Portland District USACE – Notice to Industry: Anticipated Requirement for CMMC Level 2 (self-Assessment) on Future Contract Actions

Endist Portland · United States government procurement

Closed December 19, 2025. GlobalGov surfaces government procurement from around the world, including the markets your competitors overlook.

Closed
Status

Opportunity Overview

The Portland District, U.S. Army Corps of Engineers (USACE), provides this Notice to Industry to inform current and prospective contractors that most future contract actions issued by the District are expected to require Cybersecurity Maturity Model Certification (CMMC) 2.0 Level 2 (Self-Assessment). This notice is informational only and does not constitute a solicitation, request for proposal, or request for quote.

In alignment with Department of Defense implementation of CMMC 2.0, contracting officers are required to include applicable CMMC levels in solicitations and to verify that an offeror’s current CMMC status (self-assessment or certification, as required) is recorded in the Supplier Performance Risk System (SPRS) as a condition of award. For most Portland District requirements, offerors will be expected to have completed a CMMC Level 2 self-assessment in accordance with NIST SP 800‑171 requirements, scored using the CMMC Level 2 assessment methodology, and entered their score and affirmation in SPRS prior to award.

The following provisions and clauses may be included in forthcoming solicitations and are available here:  https://www.acquisition.gov/

Defense Federal Acquisition Regulations Supplement (DFARS) provisions 252.204-7008, Compliance with Safeguarding Covered Defense Information Controls, 252.204-7019, Notice of NIST SP 800-171 DoD Assessment Requirements, and 252.204-7025, Notice of Cybersecurity Maturity Model Certification Level Requirements may be included in most future solicitations. 

Federal Acquisition Regulation (FAR) clause 52.204-21 Basic Safeguarding of Covered Contractor Information Systems and DFARS clauses 252.204-7012, Safeguarding Covered Defense Information and Cyber Incident Reporting (Deviation 2024-O0013), 252.204-7020 NIST SP 800-171 DoD Assessment Requirements, and 252.204-7021 Contractor Compliance With the Cybersecurity Maturity Model Certification Level Requirements will likely be included in most upcoming...

Your competitors are watching the same crowded contracts everyone else is. Track live opportunities like this one worldwide, set deadline alerts, and win where they aren’t. Free for 14 days, no card.

Start Free

Solicitation Details

Issuing agencyEndist Portland
CountryUnited States
CategoryMonitoring Evaluation
PublishedDecember 19, 2025
Procurement stageActive solicitation
ClosedDecember 19, 2025
StatusClosed — no longer accepting responses
Official sourceView original notice
Last verifiedAugust 12, 2026

Source: U.S. Government (SAM.gov) — public domain. GlobalGov is not affiliated with or endorsed by the United States Government.

Browse Similar Open Opportunities in United States

U.S. ARMY SPACE AND MISSILE DEFENSE COMMAND (USASMDC) SPACE AND MISSILE DEFENSE TECHNICAL CENTER (SMDTC) BROAD AGENCY ANNOUNCEMENT FOR SCIENCE, TECHNOLOGY, AND TEST AND EVALUATION RESEARCH
Population Assessment of Tobacco and Health (PATH) Study Biospecimen Access (X01)
PPVG GEN V Award
State Border Security Reinforcement Fund
FY 2026 Continuum of Care Competition and Youth Homelessness Demonstration Program Grants NOFO
Advancing Global Health
Advancing Global Health
Advancing Global Health

See every United States Monitoring Evaluation opportunity your competition is missing. Free for 14 days.

Get real-time alerts, competitive intelligence, and deadline tracking for this and every market worldwide.

Start Free Trial — No Card Required

Free 14-day trial · no card required

See who is already competing here →

Get a free United States Monitoring Evaluation intelligence report in your inbox

A personalized report on United States Monitoring Evaluation opportunities, emailed in 5-10 minutes. One per month, no account needed.