SBA Advances New Rulemaking to Right-Size Small Business Set-Aside Thresholds
The Small Business Administration (SBA) is moving forward with new regulatory proposals designed to “right-size” small business contracting rules and size standards. The effort focuses on updating NAICS code thresholds, reinforcing program integrity, and ensuring federal small business set-aside dollars directly support true small and emerging businesses rather than mid-tier firms near size limits.
GovCon Takeaway: Small business contractors approaching mid-tier thresholds must track these rule changes closely. Re-benchmarking size standards and set-aside rules will directly impact contract eligibility, requiring firms to adjust their teaming arrangements and pipeline strategies before final rules take effect.
Defense Industry Raises Alarms Over Three High-Impact DoD Acquisition Reform Initiatives
Defense industry associations are voicing strong concerns over three recent Department of Defense acquisition reform initiatives. Contractors report that new restrictions on retaining outside consultants, fluctuating cybersecurity compliance rules, and proposed commercial software licensing terms are creating significant operational friction and uncertainty across the Defense Industrial Base (DIB).
GovCon Takeaway: Defense contractors must audit their compliance and consulting agreements. With the DoD enforcing stricter oversight and shifting reform rules, firms need clear internal guardrails and agile capture strategies to avoid unexpected disqualifications or compliance penalties on upcoming defense bids.
GSA and Treasury Launch Post-Quantum Cryptography Initiatives to Protect Critical Infrastructure
The General Services Administration (GSA) and the Department of the Treasury have launched new pilot initiatives to transition key enterprise IT systems to Post-Quantum Cryptography (PQC). Aligning with White House mandates, these efforts focus on inventorying existing encryption assets, testing quantum-resistant algorithms, and establishing frameworks to protect sensitive government financial systems against future quantum threats.
GovCon Takeaway: IT, cybersecurity, and fintech contractors must accelerate their post-quantum capabilities. As early-adopting agencies like Treasury and GSA baseline their quantum-resistant frameworks, PQC readiness will quickly shift from an innovative option to a mandatory evaluation factor across federal schedules and GWACs.
OMB Directs Federal Agencies to Standardize Citizen Portals Around Login.gov
The Office of Management and Budget (OMB) has issued a new memorandum directing civilian federal agencies to standardize user authentication by implementing Login.gov across all public-facing digital services. The directive aims to streamline citizen interactions with government websites, improve identity verification standards, and eliminate redundant, agency-specific single sign-on solutions.
GovCon Takeaway: Web development, identity access management (IAM), and software contractors supporting federal public-facing portals must prepare for mandatory Login.gov integrations. Future solicitations for civilian digital services will increasingly treat compatibility with federal single sign-on (SSO) standards as a core technical requirement.


