The New York State Insurance Fund (NYSIF) is seeking proposals for a 2025 Penetration Testing contract, with proposals due on July 1, 2025, at 2:00 p.m. EST. The procurement is for comprehensive cybersecurity services focused on identifying and evaluating potential vulnerabilities in the organization's information technology infrastructure. Prospective vendors will be required to conduct thorough penetration testing to assess and validate the security posture of NYSIF's systems, networks, and applications. Interested parties must obtain the solicitation document from NYSIF's Procurement website and can submit questions via email to contracts@nysif.com, using the subject line "NYSIF 2025-49-IT". The contract term is set for one year, and bidders must carefully review and incorporate any amendments or clarifications posted on the procurement website. Proposals will be evaluated based on the vendor's ability to meet the technical requirements and demonstrate expertise in cybersecurity testing methodologies. The procurement opportunity is exclusively reserved for New York State small businesses certified as Minority or Women Owned Businesses (M/WBE) under Article 15-A or Service-Disabled Veteran Owned Businesses (SDVOB) under Article 3 of the New York State Veterans' Services Law. NYSIF has established specific participation goals, including 30% for M/WBE and 6% for SDVOB businesses. The total contract value will not exceed $1,500,000, with NYSIF anticipating awarding a single contract. Previously identified vendors who have been awarded similar contracts include JANUS Associates, Tech Valley, and Tallent. Uncertified businesses interested in participating are encouraged to seek certification through the NYS Empire State Development website for M/WBE or the NYS Office of General Services for SDVOB. Any communication with NYSIF personnel outside of the designated contacts (Ryan Cerone & Vincent Ginardi) may result in disqualification from the current and potential future procurements.