Contacts, documents and full notice history are available with a subscription.
Special Notice Expired 2 notices

Comprehensive Cybersecurity Solutions for Operational Technology (OT) Environments - Software Licensing Opportunity CS-001

Solicitation CS-001 Copied Notice ID 64c2a519bb1d45469296dca50a6fd44a Copied ENERGY, DEPARTMENT OF — BATTELLE ENERGY ALLIANCE–DOE CNTR
SAM.gov
Posted
Aug 04, 2025
Deadline
Sep 20, 2025
Set-aside
None
NAICS
541519
PSC
7A21

Summary

AI-generated · Aug 24, 2025

Licensing opportunity for two software products to strengthen cybersecurity in Operational Technology environments. Through the CyOTE program, the Department of Energy and Idaho National Laboratory seek license(s) for OPTIC, a downloadable app that helps OT professionals detect and analyze anomalies, differentiate threats from routine maintenance, guide structured anomaly documentation, and serve as a cybersecurity awareness/training tool with forensic research capabilities; and CATCH, a real-time telemetry collection and analysis framework with nine detection engines, MITRE ATT&CK for ICS mapping, STIX 2.1 reporting, and automated threat intelligence sharing via TAXII, designed to augment existing security controls and improve forensic investigations. The tools are intended to work together to boost threat detection, response, and overall OT resilience.

This is a licensing opportunity to obtain these software solutions from Idaho National Laboratory; it is not a funding opportunity, grant, or a solicitation for external services. The notice emphasizes an integrated approach where OPTIC and CATCH complement each other to strengthen energy security and enable collaboration across industry sectors, with potential collaboration possibilities for licensees.

Comprehensive Cybersecurity Solutions for Operational Technology (OT) Environments Introduction As cybersecurity threats against Operational Technology (OT) networks continue to grow, the Department of Energy (DOE) and Idaho National Laboratory (INL), through the Cybersecurity for the Operational Technology Environment (CyOTE™) program, have developed a suite of tools to strengthen cybersecurity monitoring, detection, and response. The initial release of solutions include — OPTIC, and CATCH— offering targeted capabilities to enhance protection and resilience in critical infrastructure. Operational Process for Trigger Identification and Comprehension (OPTIC) Overview: OPTIC is a downloadable application designed to support CyOTE methodologies by assisting OT professionals in detecting and analyzing cyber anomalies. It aids in differentiating between malicious threats and routine maintenance irregularities. Key Benefits: - Integrates with a Safety-Culture of OT environments - Guides users through a structured workflow for anomaly documentation and analysis. - Functions as a cybersecurity awareness training tool. - Provides forensic research capabilities to investigate past cyber events. - Saves time by consolidating government and industry standards into a single interface. - Enhances cybersecurity decision-making and response efficiency. Collection and Analysis of Telemetry for CyOTE Heuristics (CATCH) Overview: CATCH is a real-time telemetry collection and analysis framework designed to augment existing security controls with CyOTE analytics. It provides deep insights into network traffic, system logs, and user activities to detect cyber threats proactively. Key Benefits: - Offers nine detection engines for comprehensive threat monitoring. - Uses the MITRE ATT&CK® framework for analyzing ICS vulnerabilities. - Generates STIX 2.1 reports and automates threat intelligence sharing via TAXII. - Enhances forensic investigations by correlating telemetry data across systems. - Integrates with BAM and OPTIC to improve threat detection and response. Integrated Cybersecurity Approach These tools can work together to improve the cybersecurity ecosystem for OT environments. By leveraging the CyOTE tools, OPTIC and CATCH, organizations can: - Detect and respond to cyber threats more effectively. - Improve operational resilience and mitigate risks proactively. - Collaborate across industry sectors to strengthen energy security. Licensing Opportunity Notice This opportunity describes a chance to license the software mentioned from Idaho National Laboratory (INL). This is not a funding opportunity, grant, or a solicitation for external services. We are seeking parties interested in licensing these software solutions, with potential collaboration opportunities. For more information, contact td@inl.gov or visit https://cyote.inl.gov/

From Special Notice posted on Jun 03, 2025

Comprehensive Cybersecurity Solutions for Operational Technology (OT) Environments Introduction As cybersecurity threats against Operational Technology (OT) networks continue to grow, the Department of Energy (DOE) and Idaho National Laboratory (INL), through the Cybersecurity for the Operational Technology Environment (CyOTE ) program, have developed a suite of tools to strengthen cybersecurity monitoring, detection, and response. The initial release of solutions include OPTIC, and CATCH offering targeted capabilities to enhance protection and resilience in critical infrastructure. Operational Process for Trigger Identification and Comprehension (OPTIC) Overview: OPTIC is a downloadable application designed to support CyOTE methodologies by assisting OT professionals in detecting and analyzing cyber anomalies. It aids in differentiating between malicious threats and routine maintenance irregularities. Key Benefits: Integrates with a Safety-Culture of OT environments Guides users through a structured workflow for anomaly documentation and analysis. Functions as a cybersecurity awareness training tool. Provides forensic research capabilities to investigate past cyber events. Saves time by consolidating government and industry standards into a single interface. Enhances cybersecurity decision-making and response efficiency. Collection and Analysis of Telemetry for CyOTE Heuristics (CATCH) Overview: CATCH is a real-time telemetry collection and analysis framework designed to augment existing security controls with CyOTE analytics. It provides deep insights into network traffic, system logs, and user activities to detect cyber threats proactively. Key Benefits: Offers nine detection engines for comprehensive threat monitoring. Uses the MITRE ATT&CK framework for analyzing ICS vulnerabilities. Generates STIX 2.1 reports and automates threat intelligence sharing via TAXII. Enhances forensic investigations by correlating telemetry data across systems. Integrates with BAM and OPTIC to improve threat detection and response. Integrated Cybersecurity Approach These tools can work together to improve the cybersecurity ecosystem for OT environments. By leveraging the CyOTE tools, OPTIC and CATCH, organizations can: Detect and respond to cyber threats more effectively. Improve operational resilience and mitigate risks proactively. Collaborate across industry sectors to strengthen energy security. Licensing Opportunity Notice This opportunity describes a chance to license the software mentioned from Idaho National Laboratory (INL). This is not a funding opportunity, grant, or a solicitation for external services. We are seeking parties interested in licensing these software solutions, with potential collaboration opportunities. For more information, contact td@inl.gov or visit https://cyote.inl.gov/

From Special Notice posted on Aug 04, 2025

Notice history

2
  1. Special Notice Posted Jun 03, 2025 View
  2. Special Notice LATEST Posted Aug 04, 2025
    • Description: Description was updated
    • Response Deadline: Jun 20, 2025Sep 20, 2025

Details

Solicitation number CS-001
Notice ID 64c2a519bb1d45469296dca50a6fd44a
Notice type Special Notice
Product / Service (PSC) 7A21
NAICS 541519
Place of performance Idaho
Archive date Oct 05, 2025

Award Information

Not yet awarded

Documents

No files available

View on SAM.gov

Contacts

primary
Javier Martinez

Email

Agency

ENERGY, DEPARTMENT OF
ENERGY, DEPARTMENT OF
BATTELLE ENERGY ALLIANCE–DOE CNTR

Place of Performance

Idaho 83401
USA

Dates

Posted Aug 04, 2025 1 year ago
Last Updated Aug 06, 2026 1 day ago
Due Sep 20, 2025 10 months ago