منافسة عامة
✓ مرسّى
تجديد رخص أنظمة الحماية وتوريد وتركيب وتشغيل أنظمة الأمن السيبراني لأحد مواقع رئاسة أمن الدولة بمدينة الرياض.
الديوان العام لرئاسة أمن الدولة
رقم المنافسة
251139001298
المعرّف
#1018523
عنوان الضمان الإبتدائى
حسب ملف معلومات الضمان المرفق
الغرض من المنافسة
تجديد الرخص المنتهية وتوريد وتركيب وتشغيل أنظمة الأمن السيبراني لضمان استمرارية الأعمال وتعزيز الأداء والأمان وتوفير الدعم الفني وفق أعلى المعايير.
| التاريخ | ميلادي | هجري |
|---|---|---|
| تاريخ النشر | 2025/11/06 16:00 | — |
| آخر موعد للاستفسارات | 2025/11/16 16:00 | 1447-05-25 |
| آخر موعد تقديم العروض | 2025/12/07 09:59 | 1447-06-16 |
| موعد فتح العروض | 2025/12/07 10:00 | 1447-06-16 |
| موعد فحص العروض | — | — |
| التاريخ المتوقع للترسية | 2025/12/07 | 1447-06-16 |
| تاريخ بدء الأعمال | 2026/01/11 | 1447-07-22 |
| تاريخ خطاب تأكيد المشاركة | — | — |
| بداية إرسال الأسئلة | 2025/12/06 | 1447-06-15 |
| أقصى مدة للإجابة | 5 يوم | |
| مكان فتح العروض | الرياض | |
| مدة الوقفة | 5 يوم |
موقع التنفيذ
مجال التصنيف
الأنشطة
- • تقنية المعلومات
جدول 1 المواد - تقنية معلومات
| البند | الفئة | الكمية | وصف البند | المواصفات | وحدة القياس | الرقم التسلسلي | منتج من القائمة الإلزامية |
|---|---|---|---|---|---|---|---|
| بند 1 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام الحماية (EDR) من شركة كاسبرسكاي | نظام الحماية (EDR) من شركة كاسبرسكاي وما يعادلها ، مع تفعيل حزمة رخص لعدد 2000 حساب خاصة بهذا النظام، والرخصة مدتها سنتين ميلادية Licenses Qty: 2000 account for (EDR) solution from Kaspersky, Licenses for 2 years توفير الأجهزة اللازمة (Hardware) لتشغيل النظام ، وكذلك الدعم الفني للنظام لمدة سنتين ميلادية Providing the necessary hardware to operate the system, as well as full technical support for 2 new years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The Endpoint Detection and Response (EDR) solution must be optimized for environments with limited SOC resources. It should provide automated detection, response, and visibility using advanced behavior-based technologies, ensure full compliance with national cybersecurity regulations (NCA) المتطلبات التقنية الإلزامية :Mandatory Technical Requirements تقنية توقيع سلوك البث Behavior Stream Signature (BSS) Technology Proprietary behavioral detection engine that monitors real-time endpoint activities to detect ransomware, fileless malware, and living-off-the-land (LotL) techniques الربط مع استخبارات التهديدات المدعومة Assisted Threat Intelligence via KSN-like Network Integration with a global threat intelligence network equivalent to Kaspersky Security Network (KSN) reputation scoring, and continuous threat updates الاسترجاع التلقائي والمعالجة Automatic Rollback and Remediation Capability to restore endpoints to a clean state after malicious changes, especially in ransomware or exploit cases تحليل مرئي لجذر السبب Visual Root Cause Analysis (RCA) Interactive attack chain visualization with correlated events (file, registry, network activity) فحص مؤشرات الاختراق IOC Sweeping Across Endpoints Support for custom IOC uploads and retrospective sweeps across all endpoints بنية الوكيل الموحد Single-Agent Architecture Unified agent delivering both endpoint protection and EDR functions to minimize resource usage استجابة موجهة مع إجراءات محددة مسبقًا Guided Response with Predefined Actions Built-in response playbooks enabling process termination, device isolation, file deletion, or script execution from a central console ربط تلقائي مع التقنيات MITRE ATT&CK Framework Mapping Automatic mapping of detected behaviors to MITRE ATT&CK techniques تقنية الدفاع الذاتي Self-Defense Technology Protection against unauthorized modification or termination of the endpoint agent وحدة تحكم مركزية عبر الويب Centralized Web Console Role-based access control for all monitoring, investigation, and remediation actions | نظام | 1 | 0 |
| بند 2 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام الحماية (NDR) من شركة كاسبرسكاي | نظام الحماية (NDR) النوع الأول من شركة كاسبرسكاي وما يعادلها، والرخصة مدتها سنتين ميلادية (NDR) solution Type 1 from Kaspersky, Licenses for 2 years توفير الأجهزة اللازمة (Hardware) لتشغيل النظام ، وكذلك الدعم الفني للنظام لمدة سنتين ميلادية Providing the necessary hardware to operate the system, as well as full technical support for 2 new years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The solution must be a KATA-based Network Detection and Response (NDR) platform providing deep, real-time visibility into network traffic, with the ability to detect advanced threats, anomalous behavior, and lateral movement across internal networks. It should deliver high-fidelity detection with minimal false positives and ensure full compliance with national cybersecurity regulations (NCA) المتطلبات التقنية الإلزامية :Mandatory Technical Requirements محرك تحليل حركة المرور Proprietary Traffic Processing Engine Purpose-built network traffic analysis engine with deep packet inspection (DPI), metadata extraction and behavioral analysis for North-South and East-West traffic اكتشاف الاختلافات القائمة على التعلم الآلي وتحليل السلوك ML-Based Anomaly Detection and Behavioral Profiling Machine learning models for establishing baselines and identifying anomalies, lateral movement beaconing, and other APT tactics تحليل حركة المرور المشفرة Encrypted Traffic Analysis (Without Decryption) Behavior-based detection within encrypted traffic (HTTPS/TLS) via metadata and flow pattern analysis without decrypting content التكامل مع استخبارات التهديدات العالمية Integration with Global Threat Intelligence Real-time correlation with cloud-based feeds equivalent to Kaspersky Threat Intelligence Portal KSN for identifying known threats, C2 traffic, and malicious indicators اكتشاف الهجمات غير المعتمدة على الملفات Detection of Fileless and LotL Attacks Ability to detect advanced attacks like PowerShell abuse, remote services misuse, and process injection الصيد القائم على مؤشرات الاختراق وقواعد يارا IOC and YARA Rule-Based Threat Hunting Import custom IOCs/YARA rules and perform historical sweeps for retrospective detection الربط مع التقنيات MITRE ATT&CK Mapping for Network TTPs Automatic mapping of detections to MITRE ATT&CK techniques for structured analysis التقاط حزم وتخزين البيانات الوصفية Full Packet Capture and Metadata Storage Retain raw packets and metadata for a configurable period to support وحدة تحكم مركزية قائمة على الويب Web-Based Management Console with RBAC Centralized interface for monitoring, policy management, and investigation workflows التكامل مع منصات مراقبة السجلات والأحداث Integration with SIEM/SOAR Platforms Native integration via syslog, REST APIs, and STIX/TAXII | نظام | 2 | 0 |
| بند 3 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام حماية البريد (Email Security Gateway) من شركة كاسبرسكاي | نظام حماية البريد (Email Security Gateway) من شركة كاسبرسكاي وما يعادلها، مع تفعيل حزمة رخص لعدد 2500 حساب خاصة بهذا النظام، والرخصة مدتها سنتين ميلادية Licenses Qty: 2500 account for (Email Security Gateway) solution from Kaspersky, Licenses for 2 years توفير الأجهزة اللازمة (Hardware) لتشغيل النظام ، وكذلك الدعم الفني للنظام لمدة سنتين ميلادية Providing the necessary hardware to operate the system, as well as full technical support for 2 new years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The proposed (Email Security Gateway) solution must provide deep, multi-layered protection against advanced email-borne threats, ensuring high detection accuracy, minimal false positives, granular policy control, and ensure full compliance with national cybersecurity regulations (NCA) المتطلبات التقنية الإلزامية :Mandatory Technical Requirements محرك حماية متعدد الطبقات ضد التهديدات Multi-Layered Threat Protection Engine Hybrid detection stack including signature-based analysis, heuristic analysis, Behavior Stream Signature (BSS) technology, and file emulation/sandboxing to detect APTs, ransomware, and polymorphic malware in email attachments تغذية استخبارات التهديدات Assisted Threat Intelligence Feed Integration with a global threat intelligence network equivalent to a KSN-style cloud network delivering real-time telemetry and verdicts to block emerging phishing, spam, and malware campaigns تصفية متقدمة للبريد الإلكتروني Advanced Anti-Spam Filtering Self-learning spam filter with Bayesian algorithms, blocklist/allowlist management, and SPF/DKIM/DMARC validation حماية من الروابط الخبيثة Malicious URL Protection Embedded URL scanning and link reputation services equivalent to KSN Gateway logic, capable of detecting malicious links even if obfuscated or dynamically generated منع مدمج للاستغلالات ضمن مرفقات البريد الإلكتروني Built-In Exploit Prevention Proactive detection and blocking of exploit attempts within documents (PDF, Office, and script-based formats) تقنية الحماية الذاتية Self-Protection Technology Mechanisms to prevent tampering or unauthorized disabling of the security engine إدارة مركزية قائمة على الويب Centralized Web-Based Management Role-based console for real-time monitoring, alerting, quarantine management, policy control, and compliance reporting التكامل مع منصات مراقبة السجلات والأحداث Platform Integration Native compatibility with Microsoft Exchange, SMTP gateways, and hybrid architectures; supports both agent based and agentless deployment models التحكم الدقيق في منع تسرب البيانات والمرفقات Granular DLP and Attachment Control Policy-driven inspection and control over content and attachments, with customizable rules for sensitive data patterns (e.g., credit card numbers, keywords) | نظام | 3 | 0 |
| بند 4 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام الحماية (SandBox) من شركة كاسبرسكاي | نظام الحماية (SandBox) من شركة كاسبرسكاي وما يعادلها، والرخصة مدتها سنتين ميلادية (SandBox) solution from Kaspersky,Licenses for 2 years توفير الأجهزة اللازمة (Hardware) لتشغيل النظام ، وكذلك الدعم الفني للنظام لمدة سنتين ميلادية Providing the necessary hardware to operate the system, as well as full technical support for 2 new years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني A high-fidelity (SandBoxing) solution to detect advanced threats, APTs, and evasive malware that bypass traditional signature-based defenses. The solution must support dynamic analysis across multiple file types, integrate with threat intelligence, and provide automated incident response capabilities and ensure full compliance with national cybersecurity regulations (NCA) المتطلبات التقنية الإلزامية :Mandatory Technical Requirements محرك لتحليل السلوكيات Object Behavior Analysis Engine Dynamic execution of suspicious files, emails, URLs, and scripts in a simulated OS environment with user Monitoring of file execution, registry changes, network activity, and system modificationsinteraction emulation محرك محاكاة حركة المرور Traffic Emulation Engine Simulated internet environment to observe outbound connections, C2 traffic, and data exfiltration attempts without exposure to the corporate network كشف سلوك البث المستمر Behavior Stream Signature (BSS) Detection Behavior pattern matching against known malicious models to identify zero-day and polymorphic محلل الهجمات المستهدفة Integrated Targeted Attack Analyzer Correlation of sandbox results with endpoint and network telemetry to detect multi-stage and lateral movement threats إصدار الأوامر باستخدام التعلم الآلي Machine Learning Verdicting ML models trained on global datasets to classify behaviors and deliver verdicts on previously unseen التعامل مع التأخير والتنفيذ المشروط Delayed & Triggered Execution Handling Detects threats that delay execution, require user input, or attempt sandbox الربط مع استخبارات التهديدات المدعومة KSN-like Threat Intelligence Correlation Automatic enrichment of verdicts and IOCs with cloud-based threat intelligence for faster classification and reduced false positives استخراج مؤشرات الاختراق وقواعد يارا IOC and YARA Rule Extraction Ability to generate IOCs and import custom YARA rules for object scanning and threat family identification التكامل مع أنظمة الحماية والمراقبة Integration with EDR, SIEM, and SOAR Automatic forwarding of artifacts and verdicts to enable containment and response actions دعم النشر على الشبكات المحلية والمغلقة On-Premises & Air-Gapped Deployment Support Full operational capability without cloud connectivity تحليل العينات متعددة المنصات Multi-Platform Sample Analysis Support for Windows executables, Android APKs, Office documents, PDFs, JavaScript, PowerShell scripts, and more وحدة تحكم مركزية عبر الويب Centralized Web Console Unified interface for submissions, monitoring, reporting, and integration management | نظام | 4 | 0 |
| بند 5 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل منصة معلومات التهديدات من شركة Google | توريد وتركيب وتشغيل منصة معلومات التهديدات من شركة جوجل وما يعادلها ، والرخصة مدتها سنة واحدة ميلادية Threat information provider from Google, Licenses Enterprise plus for 1 year الدعم الفني لمدة سنة ميلادية واحدة full technical support for 1 year يجب أن تشمل المنصة الإمكانيات التالية The proposed Google Threat intelligence subscription service must provide finished operational, and tactical intelligence, enriched by direct frontline incident response experience and supported by a global network of analysts, for 1 year subscription period. The service must deliver intelligence in machine- and human-consumable formats, integrated with internal security operations القدرات المطلوبة :Required Capabilities استخبارات متكاملة مع رؤى سياقية Finished Intelligence with Contextual Insights Provide high-confidence reports covering nation-state activity, ransomware groups, and emerging threat actors enriched with geopolitical context تكامل بيانات الاستجابة للحوادث Frontline Incident Response Data Integration Intelligence should be based on active investigation data from real-world breaches and incident response engagements worldwide شبكة محللين عالمية وخبرة إقليمية Global Analyst Network & Regional Expertise Direct access to expert analysts for tailored briefings, incident context, and strategic threat updates إسناد الهجمات وبروفايلات الجهات المهاجمة APT Attribution & Actor Profiling Maintain detailed profiles of advanced persistent threat groups, including historical campaigns infrastructure tracking, and TTP mapping to MITRE ATT&CK تغذيات تشغيلية وتكتيكية Operational & Tactical Feeds Deliver structured intelligence (STIX/TAXII, JSON, CSV) containing IOCs, malware hashes C2 domains, and phishing URLs with confidence ratings and expiration timelines التكامل مع أدوات الحماية ومراقبة سجلات الأحدات Integration with Existing Security Tools Seamless integration with SIEM, SOAR, TIP, and EDR platforms for automated correlation and detection مراقبة التهديدات Threat Landscape Monitoring Provide ongoing coverage of industry-specific threats, vulnerabilities, and targeted campaigns طلبات استخبارات مخصصة Custom Intelligence Requests (CIRs) On-demand production of tailored intelligence reports to support ongoing investigations or risk assessments | نظام | 5 | 0 |
| بند 6 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام حماية أسماء النطاقات (DNS) من شركة Efficinet ip | نظام حماية أسماء النطاقات (DNS) من شركة Efficinet ip وما يعادلها ، والرخصة مدتها سنتين ميلادية DNS Security solution from Efficinet ip,Licenses for 2 years توفير الأجهزة اللازمة (Hardware) لتشغيل النظام ، وكذلك الدعم الفني للنظام لمدة سنتين ميلادية Providing the necessary hardware to operate the system, as well as full technical support for 2 years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The Solution should be combining the SOLID server logging capabilities with any existing event manager (or SIEM - Security Information and Event Manager) and ensure full compliance with national cybersecurity regulations (NCA) :Mandatory Technical Requirements DNS Firewall should allow for the quick identification of any IP address originating the detected suspicious queries Active blocking of DNS traffic to malicious destinations Automated threat intelligence to adapt protection to ever-evolving threat landscape Proactive protection against malware Phishing prevention Data exfiltration risks mitigation Infected device identification and location Protect against mail malware attacks, which are generally mitigated using antispam filters Protect against Web page/download malware attacks, which are generally mitigated using web gateway anti-virus Protect against File sharing malware spread, which are generally mitigated using anti-virus The solution must meet customer target architecture requirement The solution must provide a mechanism to schedule backups of configurations/databases to an external repository The solution must be able to log to a remote log server The solution must leverage current encryption/secure protocols (TLS v1.2, SNMPv3, SSH 2.0, SHA-256, and AES-256) The solution must support global search for objects based on all the data and metadata in the database The solution must fully support IPv4 and IPv6 for DNS concurrently | نظام | 6 | 0 |
| بند 7 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام منع تسريب البيانات (DLP) من شركة Forcepoint | نظام منع تسريب البيانات (DLP) من شركة Forcepoint وما يعادلها، والرخصة مدتها سنتين ميلادية Data Loss Prevention solution from Forcepoint,Licenses for 2 years الدعم الفني للنظام لمدة سنتين ميلادية Full technical support for 2 years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The organization requires a comprehensive Data Loss Prevention (DLP) and Data Classification solution that provides deep content inspection, contextual analysis, and dynamic policy enforcement across endpoints, cloud email, and network channels. The platform must go beyond static rules and support risk-adaptive controls based on user behavior and intent,and ensure full compliance with national cybersecurity regulations (NCA) :Mandatory Technical Requirements Risk-Adaptive Protection (RAP) The solution must adjust policy enforcement in real time based on user risk scores, behavior patterns, and contextual analysis — enabling dynamic DLP that balances protection with productivity Behavioral Analytics Engine Must include built-in user behavior analytics (UBA) that continuously monitors activity to detect high-risk actions such as anomalous downloads, mass copying, shadow IT usage, or privileged misuse Content-Aware DLP with Fingerprinting Supports exact data matching, structured/unstructured content inspection, and file fingerprinting to prevent data exfiltration through email, web, removable media, and print Data Classification Integration Natively supports or integrates with data classification tools to apply persistent classification labels and enforce DLP policies based on tags and sensitivity levels Granular Policy Enforcement Enables enforcement based on multiple dimensions: content, context, user identity, device posture, location, and behavioral risk score Endpoint, Network, and Email Coverage Provides unified data protection policies across managed devices, email platforms, web gateways, and storage repositories Multi-Vector Exfiltration Prevention Detects and prevents data leakage across vectors including clipboard, USB, print, FTP, web uploads, and screen captures Offline and Remote Protection Endpoint agent must provide persistent policy enforcement and auditing even when devices are offline or disconnected from the corporate network Insider Threat Indicators System must correlate DLP incidents with behavioral baselines and other digital signals to flag potential insider threats (e.g., resigning employees, credential misuse, or sabotage attempts) Dynamic Coaching and Justification Prompts Must support customizable user prompts that warn, educate, or require business justification before executing risky actions Incident Timeline Visualization Investigation interface must provide a timeline view of user activity and policy violations to assist security analysts in rapid triage and response Unified Policy Engine All data protection policies must be centrally managed via a unified interface with role-based access control (RBAC) and audit logging Integration with SIEM, SOAR, and ITM Platforms Must support native or API-based integration with security platforms to enrich alerts, trigger automated responses, and support advanced threat investigations Scalability and Air-Gap Deployment Support Should support high-scale environments and be deployable in air-gapped or regulated sectors where cloud usage is restricted | نظام | 7 | 0 |
| بند 8 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام إدارة الحقوق (RMS) من شركة Seclore | نظام إدارة الحقوق (RMS) من شركة Seclore وما يعادلها ، والرخصة مدتها سنتين ميلادية Rights Management System (RMS) solution from Seclore,Licenses for 2 years الدعم الفني للنظام لمدة سنتين ميلادية Full technical support for 2 years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The organization requires a modern Rights Management System (RMS) to protect sensitive documents and unstructured data throughout their lifecycle—regardless of where the data resides, travels, or who accesses it The RMS must enable persistent, file-level security with policy-driven usage control, without disrupting existing workflows or requiring specialized end-user applications and ensure full compliance with national cybersecurity regulations (NCA) المتطلبات التقنية الإلزامية :Mandatory Technical Requirements تشفير على مستوى الملف مع حقوق استخدام مضمّنة File-Level Encryption with Embedded Usage Rights The RMS must embed encryption and access controls directly into files, ensuring persistent protection that remains with the document across on-premises التحكم الدقيق في الاستخدام (فتح، تعديل، طباعة، نسخ، مشاركة الشاشة) Granular Usage Control (Open, Edit, Print, Copy, Screen Share) Ability to define and enforce policies at a granular level per user or group, including time-bound access, device restrictions, and usage tracking تطبيق السياسات دون الاعتماد على نظام تشغيل الجهاز الطرفي Policy Enforcement Without Dependency on Endpoint OS Users must be able to open protected files through secure viewers, including browser-based access, without installing extra software علامات مائية متحركة وقابلة للتخصيص Dynamic & Customizable Watermarking Support for on-demand watermarks (e.g., user name, IP address, timestamp) on viewed or printed files to discourage leaks الحماية في وضع عدم الاتصال بالشبكة مع مزامنة تلقائية للسياسات Offline Protection with Automatic Policy Sync Maintain full enforcement of rights offline, with automatic policy synchronization when the device reconnects تكامل وانسيابية في التشغيل التلقائي Seamless Integration and Automation Auto-Protection via DLP, Email, ECM, and File Sharing Systems: RMS must integrate with DLP tools, secure email gateways, enterprise content management systems (ECM), to apply protection automatically to sensitive data واجهات برمجة التطبيقات (APIs) جاهزة Pre-Built Connectors and APIs Ready-to-use connectors for enterprise applications along with REST APIs for custom integrations تكامل مع أنظمة إدارة الهوية IAM Integration Full compatibility with Active Directory, LDAP, SAML, Azure AD, and other identity providers for authentication and policy enforcement سجلات أحداث دقيق وشامل ويمكن تتبع الوصول Comprehensive Audit Trails & Access Logging Maintain a detailed, real-time log of all file interactions (who, when, where, and what action) الإلغاء عن بُعد وتحديث السياسات آلياً Remote Revocation & Dynamic Policy Updates Administrators can revoke or modify file access even after distribution, both internally and externally تقارير التحليل والتحقيق الجنائي Forensic Reporting Generate exportable investigation and compliance-ready reports for audits, legal discovery, and incident response الامتثال للمعايير والتنظيمات العالمية Compliance Alignment Meet NCA, GDPR, HIPAA, ISO 27001, and other sectoral regulatory requirements with enterprise-grade encryption and security standards الوصول الآمن إلى الملفات بدون عوائق Zero-Friction End User Experience Secure file access through native apps or browser-based viewers without requiring recipients to install RMS software واجهة متعددة اللغات Multilingual Interface Interface and policy templates available in multiple languages for international deployments التكامل مع أنظمة مراقبة سجلات الأحداث Seamless Integration with SIEM/SOAR Ability to send RMS activity logs and alerts to SIEM or SOAR platforms for centralized monitoring and automated incident response قوالب سياسات جاهزة للنشر Policy Templates for Quick Deployment Ready-to-use policy templates for different document types and sensitivity levels, customizable as per organizational needs توفر خاصية وضع العرض الآمن Secure View-Only Mode Allow recipients to view documents without the ability to download, print, or copy content توفر روابط وصول مؤقتة Temporary Access Links Grant secure, time-limited access to external users with automatic expiration | نظام | 8 | 0 |
| بند 9 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام جدار حماية تطبيقات الويب (WAF) من شركة Forigate | نظام جدار حماية تطبيقات الويب (WAF) من شركة Fortigate وما يعادلها، والرخصة مدتها سنتين ميلادية Web Application Firewall (WAF) solution from Fortigate,Licenses for 2 years الدعم الفني للنظام لمدة سنتين ميلادية Full technical support for 2 years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The solution should support five different deployment modes: inline Transparent True Transparent Proxy, Reverse Proxy, WCCP and Non-inline Sniffing,and ensure full compliance with national cybersecurity regulations (NCA) المتطلبات التقنية الإلزامية :Mandatory Technical Requirements يجب أن يدعم إدارة مركزية مع آلية ترخيص مبسّطة The solution should support a centralized management solution with simple licensing mechanism يجب ألا يتطلب أي أجهزة إضافية لاستخدام أنظمة الإدارة المركزية No extra hardware should be needed to use the central management solutions يجب أن يدعم خاصية متعددة المستأجرين (Multi-Tenancy) من خلال نطاقات إدارية، بما لا يقل عن 64 نطاقًا The solution should support multi-tenancy via administrative domains, at least 64 Domains يجب أن يدعم إدارة عبر واجهات RESTful API The solution should support RESTful API management يجب أن يكون لديه القدرة على تخزين النسخ الاحتياطية المشفرة بكلمة مرور تلقائيًا وخارج النظام (Off-box) حسب جدول زمني، عبر بروتوكولي FTP وSFTP The solution should have the capability to automatically store password encrypted backups off-box per schedule via FTP and SFTP يجب أن يدعم نموذج الأمان الإيجابي (Positive Security Model) The solution should support a positive security model يجب ألا يقوم بتحويل البيانات المكتسبة تلقائيًا إلى أوضاع الكشف أو الحظر The solution should not automatically move the learned details into detection or prevention as it would violate change control policies in most enterprises Instead, an administrator should have easy deployment controls يجب أن يوفر التعلم الآلي والحماية من التهديدات The solution must provide machine-based learning to protect against known threats and zero-day attacks with near zero false positive (not auto learning) In addition to the machine learning the solutions must support two layers of application learning ML and statistical probabilities to detect anomalies and threats separately يجب أن يدعم تصدير واستيراد بيانات التعلم الآلي The solution must support exporting and importing machine learning data يجب أن يدعم بناء نموذج التعلم الآلي باستخدام ما يصل إلى 5000 عينة، مع خيار تقليص العدد لنمط أسرع The solution should Supports up to 5000 samples to build the machine learning model with optional to make it less for fast mode يجب أن يكون بالإمكان تقييد أو استثناء جمع العينات لعناوين IP محددة أو نطاق IP معين The solution can limit or exclude sample collection to a specific IP or IP range يجب أن يدعم البروتوكولات وإمكانية فحص البريد الإلكتروني والمرفقات ضد التروجانات والفيروسات وإرسال الملفات إلى sandbox للتحليل المتقدم Must support MAPI over HTTP where this can be used to publish Exchange and must be able to scan email and attachment for Trojan, AV, and must be able to foreword files to Sandbox for ATP يجب أن يدعم طريقة HTTP PATCH The solution must support HTTP patch method in the http parser, this should be available in machine learning, Signatures and Auto learns يجب أن يدعم بروتوكولات SPNEGO وKerberos لنشر المواقع كمزودات تفويض The solution must support SPNEGO and Kerberos for the site publish as authorization mechanism يجب أن تحمي الحلول من هجمات (Man-in-the-Browser) من خلال تشفير بعض الحقول لحماية بيانات المستخدم الحساسة The solution must protect against Man-in-the-browser attacks, by encrypting certain fields to help in protecting user sensitive data يجب أن يدعم تأمين حركة مرور WebSocket The solution must support securing WebSocket traffic using many methods such as allowed formats, frame and message size, signatures detection يجب ان يدعم فرض تغيير كلمة المرور The solution must support Force password change and account locking upon login failures يجب أن يدعم تحليل Unicode في Java عند تحليل البروتوكولات The solution must support Java Unicode decoding for parsing protocols يجب أن توفّر الحلول قدرات حماية من هجمات DDoS على الطبقة السابعة (Layer 7) The solution should offer Layer 7 DDoS capabilities أن يتضمن مكافح فيروسات مدمج من نفس المزود (وليس من طرف ثالث) The solution should offer an on-board Anti-Virus solution from the same vendor not 3rd party يجب ألا يؤدي مكافح الفيروسات المدمج على نشر برامج أو أجهزة والتكامل مع أدوات من جهات خارجية The AV solution should NOT introduce additional software or hardware deployments nor 3rd-party integration requirements يجب أن يدعم فحص مرفقات الملفات من أجهزة الهاتف المحمول AV scanning of mail file attachment uploads from mobile devices per OWA and ActiveSync should be support يجب أن يتكامل بشكل وثيق مع حلول Sandbox لحماية رفع الملفات، مع القدرة على اكتساب المعرفة من المحتوى الخبيث المكتشف The solution should tightly integrate with Sandboxing solution for file upload protection and learn observed malicious content from it يجب أن يتكامل مع أدوات تقييم الثغرات من جهات خارجية لتوفير تصحيحات افتراضية ديناميكية (Virtual Patches)، بحيث يتم تحويل الثغرات المكتشفة تلقائيًا إلى قواعد أمان لحماية التطبيقات مؤقتًا حتى يتم إصلاحها The solution should Integrate with 3rd party vulnerability tools to provide dynamic virtual patches to security issues application environments where Vulnerabilities found by the scanner are quickly and automatically turned into security rules to protect the application until developers can address them in the application codein يجب أن يتضمن ماسح ثغرات مدمج لاكتشاف المشكلات الأمنية في التطبيقات The solution should include built in vulnerability scanner to detect يجب أن يدعم ميزات أمان محسّن لملفات تعريف الارتباط من خلال تشفير ملفات تعريف الارتباط التي يصدرها الخادم الخلفي أو إضافة سمات أمان لها The solution should support enhanced cookie security where you can encrypt the cookies issued by the back-end server or add security attributes to them | نظام | 9 | 0 |
| بند 10 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل نظام تشفير وإخفاء قواعد البيانات (Data Masking) من شركة Thales | نظام تشفير وإخفاء قواعد البيانات (Data Masking) من شركة Thales وما يعادلها، والرخصة مدتها سنتين ميلادية (DB encryption & Data Masking) solution from Thales, Licenses for 2 years الدعم الفني للنظام لمدة سنتين ميلادية Full technical support for 2 new years يسمح فقط للشركاء أو الموزعين المعتمدين الذين يحملون اعتماد شريك معتمد ساري المفعول (بمستوى ذهبي على الأقل أو ما يعادله) من مزوّد هذا الحل المقترح بتقديم العطاءات ويجب تقديم إثبات حالة الشراكة الحالية وشهادة الاعتماد من المزود مع المقترح Only authorized partners or resellers holding a valid Certified Partner accreditation (at least Gold or equivalent level) from the proposed of This solution vendor are eligible to submit bids, and Proof of current partnership status and vendor certification must be provided with the proposal يجب أن يشمل النظام المواصفات الفنية التالية وكذلك يتوافق مع متطلبات ضوابط الهيئة الوطنية للأمن السيبراني The organization requires an advanced Data Masking platform to protect sensitive data in production and nonproduction environments for at least Qty:10 Databases, by replacing real data with realistic but de-identified values The solution must provide both static and dynamic masking capabilities, ensure compliance with data protection regulations, and integrate seamlessly with existing enterprise systems, and ensure full compliance with national cybersecurity regulations (NCA) المتطلبات الوظيفية الرئيسية :Key Functional Requirements قدرات الإخفاء Masking إخفاء البيانات الثابت (SDM) Static Data Masking (SDM): Permanently replace sensitive data in databases, files, and big data platforms for development, testing, analytics, and third-party إخفاء البيانات الديناميكي (DDM) Dynamic Data Masking (DDM): Mask data in real time at query runtime, without altering the underlying database based on user role, location, or access context دعم خوارزميات الإخفاء المتنوعة Support for deterministic, random, encryption-based, and custom masking algorithms إخفاء البيانات مع المحافظة على التنسيق Format-preserving masking to maintain data usability for analytics, testing, and application compatibility Ability to mask structured, semi-structured, and unstructured data القدرة على إخفاء قواعد البيانات Integration & Compatibility Broad database coverage (e.g., Oracle, SQL Server, MySQL, PostgreSQL, DB2, MongoDB, and other major RDBMS/NoSQL platforms) التكامل والتوافق مع قواعد البيانات Native integration with ERP, CRM, and core business applications (e.g., SAP, Oracle E-Business Suite Salesforce) APIs for custom integration and automation of masking إدارة السياسات والضوابط Policy & Rule تعريف سياسات موحد Centralized policy definition for masking across heterogeneous environments تحكم في الوصول قائم على الأدوار (RBAC) Role-based access control (RBAC) for defining who can create, modify, and apply masking rules تطبيق السياسات بشكل موحّد Ability to apply masking policies consistently across databases, files, and streaming data sources قوالب تشفير جاهزة للإخفاء Pre-built masking templates for common PII, PCI-DSS, HIPAA, and NCA-regulated data elements الأمان والامتثال Security & Compliance الامتثال للتشريعات والأنظمة العالمية Compliance with data protection regulations including NCA ECC, GDPR, HIPAA, PCI-DSS تسجيل وتدقيق تفصيلي لسجلات الأحداث Detailed audit logging for masking actions, rule changes, and user activities التكامل مع أنظمة سجلات الأحداث Integration with SIEM solutions for real-time monitoring of masking activities الأداء وقابلية التوسع Performance & Scalability محرك إخفاء عالي الأداء High-performance masking engine capable of processing large datasets without significant performance degradation دعم النشر الموزّع والمعالجة المتوازية Support for distributed deployment and parallel processing to handle enterprise-scale data volumes الميزات المتقدمة Advanced Features القدرة على إخفاء البيانات ضمن سير العمل Masking within test data provisioning workflows to ensure sensitive data is never exposed اكتشاف وتصنيف البيانات الحساسة Discovery and classification of sensitive data prior to masking إخفاء الاستعلامات والطلبات العشوائية Masking for both structured queries and ad-hoc access requests تكامل اختياري مع التوكن أو التشفير Optional integration with tokenization or encryption for hybrid data protection strategies | نظام | 10 | 0 |
| بند 11 | توريد وتركيب وتشغيل | 1 | توريد وتركيب وتشغيل خادم (Server) عالي الأداء | خادم (server) عالي الأداء (high-performance server) الدعم الفني للخادم مدة سنتين ميلادية Full OEM-backed hardware and software support for 2 new years يجب أن يشمل الخادم المواصفات الفنية التالية The organization requires an enterprise-grade high-performance server to host and virtualize multiple critical :cybersecurity and data protection workloads, including Rights Management System (RMS) Data Masking Data Loss Prevention (DLP) Web Application Firewall (WAF) The server must deliver high availability, scalability, and security to support continuous 24×7 mission-critical operations, with support for leading virtualization platforms such as VMware vSphere, Microsoft Hyper-V, and KVM :Requirements Enterprise-class performance for multi-application virtualization. High availability and redundancy for uninterrupted service. Hardware-assisted security features, including TPM 2.0 and Secure Boot | خادم | 11 | 0 |
| بند 12 | تجديد رخصة | 2 | تجديد رخصة جهاز جدار الحماية (Firewall) النوع الأول من شركة Paloalto لمدة سنتين ميلادية | تجديد رخصة جهاز جدار الحماية (Firewall) النوع الأول من شركة Paloalto وما يعادلها موديل (PA-460) لعدد 2 ولمدة سنتين ميلادية 2years License Renewal of (PA-460) Next-Generation Firewall (NGFW) Qty:2 يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للجهاز وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license | رخصة | 12 | 0 |
| بند 13 | تجديد رخصة | 1 | تجديد رخصة نظام مسح الثغرات (Vulnerability Scanning) من شركة Tenable لمدة سنتين ميلادية | تجديد رخصة نظام مسح الثغرات (Vulnerability Scanning) من شركة Tenable وما يعادلهالعدد (500) ملقم لمدة سنتين ميلادية 2years License Renewal of (Vulnerability Scanning) solution from Tenable for (500) IPs (Tenable SC) يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للنظام وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license | رخصة | 13 | 0 |
| بند 14 | تجديد رخصة | 1 | تجديد رخصة نظام إدارة التحكم بالوصول (PAM) من شركة Senhasegura لمدة سنتين ميلادية | تجديد رخصة نظام إدارة التحكم بالوصول (PAM) من شركة Senhasegura وما يعادلها لمدة سنتين ميلادية 2years License Renewal of (Privileged Access Management) solution from Senhasegura (PAM-SSG-Perp-50, Core-SSG-2Y-HADR,PAM Core Virtual Server Instance License – 2 Year Perpetual License with HA Qty:2) يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للنظام وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license | رخصة | 14 | 0 |
| بند 15 | تجديد رخصة | 1 | تجديد رخصة نظام تشفير الأقراص الصلبة من شركة Symantec لمدة سنتين ميلادية | تجديد رخصة نظام تشفير الأقراص الصلبة من شركة Symantec وما يعادلها لمدة سنتين ميلادية 2years License Renewal of (Hard Drives Encryption) solution from Symantec Endpoint Encryption Management Server (SEEMS) QTY 2 database with 3000 mailboxes PGP Encryption Server QTY: 3000 emails يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للنظام وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license | عدد | 15 | 0 |
| بند 16 | ترقية وتجديد رخصة | 1 | ترقية وتجديد رخصة نظام المراقبة الأمنية (SIEM) من شركة Splunk لمدة سنتين ميلادية | ترقية وتجديد رخصة نظام المراقبة الأمنية (SIEM) من شركة Splunk وما يعادلها لمدة سنتين ميلادية يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للجهاز وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية Renew the current SIEM license for a period of (2) years The license must support 300 GB per day of log ingestion The License start date must be after the expiration of the current license (First of June 2026) توفير الأجهزة اللازمة (Hardware) لتشغيل النظام وكذلك الدعم الفني حسب ماهو مذكور في المواصفات أدناه SIEM Health Check Conduct a full health check assessment on the current SIEM environment Identify bottlenecks, misconfigurations, performance issues, and outdated components Provide a detailed report with findings and recommendations Migration to New Environment Plan and execute the migration of the existing SIEM structure to a newly provided deployment environment The partner must implement the new SIEM architecture, keeping in mind the best practice (3 SH- 3 indexers- 3 supportive servers (1 Deployer, 1 Cluster Manager, Monitoring Console, 1 Deployment Server, License Master, 2HF acting as syslog server,1 HF for API and Database integration)) :Search Head Layer requirements 3 ES search heads :Search heads should meet the minimum reference server requirements Intel 64-bit chip architecture 16 physical or 32 virtual cores 2GHz or higher 64 GB of RAM or higher Linux OS (improved performance over Windows) Storage: 500 GB of SSD 1 GB interface card :Indexing Tier & Storage requirements 3 indexers :indexers should meet the minimum reference server requirements Intel 64-bit architecture 24 physical CPU cores, or 48 vCPU at 2 GHz or greater speed per core 64 GB of RAM or higher Linux OS (improved performance over Windows) Storage is defined below 10 GB interface cards :Indexer storage requirements Daily Volume:300 GB IDX Count:3 Total usable space on SSD (TB) Used for Hot/Warm:19 TB Usable space on SSD per indexer (TB):~6 .5 TB Total usable space on Cold storage (TB):90 TB Usable space on Cold storage per indexer (TB):30 TB Total usable space on Archive (TB):25 TB :Management Tier Requirements 3servers Deployer 1 Cluster Manager 1, Monitoring Console Deployment Server 1, License Master :Management servers should meet the minimum reference server requirements Intel 64-bit chip architecture 12 physical or 24 virtual cores 2GHz or higher 12 GB of RAM or higher Linux OS (improved performance over Windows) Storage: 300 GB of SSD 1 GB interface card :Collection layer Requirements 3 HF servers(2 HF will act as HA, and 1 HF for API and Database integration) :HF servers should meet the minimum reference server requirements Intel 64-bit chip architecture 12 physical or 24 virtual cores 2GHz or higher 12 GB of RAM or higher. Linux OS (improved performance over Windows) Storage: 300 GB of SSD (as per PSS Team we can increase the storage to 1 TB for 2 HF to store the Logs received (from syslog devices for 1 day at least 1 GB interface card All current and future log sources must be integrated, making sure all log sources are correctly parsed, regardless of whether it is out of the box or custom integration Ensure zero data loss, minimal downtime, and seamless continuity of service Include configuration backup, policy transfer, correlation rules, and dashboards migration Gap Assessment & Log Source Optimization Conduct a comprehensive gap assessment for all current integrated log sources Identify and integrate any missing critical logs, ensuring all logs are Successfully ingested Correctly parsed and normalized Free from trash or irrelevant traffic Provide recommendations to enhance visibility and reduce noise Infrastructure & Licensing All required hardware, virtual machines (VMs),storage ,and operating systems (OS) will be provided by the service provider The proposed infrastructure should be fully compatible with the SIEM vendor’s best practices and sizing recommendations Professional Services Engagement 160 professional services man-days Must be added after finalizing all the mentioned scope to be used by [Customer name] upon their request The scope of work covered under these man-days includes System upgrade and patching SIEM health check and optimization Development of new use cases Fine-tuning of existing use cases Performance tuning and configuration enhancements TS and fixing all the SIEM issues Those 24/7 PS must follow the below SLA 3 Hours for remote support 24 Hours for onsite support Deliverables License confirmation documents (2-year renewal) Pre- and post-health check reports Migration plan and execution report Gap assessment report Updated documentation for use cases and architecture Daily and final project progress reports Timeline The entire engagement should be completed within a maximum of 4 calendar months from project kickoff The PS is the only remaining for the three-year period Evaluation Criteria Relevant experience in SIEM solutions and migrations Certified technical resources SIEM vendor partnership level Proposed methodology and timeline Reference projects in similar environments | رخصة | 16 | 0 |
| بند 17 | تجديد رخصة | 4 | تجديد رخص نظام إدارة وإرسال رسائل التحقق الثنائي الخاص بالبريد الإلكتروني من شركة (LinQ2FA) لمدة سنتين ميلادية | تجديد رخص نظام إدارة وإرسال رسائل التحقق الثنائي الخاص بالبريد الإلكتروني من شركة (LinQ2FA) وما يعادلها لمدة سنتين ميلادية 2years License Renewal of MFA (LinQ2FA) solution يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للجهاز وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license مواصفات الرخصة License LinQ2 SMS Gateway Qty:2 License MPASS Authentication server Qty:2 | رخصة | 17 | 0 |
| بند 18 | تجديد رخصة | 1 | تجديد رخص نظام تحديث أجهزة الخوادم وسد الثغرات الأمنية من شركة (Ivanti) لمدة سنتين ميلادية | تجديد رخص نظام تحديث أجهزة الخوادم وسد الثغرات الأمنية من شركة (Ivanti) وما يعادلها لمدة سنتين ميلادية 2years License Renewal of patch management (Ivanti) solution يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للجهاز وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license مواصفات الرخصة الرخصة لعدد 70 خادم License for servers Qty 70 | رخصة | 18 | 0 |
| بند 19 | تجديد رخصة | 2 | تجديد رخصة جهاز جدار الحماية (Firewall) النوع الثاني من شركة FortiNet لمدة سنتين ميلادية | تجديد رخصة جهاز جدار الحماية (Firewall) النوع الثاني من شركة FortiNet موديل (FortiGate 3001F) وما يعادلها لعدد 2 ولمدة سنتين ميلادية 2years License Renewal of (FortiGate 3001F) Next-Generation Firewall (NGFW) Qty:2 يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للجهاز وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license مواصفات جدار الحماية 22 منفذ SFP28 بسرعة 25 جيجابت/ 10GE SFP GE Sfp ports, وأربع منافذ 100GE QSFP28/+40GE QSFP, ومصدرين للطاقة مزدوجة | رخصة | 19 | 0 |
| بند 20 | تجديد رخصة | 1 | تجديد رخصة نظام بيئة التشغيل الافتراضية من شركة (VMware) لمدة سنتين ميلادية | تجديد رخص نظام بيئة التشغيل الافتراضية من شركة VMware وما يعادلها لمدة سنتين ميلادية 2years License Renewal of (VMware) solution يكون تجديد الرخصة تحت نفس اسم الرخصة المسجلة سابقا للجهاز وبنفس المزايا والخصائص أو أعلى منها يجب أن يكون تاريخ بدء الرخصة الجديدة بعد انتهاء صلاحية الرخصة الحالية License start date must be after the expiration of the current license مواصفات الرخصة License for 248 Core | رخصة | 20 | 0 |
| بند 21 | دعم فني | 24 | الدعم الفني | خدمات الدعم الفني هي زيارات حضورية شاملة لكافة بنود المشروع ولمدة سنتين ميلادية، ونطاق الدعم الفني يشمل (دعم فني حضوري ، زيارات وقائية مجدولة، إنشاء التقارير والمتابعة، الاستجابة ومباشرة الأعطال) | زيارة | 21 | 0 |
21 بند
المستندات الداعمة (7 ملف)
| اسم المورد | قيمة العرض (ر.س) | قيمة الترسية (ر.س) | النتيجة الفنية | الحالة |
|---|---|---|---|---|
| شركة المتقدمة للتقنية و الأمن السيبراني المحدودة شركة شخص واحد | 29,999,236.95 | — | مطابق | مشارك |
| شركة رفال المستقبل التجارية | 23,001,361.60 | — | مطابق | مشارك |
| شركة الوطنية لحلول الأعمال | 22,791,651.05 | — | مطابق | مشارك |
| شركة ام دي اس لانظمه الحاسب الالي شركة شخص واحد | 40,103,402.60 | — | مطابق | مشارك |
| شركة برق النظم لخدمات التقنية التجارية شركة مساهمة غير مدرجة | 26,306,559.35 | — | مطابق | مشارك |
| شركة المستقبل الرقمي ل لاتصالات و تقنية المعلومات شركة شخص واحد | 22,011,966.00 | — | مطابق | مشارك |
| شركة اجاده للنظم | 40,779,000.00 | — | مطابق | مشارك |
| شركة انفرا تك للاتصالات و تقنية المعلومات شركة مساهمة سعودية غير مدرجة | 32,236,175.55 | — | مطابق | مشارك |
| شركة امداد الرقميه للتقنية | 18,992,943.45 | — | مطابق | مشارك |
| شركة حزام المعلومات شركة مساهمة سعودية مقفلة | 24,996,804.31 | — | مطابق | مشارك |
| شركة المعمر لانظمة المعلومات | 27,488,782.35 | — | مطابق | مشارك |
| شركة بعد للاتصالات السلكية واللاسلكية شركة شخص واحد | 28,579,220.01 | — | مطابق | مشارك |
| شركة امداد الرقميه للتقنية | 18,992,943.45 | 18,992,943.45 | — | مرسّى |
الآليات
تفضيل المنشآت الصغيرة والمتوسطة
معايير التقييم
معايير التقييم الفني
| المستوى الاول | المستوى الثاني | المستوى الثالث | الوزن النهائي |
|---|---|---|---|
| التقييم الفني | المطابقة الفنية لجداول الكميات والمواصفات | المطابقة الفنية لجداول الكميات والمواصفات | 50% |
| التقييم الفني | المطابقة الفنية لكراسة الشروط والمواصفات | المطابقة الفنية لكراسة الشروط والمواصفات | 50% |
معايير التقييم المالي
| المستوى الاول | المستوى الثاني | المستوى الثالث | الوزن النهائي |
|---|---|---|---|
| التقييم المالي | السعر | التكلفة الكلية | 100% |
أخبار المنافسة
title
تاريخ الإنشاء
value
12/05/47 12:40:39 م
title
تاريخ فتح العروض
value
16/06/47 10:00:00 ص
title
تاريخ الترسيه
value
23/07/1447