Market researchClosed
Schriever Cyber Threat Intelligence Software
DEPT OF DEFENSE › DEPT OF THE AIR FORCE › FA2550 50 CONS PKP
Response deadlineSep 24, 2026 2:00 PM EDT
View official notice on SAM.gov (opens in a new tab)
Verify before acting. Users must verify deadlines, amendments, attachments, eligibility, and submission requirements on the official SAM.gov notice. Read the Data Disclaimer.
Key decision factors
- Response deadline
- Sep 24, 2026 2:00 PM EDT
- Posted
- Sep 21, 2026 12:00 AM EDT
- Notice type
- Sources Sought
- Set-aside
- No Set aside used
- PSC
- DJ10 — Security and Compliance support delivered as a service, by subscription, or service contract. Includes support of security policies/controls, processes, measuring compliance of relevant legal/compliance requirements, to include Section 508, and responding to security breaches. Also provides support for IT Security systems providing Continuous Diagnostics and Mitigation (CDM) for real-time Cyber Security and protection such as vulnerability scanning, managing firewalls, intrusion prevention systems, and security information and event management (SIEM). Includes Disaster Recovery (DR) services to support DR policy, process and means, dedicated failover facilities and perform DR testing.
- Place of performance
- Colorado Springs, Colorado
- Current status
- Closed
Notice details
- Official status
- Closed
- Normalized group
- Market research
- Notice ID
- 2f53f3558ac34d7fa297af74b2b56ba2
- Solicitation number
- FA255026AC002
Description
Displayed as sanitized plain text from SAM.gov. Retrieved Sep 24, 2026 2:10 AM EDT.
This is a new requirement for a secure, high-fidelity network flow analytics platform. The system must meet or exceed the following technical capabilities: Netflow Telemetry Querying: Provide access to a massive, global network flow database with the ability to run targeted queries on source/destination IP addresses, ports, protocal types, packet counts, and timestamps. Threat Infrastructure Tracking: Enable users to trace malicious command and control (C2) servers, map botnets, analyze hostile infrastructure, and perform forensic attribution. Passive DNS & IP Reputation: Integrated access to historical passive DNS databases and IP threat scores to quickly context-resolve suspect nodes. Encrypted Traffic Profiling: Capabilities to identify and analyze anomalous traffic patterns and identify threat actors utilizing virtual private networks (VPNs) or encrypted tunneling. Secure, web-based software platform with 24/7/365 availability. API endpoints for integrating intelligence feeds directly into the unit'slocal security tools, Security Information and Event Management (SIEM) systems, or data orchestrators. Operations & Maintenance Support: • Software Updates: Ongoing platform upgrades, database maintenance, search engine optimization, and feature additions throughout the performance periods at no extra cost. • Technical Support: Helpdesk and administrator support for user troubleshooting, configuration assistance, and platform optimization This posting is a Sources Sought only for market research, no quotes will be evaluated at this time.
Attachments
No attachments were reported for this notice. MaroNest reflects only what the source data reports — review the official SAM.gov notice (opens in a new tab) to confirm whether related documents or amendments exist.
Contacts
Personalized relevance
Would this fit your company?
Create company profile information with a free account to see a deterministic, explainable relevance score. Matching does not determine eligibility or win probability.
Create Free AccountPursuit risk (separate from your match score)
No major pursuit restriction detected
We did not detect a major source or competition restriction in the information analyzed. This is not an eligibility determination.
Pursuit risk is evaluated separately from your match score above and never changes it. This is not a legal or eligibility determination — verify against the official SAM.gov notice and attachments.