See More RFPs

Mobile Application Shielding Solution

Overview


Cybersecurity & Data Privacy
Baltimore, Maryland, United StatesPosted: August 20, 2026Deadline: September 3, 2026

Settle Signals


Market intelligence for public sector sales teams

RFP Hunter shows what is open. Settle shows what is forming.

Settle pieces together buyer signals, budgets, contract activity, and the sources your team already monitors. See why an opportunity fits and what to do before the RFP posts.

Learn more about Settle

SUMMARY


The organization is requesting information on a COTS mobile application shielding platform that protects native and cross-platform applications without requiring substantial code changes. Key requirements include obfuscation, RASP, root and jailbreak detection, JavaScript bundle protection, and Android and iOS integrity-attestation integrations.

KEY REQUIREMENTS


TIMELINE


Responses must be received by September 3rd, 2026, at 2:00 PM EST.

QUESTION DEADLINE


September 3, 2026

CONTACTS


Primary procurement contact — name, title, email, and phone

Additional decision-makers and their departments

Issuing Agency


Social Security Administration

Organization overview and procurement intelligence available on paid plans.
See Issuer Research

DESCRIPTION


The organization is seeking information from vendors that can provide a commercial off-the-shelf mobile application shielding solution. The solution should add comprehensive runtime and binary protection without requiring an application rewrite, re-architecting, or significant source-code changes, and should integrate into an existing build process with minimal effort.

The solution must support native Android applications developed with Kotlin or Java, native iOS applications developed with Swift or Objective-C, and cross-platform applications built with React Native and Flutter. React Native support must include Android and iOS applications using the Hermes JavaScript engine, as well as protection of the application’s JavaScript bundle.

Required capabilities include threat-model coverage documentation for mobile adversary techniques; multilayer obfuscation for Android and iOS, including identifier renaming, string and data-flow obfuscation, control-flow flattening, reflection hardening, and resource obfuscation; and React Native JavaScript bundle hardening through obfuscation, string and literal scrambling, and control-flow mangling. The solution must also support Runtime Application Self-Protection, layered root and jailbreak detection, integrity attestation, Google Play Integrity API integration with hardware-backed signals, and Apple App Attest and DeviceCheck for server-validated application assertions.

Similar RFPs


Frequently asked questions


When is the submission deadline?
Submissions are due September 3, 2026. Questions must be submitted by September 3, 2026.
Who issued this RFP?
It was issued by Social Security Administration. The work is located in Baltimore, Maryland, United States.
Who is a good fit for this opportunity?
  • Mobile application security vendor with a commercial off-the-shelf shielding platform
  • Demonstrated expertise protecting Android, iOS, React Native, and Flutter applications
  • Experience implementing obfuscation, RASP, root and jailbreak detection, and application integrity controls
  • Proven integration experience with Google Play Integrity API, Apple App Attest, and DeviceCheck
  • Strong mobile threat-modeling documentation and enterprise deployment support

Analysis generated by Settle AI from the source RFP.

RFP Hunter shows what is open. Settle shows what is forming.

Settle pieces together buyer signals, budgets, contract activity, and the sources your team already monitors. See why an opportunity fits and what to do before the RFP posts.

See how Settle works