Loading page content…
Loading page content…
Loading contract search results…
7 matching tenders · Click a result to see its full lifecycle · Updated daily · Contracts Finder + Find a Tender Service
The Council requires a Security Provider to deliver manned security guard services across four Durham County Council depot sites: Chilton Depot, Hackworth Depot, Meadowfield Depot and Morrison Busty Depot. The service requirements and working hours vary between each site and may be subject to change during the term of the contract. The successful Contractor must therefore have the capacity and flexibility to provide appropriate cover at each depot as required. Full tender documents can be accessed free of charge by registering as a Supplier on the Open Portal at www.open-uk.org.
The Council requires a Security Provider to deliver manned security guard services at Aycliffe Secure Centre. Aycliffe Secure Centre is registered to provide care and education for up to 34 vulnerable and complex male and female young people, aged between 10-18. There is also a Transition Home attached to the secure building which can accommodate up to 4 young people moving from within the Secure Centre to community-based accommodation. Further details of the requirements are set out in Document 3a. Contract Specification which can be accessed free of charge at www.open-uk.org
The Student Loans company (SLC) have an agreement for Enhanced Security Operations Managed Service expiring April 2028. In order to provision for a retender of the agreement SLC are undertaking pre-market engagement with regards to the provision of the following: • Requirement A: Enhanced Security Operations Managed Service - MXDR Service (2026-TR-0109a) • Requirement B: Enhanced Security Operations Managed Service - Vulnerability Management (VM) Service (2026-TR-0109b) • Requirement C: Enhanced Security Operations Managed Service - Breach Attack Simulation (BAS) Service (2026-TR-0109c) • Requirement D: Enhanced Security Operations Managed Service - Cyber Threat Intelligence (CTI) Service (2026-TR-0109d) • Requirement E: Enhanced Security Operations Managed Service - Digital Forensics and Incident Response (DFIR) Retainer Service (2026-TR-0109e) • Requirement F: Enhanced Security Operations Managed Service - Security Architecture and Engineering Support Services (2026-TR-0109f) SLC is considering an approach to the market to give the suppliers an option to bid for one or ALL of the contractual requirements. Requirement A Enhanced Security Operations Managed Service - MXDR Service The Supplier will provide a Managed Extended Detection and Response (MXDR) capability operating on a hybrid customer/supplier model. MXDR Service The Supplier will provide: • 24x7x365 monitoring of SLC security telemetry. • L1 and L2 Security Operations Centre capability (SLC retain L3). • Incident identification, triage and investigation. • Security use-case monitoring and tuning. • Management of Microsoft Sentinel detections. • SOAR playbook execution and optimisation. • Escalation management. • Alert enrichment. • Threat hunting capability. • Malicious activity investigation. • Service governance and performance management. • Security reporting at operational, tactical and strategic levels. Security Engineering (Operational) The Supplier shall provide: • L3 Engineering support for Sentinel. • Analytics rule development and tuning. • SOAR playbook management. • Connector maintenance and health monitoring. • Logging optimisation. • Onboarding and validation of agreed log sources. • Detection engineering support. • Detection gap analysis and monitoring coverage reviews. • Security use case development and continuous improvement. • Monitoring health checks. • Monitoring and remediation of ingestion issues. • Security platform optimisation. • Proactive automation support and development. • Threat intelligence-led detection improvements. Data Loss Prevention (DLP) & Phishing The Supplier shall: • Monitoring, triage and investigation of DLP, phishing, business email compromise (BEC), malicious email, malicious attachment and malicious URL alerts. • Investigation of suspected data loss, data exfiltration and policy breach events. • Support for user reported phishing submissions. • Escalation and coordination of confirmed incidents in accordance with agreed response procedures. • Identification and analysis of phishing campaigns, attacker infrastructure, indicators of compromise and emerging attack trends. • Recommendations for improvements to DLP policies, email security controls, detections and response processes. • Monthly reporting, trend analysis and security improvement recommendations. Reporting The Supplier shall provide: • Weekly operational reports. • Monthly service reports. • Quarterly service reviews. • KPI and SLA reporting. • Security metrics and trend analysis. Requirement B Enhanced Security Operations Managed Service - Vulnerability Management Service The Supplier shall provide Vulnerability Management services Monday to Friday, UK Core Hours (09:0-17:0). Vulnerability Management The Supplier shall: • Monitor vulnerability management queues. • Investigate vulnerability notifications. • Manage vulnerability triage. • Validate vulnerability findings. • Perform exploitability assessments. • Provide remediation recommendations. • Support exposure management activities. • Support CTEM activities. Stakeholder Engagement The Supplier shall: • Conduct monthly technical review meetings. • Support resolver teams. • Assist remediation planning. • Review remediation performance. • Provide vulnerability prioritisation guidance. Dashboarding & Reporting The Supplier shall: • Maintain executive dashboards. • Enhance Power BI reporting. • Produce technical reports. • Produce executive reports. • Produce PCI compliance reports. • Produce risk trending reports. Tooling The Supplier shall support: • Microsoft Defender for Endpoint. • Rapid7. • SLC PCI ASV Scanning tooling. • Jira. • Power BI. Requirement C Enhanced Security Operations Managed Service - Breach Attack Simulation Service The Supplier shall provide a Breach Attack Simulation (BAS) capability, currently using AttackIQ or similar. BAS Service The Supplier shall: • Operate and maintain the BAS platform. • Deploy and maintain BAS agents. • Configure integrations. • Execute scheduled simulations. • Execute customer-specific simulations. • Execute retests following remediation activities. Adversary Simulation Testing scenarios shall include: • Initial Access. • Execution. • Persistence. • Privilege Escalation. • Credential Access. • Lateral Movement. • Command and Control. • Exfiltration. • Malware. • Ransomware. • Advanced Persistent Threat activity. Security Validation The Supplier shall assess: • Security control effectiveness. • Security monitoring effectiveness. • Detection coverage. • Response capability. • Incident handling. • Use-case effectiveness. Reporting The Supplier shall produce: • Monthly BAS reports. • Executive summaries. • Technical findings. • Remediation recommendations. • Retest outcomes. Requirement D Enhanced Security Operations Managed Service - Cyber Threat Intelligence Service The Supplier shall provide strategic, operational and tactical Cyber Threat Intelligence services. Threat Intelligence Managed Service The Supplier shall provide: • Threat Intelligence reporting. • Integration into Microsoft Sentinel. • Indicator of Compromise feeds. • Threat actor intelligence. Operational Intelligence The Supplier shall provide: • Threat alerts. • Vulnerability intelligence. • Emerging threat notifications. • Campaign tracking. • Industry specific intelligence. Strategic Intelligence The Supplier shall provide: • Threat landscape assessments. • Quarterly threat reports. • Executive intelligence briefings. • Board level threat summaries. • Sector specific threat reporting. Security Operations Support The Supplier shall provide: • Intelligence support during incidents. • Threat hunting support. • Intelligence driven use-case creation. • Intelligence enrichment services. Requirement E Enhanced Security Operations Managed Service - Digital Forensics & Incident Response Retainer Service The Supplier shall provide a DFIR Retainer available 24x7x365. Cyber Incident Response The Supplier shall provide: • Incident investigation. • Malware analysis. • Threat containment. • Threat eradication. • Recovery support. • Crisis management support. • Regulator support. • On-site support Digital Forensics The Supplier shall provide: • Evidence acquisition. • Chain of custody management. • Endpoint forensics. • Server forensics. • Network forensics. • Cloud forensics. • Forensic reporting. Readiness Services The Supplier shall provide access to: • Tabletop exercises. • Incident simulations. • Executive workshops. • CSIRT training. • Lessons learned reviews. Retained Consultancy The Supplier shall provide specialist support including: • Security strategy input. • Audit support. • Major incident reviews. • Regulatory engagement support. • Ransomware negotiation services. Requirement F Enhanced Security Operations Managed Service - Security Architecture & Engineering Support Services The Supplier shall provide specialist Security Architecture and Engineering services on a call-off basis. Security Architecture The Supplier shall provide: • Security architecture reviews. • Security design authority support. • Secure by Design reviews. • Solution security reviews. • Threat modelling. • Architecture governance. • Security requirements definition. • Architectural risk assessments. Security Engineering The Supplier shall provide: • Technical security engineering. • Security tool implementation. • Security configuration reviews. • Security hardening activities. • Technical control implementation. Strategy & Transformation The Supplier shall provide: • Security roadmap development. • Target operating model development. • Control framework assessments. • Security maturity reviews. • Improvement planning. Governance & Assurance The Supplier shall provide: • Security assessments. • Risk management support. • Audit support. • KPI development. • Board reporting support. • Security governance support. • Independent design and control assurance. • Security exception and risk acceptance reviews. • Third party and supplier security assessments.
The Council requires a Security Provider to deliver manned security guard services at NETPark, which consists of 8 main buildings. Further details of the requirements are set out in Document 3a. Contract Specification which can be accessed free of charge at www.open-uk.org
Durham County Council is seeking market engagement in relation to a future contract for the provision of a fully managed catering service at Aycliffe Secure Centre, a secure children's home accommodating up to 34 young people aged 10-18 years. The service will operate seven days per week, 365 days per year and will include the planning, preparation and delivery of nutritious meals for young people and staff. The catering service will include the provision of a daily two course lunch and evening meal service, with at least a choice of two main dishes for an agreed contract meal price, plus a management fee. In addition, the provider will also provide a weekend brunch provision (instead of lunch), special dietary and allergen management, menu development, themed and cultural food events, packed lunches, hospitality catering and ongoing engagement with young people to help shape food offerings. The successful provider will be responsible for kitchen operations, staffing, food safety compliance, safeguarding requirements, supply chain management, sustainability initiatives, performance monitoring and contract management. The Council is seeking a proactive and flexible provider capable of delivering a high-quality catering experience that supports the health, wellbeing and diverse cultural, religious and medical needs of young people within a secure environment. The Council is particularly interested in hearing from suppliers with experience of catering within education, healthcare, residential care, custodial or similarly regulated environments where safeguarding, nutrition, compliance and stakeholder engagement are key service requirements The contract will commence 1st September 2027 and will be for a period of 36 months with 2 x 24 month optional extension periods. The approximate annual contract value is up to £280,000 per annum. It is anticipated that this contract will be procured via an Open Tender procurement process, in Autumn/Winter 2026. A full tender specification will be provided for the tender process.
£2,000,000
Contract value
NHS North East North Cumbria Integrated Care Board is undertaking market engagement in relation to the future provision of a Mental Health Secure Patient Transport Service across the North East and North Cumbria Region. NENC ICB is hosting an information session for providers interested in the future delivery of Mental Health Secure Patient Transport Services across the North East and North Cumbria at 3:00pm on Monday 07 September. The session will provide an overview of a number of potential service delivery models currently being explored and explain how local framework arrangements could potentially be applied to support service delivery across the region. Following the market engagement session, NENC ICB will issue a Request for Information (RFI) on Tuesday 08 September 2026. The purpose of the RFI is to gather feedback and gain a better understanding of the operational, commercial and contractual considerations associated with the proposed service models, together with alternative approaches, refinements or innovations that providers may wish to suggest.
Value undisclosed
In October 2025, Durham County Council issued a UK2 Preliminary Market Engagement Notice (2025/S 000-063329) and written PME questionnaire on the Open Portal (OPEN20251753) for Extended Detection and Response (XDR) Solution for Endpoint and Email Protection with 24/7 Security Operations Centre (SOC) Services. This engagement attracted 24 responses from the market, however the scope of our requirements has now changed, and we are re-engaging with the market regarding our refined requirements. Please note, Extended Detection and Response is no longer within the scope of this procurement process. Our annual budget is approximately £600,000 per annum and will be looking to procure a contract with an initial term of 3 years, with 2 x 24 month optional extensions. As part of this market engagement process, we are particularly interested in providers proposing what they feel is realistic without our stated budget and in line with our requirements and digital estate priorities. Following satisfactory completion of the below questionnaire, we will be inviting interested suppliers to participate in 1 hour Teams discussions in September 2026, to discuss your specific offering in line with our requirements. These technical discussions will still be part of Preliminary Market Engagement to help us refine our specification and tender documents further, prior to issuing competitive tender process documents.
£4,200,000
Contract value
