# SAM #6913G626Q300048 

Sole-Source Follow-On for Cybersecurity Assessment Services at Volpe Center

**Buyer:** Volpe Center
**Posted:** September 28, 2026
**Identifier:** 6913G626Q300048
**NAICS:** 541512

This notice details a sole-source, logical follow-on procurement for cybersecurity assessment services at the Volpe National Transportation Systems Center.
- Procurement is for comprehensive cybersecurity assessment and cyber maturity services
  - Includes evaluation of security controls, vulnerability identification, compliance verification, and actionable remediation recommendations
  - Covers migration from NIST 800-53 Rev 4 to Rev 5 for up to 10 systems
- VersaTech Inc. is the designated contractor, recognized as a small disadvantaged business
- Contract is under the NITAAC CIO-SP3 Small Business GWAC, with continuity and risk mitigation cited as justification
- Period of performance includes a 12-month base and a 12-month option, potentially extending coverage until mid FY2028
- No specific product part numbers or quantities; focus is on services
- Justification memorandum attached, outlining rationale for exception to fair opportunity

### Description

<p>This public notice publishes the Justification for an Exception to Fair Opportunity in accordance with RFO 16.507-6 for a noncompetitive, logical follow-on task order awarded under the NITAAC CIO-SP3 Small Business GWAC (Contract No. 75N98119D00077 / Follow-on to Task Order No. 6913G625F50027N). This sole-source action is authorized pursuant to RFO 16.507-6(b)(3). Please refer to the attached redacted Justification for an Exception to Fair Opportunity memorandum for complete details regarding this acquisition action.</p>

[View original listing](https://sam.gov/opp/1b321c983bf041e88f0ba5aeea4e65b3/view)
