The subject is the provision of a cooperative Security Operations Center (SOC) service. The service is divided into two service models: 1. "Hybrid SOC" (Bronze) in the variants "On-Prem" (operated in the client’s infrastructure) and "Cloud" (output under defined conditions). 2. "Managed SOC" (Silver & Gold) as a turnkey Managed Service with the output of log information. The contractor will take over services for security monitoring, detection engineering, containment, as well as documentation and reporting based on SIEM and EDR solutions (minimum requirement Elastic). Optional modules for threat hunting and strategic security consulting can be called up. The goal is to strengthen the cyber resilience for govdigital eG and its clients (public administration and enterprises).
LOT-0001
Award of services in connection with a Security Operations Center (SOC).
The subject is the provision of a cooperative Security Operations Center (SOC) service. The service is divided into two service models: 1. "Hybrid SOC" (Bronze) in the variants "On-Prem" (operated in the client’s infrastructure) and "Cloud" (output under defined conditions). 2. "Managed SOC" (Silver & Gold) as a turnkey Managed Service with the output of log information. The contractor will take over services for security monitoring, detection engineering, containment, as well as documentation and reporting based on SIEM and EDR solutions (minimum requirement Elastic). Optional modules for threat hunting and strategic security consulting can be called up. The goal is to strengthen the cyber resilience for govdigital eG and its clients (public administration and enterprises). The framework agreement includes a potential volume for up to 8 clients from the membership as well as approximately 20 municipal clients. The estimated quantity framework includes: 1. Hybrid SOC (Bronze): - On-Prem: approximately 106,000 clients and 16,000 servers across three environments. - Cloud: approximately 72,000 clients across three environments. 2. Managed SOC (Silver & Gold): - Approximately 10 - 20 separate environments. - Total need approximately 100,000 clients and 11,000 servers. The maximum quantity of the framework agreement is limited to 200% of the hypothetical total offer price. The provision of services must exclusively come from the EU/EEA.