RFP / Tender
⏰ Closes 20 Jul 2026 — 3 days
Government authority — Arlington, Virginia
📍 USA — Virginia · Confirmed
Open solicitation for public-administration cybersecurity support — technical assistance for a government body, restricted to US-based organisations, with offsite delivery allowed.
Why it matters: A live, in-scope tender closing in days — offsite delivery means no local office needed, and the onshore-only rule thins the field.
Next step: Tight deadline — assign a bid lead today, pull the solicitation documents (ref ITES-10431) and confirm submission requirements before Monday.
RFP / Tender
Vendor selection ~17 Aug 2026
Crowder College
📍 USA — Missouri · Confirmed
The college is seeking a fully managed SOC and MDR platform covering roughly 2,500 devices, 85 servers and eight campus locations — with optional EDR, email filtering, phishing-resistant MFA and security-awareness training.
Why it matters: A managed SOC/MDR scope is exactly the recurring-revenue engagement worth chasing — and the optional add-ons expand the deal after award.
Next step: Locate the RFP on Crowder College's procurement page, confirm the submission deadline ahead of the mid-August selection, and scope pricing for ~2,500 endpoints across 8 sites.
RFP / Tender
Open — deadline on portal
Village of Westchester
📍 USA — Illinois · Confirmed
Municipality requesting proposals for a fully managed detection-and-response service: managed EDR, identity threat detection, SIEM, and continuous real-time analysis with human-led incident response.
Why it matters: The scope reads like a managed-services catalogue — a vendor covering MDR + ITDR + SIEM in one offer can bid the whole package rather than a slice.
Next step: Open the listing, confirm the current submission deadline on the village's procurement portal, and register as a bidder.
RFP / Tender
Pre-RFP window
Mississippi Office of Homeland Security
📍 USA — Mississippi · Inferred (published plan, RFP not yet issued)
The state's federally funded cyber grant programme plans statewide cybersecurity assessments of local jurisdictions — and its published guidance says the state will retain funds and procure one or more vendors through an RFP process to deliver them consistently.
Why it matters: A state-level assessment contract covers every participating jurisdiction in one award — engaging before the RFP publishes is how these races are usually won.
Next step: Register on Mississippi's procurement system now and contact the programme office to get on the notification list before the assessment RFP is issued.
Partnership
Applications open
MSSP Alert — 2026 Top 250 Ranking
📍 USA / Global · Confirmed
The industry's annual ranking of managed security service providers has opened its 2026 application window — a recognised credibility marker used by buyers, partners and investors when shortlisting providers.
Why it matters: Free visibility play — a Top 250 listing strengthens every future proposal and RFP response, especially against larger incumbents.
Next step: Complete the official Top 250 survey submission before the application window closes.
Partnership
Rolling intake
Stellar Cyber — Infinity MSSP Partner Program
📍 USA / Global · Confirmed
The SOC-platform vendor's partner programme — recognised with a 5-star rating in this year's CRN Partner Program Guide — has grown past 300 member MSSPs and continues to onboard service providers.
Why it matters: A platform partnership shortcuts the tooling build for managed SOC bids (like the Crowder College RFP above) and adds co-marketing reach.
Next step: Request the partner prospectus and a platform demo; evaluate against current SOC tooling costs before the next managed-services bid.
Outreach Lead
Active situation
Chelan County (and neighbouring counties)
📍 USA — Washington · Inferred (incident confirmed; buying need inferred)
The county entered a third week of disruption after a malware attack forced countywide networks, phones, email and public websites offline — with no timeline for full recovery and outside specialists brought in to investigate.
Why it matters: Post-incident counties rebuild with hardened architecture — and every neighbouring county just watched three weeks of downtime. Regional demand for assessments, MDR and IR retainers follows events like this.
Next step: Respectful timing matters — approach neighbouring Washington counties (not the victim mid-incident) with a readiness-assessment offer referencing the regional risk.
Signal
In force
CMMC enters mandatory implementation
📍 USA — Federal / defence supply chain · Confirmed
The defence cybersecurity certification programme has moved into its first mandatory phase — contractors and subcontractors must now report compliance status, with Level 2 organisations handling controlled unclassified information requiring formal assessments for award eligibility.
Why it matters: Thousands of defence suppliers now need gap assessments and NIST 800-171 remediation to stay contract-eligible — a compliance consulting pipeline created by regulation, not marketing.
Next step: Build a fixed-price CMMC readiness package and target defence subcontractors in manufacturing-heavy states — they feel the mandate first and have the least in-house capability.
Signal
Taking effect 2026
Federal cyber incident reporting rule (CIRCIA)
📍 USA — Education & critical infrastructure · Confirmed
New federal rules taking effect this year will require school districts over 1,000 students and other covered entities to report disruptive cyber incidents within 72 hours — and ransom payments within 24 hours.
Why it matters: Reporting deadlines that short are impossible without an incident-response retainer and detection in place — the rule effectively mandates the services in Vantacore's catalogue for a huge new buyer segment.
Next step: Package an education-sector "CIRCIA-ready" bundle (IR retainer + detection + reporting playbook) and pitch district IT directors before the compliance date.
Signal
Round 4 in progress
Washington State cyber grant round 4
📍 USA — Washington · Confirmed
The state technology agency is running its fourth funding round for local cybersecurity projects — cities, counties, tribal governments, school districts and universities can each submit up to three prioritised projects.
Why it matters: Every funded project becomes vendor work within months — and pairs directly with the Chelan County lead above: funded, motivated Washington buyers.
Next step: Offer Washington local governments free help scoping their grant project proposals — the vendor who shapes the project usually delivers it.
Scan Summary
Strongest themes
Managed SOC/MDR scopes dominate the live tenders — public bodies are buying outcomes, not tools. Regulation is the second engine: new certification and incident-reporting mandates are creating compliance-driven demand independent of any single procurement.
Top priorities
1) The Arlington solicitation — three days to close, act today. 2) Crowder College's managed SOC RFP — recurring revenue with a mid-August selection. 3) The CMMC readiness package — regulation-created demand with thousands of suppliers needing help now.
Patterns
Washington State is the hottest single geography this cycle — an active county incident plus a funded state grant round means motivated buyers with budget. Education is the fastest-growing sector for managed security procurement.
Not verified / gaps
The Westchester deadline needs confirming on the village portal. Several federal opportunities found were small renewals or closed within the scan week and were excluded rather than padded in.