II.1)
Scope of the procurement
DES - ICT Security Vulnerability Assessment and Penetration Testing Services
Reference number:
DES/IT Unit/Security
72000000
-
IT services: consulting, software development, Internet and support
Services
II.1.4)
Short description
Specialist expertise for the provision of penetration testing and security vulnerability assessment of the Department’s infrastructure. The annual security vulnerability assessment will cover externally hosted web systems, including its school facing (Esinet) eGovernment systems and public website, its DMZ-based public IP addresses and MS Azure hosted site plus an assessment of all its internal critical infrastructure including Servers, Switching, Security (Firewall and SIEM), Wireless and Mobile Device Management systems. The output will be a report based on best practice advice and recommendations on findings from any completed vulnerability assessments. Given the sensitive nature of the Department’s data subjects, the testing days will be required to be completed onsite at the Department’s offices.
II.1.6)
Information about lots
This contract is divided into lots:
no
II.1.7)
Total value of the procurement
Value excluding VAT:
30813.00
EUR
II.2.2)
Additional CPV code(s)
72200000
-
Software programming and consultancy services
72220000
-
Systems and technical consultancy services
72800000
-
Computer audit and testing services
72810000
-
Computer audit services
72820000
-
Computer testing services
II.2.3)
Place of performance
Main site or place of performance:
Dublin
II.2.4)
Description of the procurement
Specialist expertise for the provision of penetration testing and security vulnerability assessment of the Department’s infrastructure. The annual security vulnerability assessment will cover externally hosted web systems, including its school facing (Esinet) eGovernment systems and public website, its DMZ-based public IP addresses and MS Azure hosted site plus an assessment of all its internal critical infrastructure including Servers, Switching, Security (Firewall and SIEM), Wireless and Mobile Device Management systems. The output will be a report based on best practice advice and recommendations on findings from any completed vulnerability assessments. Given the sensitive nature of the Department’s data subjects, the testing days will be required to be completed onsite at the Department’s offices.
Criteria below
Cost criterion
-
Name:
Price
/
Weighting:
40
II.2.11)
Information about options
Options:
no
II.2.13)
Information about European Union funds
The procurement is related to a project and/or programme financed by European Union funds:
no