Procurement Summary
Country : USA
Summary : Fortify Alternate Sources
Deadline : 30 Aug 2024
Other Information
Notice Type : Tender
TOT Ref.No.: 105999347
Document Ref. No. : RFI_HNC_Fortify
Financier : Self Financed
Purchaser Ownership : Public
Tender Value : Refer Document
Purchaser's Detail
Name :Login to see tender_details
Address : Login to see tender_details
Email : Login to see tender_details
Login to see detailsTender Details
Description
Our organization is presently utilizing Fortify Static Code Analyzer (SAST) and Fortify Dynamic Application Security Testing (DAST) for ongoing cybersecurity and testing operations. In our pursuit of identifying possible alternative solutions, we are conducting market research to assess products and services that can fulfill the specific criteria outlined below.
The organizational objectives of this research are as follows:
Identify and catalog available products and solutions in the market. Evaluate the features, functionality, and pricing of each alternative to determine its suitability for our needs. Assess the level of integration and compatibility of each alternative with our DevSecOps platform, while ensuring compliance with DoD security requirements. Estimate the level of government resources required to migrate to a new solution, while maintaining our current operational capabilities.The following are several key characteristics that we are employing to align with our organizational objectives, as previously stated above. Please note that this list is not comprehensive, but it does offer an overview of some of the most critical requirements for our specific environment:
To meet DoD CIO DevSecOps Reference Design compliance and perform continuous cybersecurity and testing activities, the tool must provide the following features: Software must be containerized and deployable through helm charts. Language: should support a wide range of programming languages, including popular languages like Java, C++, Python, and JavaScript, as well as C#, TypeScript, CSS, HTML, Go, PHP, Helm, Java, JavaScript, Python, xML, Terraform, Ruby, Scala, Swift, Objective-C, C, C++, PL/SQL, T-SQL, and VB.NET. This broad language support ensures that the tool can be used across different development environments and can identify vulnerabilities in a variety of codebases. Integration: should be able to integrate with other development tools, such as IDEs, b...
Active Contract Opportunity
Notice ID : RFI_HNC_Fortify
Related Notice
Department/Ind. Agency : DEPT OF DEFENSE
Sub-tier : DEPT OF THE AIR FORCE
Major Command : AIR FORCE MATERIEL COMMAND
Sub Command : AIR FORCE LIFE CYCLE MANAGEMENT CENTER
Sub Command 2 : COMMAND CONTROL COMMUNICATIONS INTEL & NETWORKS
Office: FA8307 AFLCMC HNCK C3IN
General Information
Contract Opportunity Type: Sources Sought (Original)
All Dates/Times are: (UTC-05:00) CENTRAL STANDARD TIME, CHICAGO, USA
Original Published Date: Aug 19, 2024 03:45 pm CDT
Original Response Date: Aug 30, 2024 08:00 am CDT
Inactive Policy: 15 days after response date
Original Inactive Date: Sep 14, 2024
Initiative: None
Classification
Original Set Aside:
Product Service Code:
NAICS Code: 513210 - Software Publishers
Place of Performance: San Antonio, Tx USA
Documents
Tender Notice
Fortify-SAST-RFI.pdf