Awarded contract

Published

Provision of Army Digital Services Security & Vulnerability Assessments Specialist & Technical Capability (DInfoCom/0212)

95 Suppliers have already viewed this notice

Track & Win Public Sector Contracts and Tenders. Sign up for Free

Value

459,000 GBP

Current supplier

NCC Group Security Services Limited

Description

There is a requirement for specialist technical assistance to provide code assisted Vulnerability Assessments (VA) and Penetration Testing (PT) security assessments on both new and in-service applications/infrastructure. Security assessments, PT's and VA's are used to identify vulnerabilities in code and infrastructure (networks, servers, operating systems and applications) that could potentially be exploited. Attackers can be hackers trying to gain access into our network or systems, state sponsored activists or an insider threat. They will aim to either extract information that is held on applications and hosting environments or cause extensive disruption to services. ADS has 2 hosting environments, the Army Hosting Environment (AHE) and Joint Server Farm (JSF). The JSF is accessible from the internet via the Defence Gateway and holds information classified at Official. The AHE holds Official, Secret and Sensitive Personal Information which if extracted would not only be damaging to the Army's reputation, it could jeopardise potential operations. It could also incur fines from the Information Commissioner if there were a breach of personal information. An attack to disrupt any of the services ADS provides would significantly erode the Army's ability to operate, as many of the systems support day to day activities and processes. It is therefore imperative that vulnerabilities are identified and remedied/mitigated to reduce the risk of these occurrences. All new applications expecting to be hosted on the AHE or the JSF must have a vulnerability assessment before being allowed onto the environment to ensure there are no weaknesses which could potentially allow an attacker access to the wider infrastructure and applications. Existing applications, hosting environments and platforms must be VA'd on a rolling programme to ensure any changes do not increase vulnerability and potential for being attacked.

Create a Free Account on Stotles

Stotles is your single source for government tenders, contracts, frameworks and much more. Sign up for free.

Explore similar pre-tenders, open or awarded contracts

Browse open tenders, recent contract awards and upcoming contract expiries that match similar CPV codes.

National Savings and Investments

Published a month ago

National Savings and Investments

Published a month ago

National Savings and Investments

Published a month ago

National Savings and Investments

600,000 GBP

Published a month ago

National Savings and Investments

Published a month ago

National Savings and Investments

Published a month ago

National Savings and Investments

455,588 GBP

Published 2 months ago

UK Shared Business Services Ltd

3,249,993.87 GBP

Published 2 months ago

Derbyshire Dales District Council

12,100 GBP

Published 2 months ago

Explore top buyers for public sector contracts

Discover open tenders, contract awards and upcoming contract expiries of thousands of public sector buyers below. Gain insights into their procurement activity, historical purchasing trends and more.

Explore over 15,000 buyers

Sign up to the Stotles Tender Tracker for free

Find even more contracts with advanced search capability and AI powered relevance scoring.