FAR and DFARS › DFARS Part 208: Required Sources of Supplies and Services › Subpart 208.74
DFARS 208.7402 General.
The codified text (eCFR, as of 2026-10-02). Under the Revolutionary FAR Overhaul ↗, agencies follow class deviations with new text for many parts while the formal rules go through the Federal Register: check the solicitation and your contract's clauses, which rule.
In plain English
This section tells DoD departments and agencies to buy commercial software and related services through the DoD Enterprise Software Initiative (ESI), which uses enterprise software agreements to get better terms and pricing. It also requires that when acquiring certain information technology, an evaluation factor for supply chain risk be included. It matters because contractors selling commercial software or IT to DoD may need to work through ESI agreements and may face supply chain risk evaluations.
Applies to: DoD departments and agencies acquiring commercial software, commercial software services, or certain information technology
What it requires
- Fulfill requirements for commercial software and commercial software services in accordance with the DoD Enterprise Software Initiative (ESI)
- Include an evaluation factor regarding supply chain risk when acquiring information technology that is a covered system, part of a covered system, or in support of a covered system
Key terms: commercial software · commercial software services · DoD Enterprise Software Initiative (ESI) · enterprise software agreements (ESAs) · supply chain risk
Written by AI from this section's text. A guide, not legal advice: the text below rules.
The text
(a) Departments and agencies shall fulfill requirements for commercial software and commercial software services, such as software maintenance, in accordance with the DoD Enterprise Software Initiative (ESI) (see https://www.esi.mil/). ESI promotes the use of enterprise software agreements (ESAs) with contractors that allow DoD to obtain favorable terms and pricing for commercial software and related services. ESI does not dictate the products or services to be acquired.
(b) Include an evaluation factor regarding supply chain risk (see subpart 239.73) when acquiring information technology, whether as a service or as a supply, that is a covered system, is a part of a covered system, or is in support of a covered system, as defined in 239.7301.
Sections it refers to
- 239.7301 Definitions.
← 208.7401 Definitions. · 208.7403 Acquisition procedures. →
Source: eCFR, 48 CFR chapters 1 and 2 (GPO GovInfo bulk data) ↗. Plain words for the terms: glossary.