TenderlineUK
Procurement Intelligence
Official OCDS
Find a Tender
planned
Official procurement procedure

Security Operation Centre

IT services: consulting
software development
Internet and support
Published value
£250,000
Submission deadline Not published
Lots published1
Procurement Executive Summary
AI & Search Synopsis
Generated from official OCDS record
Tenderline Synopsis: West Yorkshire Combined Authority: "Security Operation Centre". Published status: planned. Published value: £250,000. 1 published lot. Submission deadline not published. See the official notice for participation instructions.
Contracting AuthorityWest Yorkshire Combined AuthorityScope & CategoriesNot publishedSubmission Window
planned
No deadline published
Submission GatewayDirect notice routeLegal Basis & RegimeStandard procurementEstimated Value (exc. VAT)£250,000
Bidder Intelligence · Authority Profile: West Yorkshire Combined Authority
Market Analytics
View Authority Profile →
Derived from OCDS awards & bid statistics
Published history for West Yorkshire Combined Authority. These figures describe retained records, not a forecast of bids or a measure of buyer bias.
Average Price Reduction
Not availableInsufficient comparable data
Requires at least 5 comparable procedures
Competition Density
8.6Bids / Report
16.9% of reports have one bid
Supplier ConcentrationNo estimate
Insufficient attributable awardsNo concentration estimate available
Payment Terms
Check noticePublished terms
Payment obligations depend on the applicable regime and contract. Consult the official documents.
Coverage: 71 active published awards; 71 bid reports (which may be per lot). Supplier values exclude multi-supplier awards, frameworks and DPS, and use GBP only. They are published award values, not payments. Price reduction compares single-lot, single-award, single-supplier GBP procedures with explicitly non-framework/non-DPS status; increases remain in the average. Unpublished data stays unknown. Awarded suppliers are winners, not all bidders.
Procedure terms
Procedure methodNot published
Procurement categoryNot published
Statusplanned
Framework / DPSNot published
CompetitionNot published
Above thresholdNot published
Legal basisNot published
Tender period startsNot published
Clarification deadlineNot published
Electronic submissionNot published
Submission languagesNot published
Published28 Apr 2023, 16:39 BST
Last source update28 Apr 2023, 16:39 BST
Recurring procurementNot published
ClassificationIT services: consulting, software development, Internet and support
OCIDocds-h6vhtk-03c554
What is being bought
West Yorkshire Combined Authority would like to procure an external party to implement Microsoft's Sentinel System Incident Event Monitoring (SIEM) tool into its Azure environment. The Combined Authority require security events, that are captured and correlated by the SIEM solution, to be monitored 24/7 using an externally hosted Security Operations Centre (SOC). The Combined Authority will leverage the security alerts provided by the SOC: • To understand where the Combined Authority needs to focus its resources to maximise its cybersecurity posture. • To detect and respond to threats, keeping the information held on systems and networks secure. • To increase resilience by learning about the changing threat landscape (both malicious and non-malicious, internal and external) • To identify and address negligent or criminal behaviours. To derive business intelligence about user behaviours to shape and prioritise the development of technologies.
What changed
From the official release history
  1. Published value updated to £250,000
    28 Apr 2023, 16:39 BST
  2. Status changed to planned
    28 Apr 2023, 16:39 BST
  3. Official notice release published
    28 Apr 2023, 16:39 BST
  4. Buyer information updated
    28 Apr 2023, 16:39 BST
Lots and requirements (1)
Published by the contracting authority
  • Lot 1 · #1
    Individual lot title not published
    planned
    Published valueNot published
    In January 2022, the Combined Authority received several recommendations from the Department Levelling Up, Housing and Communities (DLUHC). A number of these recommendations centred round a central logging solution and the ability to monitor events and act on alerts. Specifically, the following recommendations were stated: • Identify a suitable solution which is the best fit for the Combined Authority by carrying out an assessment of key log sources, required alerts and cost. • Upon implementation of a centralised logging solution ensure that log retention is documented and agreed. • Upon implementation of a centralised logging solution, automated log analysis and correlation functionality and a formal log incident triaging process should then be developed and documented. The SIEM solution must be able to provide a centralised logging solution which receives logs from all the Combined Authority’s endpoints, network devices and applications. The SIEM will primarily be for security event capture and alerting, not necessarily capturing non security technical events. The SOC must be able to monitor and respond to the SIEM alerts on a 24/7/365 basis. Alerts which are of sufficient interest must be reported to ICT Services as per the Combined Authority’s ICT incident response process and within agreed Service Level Agreement (SLA) time frames. The Combined Authority’s Target Operating Model has considered both threats and assets. Threat analysis has taken into account the higher level of public awareness the Combined Authority has gained since it has become a Mayoral Authority. The Threat Actor Sophistication has been assessed using the Stix v2.1 framework. The Combined Authority’s threat actor sophistication is expected to range from none to intermediate and potentially advanced, as per the framework. The Combined Authority faces several threats, typical of many government organisations. These threats range from data loss of sensitive Combined Authority data, ransomware, fraud via social engineering using attack vectors like phishing and smishing, to specific threats to a person of interest, such as politically or criminally motivated hacking attacks against the mayor and / or the Police & Crime Commissioner.
    Contract periodNot published
    EligibilityNot published
    Options / renewalNot published
Timeline
  1. Procedure published
    28 Apr 2023, 16:39 BST
Commercial outcome and competition
AwardsNo award published
ContractsNo contract published
Bid statisticsNo aggregate bid statistics published
Buyer and organisations in this procedure

West Yorkshire Combined Authority

Contracting authority GB-FTS-31903
View buyer profile
Documents (0)
Official links; attachments are not copied
No data
No linked documents are published
Related procedures (0)
No data
No related procedures published