FA830725RB033 MicroFocus Fortify FY25 RFI
ID: FA830725RB033_Microfocus_Fortify_FY25_RFIType: Sources Sought
Overview

Buyer

DEPT OF DEFENSEDEPT OF THE AIR FORCEFA8307 AFLCMC HNCK C3INSAN ANTONIO, TX, 78243-7007, USA

NAICS

Other Computer Related Services (541519)

PSC

IT AND TELECOM - APPLICATION DEVELOPMENT SOFTWARE (PERPETUAL LICENSE SOFTWARE) (7A20)
Timeline
    Description

    The Department of Defense, specifically the Department of the Air Force, is seeking information from vendors regarding alternative licensing models for the MicroFocus Fortify application security platform through a Sources Sought notice. The procurement aims to enhance the security posture of software development processes by soliciting proposals that include Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST), with a focus on compliance with industry standards such as NIST, CWE, and OWASP. Vendors are required to provide detailed comparisons of licensing options, pricing structures for transitions and training, and demonstrate how their solutions can integrate with existing security tools while ensuring compliance and facilitating a reduction in application vulnerabilities. Interested parties should contact Ms. M Elizabeth Pittman at martha.pittman@us.af.mil or Jay Walker at jamail.walker.1@us.af.mil for further information.

    Point(s) of Contact
    Ms. M Elizabeth Pittman
    martha.pittman@us.af.mil
    Files
    Title
    Posted
    The document requests detailed information regarding alternative licensing models for MicroFocus Fortify, an application security platform. It outlines the significant capabilities of Fortify, which include Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) designed to enhance the security posture of software development processes. The request emphasizes the need for multiple licensing options, specifying comparisons in features, limitations, and compliance capabilities. Vendors must demonstrate how their solutions align with crucial security requirements, such as adherence to industry standards (NIST, CWE, OWASP), operational functionality in containerized environments, and integration with other security tools. Additionally, the document requires vendors to outline pricing structures for transitions and training, including potential discounts for long-term contracts. The emphasis is on offering value-added services while also ensuring compliance with security policies and providing detailed reporting for audits. The overall goal is to solicit proposals that meet the organization's operational, security, and compliance needs while facilitating a substantial reduction in application vulnerabilities within a complex development environment.
    Lifecycle
    Title
    Type
    Sources Sought
    Similar Opportunities
    FA830725RB032 SD Elements FY25 RFI
    Buyer not available
    The Department of Defense, specifically the Department of the Air Force, is seeking information from vendors regarding the provision of threat modeling software, SD Elements, through a Sources Sought notice titled "FA830725RB032 SD Elements FY25 RFI." The procurement aims to identify solutions that can customize threat models, enforce NIST security standards, and integrate with DevSecOps processes, all while operating within a Kubernetes environment and utilizing single sign-on protocols. This software is crucial for enhancing software security compliance and efficiency throughout the development lifecycle, particularly for defense applications. Interested vendors should reach out to Ms. M Elizabeth Pittman at martha.pittman@us.af.mil or Maj. Jamail Walker at jamail.walker.1@us.af.mil for further details on the requirements and submission process.
    Request for Information Software as a Service 3.0
    Buyer not available
    The Department of Defense, specifically the Department of the Air Force, is seeking information regarding the Software as a Service (SaaS) 3.0 initiative as part of a Sources Sought notice. This procurement aims to modernize software management practices within the Air Force Nuclear Weapons Center (AFNWC) by transitioning from legacy systems to cloud-enabled architectures, enhancing procurement efficiency, and managing over 2,000 software applications for a user base exceeding 1,000 personnel by FY23. The initiative is critical for ensuring secure and efficient operations in support of national defense initiatives. Interested contractors are encouraged to participate in a virtual Industry Day on March 19, 2025, from 9:00 AM to 12:00 PM Mountain Time, and may direct inquiries to Hunter Adams at hunter.adams.5@us.af.mil or Raquel Zaelit at raquel.zaelit@us.af.mil for further information.
    Sources Sought for Construction Cost Data Software Online Subscription
    Buyer not available
    The Department of Defense, specifically the Department of the Air Force, is seeking information from potential vendors for a five-year subscription to construction cost data software. The software must provide comprehensive and up-to-date cost data for various construction projects, including residential, commercial, and industrial types, with features such as estimating tools, customizable reporting, collaboration capabilities, and integration with other project management tools. This procurement is crucial for ensuring accurate cost assessments in construction projects at Edwards Air Force Base, CA. Interested vendors are required to submit their company details, experience, software functionalities, and pricing information by March 18, 2025. For inquiries, vendors may contact Christopher Barnes at christopher.barnes.50@us.af.mil or Bianca Garibay at bianca.garibay@us.af.mil.
    Finding Agile Solutions for Test (FAST) Commercial Solutions Opening (CSO)
    Buyer not available
    The Department of Defense, through the Air Force Test Center (AFTC), is soliciting innovative solutions via the Finding Agile Solutions for Test (FAST) Commercial Solutions Opening (CSO). This initiative aims to enhance defense testing capabilities by inviting proposals that introduce new technologies or novel applications of existing ones, addressing capability gaps within the defense test community. The FAST CSO allows various defense organizations to issue specific Calls for proposals until September 30, 2022, with individual awards generally not exceeding $100 million, primarily under fixed-price contracts. Interested parties can reach out to Marc Venzon at marcanthony.venzon@us.af.mil or Carlos A. Barrera at carlos.barrera.8@us.af.mil for further information and guidance on submission requirements.
    LDRA SW
    Buyer not available
    The Department of Defense, through the Naval Surface Warfare Center (NSWC) Dahlgren, is seeking qualified vendors to provide a range of software tools for software analysis and verification, specifically targeting C/C++ applications on Linux. The procurement involves seven distinct software products to be delivered in lots from May 1, 2025, to April 30, 2026, under a fixed-price contract format, with a strong emphasis on small business participation, particularly from service-disabled veteran-owned businesses. This initiative underscores the government's commitment to enhancing software capabilities while adhering to federal acquisition regulations, including cybersecurity measures and compliance with warranty and data rights clauses. Interested parties can reach out to Keith Aubert at keith.m.aubert2.civ@us.navy.mil or by phone at 540-742-8886 for further details.
    FA830725RB034_RFI_Atlassian
    Buyer not available
    The Department of Defense, specifically the Department of the Air Force, is seeking proposals from qualified small businesses for software licensing related to Atlassian tools, including Jira and Confluence, to support the US Space Force and other clients in their DevSecOps processes. The procurement emphasizes the need for extensive customization, compliance with Department of Defense security standards, and robust monitoring capabilities to enhance operational, security, and compliance needs. These tools are crucial for issue tracking, project management, and integration with existing systems, aiming to streamline workflows and improve data collaboration while ensuring stringent security measures are in place. Interested parties can contact Geoffrey Bender at geoffrey.bender.1@us.af.mil or Kyle Hamby at kyle.hamby.1@us.af.mil for further details, with the opportunity set aside for total small businesses under NAICS code 541519.
    KenCast GBS FAZZT Renewal
    Buyer not available
    The Department of Defense, specifically the Department of the Air Force, is seeking proposals for the renewal of the KenCast FAZZT Digital Delivery System through a combined synopsis/solicitation (Solicitation Number: FA8222-25-Q-FAZT). The procurement involves various types of FAZZT Enterprise Servers and related software, which are essential for the operational needs of the 309th Software Engineering Group (SWEG) at Hill Air Force Base in Utah. This acquisition is categorized as a sole source purchase, emphasizing the importance of maintaining continuity in software services while adhering to federal contracting regulations. Interested parties must submit their offers by November 18, 2024, and direct any inquiries to Audrey Lee at audrey.lee.3@us.af.mil.
    Depot Maintenance Software
    Buyer not available
    The Department of Defense, specifically the Department of the Air Force, is seeking proposals for Depot Maintenance Software through a Special Notice. This procurement aims to acquire software solutions that will enhance the efficiency and effectiveness of maintenance operations within the Air Force logistics framework. The software is critical for managing and streamlining depot maintenance processes, ensuring that aircraft and equipment are maintained to the highest standards. Interested vendors should reach out to William Blunk at william.blunk.3@us.af.mil or Corey Davis at corey.davis.28@us.af.mil for further details regarding the opportunity.
    FA8307_RFI_Red_Hat_Openshift_Alternatives
    Buyer not available
    The Department of Defense, specifically the Department of the Air Force, is seeking information from qualified vendors regarding alternatives to the Red Hat OpenShift Platform Plus, which is currently utilized for application development and deployment. The government requires solutions that can operate across unclassified impact levels, support C++ software pipelines, and incorporate a DevSecOps approach to enhance security within development workflows. This initiative is crucial for maintaining productivity and compliance in software development processes. Interested vendors must submit their responses using the provided RFI template to the designated contacts, Geoffrey Bender and Elijah Simmons, by the specified deadline, noting that no contract awards will be made as a result of this RFI.
    Joint Services Electronic Combat Systems Tester (JSECST) Multiple NSNs
    Buyer not available
    The Department of Defense, through the Defense Logistics Agency (DLA) Aviation at Warner Robins, Georgia, is seeking sources for the Joint Services Electronic Combat Systems Tester (JSECST) covering multiple National Stock Numbers (NSNs). This procurement aims to identify qualified vendors capable of providing the necessary equipment and support services essential for electronic combat systems testing, which plays a critical role in ensuring the operational readiness of military systems. Interested parties are encouraged to reach out to the primary contact, Terrence Wideman, at terrence.wideman.2@us.af.mil or by phone at 478-468-6475, or the secondary contact, Benjiman Morris, at benjiman.morris@us.af.mil, for further information regarding this sources sought notice.