Endpoint Detection Response Solution with Security Service
LOT-0000
Endpoint Detection and Response Solution with Security Service.
The contracting authority intends to procure a cloud-based Endpoint Detection and Response (EDR) solution including associated Managed Security Services. The aim is to proactively protect end devices in the contracting authority's network from cyber threats and to be able to respond specifically to security-relevant incidents.
Objective: The planned service aims to improve the detection, analysis, and response to IT security threats, as well as to ensure continuous security operations (24/7) through a qualified service provider. The provider shall supply both the technical solution and accompanying services for operation, monitoring, incident response, and threat intelligence.
Framework conditions:
- The solution shall be operated via a centrally managed cloud platform.
- The service includes, among other things, security monitoring, threat analysis, escalation management, and reporting.
- Data protection and compliance requirements (especially GDPR) must be fully met.
- The integration into the existing IT landscape of the contracting authority is part of the service.
Roughly outlined scope of services:
- Provision and introduction of an EDR solution for Windows, Linux, and MacOS end devices (approximately 3800 users).
- Monitoring and management by a Security Operation Center.
- Managed Detection and Response including automated and manual countermeasures.
- Support for hybrid infrastructures (On Premise and Cloud).
- Training, reporting, optionally supporting forensics and vulnerability services.
- Exit strategy at the end of the contract (including data portability).
Initial contract duration of 4 years with the option for biannual extensions.