II.1)
Scope of the procurement
Sentinel SIEM and Security Operations Centre
Reference number:
75768
72000000
-
IT services: consulting, software development, Internet and support
Services
II.1.4)
Short description
West Yorkshire Combined Authority would like to procure an external party to implement Microsoft's Sentinel System Incident Event Monitoring (SIEM) tool into its Azure environment. The Combined Authority require security events, that are captured and correlated by the SIEM solution, to be monitored 24/7 using an externally hosted Security Operations Centre (SOC). The Combined Authority will leverage the security alerts provided by the SOC: • To understand where the Combined Authority needs to focus its resources to maximise its cybersecurity posture. • To detect and respond to threats, keeping the information held on systems and networks secure. • To increase resilience by learning about the changing threat landscape (both malicious and non-malicious, internal and external). • To identify and address negligent or criminal behaviours. • To derive business intelligence about user’s behaviours to shape and prioritise the development of technologies.
II.1.5)
Estimated total value
Value excluding VAT: 270000.00
GBP
II.1.6)
Information about lots
This contract is divided into lots:
no
II.2.2)
Additional CPV code(s)
72000000
-
IT services: consulting, software development, Internet and support
II.2.3)
Place of performance
NUTS code:
UKE -
YORKSHIRE AND THE HUMBER
II.2.4)
Description of the procurement
West Yorkshire Combined Authority would like to procure an external party to implement Microsoft's Sentinel System Incident Event Monitoring (SIEM) tool into its Azure environment. The Combined Authority require security events, that are captured and correlated by the SIEM solution, to be monitored 24/7 using an externally hosted Security Operations Centre (SOC). The Combined Authority will leverage the security alerts provided by the SOC: • To understand where the Combined Authority needs to focus its resources to maximise its cybersecurity posture. • To detect and respond to threats, keeping the information held on systems and networks secure. • To increase resilience by learning about the changing threat landscape (both malicious and non-malicious, internal and external). • To identify and address negligent or criminal behaviours. • To derive business intelligence about user’s behaviours to shape and prioritise the development of technologies.
Price is not the only award criterion and all criteria are stated only in the procurement documents
II.2.7)
Duration of the contract, framework agreement or dynamic purchasing system
Duration in months:
36
This contract is subject to renewal:
yes
Description of renewals:
3x12 months extensions available.
II.2.10)
Information about variants
Variants will be accepted:
no
II.2.11)
Information about options
Options:
no
II.2.13)
Information about European Union funds
The procurement is related to a project and/or programme financed by European Union funds:
no