Crown Commercial Service (CCS) set up a dynamic purchasing system for a period of 60 months and has invited bidders to request to participate for the Cyber Security Services 3 DPS.
This DPS provides central government departments and the wider public sector with the opportunity to procure cyber services from a range of suppliers.
The DPS filters are for certification, services, standards and experience. Appointed suppliers will be invited by customers (buyers) to submit tenders for relevant services through a call for competition.
This notice is to advise that this DPS has been extended to 13/02/2027 and based on current spend profiling the estimated total value has been increased to £800million.
The Minister for the Cabinet Office acting through Crown Commercial ServiceNorth WestWAC-49667
View 3-notice timelineLatest notice released 13 Feb 2027
IT & DigitalAmendment 20 notices
Cyber Security Services 3
Crown Commercial Service (CCS) set up a dynamic purchasing system for a period of 60 months and has invited bidders to request to participate for the Cyber Security Services 3 DPS.
This DPS provides central government departments and the wider public sector with the opportunity to procure cyber services from a range of suppliers.
The DPS filters are for certification, services, standards and experience. Appointed suppliers will be invited by customers (buyers) to submit tenders for relevant services through a call for competition.
This notice is to advise that this DPS has been further extended to 13/02/2029 and based on current spend profiling the estimated total value will remain as £800million.
Additional information: This DPS was extended to 13/02/2025 and based on the spend profiling at that time the estimated total value was increased to £255million.
This DPS was further extended to 13/02/2027 and based on the spend profiling the estimated total value was been increased to £800million.
Please be advised that this DPS has been extended for the final time and the end date will be 13/02/2029.
Please note the Closing Date, Contract Start Date and Contract End Date have been manipulated to support compatibility system issues. However please refer to the contract notice for the correct dates, timelines etc.
View 20-notice timelineLatest notice released 11 Feb 2029
IT & DigitalTender
Cyber Security Services 3 Extension Notice
Crown Commercial Service (CCS) set up a dynamic purchasing system for a period of 60 months and has invited bidders to request to participate for the Cyber Security Services 3 DPS.
This DPS provides central government departments and the wider public sector with the opportunity to procure cyber services from a range of suppliers.
The DPS filters are for certification, services, standards and experience. Appointed suppliers will be invited by customers (buyers) to submit tenders for relevant services through a call for competition.
This notice is to advise that this DPS has been extended to 13th February 2029 and based on current spend profiling the estimated total value remains as £800million.
The Minister for the Cabinet Office acting through Crown Commercial ServiceNorth WestWAC-480744
PA invites organisations to participate in a 60-month DPS for the provision of IT and Cyber Security Services. The DPS will be accessible by all current and future Clients of PA. The DPS may be used by all NHS Trusts, Social Housing Providers, Local Authorities, Blue Light Services, Education, Charities and all other contracting authorities that are located in the United Kingdom.
Procurement Assist is publishing this Notice of Amendment made pursuant to the original Notice 2023/S 000-014645 to extend the DPS to 31 May 2029. The remaining information in relation to this DPS is unchanged.
View 2-notice timelineLatest notice released 31 May 2029
Private SectorTender
IT and Cyber Security Services
PA invites organisations to participate in a 60-month DPS for the provision of IT and Cyber Security Services. The DPS will be accessible by all current and future Clients of PA. The DPS may be used by all NHS Trusts, Social Housing Providers, Local Authorities, Blue Light Services, Education, Charities and all other contracting authorities that are located in the United Kingdom.
Procurement Assist is publishing this Notice of Amendment made pursuant to the original Notice 2023/S 000-014645 to extend the DPS to 31 May 2029. The remaining information in relation to this DPS is unchanged.
UKRI-6251 Cyber Security – Managed Service and Detection Response & Security Operations Centre service
UKRI-6251 Cyber Security – Managed Service and Detection Response & Security Operations Centre service. A Cyber Security provider to deliver collaborative SOC services, working with the existing STFC cyber security team.
Army Directorate of Digital, Security and Intelligence Industry Engagement Event 2026
Important: This event is intended to support engagement and information exchange between the Army's Directorate of Digital, Security and intelligence (D DSI) and industry. It is not a procurement activity, and attendance will not provide any organisation with a competitive advantage or preferential treatment in relation to any current or future commercial opportunities.
The Dir DSI is bringing together industry partners with its senior leaders to shape the future of the digital environment for our war-fighters.
We will cover:
1. The challenge:
1.1 How do we enhance
1.2 Security against emerging Threats
1.3 Information systems, intelligence, surveillance, and decision-making capabilities to the war-fighter
1.4 Cyber and electromagnetic activity on the battlefield
2. The Framework:
2.1 What are our Digital standards and how we conduct system integration
2.2 How we deliver Army digital services
3. Areas of opportunity:
3.1 Artificial Intelligence- enablement and governance
3.2 Sensor to effector network (ASGARD)
3.3 Building resilience across systems and operations
On the day you will:
1. Gain insight into Army's future digital direction
2. Explore collaboration opportunities with key stakeholders
3. have the opportunity to take part in 1:1 sessions with senior leaders to discuss mutual priorities and challenges.
4. Hear directly from our 2* Director of Digital, Security and Intelligence (Dir DSI)
This is an opportunity to understand where we are heading, and how industry can play a role in delivering the next generation of secure, resilient digital capability.
This RM3764.4 Cyber Security 4 let under Procurement Act 2023 gives contracting authorities access to cyber security services. It will replace the existing Cyber Security Services 3 DPS - https://www.gca.gov.uk/agreements/RM3764.3.
When contacting GCA regarding this agreement, please ensure that you reference the agreement details in all correspondence.
Continuous Improvement Action Tracker software to support the effective management, monitoring and reporting of Continuous Improvement Activities (CIAs) across ICS Commercial. The solution is intended to replace the current manual, Excel-based process with a more efficient, reliable and sustainable system.
Department for Energy Security & Net ZeroWAC-637021
Physical and Personnel Security Assessment for UK Telecoms
The UK’s public telecommunications networks are a critical national infrastructure (CNI) subsector, underpinning the functioning of every other CNI sector, the digital economy, and essential public services, for which the Department for Digital, Culture, Media and Sport (DCMS) is the lead government department. Their continued availability, integrity and confidentiality are fundamental to national security, economic resilience, and the everyday lives of UK citizens and businesses.
Telecoms operators manage complex, large-scale, geographically distributed systems, including exchanges, data centres, transmission sites and access network assets , which are increasingly attractive targets for hostile state and state-aligned actors seeking to disrupt, degrade or exploit UK infrastructure. Physical compromise and insider threat are significant attack vectors that hostile actors could seek to exploit. Strengthening physical and personnel security across the sector is therefore a priority area of work for DCMS.
This Request for Information (RFI) is issued solely for preliminary market engagement purposes and does not constitute a call for competition, tender or contract opportunity. The Authority is seeking information to better understand market capability, capacity, security accreditation requirements and delivery approaches. Participation in this RFI will not confer any advantage or disadvantage in any future procurement process.
DSIT is exploring options for obtaining specialist support to undertake a physical and personnel security assessment of UK public telecommunications networks and services. We are seeking engagement from accredited security consultancy firms to conduct a sector-level physical and personnel security assessment of UK public telecoms networks and services. This should include assessment of current vulnerabilities and potential threat vectors, and set out a prioritised list of recommended mitigations for operators to reduce the risk of security compromise stemming from physical and personnel security vulnerabilities. This list of prioritised mitigations should identify how existing NPSA guidance can be applied to address telecoms sector vulnerabilities.
An estimated project commencement date is October 2026 , to conclude in February 2027, subject to a tender launch and agreed contract.
Some of the core deliverables are listed below:
A detailed report setting out:
(i) current physical and personnel security vulnerabilities within the UK’s public telecoms networks and services,
(ii) physical and personnel security threat vectors (i.e. how threat actors could exploit these vulnerabilities, not a threat assessment), and
(iii) a prioritised list of mitigations for operators to take to reduce the identified physical and personnel security risks - this should include identification of how existing NPSA guidance can applied to address telecoms sector vulnerabilities.
Department for Science, Innovation & TechnologyWAC-634202
The Department for Business and Trade intends to procure a Cyber Capability Bench Contract to provide specialist cyber expertise to support a range of short and long-term digital, data and technology projects in accordance with GDS standards. The requirement is expected to include Microsoft technology capability and expertise, risk management support for the Information and Risk Assurance Process (IRAP), supply chain risk management, and architectural support. The appointed supplier will also be expected to help identify capability gaps, support the development of in-house capability, ensure knowledge transfer to departmental teams, and create relevant artefacts and system documentation during delivery.
Provision of Software Value Added Reseller Services
Integrated Corporate Services (ICS) Digital, are planning to procure a contract for the provision of software value added reseller (S-VAR) Services.
In preparation for the procurement, preliminary market engagement is being conducted to seek feedback from prospective suppliers.
The potential route to market is the Framework Agreement RM6098 Lot 3 - Software
The pre-market engagement comprises a supplier briefing and a request for information.
The Framework Suppliers on Lot 3 have been invited on the Buyer's e-procurement system https://beisgroup.ukp.app.jaggaer.com
The Buyer would like to obtain feedback from the market on the proposed procurement for software value added reseller (S-VAR) Services.
A 45 minute briefing session will be held at 10am on 23 July 2026 via MSTeams; attendance is limited to two attendees per company. If you are interested in attending please register via the messaging function in the Jaggaer portal.
Interested providers are invited to respond to the request for information (RFI) questionnaire; the deadline for responding to the RFI is 05 August 2026. Details are contained within the Jaggaer portal.
Participation in this preliminary market engagement process is not mandatory nor are suppliers required to register interest in the planned competition process.
Department for Energy Security & Net ZeroWAC-625816
Cyber Security and Physical Security awareness training.
The Met Office wishes to investigate a new approach to cyber and physical security awareness training.
The new approach aims to provide staff with a solid security awareness induction, regular basic awareness and refresher training on core and emerging topics, and role-specific advanced security awareness for specialist roles such as developers, engineers, privileged users, help desk and executives.
The training and awareness programme may incorporate curated learning pathways/courses, regular bitesized training, and ad hoc browsable content. It should offer a range of content styles to suit different learning preferences and accessibility needs.
Link to Proactis Advert and Documentation https://procontract.due-north.com/Advert?advertId=cdeda3b8-ef79-f111-813c-005056b64545
Preliminary Market Engagement Round 2 for the Life in the UK (LITUK) Secure Digital Test and Digital Online Learning Materials Service
The Home Office (HO) is the government department responsible for safeguarding the nation through border control, immigration, passport issuance, policing, fire services, counter-terrorism and drugs policies.
UK Visas and Immigration (UKVI) plays an integral role in delivering this vision, managing millions of applications annually, enabling foreign nationals to visit, study, work or settle in the UK. As part of the evolution of existing services, UKVI pursues the transformation and modernisation of services in a manner that enhances customer experience and ensures accurate and efficient outcomes. One of the core services delivered by UKVI is the Life in the UK test, an essential component of the route to settlement in the UK and to UK citizenship.
The Life in the UK Secure Digital Test and Digital Online Learning Materials Service (LITUK) Project is procuring a new service; enabling the continued delivery of front-end services, balancing continuity with improvements and transformation.
LITUK aims to move to a 'Digital-by-Default' approach, while upholding the rigorous standards necessary to support UKVI immigration decisions. The successful provider will deliver a service that combines technological innovation with security assurance, enabling customers to demonstrate their knowledge of life in the UK with confidence and convenience throughout their UK immigration journey.
The purpose of this second round of Preliminary Market Engagement is to gather insights from the market regarding the desired solution, which will inform and support Departmental decision-making processes. At this stage, no final decisions have been made regarding the preferred solution.
Please Note: the content of this Preliminary Market Engagement Notice may be subject to change.
Enterprise cyber security awareness and phishing simulation platform licence
The London Borough of Camden is seeking proposals through a competitive flexible procedure process for the procurement of its Hoxhunt Enterprise cyber security awareness and phishing simulation platform licence.
Camden currently uses Hoxhunt as part of its cyber security and organisational resilience programme to improve staff awareness, reduce susceptibility to phishing attacks, and support compliance with cyber security best practice and regulatory obligations.
The current contract expires on 16th July 2026 and the supplier will provide continuity of service, ongoing user licensing, platform support, reporting capability, and access to the latest platform functionality and threat simulation content.