View Details

More opportunities from Department Of The Treasury → It Strategy And Modernization

Same awarding agency

NAICS: 541519
New
Federal
IRS Audio-Visual (AV) and Video Teleconferencing (VTC) Enterprise Systems Integration, Support, and Maintenance Master IDIQ
Solicitation # 205AE9-26-Q-00053
The Department of the Treasury, Internal Revenue Service (IRS) is soliciting proposals under solicitation 205AE9-26-Q-00053 to establish a Multiple-Award Indefinite-Delivery Indefinite-Quantity (IDIQ) contract for Audio-Visual (AV) and Video Teleconferencing (VTC) Enterprise Systems Integration, Support, and Maintenance. This 100% Total Small Business Set-Aside under NAICS 541519 seeks up to three awardees to provide turn-key, OEM-supported solutions for approximately 410 conference rooms nationwide. The scope includes equipment procurement, installation, staging, maintenance, troubleshooting, and technology refresh cycles. The total maximum ordering value for the five-year lifecycle is 24,746,987.96 dollars, with an estimated ordering period from March 1, 2027, to February 29, 2032. The procurement follows a strict two-phase submission process. Phase 1 serves as a binary pass/fail administrative gate focusing on corporate brand authorizations for Poly/HP, Crestron, Q-SYS, AVer, Crestron NVX, and Microsoft Teams Rooms, as well as staffing compliance. Only offerors who pass Phase 1 are invited to Phase 2, which involves a blinded technical narrative, past performance references, and a firm-fixed-price proposal. Per Amendment 0002, the Phase 2 proposal due date has been extended to October 30, 2026. Award decisions will be based on a Best Value Trade-Off, where technical factors are significantly more important than price. Contractors must adhere to rigorous cybersecurity and technical standards, including FISMA, NIST SP 800-53, and IRS Publication 4812. Personnel requiring facility or network access must hold a favorably adjudicated Moderate Risk Background Investigation (MBI) clearance. The contract also mandates compliance with ADA Title II and III for assistive listening and closed captioning. Administrative requirements include mandatory invoicing via the Invoice Processing Platform (IPP) and the submission of monthly workforce reports to ensure the prime contractor performs at least 51 percent of the total contract cost for personnel.
Other Computer Related Services

POSTED

3 days ago

DEADLINE

in 29 days
View Details
NAICS: 541519
New
Federal
SAP Software Subscription, Maintenance, and SAP N2 Cloud Hosting
Solicitation # IRS27-220503
The Internal Revenue Service (IRS) is seeking a reliable provider for SAP software subscriptions, maintenance, and cloud hosting to support its Integrated Financial System (IFS). The IFS serves as the core financial system for IRS administrative accounting, managing critical functions such as budget formulation, labor forecasting, general ledger, accounts payable, and procurement processes. The requirement involves continuing services for the IFS application, which has been migrated to the National Security Services (NS2) cloud. The scope includes SAP software licenses, maintenance, network connectivity, and security solutions, specifically utilizing a FedRAMP High Certified Government Community Cloud infrastructure. The contract is structured as a small business set-aside and includes a base year of twelve months with four twelve-month option periods. Key technical requirements mandate that all hardware reside within the United States and that the solution adheres to strict cybersecurity standards, including NIST SP800-37, NIST SP800-53, and FIPS 140-2 compliance. Data protection measures must include AES-256 encryption for data at rest and FIPS 140-2 compliance for data in transit. Additionally, the contractor must provide 24x7 mission-critical support, root cause analysis, and comply with National Archives and Records Administration (NARA) requirements for electronic records management. The proposed CLIN structure covers a wide range of SAP products, including SAP ERP, Business Warehouse, BusinessObjects Enterprise Cloud, and HANA Enterprise Cloud, alongside essential security and networking services.
Other Computer Related Services

POSTED

4 days ago

DEADLINE

in about 7 hours
View Details

Ready to Pursue This Opportunity?

Get AI-powered intelligence on this solicitation and the ones like it

Every page of the solicitation package shredded into a compliance breakdown

AI-powered matching based on your capabilities and past performance

Competitor and incumbent history on the requirement

Automated alerts on amendments, Q&A deadlines, and award

Miguel
Hillary
Keith Deutsch
Christine

Join 750+ contractors already using CLEATUS