Request for Information - FAA Cybersecurity Threat Hunting

Location: Federal
Posted: Oct 17, 2024
Due: Nov 5, 2024
Agency: TRANSPORTATION, DEPARTMENT OF
Type of Government: Federal
Category:
  • D - Automatic Data Processing and Telecommunication Services
Solicitation No: 693KA8-25-RFI-ThreatHunt
Publication URL: To access bid details, please log in.
Follow
Request for Information - FAA Cybersecurity Threat Hunting
Active
Contract Opportunity
Notice ID
693KA8-25-RFI-ThreatHunt
Related Notice
Department/Ind. Agency
TRANSPORTATION, DEPARTMENT OF
Sub-tier
FEDERAL AVIATION ADMINISTRATION
Office
693KA8 SYSTEM OPERATIONS CONTRACTS
General Information
  • Contract Opportunity Type: Special Notice (Original)
  • Original Published Date: Oct 17, 2024 01:26 pm EDT
  • Original Response Date: Nov 05, 2024 10:00 am EST
  • Inactive Policy: 15 days after response date
  • Original Inactive Date: Nov 20, 2024
  • Initiative:
    • None
Classification
  • Original Set Aside:
  • Product Service Code: DJ01 - IT AND TELECOM - SECURITY AND COMPLIANCE SUPPORT SERVICES (LABOR)
  • NAICS Code:
    • 54151 - Computer Systems Design and Related Services
  • Place of Performance:
Description

The Federal Aviation Administration (FAA) is hereby issuing a request for information (RFI) regarding Cybersecurity Threat Hunting.



Purpose:



The purpose of this RFI is to understand both industry approaches and industry capabilities related to Cybersecurity Threat Hunting. Responses to this RFI will assist the FAA with future cybersecurity acquisition planning and future cybersecurity requirements definition in support of the FAA mission to provide the safest, most efficient aerospace system in the world.



Instructions for Submittals:



The FAA will only accept email submittals addressed to the FAA Primary Point of Contact of this RFI. The email subject line must include the SAM.gov announcement number followed by the company name. Individual e-mail message size (i.e., email body text plus any attachments) must not exceed 19MB.



The FAA requests that an industry response to this RFI include




  • Company point(s) of contact, title(s), telephone number(s), email address(es)

  • Company Capability statement

  • Company responses/feeback to the items below, as applicable:






  1. Describe the key fundamentals of a Threat Hunting program built for a federal agency.

  2. Do you use an industry standard model for Threat Hunting?

    • If so, what model is utilized?

    • Discuss a model that you would recommend for the FAA NAS environment?



  3. What tools does your threat hunting team utilize?

    • COTS:

    • Open Source:

    • GOTS:

    • Other:



  4. Describe the deliverables involved in your Threat Hunting program

  5. How long does a typical hunt last?

    • In edge cases, what factor(s) contribute to a hunt ending early or extending well past estimated targets?



  6. What is the skillset and distribution within your personnel?

    • Do your Threat Hunters specialize?

      • If so, what specialties would your ideal team be made of?

      • If not, please discuss the core skillset your ideal team contains.



    • In an ideal team, what support personnel would you have?



  7. Describe the distinction and collaboration between various groups/functions such as; threat hunting, OSINT, SOC, threat intelligence, indicator of compromise generation, etc.

    • What are the key groups/functions that must exist?

    • Should those key groups/functions exist within one Threat Hunting team or does collaboration work better?



  8. What skillsets, tools, or other experience make a good Threat Hunter?

    • Discuss this per role if there are various roles.





Disclaimer:



This is not a Screening Information Request (SIR). This notice serves as performance of an FAA market analysis in accordance with AMS Procurement Guidance T3.2.1.2.A.1.



All costs associated with the preparation and/or submission of responses are the responsibility of the respondent. The U.S. Government will not pay for any information received or costs incurred associated with a submittal for this specific notice.



All proprietary and/or confidential information contained in a submission must be marked appropriately.



The FAA’s acquisition policies, guidance, and instruction are found at https://fast.faa.gov/.



Participation in this RFI notice is voluntary. Responses will be reviewed by FAA employees and a limited number of FAA support contractors working under non-disclosure agreements. Should a respondent require an NDA be signed between the respondent’s business entity and an FAA support contractor, please email the point of contact listed within this notice indicating so.



The FAA has the option of conducting one-on-one communications as deemed appropriate without the obligation to hold communications with all respondents.



A business entity responding to this notice neither qualifies respondents for, nor excludes respondents from, responding to a resulting SIR, if any.



Thank you in advance to all companies that provide a response.


Attachments/Links
Contact Information
Contracting Office Address
  • AAQ-30, FOB-10A, RM 400W 800 INDEPENDENCE AVE, SW
  • WASHINGTON , DC 20591
  • USA
Primary Point of Contact
Secondary Point of Contact


History
  • Oct 17, 2024 01:26 pm EDTSpecial Notice (Original)
Daily notification on new contract opportunities

With GovernmentContracts, you can:

  • Find more opportunities and win more business
  • Receive daily alerts for all new bid opportunities
  • Get contract opportunities matched to your business
ONE WEEK FREE TRIAL

See also

...Follow Computer System Active Contract Opportunity Notice ID SPRHA5-26-R-0382 Related Notice...

DEPT OF DEFENSE

Bid Due: 6/18/2026

...Follow Computer System Active Contract Opportunity Notice ID SPRHA5-26-R-0382 Related Notice...

DEPT OF DEFENSE

Bid Due: 6/18/2026

...Follow COMPUTER SYSTEM,DIG Active Contract Opportunity Notice ID N0010425QNC80 Related Notice...

DEPT OF DEFENSE

Bid Due: 6/22/2026

...- Computer Systems Design Services Place of Performance: Description Notice of Intent to ...

INTERIOR, DEPARTMENT OF THE

Bid Due: 6/12/2026

* Disclaimer: Information regarding bids, requests for proposals (RFPs), or requests for qualifications (RFQs) is provided on this website only for convenience and does not constitute official public notice. Persons wishing to respond to or inquire about bids, RFPs, or RFQs should contact the appropriate government department.