See More RFPs

vCISO Support Services

Overview


Cybersecurity & Data Privacy
San Mateo, California, United StatesPosted: July 30th, 2026Deadline: August 26th, 2026

Settle Signals


Market intelligence for public sector sales teams

RFP Hunter shows what is open. Settle shows what is forming.

Settle pieces together buyer signals, budgets, contract activity, and the sources your team already monitors. See why an opportunity fits and what to do before the RFP posts.

Learn more about Settle

SUMMARY


A San Mateo, California government authority is seeking a firm to provide five years of vCISO support services. Work includes cybersecurity governance, risk assessment, policy development, incident response planning, vendor risk oversight, and security program advisory services.

DESCRIPTION


A government authority in San Mateo, California is seeking a vendor to provide virtual Chief Information Security Officer (vCISO) support services. The selected firm will provide professional cybersecurity leadership and advisory services to support the agency’s security program over a five-year contract term.

The scope includes establishing and maintaining a comprehensive cybersecurity governance program, defining organizational risk tolerances, security metrics, and executive reporting structures. The vendor will conduct ongoing risk assessments of digital assets, identify vulnerabilities, prioritize remediation efforts, and update cybersecurity policies and standards to align with local government operations and applicable state and federal requirements.

The engagement also includes overseeing technical and administrative safeguards for critical infrastructure, public safety networks, and personally identifiable information; advising IT leadership on monitoring tools for real-time threat detection; supporting cybersecurity budget planning; and developing, maintaining, and testing incident response and business continuity plans. Additional responsibilities include assessing third-party cybersecurity posture, supporting security requirements and vendor risk assessments for technology procurements, and evaluating employee cybersecurity awareness and phishing simulation programs.

Similar RFPs


Frequently asked questions


When is the submission deadline?
Submissions are due August 26, 2026.
Who is a good fit for this opportunity?
  • Cybersecurity consulting firm with virtual CISO service experience
  • Proven work with government or public sector agencies
  • Expertise in cybersecurity governance, risk management, and compliance
  • Experience protecting critical infrastructure and personally identifiable information
  • Capability in incident response planning and business continuity strategy
  • Familiarity with vendor risk assessments and security requirements for technology procurements
  • Team able to advise on security monitoring, awareness training, and phishing program improvement
  • Capacity to support a multi-year strategic cybersecurity engagement

Analysis generated by Settle AI from the source RFP.

RFP Hunter shows what is open. Settle shows what is forming.

Settle pieces together buyer signals, budgets, contract activity, and the sources your team already monitors. See why an opportunity fits and what to do before the RFP posts.

See how Settle works