Loading page content…
Loading page content…
Loading contract search results…
Loading contract details…
| Source: | Contracts Finder |
| Notice Type: | Award notice |
| Buyer: | MINISTRY OF DEFENCE |
| Main Category: | Services |
| Procurement Method: | Call-off from a framework agreement |
| Tender Status: | Closed |
Pipeline status
Not addedImports the contract into your BidWriter pipeline · Qualify before you commit to bid
Application Deadline
22 July 2022
Closed
Estimated Value
£459,000
Need help writing this bid?
Our specialists write winning tender responses. Free consultation, no obligation.
Book a free consultation →| Estimated Value (ex. VAT): |
| £459,000 |
| Release Date: | 21 September 2022 |
| Application Deadline: | 22 July 2022 |
| Contract Start Date: | 30 September 2022 |
| Contract End Date: | 30 September 2024 |
| Contract Duration: | 2.0 years |
| Procurement ID (OCID): | ocds-b5fd17-78275948-9210-49c0-92c9-c610861b6a45 |
| Notice Reference: | 496afb84-832e-49e2-a8cb-a5b6430f5aa6-573277 |
View Original Notice
Access the full notice on the official portal
Awarded to
| Award value: | £459,000 |
| Award decision date: | 26 July 2022 |
| Award status: | Active |
There is a requirement for specialist technical assistance to provide code assisted Vulnerability Assessments (VA) and Penetration Testing (PT) security assessments on both new and in-service applications/infrastructure. Security assessments, PT's and VA's are used to identify vulnerabilities in code and infrastructure (networks, servers, operating systems and applications) that could potentially be exploited. Attackers can be hackers trying to gain access into our network or systems, state sponsored activists or an insider threat. They will aim to either extract information that is held on applications and hosting environments or cause extensive disruption to services. ADS has 2 hosting environments, the Army Hosting Environment (AHE) and Joint Server Farm (JSF). The JSF is accessible from the internet via the Defence Gateway and holds information classified at Official. The AHE holds Official, Secret and Sensitive Personal Information which if extracted would not only be damaging to the Army's reputation, it could jeopardise potential operations. It could also incur fines from the Information Commissioner if there were a breach of personal information. An attack to disrupt any of the services ADS provides would significantly erode the Army's ability to operate, as many of the systems support day to day activities and processes. It is therefore imperative that vulnerabilities are identified and remedied/mitigated to reduce the risk of these occurrences. All new applications expecting to be hosted on the AHE or the JSF must have a vulnerability assessment before being allowed onto the environment to ensure there are no weaknesses which could potentially allow an attacker access to the wider infrastructure and applications. Existing applications, hosting environments and platforms must be VA'd on a rolling programme to ensure any changes do not increase vulnerability and potential for being attacked.
Published contracts in the last 12 months
190
total contracts
£2635.7m
total value
£14,724,411
average contract size
Typical categories
Fleet Helicopter Support Unit (FHSU) - Contracts Finder Opportunity Notice
MINISTRY OF DEFENCE · WAC-632723
Defence Medical Services Research Steering Group
MINISTRY OF DEFENCE · WAC-627556
Defence Medical Services Research Steering Group
MINISTRY OF DEFENCE · WAC-626786