Attachment B Pricing Sheet.xlsx
XLSX spreadsheet 13 KB Posted
- Attached to
- RFQ - Brand Name HackerOne Crowdsource Security Testing Annual Subscriptions Federal contract opportunity
- Solicitation number
- RFQ-CFP-20440-21-0038
About this file
This document contains a pricing sheet and solicitation for crowdsourced security testing subscriptions. The pricing sheet lists annual subscriptions for continuous bug bounty testing, penetration testing packages, and vulnerability disclosure programs from the vendor HackerOne. Pricing for the base year and four option years is $0 with quantities of one for each subscription.
The related solicitation is open only to small businesses that are authorized resellers of HackerOne products. The Consumer Financial Protection Bureau seeks to award a firm-fixed-price contract for the subscriptions described in the pricing sheet. Interested vendors must submit questions by September 20th and quotes by September 22nd. The Department of the Treasury Bureau of the Fiscal Service will evaluate quotes using the lowest-priced technically acceptable process.
View the file
Other files for this federal contract opportunity
| File | Type | Posted |
|---|---|---|
| Attachment C Non Disclosure Agreement.docx | DOCX document | |
| Attachment D SLA Clarification Requests.docx | DOCX document | |
| Attachment A 508 ARS.pdf | ||
| RFQ-CFP-20440-21-0038.pdf |
On GovTribe
Work with this file on GovTribe
- Download the original file
- Contacts named in this file
- Similar government files
- Ask GovTribe AI about this file
Text version
Sheet1 Attachment B - Pricing Sheet
HackerOne Crowdsource Security Testing Annual Subscriptions (FedRamp Compliant) Anticipated Period of Performance: One (1) 12-month Base Year and four (4) 12-month Option Years
| Vendor Name: | |
| DUNS: | |
| Overview | Description |
| Continuous Bug Bounty Testing | Annual Subscription, a hacker-powered platform designed to ensure vulnerabilities are found before they are exploited. |
| PenTest Plus (4-PenTest Package) | Standard complexity or scope, (up to 4-person team) Ability to coordinate at least 4 penetration test engagements. A pentest platform designed for customers who want hacker-powered testing built into their development or compliance cycles. |
| HackerOne Response - Vulnerability Disclosure Program (VDP) | Standard Package, A vulnerabilty disclosure program designed to meet the needs of organizations looking to allow external parties to report security vulnerabilities in a coordinated fashion. |
| License | Quantity | Cost | Duration (months) | Annual Totals | |
| Base Year: 12 Months | |||||
| Base Year | Continuous Bug Bounty Testing | 1 | $0.00 | 12 | $0.00 |
| Optional - PenTest Plus (4-PenTest Package) | 1 | $0.00 | 12 | $0.00 | |
| Optional - HackerOne Response - Vulnerability Disclosure Program (VDP) | 1 | $0.00 | 12 | $0.00 | |
| Option Year 1: 12 Months | |||||
| Option Year 1 | Continuous Bug Bounty Testing | 1 | $0.00 | 12 | $0.00 |
| Optional - PenTest Plus (4-PenTest Package) | 1 | $0.00 | 12 | $0.00 | |
| Optional - HackerOne Response - Vulnerability Disclosure Program (VDP) | 1 | $0.00 | 12 | $0.00 | |
| Option Year 2: 12 Months | |||||
| Option Year 2 | Continuous Bug Bounty Testing | 1 | $0.00 | 12 | $0.00 |
| Optional - PenTest Plus (4-PenTest Package) | 1 | $0.00 | 12 | $0.00 | |
| Optional - HackerOne Response - Vulnerability Disclosure Program (VDP) | 1 | $0.00 | 12 | $0.00 | |
| Option Year 3: 12 Months | |||||
| Option Year 3 | Continuous Bug Bounty Testing | 1 | $0.00 | 12 | $0.00 |
| Optional - PenTest Plus (4-PenTest Package) | 1 | $0.00 | 12 | $0.00 | |
| Optional - HackerOne Response - Vulnerability Disclosure Program (VDP) | 1 | $0.00 | 12 | $0.00 | |
| Option Year 4: 12 Months | |||||
| Option Year 4 | Continuous Bug Bounty Testing | 1 | $0.00 | 12 | $0.00 |
| Optional - PenTest Plus (4-PenTest Package) | 1 | $0.00 | 12 | $0.00 | |
| Optional - HackerOne Response - Vulnerability Disclosure Program (VDP) | 1 | $0.00 | 12 | $0.00 | |
| Total Contract Value (TCV) | $0.00 |
File details come from the government source that posted it. Updated .