This Notice does not relate to the award of a new Contract but to a modification to an existing contract in accordance with Regulation 72(1)(b) of the Public Contracts Regulations 2015. The Contract modification addressed by this Notice is for the provision of the Market Data Processing System originally awarded in OJEU under reference 2016/S 059-100118
A Privileged Access Management (PAM) Solution that will include contracting with a 3rd party to initially procure their PAM tool and start onboarding some Pilot systems before rollout across the in-scope systems in the organisation.
Our IT administrators have complete control over the systems they control and can access large volumes of data, possibly sensitive or insider information. Many are not FCA employees. A large proportion are offshore employees of our suppliers. We place a very high degree of trust in them. Whilst we vet them, this is an imperfect control.
Administrator accounts are increasingly being hacked into and used to spread disruptive ransomware within organisations.
We have seen examples of high-value bribes being offered to IT administrators by organised criminal gangs.
The FCA currently has inadequate controls for privileged access to our systems. Although a range of manual mitigation actions are underway, best practice indicates that managing privileged access, given the evolving threat landscape, is not possible without a specialised PAM tool.
It is anticipated that the solution will introduce best practices and more granular control of how IT administrators access FCA systems.
It is also expected that the solution will assist in mitigating the identified corporate risks of unauthorised access and the abuse of such access.
Additional information: Awarded via G-Cloud 12 Framework
The FCA uses third party partners to provide Application Maintenance and Support Services of systems. This includes services required to keep a software system (application) operational and functional and includes support and maintenance of bespoke code and COTS (commercial off the shelf) and SaaS (Software as a Service) products, providing incident and problem management services to resolve software problems, supporting batch and housekeeping tasks as well as Service Management Services such as IT Service Continuity, Availability and Capacity Management, Release Management and Software and Configuration Management.
The Supplier providing experienced agile delivery teams and practitioners on an outcomes-based delivery basis, collaborat-ing with FCA Subject Matters Experts and digital teams.
Adopting user-centred agile delivery best practices aligned to UK Government's Discovery-Alpha-Beta-Live methodology to define, design and deliver new Financial Services Register (FSR) products and new Gateway Forms.
FCA Edinburgh Office fit out works - Category A Fit-out works including fittings and mechanical and electrical
equipment at Level 1.
Additional information: Call off under CCS Construction Works and Associated Services Framework RM6088
The FCA is commissioning user research to understand the needs and wants of applicants using the existing Gateway forms. We intend to update these forms by digitalising them, embedding greater validation and verification of data where possible, streamlining existing processes, improving user accessibility, etc and the user research will be used to inform this.
The FCA publishes information about regulated Firms and Individuals on the Financials Services Register (FSR). The FCA has commissioned user research and testing in order to help inform the creation of new types of FSR products to meet the specific and varied needs of the FSR's users.
The FCA is commissioning a research agency to carry out research to better understand the repayment strategies of borrowers with interest-only mortgages. In particular, how many borrowers have repayment strategies, what these strategies are, how realistic these strategies are, and what support borrowers have found useful when planning their repayment strategies.
Creation of a consultancy and skilled persons framework with multiple lots. Lots A to L cover different specialities of s166 skilled persons review as part of the FCA and Bank of England (including the PRA) regulatory remit. Lot M covers general consultancy and is split into specialisms. Suppliers will not need to deliver all of the specialisms in the lot and will be considered for the specialism(s) that they have been selected.
Creation of a consultancy and skilled persons framework with multiple lots. Lots A to L cover different specialities of s166 skilled persons review as part of the FCA and Bank of England (including the PRA) regulatory remit. Lot M covers general consultancy and is split into specialisms. Suppliers will not need to deliver all of the specialisms in the lot and will be considered for the specialism(s) that they have been selected.
The supplier shall carry-out tracking for the performance of FCA marketing campaign activity across two of its flagship campaigns:
• InvestSmart and
• ScamSmart.