II.1)
Scope of the procurement
Provision of an Integrated Risk Management SaaS solution
Reference number:
SSCON4220
72000000
-
IT services: consulting, software development, Internet and support
Services
II.1.4)
Short description
The contracting entity intends to procure a contract to supply, implement and host an integrated Risk Management SaaS solution.
Integrated Risk Management enables simplification, automation and integration of strategic, operational and IT risk management processes and data. Integrated Risk Management (IRM) solutions combine technology, processes and data that fulfil the objective of enabling the simplification, automation and integration of strategic, operational and IT risk management across the organization.
Applicants must be able to provide an Integrated Risk Management SaaS solution across the following use cases;
• Vulnerability risk management
• Information and Cybersecurity risk management
• Incident management
• Vendor risk management
• GDPR Compliance risk management
• Policy management
• Enterprise risk Management
• NIS Regulation Compliance Risk Management
II.1.6)
Information about lots
This contract is divided into lots:
no
II.2.2)
Additional CPV code(s)
72000000
-
IT services: consulting, software development, Internet and support
II.2.3)
Place of performance
Main site or place of performance:
Dublin
II.2.4)
Description of the procurement
The Contracting Entity intends to procure a contract to supply, implement and support an Integrated risk management SaaS solution.
The successful provider will already have delivered a similar solution to industries to the scale and requirements that are being sought by ESB and outlined below.
The Risk Management Software solution will be required to deliver the following capabilities:
• Provision, implementation and support of a scalable Integrated Risk Management software solution to support and deliver cybersecurity risk management, policy risk management, GDPR Compliance risk management and NIS Regulation Compliance Risk Management.
• The Integrated Risk Management software solution must have KPI Monitoring/Reporting scorecard and dashboard, external data integration and performance metrics
• The Integrated Risk Management solution must be a cloud-based SaaS and be fully scalable (for future expansion if necessary), e.g. the solution must be able to cater for an increase in users and increasing data storage or processing power as required in future
• The requirement is to support and deliver the following;
o Information and Cybersecurity risk management
o GDPR Compliance risk management
o Policy Management
o Vendor risk management
o NIS Regulation Compliance risk Management
• At a later stage, the solution must be able to provide:
o Vulnerability risk Management
o Incident management
o Enterprise Risk Management
The proposed solution must have all requirements outlined above at present, but they will be drawn down at a later stage.
There will potentially be 122 users of the solution, split between twenty Power Users, one hundred users with standard access, and two administrators
Price is not the only award criterion and all criteria are stated only in the procurement documents
II.2.7)
Duration of the contract, framework agreement or dynamic purchasing system
Duration in months:
36
This contract is subject to renewal:
no
II.2.9)
Information about the limits on the number of candidates to be invited
Envisaged minimum number:
5
II.2.10)
Information about variants
Variants will be accepted:
no
II.2.11)
Information about options
Options:
yes
Description of options:
It is envisaged the term of the contract commences on the date when services commence and shall be for a period of up to 36 months with an option to extend after the initial period of up to 24 Months from the expiry of the initial period, for a total contract period of 60 Months.
II.2.13)
Information about European Union funds
The procurement is related to a project and/or programme financed by European Union funds:
no
II.2.14)
Additional information
Please refer to the individual instructions for submission
of
bids relevant to each tender issued via the system.