{"canonical":"https://abierto.us/opportunities/fa255026ac002","key":"FA255026AC002","url":"https://abierto.us/opportunities/fa255026ac002","title":"Schriever Cyber Threat Intelligence Software","solicitation_number":"FA255026AC002","notice_type":"r","open":false,"removed":false,"removed_at":null,"response_deadline":"2026-09-24T18:00:00Z","first_posted":"2026-09-21","last_posted":"2026-09-21","department":"DEPT OF DEFENSE","subagency":"DEPT OF THE AIR FORCE","office":"FA2550 50 CONS PKP","naics":"541511","psc":"DJ10","set_aside":null,"place_state":"CO","place_county":"08041","place_county_name":"El Paso County","place_city":"0816000","place_city_name":"Colorado Springs","winner":null,"award_amount":null,"publications":[{"notice_id":"2f53f3558ac34d7fa297af74b2b56ba2","title":"Schriever Cyber Threat Intelligence Software","solicitation_number":"FA255026AC002","notice_type":"r","base_type":"r","posted":"2026-09-21","posted_at":"2026-09-21T18:23:47.928Z","due_at":"2026-09-24T18:00:00Z","due_date":"2026-09-24","cancelled":null,"archived":null,"archive_date":"2026-09-25","removed_at":null,"award_number":null,"awardee_name":null,"amount":null,"link_sam":"https://sam.gov/workspace/contract/opp/2f53f3558ac34d7fa297af74b2b56ba2/view","enriched":true,"history":[{"index":1,"title":"Schriever Cyber Threat Intelligence Software","action":"publish","latest":true,"deleted":false,"archived":false,"cancelled":false,"posted_at":"2026-09-21T18:23:47.928Z","notice_type":{"code":"r","label":"Sources Sought"},"request_type":"submit","opportunity_id":"2f53f3558ac34d7fa297af74b2b56ba2","solicitation_number":"FA255026AC002"}]}],"latest_notice_id":"2f53f3558ac34d7fa297af74b2b56ba2","first_type":"r","notices":[{"dates":{"posted":"2026-09-21","posted_at":"2026-09-21T18:23:47.928Z","created_at":"2026-09-21T15:50:55.868Z","modified_at":"2026-09-21T18:23:47.932Z","response_deadline":{"raw":"2026-09-24T12:00:00-06:00","utc":"2026-09-24T18:00:00Z","date":"2026-09-24","time":"12:00:00","utc_offset_seconds":-21600}},"links":{"sam":"https://sam.gov/workspace/contract/opp/2f53f3558ac34d7fa297af74b2b56ba2/view"},"naics":{"codes":["541511"],"primary":"541511"},"title":"Schriever Cyber Threat Intelligence Software","agency":{"office":{"code":"FA2550","name":"FA2550 50 CONS PKP"},"subtier":{"code":"5700","name":"DEPT OF THE AIR FORCE"},"department":{"code":"057","name":"DEPT OF DEFENSE"},"office_address":{"zip":"80912-2116","city":"SCHRIEVER SFB","state":"CO","country":"USA"},"organization_type":"OFFICE"},"status":{"active":true,"latest":true,"publication":"published","archive_date":"2026-09-25","archive_type":"auto_custom"},"history":[{"index":1,"title":"Schriever Cyber Threat Intelligence Software","action":"publish","latest":true,"deleted":false,"archived":false,"cancelled":false,"posted_at":"2026-09-21T18:23:47.928Z","notice_type":{"code":"r","label":"Sources Sought"},"request_type":"submit","opportunity_id":"2f53f3558ac34d7fa297af74b2b56ba2","solicitation_number":"FA255026AC002"}],"contacts":[{"name":"David Anderson","role":"primary","email":"david.anderson.182@spaceforce.mil","phone":"7195677291"},{"name":"Alejandro Castellanos","role":"secondary","email":"alejandro.castellanos@spaceforce.mil","phone":"7195676185"}],"base_type":{"code":"r","label":"Sources Sought"},"notice_id":"2f53f3558ac34d7fa297af74b2b56ba2","lineage_id":"2f53f3558ac34d7fa297af74b2b56ba2","provenance":{"detail":{"endpoints":["opportunity","resources","history"],"fetched_at":"2026-09-22T04:45:07.650894997Z"},"extract":{"url":"https://s3.amazonaws.com/falextracts/Contract%20Opportunities/datagov/ContractOpportunitiesFullCSV.csv","etag":"\"95a38dcc808142de51137f8402e52049-29\"","fetched_at":"2026-09-24T04:21:46.782462570Z","row_sha256":"b8d5e91ec35f874bbc47012071a29f8e0920dc7769e7cbe8cbceb54ade829bdd","last_modified":"2026-09-24T03:30:47Z"},"updated_at":"2026-09-24T04:21:46.782462570Z","first_seen_at":"2026-09-22T04:18:56.687806512Z"},"description":{"html":"<p>This is a new requirement for a secure, high-fidelity network flow analytics platform. The system must meet or exceed the following technical capabilities:</p>\n\n<p>Netflow Telemetry Querying: Provide access to a massive, global network flow database with the ability to run targeted queries on source/destination IP addresses, ports, protocal types, packet counts, and timestamps.</p>\n\n<p>Threat Infrastructure Tracking: Enable users to trace malicious command and control (C2) servers, map botnets, analyze hostile infrastructure, and perform forensic attribution.</p>\n\n<p>Passive DNS &amp; IP Reputation: Integrated access to historical passive DNS databases and IP threat scores to quickly context-resolve suspect nodes.</p>\n\n<p>Encrypted Traffic Profiling: Capabilities to identify and analyze anomalous traffic patterns and identify threat actors utilizing virtual private networks (VPNs) or encrypted tunneling.</p>\n\n<p>Secure, web-based software platform with 24/7/365 availability.</p>\n\n<p>API endpoints for integrating intelligence feeds directly into the unit&#39;slocal security tools, Security Information and Event Management (SIEM) systems, or data orchestrators.</p>\n\n<p>Operations &amp; Maintenance Support:<br />\n&bull; Software Updates: Ongoing platform upgrades, database maintenance, search engine optimization, and feature additions throughout the performance periods at no extra cost.<br />\n&bull; Technical Support: Helpdesk and administrator support for user troubleshooting, configuration assistance, and platform optimization</p>\n\n<p></p>\n\n<p>This posting is a Sources Sought only for market research, no quotes will be evaluated at this time.</p>","text":"This is a new requirement for a secure, high-fidelity network flow analytics platform. The system must meet or exceed the following technical capabilities:\n\nNetflow Telemetry Querying: Provide access to a massive, global network flow database with the ability to run targeted queries on source/destination IP addresses, ports, protocal types, packet counts, and timestamps.\n\nThreat Infrastructure Tracking: Enable users to trace malicious command and control (C2) servers, map botnets, analyze hostile infrastructure, and perform forensic attribution.\n\nPassive DNS & IP Reputation: Integrated access to historical passive DNS databases and IP threat scores to quickly context-resolve suspect nodes.\n\nEncrypted Traffic Profiling: Capabilities to identify and analyze anomalous traffic patterns and identify threat actors utilizing virtual private networks (VPNs) or encrypted tunneling.\n\nSecure, web-based software platform with 24/7/365 availability.\n\nAPI endpoints for integrating intelligence feeds directly into the unit'slocal security tools, Security Information and Event Management (SIEM) systems, or data orchestrators.\n\nOperations & Maintenance Support:\n\n• Software Updates: Ongoing platform upgrades, database maintenance, search engine optimization, and feature additions throughout the performance periods at no extra cost.\n\n• Technical Support: Helpdesk and administrator support for user troubleshooting, configuration assistance, and platform optimization\n\nThis posting is a Sources Sought only for market research, no quotes will be evaluated at this time.","origin":"detail"},"notice_type":{"code":"r","label":"Sources Sought"},"schema_version":1,"solicitation_number":"FA255026AC002","place_of_performance":{"zip":"80912","city":{"name":"Colorado Springs"},"state":{"code":"CO"},"country":{"code":"USA"}},"product_service_code":"DJ10"}],"due_at":"2026-09-24T18:00:00Z","due_date":"2026-09-24","closes_at":"2026-09-24T18:00:00Z","awardable":true,"dept_key":"d-057","dept_name":"DEPT OF DEFENSE","sub_key":"s-5700","sub_name":"DEPT OF THE AIR FORCE","office_key":"o-FA2550","office_name":"FA2550 50 CONS PKP","state":"CO","county":"08041","county_name":"El Paso County","city":"0816000","city_name":"Colorado Springs","country":"USA","winner_key":null,"amount":null,"linked_awards":0,"cancelled":false,"archived":false,"updated_at":"2026-09-24T03:25:58.922164Z","principal_notice_id":"2f53f3558ac34d7fa297af74b2b56ba2","description":{"text":"This is a new requirement for a secure, high-fidelity network flow analytics platform. The system must meet or exceed the following technical capabilities:\n\nNetflow Telemetry Querying: Provide access to a massive, global network flow database with the ability to run targeted queries on source/destination IP addresses, ports, protocal types, packet counts, and timestamps.\n\nThreat Infrastructure Tracking: Enable users to trace malicious command and control (C2) servers, map botnets, analyze hostile infrastructure, and perform forensic attribution.\n\nPassive DNS & IP Reputation: Integrated access to historical passive DNS databases and IP threat scores to quickly context-resolve suspect nodes.\n\nEncrypted Traffic Profiling: Capabilities to identify and analyze anomalous traffic patterns and identify threat actors utilizing virtual private networks (VPNs) or encrypted tunneling.\n\nSecure, web-based software platform with 24/7/365 availability.\n\nAPI endpoints for integrating intelligence feeds directly into the unit'slocal security tools, Security Information and Event Management (SIEM) systems, or data orchestrators.\n\nOperations & Maintenance Support:\n\n• Software Updates: Ongoing platform upgrades, database maintenance, search engine optimization, and feature additions throughout the performance periods at no extra cost.\n\n• Technical Support: Helpdesk and administrator support for user troubleshooting, configuration assistance, and platform optimization\n\nThis posting is a Sources Sought only for market research, no quotes will be evaluated at this time.","html":"<p>This is a new requirement for a secure, high-fidelity network flow analytics platform. The system must meet or exceed the following technical capabilities:</p>\n\n<p>Netflow Telemetry Querying: Provide access to a massive, global network flow database with the ability to run targeted queries on source/destination IP addresses, ports, protocal types, packet counts, and timestamps.</p>\n\n<p>Threat Infrastructure Tracking: Enable users to trace malicious command and control (C2) servers, map botnets, analyze hostile infrastructure, and perform forensic attribution.</p>\n\n<p>Passive DNS &amp; IP Reputation: Integrated access to historical passive DNS databases and IP threat scores to quickly context-resolve suspect nodes.</p>\n\n<p>Encrypted Traffic Profiling: Capabilities to identify and analyze anomalous traffic patterns and identify threat actors utilizing virtual private networks (VPNs) or encrypted tunneling.</p>\n\n<p>Secure, web-based software platform with 24/7/365 availability.</p>\n\n<p>API endpoints for integrating intelligence feeds directly into the unit&#39;slocal security tools, Security Information and Event Management (SIEM) systems, or data orchestrators.</p>\n\n<p>Operations &amp; Maintenance Support:<br />\n&bull; Software Updates: Ongoing platform upgrades, database maintenance, search engine optimization, and feature additions throughout the performance periods at no extra cost.<br />\n&bull; Technical Support: Helpdesk and administrator support for user troubleshooting, configuration assistance, and platform optimization</p>\n\n<p></p>\n\n<p>This posting is a Sources Sought only for market research, no quotes will be evaluated at this time.</p>","origin":"detail"},"contacts":[{"name":"David Anderson","role":"primary","email":"david.anderson.182@spaceforce.mil","phone":"7195677291"},{"name":"Alejandro Castellanos","role":"secondary","email":"alejandro.castellanos@spaceforce.mil","phone":"7195676185"}],"place_of_performance":{"zip":"80912","city":{"name":"Colorado Springs"},"state":{"code":"CO"},"country":{"code":"USA"}},"office_address":{"zip":"80912-2116","city":"SCHRIEVER SFB","state":"CO","country":"USA"},"naics_codes":["541511"],"award":null,"attachments":[],"awards":[],"related":[{"key":"FA2550ST","latest_notice_id":"cb32fe7544744eabafcf11207145bbbc","title":"Schriever Space Force Base Other Transaction HVAC Sources Sought","solicitation_number":"FA2550ST","notice_type":"r","first_type":"r","first_posted":"2026-09-02","last_posted":"2026-09-02","notices":1,"due_at":"2026-10-01T23:00:00Z","due_date":"2026-10-01","closes_at":"2026-10-01T23:00:00Z","awardable":true,"open":true,"removed":false,"dept_key":"d-057","dept_name":"DEPT OF DEFENSE","sub_key":"s-5700","sub_name":"DEPT OF THE AIR FORCE","office_key":"o-FA2550","office_name":"FA2550 50 CONS PKP","naics":null,"psc":null,"set_aside":null,"state":"CO","county":"08041","county_name":"El Paso County","city":"0816000","city_name":"Colorado Springs","country":"USA","winner":null,"winner_key":null,"amount":null,"linked_awards":0,"cancelled":false,"archived":false,"removed_at":null,"updated_at":"2026-09-24T03:25:58.922164Z"}]}