MoJ Security Monitoring Future Strategy
Details
- Buyer
- Ministry of Justice
- Published
- 14 January 2019
- Submission
- 28 January 2019
- Source
- DigitalMarketplace
Tender description
Why the Work is Being Done In November 2019 the contract for the current service provider delivering SoC capability, monitoring and reporting services will expire. In August 2020 support agreements with McAfee, Gigamon, Cisco and LogRythm for hardware will also expire. The Authority want to carry out an assessment and review of the MoJ Security Monitoring Solution, factoring the constraints mentioned above, to revisit our approach to security monitoring, with the goal of devising pragmatic and cost-effective monitoring and response solutions that protect our enterprise IT against common cyber-attacks, including decommissioning / transition analysis. Problem to Be Solved The Ministry of Justice security monitoring contract for hardware and software support expires in August 2020 and the contract with the monitoring service supplier expires in November 2019. - Ministry of Justice do not have a strategy for a future Security Monitoring Solution, other than to extend current contracts - A plan is required to transition from the current solution to a future approved solution - We do not know the cost benefits or total cost of ownership for renewing or moving to a different solution - A plan to decommission or exit the current solution requires analysis Who Are the Users As Product Owner I need to know; -what the costs and options are to renew the solution and support contracts for two years so that I have a baseline cost -if the security monitoring technology stack is fit for purpose in the future for the MoJ -if I should take my SoC requirements in-house so that I know if we should start a competition for the monitoring service to continue from November 2019 -all my options for the existing and future Security Monitoring solutions, including cost breakdowns and transition plans to decide the best course of action for the business. Early Market Engagement None conducted Work Already Done The Security Privacy Team has engaged cloud suppliers to determine what options the Ministry has to host and run management services on cloud platforms, connected to the on-premise Security Monitoring Solution. Existing Team Digital and Technology Security Privacy Team Current Phase Discovery Work Location 102 Petty France London SW1H 9AJ Working Arrangments On site for approximately 3 days for face to face meetings and clarifying needs. Use Agile working methods Weekly progress report to Senior Stakeholders Use of on line collaboration tools such as Slack and Skype for remote working. The Security Privacy Team Project Manager to provide reviews, direction and clarification on progress on a daily basis. Security Clearance Baseline Personnel Security Check (BPSS) as a minimum. See https://www.gov.uk/government/publications/government-baseline-personnel-security-standard for further guidance. Additional T&Cs Standard Digital Outcomes and Specialist contract and MoJ's Travel and Subsistence policy. Please see: https://www.gov.uk/government/publications/digital-outcomes-and-specialists-2-call-off-contract Skills & Experience Provide recent and demonstrable experience in advising on security monitoring solutions for complex enterprise IT systems conducted within the last three years Outline recent and demonstrable experience for providing an assessment of a supplier (e.g. hardware and hosting maintenance) to meet business needs, conducted within the last three years Outline recent and demonstrable experience for providing commercial assessments from the implementation through to live support services that meet business needs,conducted within the last three years Outline recent and demonstrable experience for providing platform hosting assessments to meet business needs, conducted within the last three years Providing references, evidence your experience of providing an evidence based recommendation of a technology solution, conducted within the last three years Outline recent and demonstrable experience in knowledge of relevant legislation and guidance relevant to securing information in modern enterprise IT systems, conducted within the last three years Nice to Haves Provide recent and demonstrable experience of LogRythm SIEM Platforms conducted within the last three years. Provide recent and demonstrable experience of McAfee NSM and IDS solutions, conducted within the last three years. Provide recent and demonstrable experience of defining customer journeys, conducted within the last three years. Provide recent and demonstrable experience of creating detailed user stories in-accordance with the standards set out in the Government Digital Services' service assessment framework, conducted within the last three years. Provide recent and demonstrable experience of providing advise/support on technology procurement within central government, conducted within the last three years. No. of Suppliers to Evaluate 5 Proposal Criteria Describe the method you would propose to use, referencing your experience on how you would conduct research and assessment to meet our user needs Describe the method you would propose to use, referencing your experience on how you would develop a strategy proposal to meet our used needs Describe the method you would propose to use, referencing your experience on how you would assess strategic options and present these to meet the user needs Describe the method you would propose to use, referencing your experience on how you would develop and present transition plans to meet the departments needs Describe how you will ensure a high quality recommendation will be provided through your approach and methodology. Describe how you will ensure that the recommendations meet applicable legislation and general good practice in cyber security. Cultural Fit Criteria Recent and demonstrable experience of working in public sector or highly regulated environment. Explain how you’ll ensure collaboration at all levels of the project and programme delivery between users, team members and management. Give examples of where you have taken this approach. Explain how you’ll ensure collaboration with vendors to understand how their technology aligns with our business needs. Payment Approach Time and materials Assessment Method Written proposal Evaluation Weighting Technical competence 60% Cultural fit 10% Price 30% Questions from Suppliers Budget range we have assumed the team will be made up of a security architect or consultant, solution manager, business analyst. the moj are willing to consider an alternative team make-up to provide an accurate evidence based recommendation.
Timeline
- Completed: Tender published14 January 2019Current notice
- Completed: Submission date28 January 2019
About the buyer
Ministry of Justice is a public sector buyer in United Kingdom publishing tenders and awards on Stotles. Explore their procurement activity and find more opportunities like this one.
Decision makers
Connect with the people behind this procurement.
| Contact name | Job title | Phone number | Work email |
|---|---|---|---|
| Head of Procurement | +44 •••• •••••• | ••••••••@ministry-of-justice.gov | |
| Commercial Director | +44 •••• •••••• | ••••••••@ministry-of-justice.gov | |
| Procurement Manager | +44 •••• •••••• | ••••••••@ministry-of-justice.gov | |
| Category Lead | +44 •••• •••••• | ••••••••@ministry-of-justice.gov | |
| Senior Buyer | +44 •••• •••••• | ••••••••@ministry-of-justice.gov | |
| Contracts Manager | +44 •••• •••••• | ••••••••@ministry-of-justice.gov |
Related topics
Topics related to MoJ Security Monitoring Future Strategy, ranked by notice volume.
- 1,485£14.9bn
- 3,270£16.1bn
- 5,186£736.1bn
- 1,745£636.1bn
- 2,512£49.7bn
- 3,863£605.8bn
- 40,156£1.8tn
- 5,635£560.2bn
Related buyers
Buyers similar to Ministry of Justice.
- 1,496£58.1bn
- 731£1.3bn
- 637£160.0bn
- 446£8.1bn
- 334£7.4bn
- 324£1.3bn
- 272£1.1bn
- 252£892.4m
- 224£483.9m
- 178£221.9bn
Win more public sector contracts
Track every UK and Ireland tender in one place — set up alerts, find decision-makers, and never miss an opportunity.
