This Performance Work Statement outlines the requirements for a Senior Information Security Officer (SISO) to support the United States Transportation Command (USTRANSCOM). The contract's scope includes providing cybersecurity and risk management services, particularly focusing on the Risk Management Framework (RMF) for USTRANSCOM, Air Mobility Command (AMC), and Surface Deployment and Distribution Command (SDDC) missions. Key task areas involve contract management, risk management support (including Information Systems Security Engineering, software assurance, security auditing, continuous monitoring, and vulnerability management), Security Control Assessor Representative (SCAR) and Authorizing Official (AO) support, optional Development Security Operations (DevSecOps) RMF and SCA support, and Zero Trust support. The contractor will be responsible for various deliverables, metrics, and adherence to numerous DoD and federal cybersecurity policies and standards.
USTRANSCOM has issued an RFI for a Senior Information Security Officer (SISO) to gather information for procurement planning. This RFI is not a solicitation but seeks to determine the best approach for acquiring IT services, including cybersecurity, risk management framework (RMF) evaluations, technical testing, software management, and Zero Trust (ZT) support. The incumbent contract, held by Electrosoft Services, Inc., is a Firm Fixed Price small business set-aside valued at ~$29 million. The anticipated NAICS code is 541519, with a small business size standard of $30 million. The new contract's period of performance is expected to be October 1, 2026, to September 30, 2031 (Base + four 1-year options). Interested parties are requested to submit a white paper by October 17, 2025, detailing company information, business size, suggestions for the acquisition, industry insights, innovation opportunities, and capabilities related to various cybersecurity standards and technologies. Virtual technical capability meetings will be held around October 20, 2025, for those who submit a white paper and meeting request.