II.1)
Scope of the procurement
DES - ICT Security Vulnerability Assessment and Penetration Testing Services
Reference number:
DES/IT Unit/Security
72000000
-
IT services: consulting, software development, Internet and support
Services
II.1.4)
Short description
Specialist expertise for the provision of penetration testing and security vulnerability assessment of the Department’s infrastructure. The annual security vulnerability assessment will cover externally hosted web systems, including its school facing (Esinet) eGovernment systems and public website, its DMZ-based public IP addresses and MS Azure hosted site plus an assessment of all its internal critical infrastructure including Servers, Switching, Security (Firewall and SIEM), Wireless and Mobile Device Management systems. The output will be a report based on best practice advice and recommendations on findings from any completed vulnerability assessments. Given the sensitive nature of the Department’s data subjects, the testing days will be required to be completed onsite at the Department’s offices.
II.1.5)
Estimated total value
Value excluding VAT: 400000.00
EUR
II.1.6)
Information about lots
This contract is divided into lots:
no
II.2.2)
Additional CPV code(s)
72200000
-
Software programming and consultancy services
72220000
-
Systems and technical consultancy services
72800000
-
Computer audit and testing services
72810000
-
Computer audit services
72820000
-
Computer testing services
II.2.3)
Place of performance
Main site or place of performance:
Dublin
II.2.4)
Description of the procurement
Specialist expertise for the provision of penetration testing and security vulnerability assessment of the Department’s infrastructure. The annual security vulnerability assessment will cover externally hosted web systems, including its school facing (Esinet) eGovernment systems and public website, its DMZ-based public IP addresses and MS Azure hosted site plus an assessment of all its internal critical infrastructure including Servers, Switching, Security (Firewall and SIEM), Wireless and Mobile Device Management systems. The output will be a report based on best practice advice and recommendations on findings from any completed vulnerability assessments. Given the sensitive nature of the Department’s data subjects, the testing days will be required to be completed onsite at the Department’s offices.
Price is not the only award criterion and all criteria are stated only in the procurement documents
Value excluding VAT: 400000.00
EUR
II.2.7)
Duration of the contract, framework agreement or dynamic purchasing system
Duration in months:
12
This contract is subject to renewal:
yes
Description of renewals:
4 possible extension of 12 months each (Possible Total of 5 Years)
II.2.10)
Information about variants
Variants will be accepted:
no
II.2.11)
Information about options
Options:
no
II.2.13)
Information about European Union funds
The procurement is related to a project and/or programme financed by European Union funds:
no