Supplier Performance Risk System (SPRS) Unclaimed
Portsmouth, New Hampshire, United States
DoD’s system for assessing supplier risk and enabling responsible acquisition decisions.
Supplier Performance Risk System (SPRS) is the DoD’s authoritative system for retrieving supplier and product performance information to support responsible acquisition decisions. It provides procurement risk data and assessments across price, item, and supplier dimensions; includes market research capabilities; tracks supplier exclusions; and supports governance and compliance data related to cybersecurity and regulatory assessments. The system serves DoD Acquisition Professionals and the broader defense acquisition community to identify, assess, and monitor supplier performance and risk.
Guiding the DoD in responsible acquisition decisions by providing reliable supplier performance data and risk assessments.
What we offer
Enhanced Vendor Profile (EVP)
Provides a comprehensive overview of supplier profiles and risk metrics for informed acquisition decisions.
www.sprs.csd.disa.mil/evp.htmItem/Price Risk
Provides detailed insights into item-level risks for informed acquisition decisions.
www.sprs.csd.disa.mil/report-itemrisk.htmMarket Research
Access comprehensive market research reports for informed procurement decisions.
www.sprs.csd.disa.mil/report-market.htmNIST SP 800-171 Assessments
Streamlines management of NIST SP 800-171 assessment data for defense suppliers.
www.sprs.csd.disa.mil/nistsp.htmProcurement Risk Analysis
Assess procurement risks effectively by analyzing price, item, and supplier factors.
www.sprs.csd.disa.mil/report-riskanalysis.htmSupplier Risk
Helps identify and assess supplier risk through a comprehensive scoring system.
www.sprs.csd.disa.mil/report-supplierrisk.htmSupplier Surveillance
Enhances vendor identification and risk management for DoD acquisitions.
www.sprs.csd.disa.mil/report-surveillance.htmSolicitation Inquiry
Enables efficient vendor evaluation through comprehensive assessment reporting.
www.sprs.csd.disa.mil/report-solicitation.htmSupply Code Relationship
Enables verification of supply code relationships for accurate procurement insights.
www.sprs.csd.disa.mil/report-scrr.htmVendor Threat Mitigation (VTM)
Helps mitigate risks from vendors supporting DoD operations outside the U.S.
www.sprs.csd.disa.mil/vtm.htmCybersecurity Maturity Model Certification (CMMC)
Facilitates CMMC compliance tracking for defense contractors.
www.sprs.csd.disa.mil/cmmc.htmWho do we serve
Defense Acquisition Professionals
DoD procurement teams seeking risk and supplier performance insights.
Defense Supplier Risk Managers
Defense vendor risk governance teams seeking comprehensive risk and compliance insights.
Defense Market Intelligence And Sourcing Analysts
Defense market analysts seeking price history and supplier risk insights.
Defense Program And Compliance Leaders
Program and compliance leaders overseeing defense initiatives requiring risk visibility.
Market segments
Market size by segment
Growth potential (CAGR)
Defense supplier risk management
Capabilities to aggregate, score, and monitor supplier performance and organizational hierarchies to inform acquisition risk and contractor oversight decisions across defense agencies.
Procurement price and item risk analysis
Capabilities that analyze item-level and price risk, compare bids to escalated historical prices, and surface purchase history, price-range visualizations, and mitigation guidance for sourcing and evaluation.
Federal cybersecurity and compliance assessment
Capabilities to collect, store, and surface DoD-focused cybersecurity and regulatory assessment data (for example CMMC and NIST SP 800-171), access controls, and exclusion/governance indicators for compliance validation.
Supply chain visibility and mapping
Capabilities to visualize supplier hierarchies and supply networks, verify code relationships (FSC/PSC to NAICS), and identify vendors by material or CAGE to support sourcing, continuity, and tiered supplier analysis.
Vendor threat mitigation and foreign supplier risk
Capabilities to identify and mitigate geopolitical and foreign-sourced vendor risks, including Section 841 identifications, targeted mitigation reports, and training for acquisition professionals.
More information about our offering
Enhanced Vendor Profile (EVP)
Enhanced Vendor Profile (EVP) aggregates vendor data within SPRS to deliver a comprehensive view of a supplier’s profile, risk, and contract activity. It combines CAGE data with corporate hierarchy insights, including profile details, supplier risk score, agency and commercial risk information, and contract activity metrics across tabs such as Contracts, Reps & Certs, Obligations, Award Breakdowns, Subsidiaries, and Hierarchy views.
- Evaluate Supplier ViabilityUtilize a comprehensive risk score derived from multiple performance metrics to evaluate and compare supplier stability and reliability.
- Access Comprehensive Vendor DetailsView essential supplier information such as registration status and high-level business info to make informed decisions.
- Visualize Risk DistributionUse graphical representations to quickly assess supplier risk levels across the hierarchy, improving decision-making processes.
- Enhances Risk AwarenessAccess real-time data from various agencies and commercial sources to understand and mitigate potential risks associated with vendors.
- Analyze Contract TrendsAccess historical data on contracts awarded to vendors to better understand performance and trends over time.
- Visualize Corporate StructureEasily navigate through the corporate hierarchy of vendors using their CAGE codes to assess relationships and dependencies.
- Map Supplier NetworksVisualize the supply chains of vendors to identify vital connections and potential vulnerabilities within their operations.
- Review Supply DetailsObtain a clear summary of contracts categorized by Federal Supply Classification/Procurement Supply Code for analytical clarity.
- Discover Related EntitiesIdentify and analyze subsidiary relationships to better understand risk and exposure within supply chains.
Item/Price Risk
Item/Price Risk reports provide standalone visibility into item-level risk. They cover risk related to identified application or safety-criticality, potential counterfeiting, nonconforming material, and diminishing sources of supply; risk details supplied by agency; mitigation guidance based on policy; purchase history data including CAGE, last purchase date, unit price and escalated price; and a chart showing escalated price ranges.
- Identifies Counterfeit ThreatsHighlights the risk of counterfeiting to ensure the authenticity of supplied items.
- Visualizes Price TrendsDisplays expected price fluctuations, helping to formulate bidding strategies based on historical price data.
- Enhances Risk UnderstandingAgency-supplied risk details improve the overall understanding of item-related risks, facilitating better procurement decisions.
- Monitors Supply SourcesTracks the availability of supply sources to prevent procurement disruptions.
- Tracks Historical Purchase DataOffers insights into past purchases, aiding in forecasting future needs and pricing strategies.
- Identifies Safety-Related RisksHighlights risks that may affect the safety of items used within critical applications.
- Assesses Application RisksEvaluates the risks associated with specific applications of items, guiding procurement strategies.
- Provides Risk Mitigation StrategiesSupplies actionable strategies for mitigating identified risks, ensuring compliance with agency policies.
- Evaluates Material ComplianceAssesses the risks associated with materials that do not meet specified requirements, ensuring quality control.
Market Research
Market Research reports provide prices and supplier risk scores for prior purchases in SPRS, acting as a one-stop tool for market intelligence. They include purchase history data and price-range visualizations to support market analysis and pricing decisions.
- Evaluate Supplier RisksEnables users to assess supplier reliability and performance based on historical risk data.
- Access Past PricesGives users a reliable reference point for expected pricing in current procurement decisions.
- Visualize Price RangesHelps users quickly understand price trends and expected costs based on historical data.
- Detailed Purchase RecordsUsers can track detailed purchase metrics to evaluate historical procurement behavior.
- Review Historical PurchasesFacilitates thorough analysis of procurement patterns over time.
NIST SP 800-171 Assessments
NIST SP 800-171 Assessments within SPRS stores and manages assessment scoring data for NIST SP 800-171. The Assessments module includes assessment date, score, scope, plan of action completion date, associated CAGE codes, SSP name/version/date, and confidence level. Access requires PIEE registration and SPRS Cyber Vendor User role; assessments may be added for CAGEs in the company hierarchy. Basic assessments are not performed in SPRS.
- Centralizes Critical DataConsolidates all relevant assessment details for easy access and management, enhancing responsiveness to compliance requirements.
- Ensures Secure AccessRestricts access to authorized personnel, promoting data integrity and security within the assessment framework.
- Supports Hierarchical StructureAllows organizations to manage assessments for multiple CAGEs, streamlining compliance across the company’s operations.
- Adheres to Regulatory StandardsEnsures users comply with Department of Defense guidelines, facilitating proper preparation for assessments outside the SPRS environment.
Procurement Risk Analysis
Procurement Risk Analysis provides a three-area procurement risk assessment focusing on Price, Item, and Supplier. It compares bids to escalated historical prices to determine risk and includes supporting references for further guidance.
- Compare Bids EffectivelyThis feature allows users to analyze bid submissions in relation to historical price data, identifying potential overbids or underbids to inform procurement decisions.
- Assess Supplier RisksA comprehensive evaluation of supplier performance, providing risk scores based on various risk factors to minimize procurement-related operational risks.
- Analyze Price RisksIt assists procurement officers by highlighting pricing discrepancies against historical data and inflation trends, facilitating better budgeting.
- Evaluate Item RisksThis assessment evaluates potential safety issues, counterfeiting risks, and supply availability, ensuring informed procurement choices.
Supplier Risk
Supplier Risk provides an overall risk score derived from three years of supplier performance information. It uses ten identified risk factors and presents results on a five-color rating scale to help procurement officials identify riskier suppliers.
- Visualize Risk LevelsThe color-coded ranking allows users to quickly assess risk levels associated with suppliers, enhancing decision-making efficiency.
- Understand Supplier PerformanceThe overall score consolidates complex performance data into a single metric, making it easier to evaluate supplier reliability.
- Identify Key Risk ElementsEach factor provides detailed insights into specific risks, allowing targeted improvement and better planning.
- Track Performance TrendsThis longitudinal data helps stakeholders understand changes in supplier reliability over time.
Supplier Surveillance
Supplier Surveillance enables targeted vendor research by allowing users to search a material ID and identify vendors by CAGE that supply a given item, with filters such as Supplier Risk Score.
- Identify Vendors Using CAGE CodesQuickly locate vendors associated with specific CAGE codes to streamline procurement research.
- Search Using Material IDFacilitates precise identification of suppliers linked to given material IDs for effective decision-making.
- Filter Results By Risk ScoreEmpowers users to concentrate on suppliers with specific risk profiles, enhancing risk management and acquisition outcomes.
- Access Detailed Vendor InsightsUtilizes comprehensive performance data to evaluate vendor history and reliability.
Solicitation Inquiry
Solicitation Inquiry provides two forms of assessment reports: Standard Assessment and Best Value Assessment. Standard Assessment allows for searchable assessments; Best Value Assessment ranks vendors by Cost, Delivery, and Quality, prepopulating values with the option to edit for a total calculation of 100%.
- Enhances Decision-MakingThe Best Value Assessment streamlines vendor evaluation by automatically calculating and ranking based on critical parameters, making it easier for decision-makers to select the best vendors.
- Facilitates Quick SearchesThe Standard Assessment allows users to quickly search assessments, aiding in efficiency and accuracy during vendor evaluations.
Supply Code Relationship
Supply Code Relationship Report allows users to search and verify current data integrity relationships between FSC/PSC to NAICS and NAICS to FSC/PSC supply codes.
- Verifies RelationshipsAllows users to confirm the integrity of links between Federal Supply Classification (FSC) and North American Industry Classification System (NAICS) codes, ensuring accurate data for compliance and procurement.
- Confirms LinksFacilitates the confirmation of connections from NAICS to FSC/PSC codes, providing essential data integrity for procurement processes.
Vendor Threat Mitigation (VTM)
Vendor Threat Mitigation identifies and mitigates risks posed by vendors supporting DoD operations outside the United States. It includes the Section 841 identifications list and VTM reports for acquisition professionals, plus training resources.
- Delivers Detailed Mitigation OutcomesGives acquisition professionals insights into potential risks posed by vendors, aiding in informed decision-making.
- Provides Current IdentificationsHelps acquisition professionals identify vendors with active threats under the Never Contract with the Enemy policy.
- Offers Comprehensive TrainingProvides essential skills and knowledge for acquisition professionals to effectively utilize VTM.
Cybersecurity Maturity Model Certification (CMMC)
Cybersecurity Maturity Model Certification (CMMC) within SPRS supports Level 1 and Level 2 compliance for the DoD. It provides quick entry guides for Level 1 and Level 2 and offers supplemental guidance and regulatory references.
- Tracks Compliance ReadinessEnables contractors to monitor their readiness for CMMC certification directly within the SPRS, ensuring compliance with government requirements.
- Provides Quick Access GuidesThese guides streamline the process for users to enter and manage their CMMC Level 1 and Level 2 certifications efficiently.
- Offers Regulatory SupportUsers gain access to essential guidance and documents that help navigate compliance with CMMC regulations.
References
Methodology and sourcing behind the figures shown above.
Defense supplier risk management
Used cited supplier/supply-chain risk management market sizes (2025 base: $5.02B–$8.2B) as the relevant addressable market. Estimated the defense-specific supplier risk management segment as roughly 7–9% of the broader market (higher regulatory/oversight needs but smaller end‑market share), producing ≈ $0.7B in 2025. Growth potential set slightly below the cited overall market CAGRs (11–14%) due to longer procurement cycles in defense, resulting in an estimated CAGR of ~10.5%.
Procurement price and item risk analysis
Estimates use procurement-analytics market reports in the searchResults as the primary basis. 2025 market-size reports range ~USD 6.1–8.7B (average ≈USD 7.07B). The requested capability (price & item risk analysis) maps to spend- and risk-analytics within procurement analytics; applying a conservative 15% share of the overall procurement-analytics market yields ~USD 1.06B (rounded to 1.1). Growth potential (CAGR 18%) is set between higher forecasts (~22% from two reports) and a lower estimate (6.5%), reflecting strong demand for price-risk and supplier-risk analytics amid supply-chain volatility.
Federal cybersecurity and compliance assessment
Estimation based on federal cybersecurity market figures in the search results. BusinessResearchInsights and MarketResearchIntellect indicate a ~USD 16–18B federal/global federal cyber market; MarketsandMarkets shows US cybersecurity CAGR ~7%. The DoD-focused compliance/assessment niche (CMMC/NIST SP 800-171 assessment platforms, data storage, access controls, governance indicators) is a subset of federal spending—assumed ~10–12% of federal cybersecurity spend given regulatory-driven demand. That yields an estimated market around USD 1.6–2.0B (midpoint USD 1.8B). Growth potential is set above the broader federal CAGR (6–7.5%) because compliance mandates and grant/federal programs accelerate demand; estimated CAGR ~9%.
- "global federal cyber security market size was valued at approximately USD 18 billion in 2023 and is expected to reach USD 30 billion by 2032"
- "valued at USD 16.34 Billion in 2025 and is projected to reach USD 33.68 Billion by 2035"
- "projected to grow from USD 69.50 billion in 2025 to USD 98.11 billion by 2030, with a compound annual growth rate (CAGR) of 7.1%"
Supply chain visibility and mapping
Primary source (MarketResearchFuture) reports the Supply Chain Visibility Software market at about $3.17B in 2024 with a projected CAGR ~10.8% (2025–2035). The requested segment (visibility and mapping capabilities) maps to this visibility software market; an independent market brief (LinkedIn summary of a research report) reports a comparable CAGR (~12.4%) for visibility solutions, supporting a high-growth outlook in the low-double-digit range.
Vendor threat mitigation and foreign supplier risk
Estimates based on multiple vendor/vendor-risk market reports in the search results. Global vendor risk management market estimates range from about $6.4B–$12.5B (mid-2020s); specialized capabilities for geopolitical/foreign-supplier threat mitigation are a niche within VRM. Assuming a focused share (~7–12%) of the broader VRM market (reflecting government/defense and regulated-industry demand for foreign-supplier/geopolitical risk services) yields an estimated market size of roughly $0.8B today. Growth potential is aligned with reported VRM CAGRs (≈10–15%); given rising geopolitical and supply-chain security drivers this subsegment likely grows at the higher end, estimated ~13% CAGR.
- The global vendor risk management market size was valued at USD 12.5 billion in 2025 ... CAGR of 15.38% during the forecast period.
- Vendor Risk Management Market Size was estimated at 6.458 USD Billion in 2024 ... CAGR (2025 - 2035) 11.65%.
- Global IT vendor risk management market valued at approximately USD 6.4 billion in 2025, growing at a CAGR of around 10.0%.
- The vendor risk management market is projected to grow from over USD 10.59 billion in 2024 to exceed USD 65.9 billion by 2037, CAGR of over 15.1%.