منافسة عامة
✓ مرسّى
تحديث وتطوير الأنظمة التقنية للدفاع والحماية بالأمن السيبراني لأحد مواقع رئاسة أمن الدولة في مدينة الرياض
الديوان العام لرئاسة أمن الدولة
رقم المنافسة
240439012945
المعرّف
#777202
عنوان الضمان الإبتدائى
الديوان العام لرئاسة أمن الدولة
الغرض من المنافسة
تحديث وتطوير الأنظمة التقنية للدفاع والحماية بالأمن السيبراني، وما يتطلب ذلك من توريد وتركيب وتهيئة الأجهزة والأنظمة والرخص، مع توفير الدعم الفني طوال فترة المشروع.
| التاريخ | ميلادي | هجري |
|---|---|---|
| تاريخ النشر | 2024/04/25 16:09 | — |
| آخر موعد للاستفسارات | 2024/05/20 | 1445-11-12 |
| آخر موعد تقديم العروض | 2024/05/27 10:00 | 1445-11-19 |
| موعد فتح العروض | 2024/05/27 10:00 | 1445-11-19 |
| موعد فحص العروض | — | — |
| التاريخ المتوقع للترسية | 2024/07/22 | 1446-01-16 |
| تاريخ بدء الأعمال | 2024/08/06 | 1446-02-02 |
| تاريخ خطاب تأكيد المشاركة | — | — |
| بداية إرسال الأسئلة | 2024/05/22 | 1445-11-14 |
| أقصى مدة للإجابة | 3 يوم | |
| مكان فتح العروض | الرياض | |
| مدة الوقفة | 5 يوم |
موقع التنفيذ
مجال التصنيف
الأنشطة
- • تقنية المعلومات
جدول 1 المواد - تقنية معلومات
| البند | الفئة | الكمية | وصف البند | المواصفات | وحدة القياس | الرقم التسلسلي | الرمز الإنشائي | منتج من القائمة الإلزامية |
|---|---|---|---|---|---|---|---|---|
| 1 | توريد و تركيب وتهيئة | 10 | توريد وتركيب وتهيئة أنظمة فحص الوسائط الإلكترونية (OPSWAT) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | License 10 Kiosks Applications, Vault Server, Core platform licenses with 3 years of support. Solution should offers a safe process for transferring files to and from secure networks as well as a way to safely store and limit access to files. Solution should help to scan portable media and detect and prevent threats contained on such media and prevent their introduction to secure networks and systems. Solution should prevents malicious file uploads on web applications that bypass sandboxes and other detection-based security solutions | عدد | 1 | 0 | |
| 2 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة معمل أمن سيبراني افتراضي مع الدعم الفني لمدة 3 سنوات من الشركات المصنعة | "Virtual Cyber Security Lab (VCSL)-1 Simulated Environments: Realistic virtual environments for simulating cyber threats and security scenarios. Cybersecurity labs is the simulation of the current infrastructure to perform any testings or updates before deploying in the producting environment. Solution should have Security and control where our organizations retain complete control over the VCSL environment, including data security, network access, and software configuration. This can be crucial for businesses handling sensitive data. Customization: On-premises VCSLs should be customized to meet the specific needs of our organization, such as tailoring the lab environment to match our internal network structure and proprietary software tools. Management : Bidder is responsible to provide On-premises VCSLs to perform ongoing management tasks, including patching software, monitoring performance, and ensuring security updates are implemented on regular basis by providing the Saudi National resourcesfor daily tasks. The Bidder have to perform the site survey and built the on-prem "Virtual Cyber Security Lab (VCSL) LAB as per the industry best pratices. solution should not be limited. Designing the LAB , Providing all the necessary Hardware's, Software's, Resources etc.. for i.e: Servers Workstations Networking Equipment Power Backup Systems Network Cabinet Virtualization Software" etc... Support for 3 years | عدد | 2 | 0 | |
| 3 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام تشفير لخوادم التخزين (HPE 3PAR) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | Data Encryption License for existing HPE 3PAR R2 LTU Solution for 3PAR R2 Data Encryption LTU which supports a variety of encryption algorithms, including AES-256 and XTS-AES. It also it should supports key management through HPE Key Management Service (KMS) or a third-party key management solution. Solution should come with some of the benefits of using the HPE 3PAR R2 Data Encryption LTU: Protects data at rest from unauthorized access. Complies with data security regulations. Helps to ensure data privacy. Simplifies key management. The solution should comply with relevant data security regulations and industry best practices for data encryption. The encryption process should be transparent to applications and have minimal impact on system performance. Granular access control mechanisms should be available to manage data access permissions effectively. The solution should offer robust key management capabilities to ensure the security and integrity of encryption keys. Support for 3 years | عدد | 3 | 0 | |
| 4 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة جهاز مراقبة تدفق بيانات الشبكة (Network Packet Brokers) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | TAP: Packet Flow switch to feed traffic PowerPacket Flow Switch with 48 x 1/10Gb SFP+ and 6 x40Gb QSFP+, or 72 ports total, AC Power Qty-1 Packet Flow Operating System (PFOS) Software for Certified PFS 7010" Qty-1 Mastercare Support PFOSN-YX5-02" Qty-3 Software Installation on switch ( by Avnet) Qty-1 HD Fiber Tap, 1G/10G/40G/100G, SM, 70/30, LC Qty-10 SFP+, 10G/1Gbase-LR/LX, SM, LC, 8-pack" Qty-3 The proposed solution TAP family should provides network monitoring devices with full and reliable access to network traffic. With the versatility of offering multiple options for link types and speed. TAPs shuould be placed on any strategic network link for comprehensive, always-on monitoring of the IT infrastructure. TAP should provides transparent access to network traffic. The TAP is invisible to devices on both ends of the link causing no disruption to data flows or protocol transactions – down to the lowest link-level control protocols. TAPs should provide monitoring devices with an exact view of all packets on the monitored link, thereby enabling accurate packet analysis and capture. Compared to the use of a network device’s traffic mirroring capabilitie TAP should avoids any potential limitations in the device’s architecture that might cause packet header loss/alteration or packet loss under heavy load. TAPs should provide the most accurate view of application transaction times sincethere is minimal latency or latency variation added that might be introduced by a network device’s mirroring process. This improves the accuracy of performance evaluation and modeling Packet Broker: nGeniusONE - Intermediate (25) - Appliance" Qty-1 Mastercare Support 51FH1L Qty-3 InfiniStreamNG Appliance, 4-Port 10G/1G Configurable (SFP+), 24TB (Expandable) Qty-1 Mastercare Support I-04795-SSHAS" Qty-3 nGenius Collector, 100M/1G/10G Base-T Interface, 4TB" Qty-1 Mastercare Support N-03400-MSHAB Qty-3 SFP+ MM, 10GB SR, 850nm, LC Qty-8 Kit, Server Power Cords, UK (2 cords per kit) Qty-3 Solution should Support for network speeds of [desired speeds, e.g., 10GbE, 25GbE, 100GbE]. Solution should Offer at least 600 ports for efficient traffic handling. Solution should Provide line rate filtering capabilities to process and filter packets at full wire speed. Solution should Include advanced filtering options based on source/destination IP, port number, VLAN ID, and protocol type. Solution should Implement load balancing to distribute traffic evenly across monitoring tools. Solution should Include port security to restrict access based on MAC address or other criteria. Solution should Support VLAN tagging and filtering for enhanced security. Solution should Enable traffic mirroring to multiple destinations for monitoring and analysis. Solution should Provide accurate packet timestamps for troubleshooting and analysis purposes. Solution should Offer remote mirroring functionality for centralized monitoring (if applicable). Solution should Provide a user-friendly web interface, CLI, and SNMP for management. Solution should Integrate seamlessly with our existing network management tools and workflows. Support for 3 years | عدد | 4 | 0 | |
| 5 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة جهاز جدار حماية تطبيقات الويب (WAF) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | Web Application Firewall Requirements 1. The solution must support up to 2.5 Gbps as HTTP throughput (based on Application traffic not Layer 4 or load balance traffic) 2. Solution hardware should support at least 40,000 HTTP TPS 3. Solution hardware should support at least 40,000 HTTP new HTTP connection per second. 4. Solution hardware should support at least up to 900,000 HTTP concurrent connection. 5. Solution hardware should support at least 20,000 HTTPS TPS 6. Solution hardware should support at least 10,000 new HTTPS connection per second. 7. Solution hardware should support at least up to 700,000 HTTPS concurrent connection. 1. The solution should support five different deployment modes: inline Transparent, True Transparent Proxy, Reverse Proxy, WCCP and Non-inline Sniffing. 2. Solution should support a centralized management solution with simple licensing mechanism. 3. No extra hardware should be needed to use the central management solutions. 4. Solution should support multi-tenancy via administrative domains, at least 64 Domains. 5. Solutions should support RESTful API management. 6. WAF should have the capability to automatically store password encrypted backups off-box per schedule via FTP and SFTP 7. Solution should support a positive security model. 8. The solution should not automatically move the learned details into detection or prevention as it would violate change control policies in most enterprises. Instead, an administrator should have easy deployment controls. 9. Learned details should be adjustable to allow fine tuning the learned policies. 10. Positive security rule deployment and learning must be possible while still aggressively enforcing appropriate negative policies. During learning of this positive security model, the security level should not have to be lowered as a recommended best practice of the solution vendor. 11. The solution administrator should not be forced to choose between "learning on/off" and "protection on/off'. These should co-exist. 12. Machine learning: a. The solutions must provide machine-based learning to protect against known threats and zero-day attacks with near zero false positive (not auto learning) In addition to the machine learning the solutions must support two layers of application learning ML and statistical probabilities to detect anomalies and threats separately. The first layer builds the mathematical model for each learned parameter and then triggers anomalies for abnormal requests. The second will then verify if the anomaly is an actual threat or if it is a benign variance (false positive).AL uses one layer that detects anomalies based on simply matching inputs to what it has. b. Observed and treating every variation as a threat. c. The solutions must support exporting and importing machine learning data. d. Supports up to 5000 samples to build the machine learning model with optional to make it less for fast mode. e. The solutions can limit or exclude sample collection to a specific IP or IP range. f. The solutions must support disabling machine learning sample collection for allow methods, this is for http methods which are rarely but should be treated as normal such as HEAD and OPTIONS. 13. Must support MAPI over HTTP where this can be used to publish Exchange and must be able to scan email and attachment for Trojan, AV, and must be able to foreword files to Sandbox for ATP. 14. The solutions must verify the validity of the back-end server certificate and block access to the server if the certificate isn't verified. 15. The solutions must report the CVE ID for the policy violation in the attack logs. 16. Must support HTTP patch method in the http parser, this should be available in machine learning, Signatures and Auto learns. 17. Must support SPNEGO and Kerberos for the site publish as authorization mechanism. 18. Must support API protection by blocking access not according to the API schema based on OpenAPI 3.0 framework. 19. Must protect against Man-in-the-browser attacks, by encrypting certain fields to help in protecting user sensitive data. 20. Must support securing WebSocket traffic using many methods such as allowed formats, frame and message size, signatures detection. 21. The solution should offer a negative security model. 22. The signature database should be automatically updated. 23. Per-signature configuration of exceptions 24. Exceptions can be created from the log file. 25. Default policies should be available in various classifications, Alert Only, Medium Security, High Security 26. Signatures should be grouped in logical, searchable dictionaries. The list should at least contain: a. Cross Site Scripting b. SQL Injection c.Generic Attacks d.Known Exploits e.Trojans f.Information Disclosure g.Bad Robot h.Credit Card Detection 27. False Positive measures must be available to reduce/eliminate false positives. 28. Solution should support SQL Injection specific measures by means of False Positive mitigation or SQL syntax validation. 29. Solutions should support threshold-based detection by means of customizable weight assignments on signatures. 30. The solutions should Using Lexical analysis with a SQL parser, SQL templates, and Abstract Syntax Trees to detect SQL injection and minimums the false positive and Abstract Syntax Trees 31. Must support Force password change and account locking upon login failures. 32. System to system communication security (XML Webservices) and java a. Solution should provide XML filtering and validation. b. The solutions must support Java Unicode decoding for parsing protocols. c. Must support WSDL verification to protect XML, to check the WSDL files and SOAP message. 33. Anti-Dos solution a. The solution should offer Layer 7 DDoS capabilities. b. The application layer detection should support: a. HTTP Request limit per source b. TCP Connections using same cookie. c. HTTP requests using the same cookie. d. A challenge response mechanism which will be fully transparent for the end-user e. A challenge response mechanism that actively challenges the end-user 34. Anti-Virus and Malware solution a. The solution should offer an on-board Anti-Virus solution from the same vendor not 3rd party. b. The AV database should be automatically updated. c. The AV solution must have public reviews reporting high ratings for effectiveness with low false positives from an independent 3rd party AV testing vendor. d. File uploads need to be restricted on file type and file size. e. The AV solution should NOT introduce additional software or hardware deployments nor 3rd-party integration requirements. f. AV scanning of mail file attachment uploads from mobile devices per OWA and ActiveSync should be support. g. Solution should tightly integrate with Sandboxing solution for file upload protection and learn observed malicious content from it. 35. Advance Web protection a. The solution should Integrate with 3rd party vulnerability tools including Acunetix, HP Weblnspect, IBM AppScan, Qualys, IBM QRadar, and WhiteHat to provide dynamic virtual patches to security issues in application environments where Vulnerabilities found by the scanner are quickly and automatically turned into security rules to protect the application until developers can address them in the application code. b. The solution should include built in vulnerability scanner to detect the following vulnerabilities using basic and enhanced scan mode: 1) Common Web Server Vulnerability (outdated software and software with known memory leaks, buffer overflows) 2) XSS (Cross-site Scripting) 3) SQL Injection I Source-code Disclosure 4) OS Commanding c. The solution should support enhanced cookie security where you can: 1) encrypt the cookies issued by the back-end server or add security attributes to them. 2) SET-Cookie flag to not allow client-side scripts access. 3) Cookie Replay Attach session to IP for session hijacking attack protection. 4) Cookie max age 5) Unrecognized cookie - ignore/alert/block. 6) Cookie exceptions d. The solution should integrate with threat intelligence service from the same vendor to offer the following: 1) IP reputation service: to protects from known attack sources like botnets, spammers, anonymous proxies, and sources known to be infected with malicious software. 2) File reputation service: where the built-in antivirus engine takes feed form the global threats intelligence to scan all files upload for threats that can infect your servers or other network elements. 3) Security Service: including items such as application layer signatures, malicious robots, suspicious URL patterns and web vulnerability scanner updates. 4) Credential Stuffing Defense: to check logins attempts against global list of compromised credentials and take actions ranging from alerts to blocking logins from suspected stolen user ids and passwords. 5) Advance malware protection integrates with cloud sandbox engine from the same vendor. e. The solution should support Threat scoring: where actions triggered based on multiple signature violations, instead of a single signature violation. When a client violates a signature in a threat-scoring category, it contributes to a combined threat score. When the combined threat score exceeds a maximum value you specify, actions taken. And this can be based on HTTP transactions or sessions, or TCP sessions. f. The solutions should ensure safe browsing ensure a safer browsing experience to website visitors by inserting the following security-related headers to HTTP responses: 1) X-Frame-Options prevents browsers from clickjacking attacks. 2) X-XSS-Protection enables a browser's built-in cross-site scripting (XSS) protection. 3) X-Content-Type-Options prevents browsers from MIME content-sniffing attacks. 4) Supports XSS in refer header. g. The solution should support CAPTCHA enforcement to prevent bot attacks including Dos and SPAM h. The solutions should include template for Exchange 2016 and SharePoint 2016 i. The solution should be able to block and reply to clients that violate a signature rule with an HTTP error message (attack block page) instead of resetting the connection. j. The solutions should support SSL acceleration with not additional hardware or any extra license. 36. FTP Security: The solution can monitor FTP traffic in the Reverse proxy mode and create policy to enforce the below features: a. SSL offloading b.File checks, including antivirus scanning. c.FTP command restrictions d. Trusted IP lists e. Geo IP rules f. IP reputation intelligence 37. Bot and Bad-IP detection & protection: Solution should be capable of detecting and distinguishing two sets of Bots from the Internet: a. Known search engines. b. Bad robots (scanners, crawlers, spiders) c. Solution should have a dashboard to show event statistics from the robot-based and normal clients. d. Solution should protect against low reputation sourced from Botnets, Anonymous proxy, Scanners, Spammers, Tor networks, Phishing hosts. 38. Solution should be able to track, correlate and report traffic per a. IP-address b.User c.Device 39. The solutions should track devices over time not just session based. 40. The solutions should identify client based on (browser, OS, real location 41. The solution should be able to track the Device to accurately identify repeat offenders and allow tracking user behavior over time. Rather than identifying requests by their source IP, a problematic approach as attackers can use anonymous proxies or NAT devices, thus the solution can identify the device itself regardless of its actual location and IP. 42. The solution should have option to score each threat protection with weight to indicate how serious a security violation is. When a When a security violation is detected, the threat weight of the security violation is used to calculate the reputation of the device that launched the event. 43. The solution should use both Device tracking and Threat weight (in point 3.8.2 and 3.8.3) to determine the risk level of devices and carry out violation actions according to the risk level of devices defined in a device reputation security policy. 44. Solution should be able to protect based on X-header provided client IP-address. 45. Solution should be able to insert X-Forwarded-For header. 46. Solution should be able to distinguish between single client and shred client IP-addresses. 47. Solution should be able to block per client IP-address or HTTP session. 48. The solution should be able to do packet capture from GUI. 49. Solution should support data leak prevention for the following types (at least): a. PHP information leakages b. 115 default location c. Application Availability / Errors d. File or Directory Names Leakage e. ASP/JSP Source Code Leakage f. SQL Errors Leakage g. IIS Errors Leakage h. Directory Listing i. HTTP Header Leakage j. Slow Loris and other low & slow available attacks k. Prevention of Error messages leakage 50. Solution should prohibit authenticated access for known publicly leaked credentials from major internet websites (like haveibeenpwned.com)) 51. Solution should have the ability to prevent, detect and restore web defacement. 52. Solution should copy the content of the webserver to its own hard drive and compare on a definable time schedule if files have been changed on the webserver. 53. Optionally it should be possible to restore the changed files. 54. Multiple protocols should be supported (FTP/SSH/Windows File Share} to maximize compatibility with the target server platform. 55. Solution should have the option to verify the HTTP RFC standards. The following objects need to be checked and enforced: a. Content length b. Illegal Content Length c. Header Length d. Header Name Length e. Header Value Length f. Illegal Character in Header Name g. Illegal Character in Header Value h. Redundant HTTP Headers i. Total URL Parameters Length j. Total Body Parameters Length k. Number of URL Parameters l. NULL Character in Parameter Name m. NULL Character in Parameter Value n. Maximum URL Parameter Name Length o. Maximum URL Parameter Value Length p. Illegal Character in Parameter Name q. Illegal Character in Parameter Value r. Duplicate Parameter Name s. Illegal HTTP Request Method t. HTTP Request Filename Length u. HTTP Request Length v. Number of Header Lines in Request w. Missing Content Type x. NULL Character in URL y. 25. XXV. Illegal Character in URL z. Malformed URL aa. Header Compression Table Size bb. Number of Concurrent Streams cc. Initial Window Size dd. Header List Size ee. Illegal Content Type ff. Illegal Response Code gg. Illegal Host Name hh. Illegal HTTP Version ii. Body Length jj. Number of Cookies in Request kk. Number of Ranges in Range Header ll. Malformed Request mm. WebSocket Protocol nn. Illegal Connection Preface oo. Illegal Frame Type pp. Illegal Frame Flags qq. Illegal Chunk Size 56. HTTP/S protocol security a. Solution should have the option to enforce HSTS. b. Solution should have the option to enforce HPKP. c. Solution should have cookie security. 1) Enforce HTTP only Cookie flag. 2) Enforce Secure Cookie flag. 57. Application Business Logic Enforcement a. The solution should be capable of enforcing start pages. b. The solution should be capable of enforcing application logic by defining a set of page access rules. c. Appropriate page access methods should be learned and enforceable by the solution. d. Required parameters on a given URL page should be learned and enforceable by the solution. e. Solution should be able to track the use of cookies on a URL page-by-page granularity. 58. Solution should support both 1Pv4 and 1Pv6. 59. Support 1Pv6 client to 1Pv4 backend side deployment 60. Support service delivery and security on both HTTP protocols 61. Support HTTP/2 client to HTTP/1.1 backend side deployment thus allows HTTP/2 benefits without the need to upgrade the back-end web servers. 62. The solution should be capable of load balancing the protected traffic to multiple servers. 63. The following algorithms should be supported: a. Round Robin b. Weighted Round Robin c. Least Connection d. Source IP Hash e. URI Hash f. Full URI Hash g. Host Hash h. Host Domain Hash 64. The solution should have configurable persistency features to maintain sessions to the load balanced backend servers. 65. The solution should be capable of supporting the following persistency features: a. Persistent IP (1Pv4 and 1Pv6) b. HTTP Header c. URL parameter d. Persistent Cookie e. Insert Cookie f. Rewrite Cookie g. Embedded Cookie h. ASP Session ID i. PHP Session ID j. JSP Session ID k. SSL Session ID 66. The solution should support a connection draining mode to allow maintenance of a protected server without disrupting the client experience with the application. 67. The solution should be capable of implementing health-checks for your protected servers for the purpose of load balancing pool removal and administrator notification. This feature should work on both load-balanced and non-load-balanced servers if desired. 68. Must support file synchronization in HA mode where the uploaded files sent to master and slave. 69. The solution should be capable of publishing web applications and offering backend 550 access. 70. Standard support for most common applications like: a. Microsoft ActiveSync b. Microsoft Outlook Web Access c. Microsoft SharePoint d. Microsoft Lync e. Other off-the-shelf applications 71. Solution should support multiple client authentication method. a. Basic Authentication b. Form Based Authentication c. Client Certificate Authentication d. SAML Authentication 72. Solution should support Authentication Delegation to remote server(s), Kerberos Authentication, including multiple server option. 73. Solution should support Single Sign On (550) 74. Solution should support web site acceleration functions. 75. Caching a. Compression b. SSL offloading 76. The solution should have a dashboard showing system resources. 77. The solution should have a dashboard showing real time Traffic Throughput, Connection, Attack and Request information. 78. The solution should have a dashboard showing web service and back-end server status. 79. The solution should have a web service topology overview. 80. The solutions should have drill down facility for at least last 24 hours on: a. Security by Origin and Threats b. Traffic transactions by Origin c. Sessions by Origin and Policy 81. The solutions should provide Real time analytics dashboard in different views: a. Table View b. Bubble View c. Country View 82. The solution should offer different drill down categories from the real time dashboard to show, Threats type, source, client device, HTTP Methods, and URL 83. The solutions should have a dashboard to visualize attacks in real-time over the world map to show the origin. 84. The solution should be able to locally store event (audit) information 85. The solution should be able to locally store alert information. 86. The solution should be able to locally store traffic information. 87. The solution should be able to send all 3 log types above to a centralized logging system supplied by the vendor (optional) 88. The solution should be able to send all log types above to an external syslog server. 89. The solutions should support syslog over TLS. 90. The alert information should contain at least the following information: a. Source to Destination connection information b. Extensive packet header information c. Raw and Hex body presentation for POST parameters d. Full Parameter view e. Highlighting the attack in the attack log with cookie alerts show the alerted cookie and changed values. f. The solution should aggregate logging per day and per attack type. g. The log should show both original encoding and decoded values for analysis 91. The solution should have a dashboard for data analytics in which you can see: a. Attacks per Country b.Hits per Country c.Data per Country 1)Exportable to PDF 2)Clickable view of the various attacks per website 3) Zoom-able world map with color coding of attacks. 92. The solutions should have a historical view on Botnets and search engines. 93. The solution should have a view of all blocked IP addresses and the blocked time. 94. From the above view it should be possible to release the blocked IP addresses. 95. Solution should protect against common threats such as those identified in the OWASP top 10. 96. Solution should be certified "Recommended" by NSS Lab's independent testing with at least 98% security effectiveness and passing all evasions test. 97. Solution should be ICSA Certified 98. Solution should be TAA compliant. Support for 3 years | عدد | 5 | 0 | |
| 6 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام حماية أسماء النطاقات (DNS) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | DNS SDS-570-HW-3MS SOLIDserver 570 hardware appliance for a subscription - 3 years support services - support services - Hardware replacement next business day SDS-570-DDI-3YS-GM 3-Year Period Subscription for SOLIDserver 570 software appliance DNS Services - 24/7 support services Central Management 1. The management of the solution must be Centralized and unified 2. Centralized management of all DNS / DHCP solutions of any capacity 3. Administration interface via a standard browser (IE, Mozilla, Chrome) 4. Local Resilience of the Central Management 5. Cross-Site Resilience of the Central Management 6. Simple authentication access based on a local base 7. Command Line Administration via SSH v2 8. Command line administration via the operating system shell 9. Simple authentication access based on an external database 10. Active Directory compatible authentication 11. LDAP compatible authentication 12. RADIUS compatible authentication 13. Automated deployment of settings from a single point of administration 14. Primary and Secondary Partition for rollback at Update 15. The solution will support heterogeneous versions (Central management version N, DNS service version N-1 for instance) 16. Updates provided in the form of unit patches 17. Backing up all DDI configurations in one archive 18. Automating backups, with export to an external share 19. Managing granular rights based on permissions and groups 20. Full traceability of changes and export in "SYSLOG" format 21. Export DNS request logs as an archive file 22. DNS Analytics Statistics: Top Domains, Top clients ... 23. Analytics Statistics DHCP: Top DORA messages, TOP DHCP relays, ... 24. Dedicated VLAN Plan Management Module 25. Alert threshold setting on values and list of applicable criteria 26. Adaptive CSV import to client format 27. Usage rate of address ranges, generation of alert by email or trap 28. Global generation of email alerts 29. Automatic generation of graphics and / or statistics 30. Exporting reporting elements DNS 1. Create, modify, and delete DNS records of any current type A, CNAME, PTR, TXT, SOA, NS, MX, SRV, YYYY (IPV6) 2. Compatibility with IETF RFCs and DNS Market Standards: BIND 9, Microsoft DNS, RFC 1034, RFC 1035, RFC 1995, RFC 1996, RFC 2845, RFC 2317 3. Disabling a DNS zone without deleting the information from the Management 4. Naming template for DNS records 5. DNS server management at architecture level 6. Mass change of TTL in over multiple domains and servers 7. Multiple DNS engines within the same appliance is a must 8. Reading and writing Amazon Route53 DNS Domains and Records from the GUI 9. Import function of a BIND archive 10. Capable to manage reading and writing of free BIND systems 11. Request of change Management (Workflow) applied to Domains 12. DNS64 support DNS Functional Requirements 1. The solution must be able to identify and mitigate a DDoS attack against DNS (SoA) servers (high performance engine, filter traffic, rate limit requests). Please describe your DDoS protection mechanisms. 2. The solution should be able to identify and potentially take action on customer internal clients using recursive resolution services to contribute to a DDoS attack. Describe what the solution can do 3. The solution includes the ability to identify and respond to queries for poor reputation DNS entries (RPZ). Please list the actions that can be performed on queries for entries identified in the RPZ. 4. The solution must include a vendor provided RPZ/Reputation feed to be automatically synchronized on a scheduled frequency. Please indicate how often the vendor updates the RPZ/reputation list and the how often will the solution synchronize the list. 5. The solution should include the ability to import/create custom RPZ entries. Please describe how this is accomplished. Does this require an extra license/cost? 6. The solution should be able to identify and take action on malformed DNS requests including DNS tunnelling communications over DNS queries. Describe how this is accomplished. Does this require an extra license/cost? 7. The solution must support enforcing configurable restrictions on the format of host names to comply with RFCs and internal company policies. Please describe. DNSsec 1. Self-generation of certificates and signatures 2. Automatic renewal of keys, automatic re-signature, prevention by sending Emails to admins Cache Recursive, Solution must be able the below features: 1. The solution must be able to restrict suspicious clients to cache and prohibit recursion 2. Protection of the recursive function, and with cache freeze (unlimited time to live) 3. Protection against attacks on external FQDNs / public domains 4. Cache sharing between DNS servers, real-time or on-demand 5. Selection by client IP or by subnets of the queries logs 6. Cache backup on restart or update 7. Manual Domain Management Policy to Block or Redirect 8. Automatic domain management policy to block or redirect 1. The solution should support being a Network Time Protocol (NTP) server. On which appliance would it reside? 2. Management capacity of other commercial solutions of the market and list of these solutions 3. File server available in distributed mode and supporting the FTP protocol 4. File server available in distributed mode and supporting the HTTP protocol 5. File server available in distributed mode and supporting TFTP protocol 6. NTP time server, all layers 7. Embedded firewall, with configurable rules base 8. Discovery of connected equipment on Switches and Routers 9. Automatic report of differences between discovered items and IPAM 10. Backup of Switch and Routers configurations 11. Versioning of Switch and Routers Configurations 12. Inventory dedicated to equipment referencing and assets management 13. Server cabling repository, correlation with network discovery 14. Compatibility with VMWare, Hyper-V, KVM Qemu hypervisors Support for 3 years | عدد | 6 | 0 | |
| 7 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام منع تسريب البيانات (DLP) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | DLP solution solution should enables organizations to detect data loss, preventing sensitive data from leaving the organization, as well as the unwanted destruction of this data. It also helps organizations with data security and compliance with internal and government regulations such as CCPA, PCI-DSS, GDPR, and HIPAA. Solution should Identify sensitive information across multiple on-premises Solution should Prevent the accidental sharing of data Solution should Monitor and protect data Solution should Enables teams to have central policy, management, orchestration, and control over data Solution should Collect and share critical event information between solutions Solution should Implement FortiGuard DLP Patterns as needed. No internal management is required Solution should PREVENT DATA EXFILTRATION Stop cybercriminals from stealing your sensitive data via cyberattack such as code injection, malware, or phishing. Solution should DETECT INSIDER THREATSPrevent breaches from within your organization by malicious former or current employees, contractors, or others who have been given legitimate access to your sensitive information. Solution should STOP UNINTENDED EXPOSURE Protect from negligent data exposure as a result of employees or contractors losing sensitive information or providing access to their account or data. Support for 3 years | عدد | 7 | 0 | |
| 8 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام الحماية (EDR) وتفعيل حزمة رخص لعدد (1000) حساب خاصة لهذا النظام مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | Licenses Qty: 1000 account for (EDR) solution Solutions should have Advanced protection technology Our multi-layered protection approach is based on Machine Learning technology and outstanding Threat Intelligence. Fileless threats, exploits, rootkits and a multitude of other threats – whatever comes your way, we’ve got you covered. Solution should Lay a strong foundation for the future with a seamless upgrade path to EDR, gateway protection and cloud security – bringing different security tools under a single solution for maximum efficiency and convenience. Solution should Stops attacks before or in earliest stages of execution with File, Mail and Web Protection coupled with Exploit Prevention – and rolls back any changes with our Remediation Engine. Solution should Detects polymorphic and other threats with Machine Learning behavior analysis, cloud analysis and both AI and human expert-driven Threat Intelligence - united in a single lightweight engine. Solution should Cuts off possible entryways for attackers by controlling web, device and application usage. Adapts to your users’ behavior using Machine Learning – providing better security with no adverse impact on productivity. Solution should Automates critical yet taxing and routine tasks - like vulnerability and patch management, encryption management and attack surface reduction rules and policies - in a simple way. Solution should Makes IT work easier and provides transparency into your hosts with software and hardware inventory, remote installation of 3rd party software and remote control options. Solution should Provides a single enterprise-grade console for one or multiple users using role-based access. Uses a single lightweight agent with virtually no impact on performance. Solution should be No more ransomware: The #1 threat to businesses - ransomware – is prevented automatically! We are the only vendor to show 100% protection against ransomware, according to a recent AV-Test assessment. Solution should Protects Windows, macOS, Linux, mobile devices and servers with a single solution. Goes beyond endpoint and secures web and email traffic. Solution should Quick and easy to deploy in cloud, on-premises, in hybrid mode – or even on an air-gapped network. Want to bring your installation to cloud after using on-prem? A simple wizard to get you there. Solution should Switch to Kaspersky from a different solution with no hassle – it’s a smooth, error-free, secure and most importantly automated process. Or move up another gear with a quick and easy upgrade to EDR, using the same single endpoint agent. Solution should have Application Control — with ‘Dynamic Whitelisting’, using realtime file reputations delivered by Security Network, Solution should enables IT administrators to allow, block or regulate applications, including operating a ‘Default Deny’ scenario. Solution should have Application Privilege Control monitors and restricts applications performing suspiciously. Solution should have Web Control — browsing policies can be created around pre-sets or customized databases of inappropriate sites, following the user on the corporate network and when roaming. Solution should have Device Control — allows users to set, schedule and enforce data policies controlling the connection of removable storage and other peripheral devices to any bus type. Solution should have Mobile Anti-Malware — combined signature-based, proactive and cloud-assisted technologies deliver powerful real-time mobile device protection A safe browser and anti-spam increase security. Solution should have Mobile Device Management (MDM) — Security for Mobile supports functionality provided by Microsoft Exchange ActiveSync, Apple MDM and Samsung SAFE. Remote Anti-Theft — SIM-Watch, Remote Lock, Full or Selective Wipe and Find all prevent unauthorized access to corporate data if a mobile device is lost or stolen. Solution should have Mobile Controls — administrators can manage and restrict applications usage, while prohibiting the usage of unwanted or grey software. As well as blocking malicious sites, they can also control access to sites, that do not conform to corporate policies. App Containerization for BYOD — corporate data and applications can be isolated from the personal files on the employee device by placing corporate apps in special containers, which can be encrypted and wiped separately from the user’s personal data. Solution should have FILE SERVER SECURITY Managed together with endpoint security through Kaspersky Security Center, file server protection ensures that malware cannot spread to secured endpoints through stored, infected data. Vulnerability and Patch Management — automated OS and application vulnerability detection and prioritization, combined with the automated distribution of patches and updates. Operating System Deployment — easy creation, storage and deployment of OS images from a central location, as well as OS migration. Solution should have Remote Software Distribution And Troubleshooting — remote deployment and update from a single console, automated for over 100 applications, can be ondemand or scheduled for quieter periods. Time-saving remote troubleshooting is fully supported and a single ‘agent’ at branch offices can accept updates for local rollout, using Multicast technology. Solution should have Network Access Control (NAC) — automatically recognizes and checks new devices on the network against inventories and IT security policies, denies access to compromised devices and redirects guest devices to a captive portal. Solution should have Hardware and Software Inventories — full visibility and control (including blocking) of all software deployed across the network, together with the automatic identification, registration and tracking of all hardware, including removable devices. Solution should have ENCRYPTION Comprehensive File/Folder and Full Disk — choose from full-disk or file level that is transparent to the user and is backed by Advanced Encryption Standard (AES) 256 bit encryption to secure critical business information in the event of device theft or accidental loss. Includes support for removable devices. Secure Data Sharing — allows Users to easily create encrypted and self-extracting packages to ensure data is protected when sharing via removable devices, email, network or web. Support for 3 years | عدد | 8 | 0 | |
| 9 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام إدارة الدليل النشط (ADMangerPlus) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | ADMangerPlus 2 Domain 20 help desk technicians perpetual license for 3 years Support for 3 years | عدد | 9 | 0 | |
| 10 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام مراقبة الدليل النشط (ADAudit Plus Professional) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | ADAudit Plus Professional for 3 years "2 domains perpetual license Audit Windows File Server and Failover Clusters 10 windows file servers Audit Windows Server 200 servers Audit Workstations 2500 workstations" Support for 3 years | عدد | 10 | 0 | |
| 11 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام العلامة المائية (DataPatrol Enterprise) وتفعيل حزمة رخص لعدد (4000) حساب خاصة لهذا النظام مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | Licenses Qty: 4000 account for (DataPatrol Enterprise) solution DataPatrol Standard License per user, Single Session, Digital Watermark, AntiCopy Feature, PrtSc Prevention for 3 years - Solution must be totally on premise with no requirement to connect to any cloud services even for licensing - Solution must be able to work with existing infrastructure on Operating System and DB level (Windows Servers and Microsoft SQL servers) - Solution must support a dedicated management interface and administration, and it must be split from Agent communication with server. - Solution should have the ability to split all components into different servers (Database, Administration, Agent-Communication and API). - Solution must support installed on Private Cloud (Azure, AWS, …etc). - All communication must be on secured channels, and traffic must be encrypted. - Solution must have the capability to be configured in High Availability setup for all components (DB, Admin Panel, and Agent API). - The agent shall function on all supported windows versions including windows servers as well. - The Agent setup must have option to install with Tray icon of DataPatrol or without. - The system (admin panel) shall be used on different browsers (Google Chrome, Microsoft Edge, Opera, and Mozilla Firefox). - System must be able to support Arabic and English Watermark policies. - The system shall support multiple sessions on the same server. - Policy watermarks shall be configured from web GUI (Graphical User Interface), without the need to use CLI (Command Line Interface). - The system shall show the number of registered users and the number of machines with agents installed. - System must provide detailed audit logs on all administration activities and showing details of the administrators (Machine Name, IP Address, UserID, Log Subject, Log Time, Log level, Log Message). - The system must show machine details, of where agents are installed and showing further details about the machines. - System must support modifying the Agent Refresh time status from the admin panel. - The system must support modifying the Machine Information Age from the administration panel. - System must support uploading customer specific banner to customize the dashboard. - System must support integrating with at least two concurrent Active Directory Systems, to fitch users’ information and details. - The system shall have two types of admins accessing the software, root admin and non-root admin. - The root admin has the permission of creating a new admin and reset its password when needed, while the non-root admin does not have access to this functionality. - The system shall allow to only use strong, complex passwords that shall contain minimum 8 characters and a mixture of upper/lower case letters, numbers, and symbols. - System should have the option to export list of Users and Machine into Excel or CSV format. - The system shall show the actual product license status (activated/expired) and specify the license expiration date with the enabled features. - System must show all created users, their belonging groups, status, and current effective policies for each user with correct order based on the priority. A. Screen Watermark Specification - The system shall provide the possibility to create a new policy watermark or to edit an existing policy. - System must support different types of Watermark Policies (Text, Image, and Sliding). - Each category of the Screen watermark must have its own policies and configuration, and not related to one policy for all types. - Each policy must have a priority value to be configured by the administrator. - System should have no limit on number of policies created. - System should allow administrator to select a specific time-profile for each policy, where a policy can be activated or deactivated within this time profile. - System should allow 4 different Text on each Text watermark policy. - Text watermark policy must support metadata information including but limited to: • IP Address • MAC Address • UserName • UserDomain • Hostname • Hostdomain • Timezone • Systemdate • Systemtime • Systemtime24 - System must support fetching metadata from the Active Directory, with whatever specific attributes configured by the administrator. - The System must support Image Watermark random movement with specific duration time setup by the administrator. - The system shall allow the admin to configure a sliding text watermark. - System must allow administrators to confirm the duration, delay, and flow direction of the sliding watermark. - Each policy must have the option to be linked with Application group or a URL, where policies get activated based on. - The system shall allow the admin to configure a text watermark with multiple fonts, colors, sizes, alignments, text angles. - In image watermark, the admin shall be able to upload the desired picture from their devices, change its size, positioning on the screen, and opacity. B. PrtSc Policy Specification: - The administrator should be able to create unlimited number of PrtSc policy. - The policy should have control over the PrtSc button and the Clipboard of the machine. - The actions available to be configured for the PrtSc policy should include: • Disable Function • Image Log • Information log - The logging – if enabled – should provide advance details such: Original Screen Shot taken, User ID, Feature, Log Date and Time, User Network Alias, Machine Domain Name, IP Address, Physical Address, log source, and User Network Domain. - The admin should be able to configure policy as Default, and Offline. - System should be able to stop non-default PrtSc applications through the Process Monitor feature. C. AntiCopy Feature Specification - The system shall have a functionality to control (Enable & Disable) the text copy feature on windows-based machines, where if it is enabled, users will not be allowed to copy any text. - The AntiCopy feature shouldn’t affect copying anything but text. - The AntiCopy feature should have the options of being active all the time or when specific process is running on the system. - The solution DB should be encrypted in terms of passwords and credentials. - Solution should run on any Webserver whether IIS or Linux. - Agent shall support multi-session in windows servers. (more than one user logged in into the server, each gets his own watermark). - Solution should support splitting between the DB server, Webserver, and API server and ability to install them all on the same server if required. - Connectivity between API and DB and between Agent and API should be maintained and secured. - Solution must be able to support multi-published webserver (external & internal) without requiring any specific customization or additional license. - Agent shall be able to render the watermark on any screen resolution. - Solution must use a customized encryption to encrypt data stored in DB. - The solution should be able to handle unusual peak load usage without additional resources. - The solution must be high performance, i.e., the measurement of response time and latency with respect to user load conditions. - The solution must be scalable, where it must be able to add users to a deployed system over time but should not require changes to the deployment architecture. - Solution should be fault tolerant, when one of system components is down it shall keep providing service via redundancy. - Solution service and upgrade downtime should not affect end users. - Solution should be able to backup the server with all information. - prevention of deleting/modifying program files, and prevention of uninstalling the program by normal user. - Agent must be run as a windows service. - Agent installation must not include any DRIVER installation on the target machines. - Agent shouldn’t require more than 100 MB RAM to operate. - Agent must be in .MSI package format, with ability to be distributed via GPO, SCCM, or any distribution tools available. - Administrator must be able to uninstall the agent through GPO, SCCM, or uninstallation tools. Support for 3 years | عدد | 11 | 0 | |
| 12 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام تشفير البيانات مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | Oracle Advanced Security License for Data encryption at rest (for ORACLE base) Solution should have Oracle Advanced Security feature which should be comprehensive security solution that provides a range of encryption, authentication, and access control features for Oracle Databases. Solution should have security which should designed to protect sensitive data stored in Oracle Databases from various security threats, including network eavesdropping, SQL injection attacks, and password theft. Solution should have Enhanced Data Security which should Offers strong protection against various security threats. Solution should have Regulatory Compliance which should Helps meet data protection regulations and avoid penalties. Solution should have Reduced Data Breach Risk which Minimizes the risk of breaches and associated costs like financial loss, reputation damage, and legal liabilities. Solution should have Simplified Security Management with Centralized console for easy configuration and management of security policies. Solution should have provides critical tools to safeguard sensitive data, ensuring businesses remain compliant and secure while simplifying security management. Solution should have the following benefits Process: Converts plain text to unreadable cipher text. Options: Includes Transparent Data Encryption (TDE), Data Redaction, and SecureFiles Encryption. Secure Network Communications Function: Protects data in transit. Protocols: Supports SSL, TLS, and encryption algorithms like AES RSA. Database Firewall Role: Monitors and controls database traffic. Security: Blocks unauthorized access and prevents SQL injection attacks. Data Redaction Purpose: Masks sensitive data from unauthorized users. Types: Offers full, partial, and random redaction options. Oracle Advanced Security provides comprehensive tools for data encryption, secure communications, and database security, ensuring robust protection of sensitive information. Support for 3 years | عدد | 12 | 0 | |
| 13 | توريد و تركيب وتهيئة | 2 | توريد وتركيب وتهيئة جهاز ونظام رصد الأحداث (SIEM) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | Expansion of LR-ULP-XDR-MPS-P LogRhythm XDR Stack Perpetual license and support for 3 years Expansion of LR-ULP-SMC-P LogRhythm System Monitor Collector Perpetual Expansion of LR-ULP-SMP-P LogRhythm System Monitor Pro Perpetual 5 Expansion of LR-ACC-HBAQ5 QLogic Fibre Channel Card 1 Expansion of LR-ULP-APL-PM7500 LogRhythm PM7500 1 Expansion of LR-ULP-APL-DP7500 LogRhythm DP7500 1 Expansion of LR-ULP-APL-DX7500 LogRhythm DX7500 1 Expansion of LR-ACC-NIC-10GB-FBR5 Intel 10 Gb Ethernet Adapter 3 Expansion of LR-ULP-RSX-MPS-P LogRhythm RespondX Perpetual Expansion of LR-ULP-DTX-MPS-P LogRhythm DetectX Perpetual Security Operations and Management platform like (SmartReady) with 2 analyst , 4 integrations and 1 workspace 3 years powered by an intelligent system - CARA for 3 years Platform includes log management, NG SOC Software, Host Forensics, Network Forensics, File Integrity Monitoring, Security Analytics, Big Data Analytics, Security Automation, and Orchestration engine like (LOGRHYTHM & Smartready) Supports Virtualization environment with a distributed architecture. like (LOGRHYTHM) VM specification required for the security platform/application. like (LOGRHYTHM) Detailed list of log and machine data collection methods provided. like (LOGRHYTHM) Supports active/active cluster with up to 10 appliances, allowing multiple clusters managed centrally. like (LOGRHYTHM) Built-in compliance modules for ISO, NIST, Dodi 8500.2, and Web Application defense. like (LOGRHYTHM) Full multi-tenancy and data segregation support. Licensed for 20,000 MPS, scalable up to 48,000 MPS without adding appliances. like (LOGRHYTHM) Logs not dropped if exceeding license limit; system processes, indexes, and correlates during overages. Real-time and batch mode log collection supported. like (LOGRHYTHM) Corrects event time for logs with different time zones. Supports scheduling, compressing, and encrypting remotely collected log data. Collector supports automatic load balancing and load sharing. Secures communication during log collection. like (LOGRHYTHM) Collects logs through agent-less and agent-based methods. Collectors deployable across different zones. Supports automated discovery and event collection from Windows hosts. Supports Windows Event log collection with regular updates to normalization rules. Continuous log collection during connectivity interruptions. Alerting configured if a source stops sending log data. Supports Netflow log collection without additional components. Capable of dropping noisy logs at the collector level. Integrated built-in File Integrity Monitoring (FIM). FIM captures user identity for FIM events on Windows and Linux platforms. FIM supports file monitoring, alerting, and user activity tracking. Utilizes various storage methodologies for log and event data. Provides long-term trend visualization and analysis. Storage for offline logs for at least 12 months. Performs integrity checks on logs stored for long-term retention. Processes for retrieving historical data/logs from long-term storage. No separately purchased or licensed technologies required for retrieval. Provides a wizard for easy access to archive data. Compresses archive logs at a ratio of 7:1. Real-time log analysis included in the solution. Data enrichment capabilities explained, including available fields. No query language required; supports visual, wizard, or natural language queries. Drill-down, pivoting, and filtering capabilities for investigations. No restrictions on the size of search results. Large search results represented in a single view. Steps required to narrow search results to a specific log source explained. Performs geolocation and DNS resolution for IP addresses. Real-time visualization options and features for dashboards explained. Supports easy creation and sharing of custom dashboards. Web UI based on HTML5, not Flash or Java. Contextualizes user information with detailed attributes from the domain. Real-time advanced analytics rules creation capabilities. Out-of-the-box analytics rules include classifications, sub-classifications, common events, parsing rules, predefined use cases, and reports. Offers UEBA Module natively out-of-the-box. like (LOGRHYTHM) UEBA capabilities explained; native inclusion at no additional cost. UEBA supports unlimited users and includes predefined use cases. UEBA detects insider threats, compromised accounts, and privileged account abuse. UEBA collects machine data for comprehensive monitoring. like (LOGRHYTHM) UEBA correlates log information to single identities for streamlined investigations. UEBA creates heuristic baselines for detecting anomalous behavior in real-time. like (LOGRHYTHM) Detects threats of data exfiltration, privileged identity misuse, and fraud. Provides incident tracking through an integrated Security Incident Response platform. Built-in case management with collaboration and evidence locker capability. Calculates mean time to detect and respond automatically. Integration with third-party ticketing systems explained. Compliance requirements supported out-of-the-box, with options for customization and updates Security Operations and Management platform like (SmartReady) with 2 analyst , 4 integrations and 1 workspace 3 years powered by an intelligent system - CARA The Selected Platform must support: like (SmartReady) • Supports all IOC’s types MD5 SHA1, SHA256, YARA, IPs, URLs, Domains, Email address • Seamless integration with Security devices i.e. SIEM, NDR, EDR, NGAV, Firewall and ITSM – 60+ out of the box integrations • Simplified deployment and operation with out-of-the-box policies to adapt protection to our organization. • Stay up to date on the latest attacks with in-product updates from expert Threat Intelligence • Ability to perform threat hunting – automated identification of IOC in customer alerts/metadata • Ability to create new use cases as and when necessary • Ability to collaborate within different departments and teams using case management • Ability to collaborate within different dept/teams using emails and record all conversation within the cases • Provide user friendly GUI and seamless management dashboard of the platform • In future have the ability to receive threat intel from central repositories directly to the solutions threat database on premises • Supports playbook configuration to ensure the automation of IOC response • Support compromised user password reset/deactivation • Support endpoint containment • Support emails validation with out of the box 20+ validation sources including free/community driven and premium intel • Supports alerts enrichment from SIEM and endpoint technologies Security Operations and Management (SIEM) platform designed to empower and improve the efficiency of security teams. Here's a breakdown of its features and functionalities:like (SmartReady) Key Features: Integration: Integrates with various security tools like endpoint protection, network security tools, and cloud security solutions, consolidating information into a single platform. Automation: Automates routine tasks such as incident detection, alert correlation, and ticketing, freeing up security professionals for more strategic work. AI and Machine Learning: Utilizes AI and Machine Learning to analyze security data, identify potential threats, and prioritize incidents based on their severity. Knowledge Base: Provides a centralized repository of knowledge and best practices for security teams to access and use effectively. Reporting and Analytics: Offers comprehensive reporting and analytics tools to help security teams gain insights into their security posture and identify trends. Benefits: Improved Efficiency: Automates tasks and streamlines workflows, allowing security teams to focus on higher-level activities. Enhanced Threat Detection: Utilizes AI and ML for better threat detection and prioritization of incidents. Increased Visibility: Provides a central view of security data across various tools, offering a holistic picture of the security landscape. Simplified Compliance: Helps organizations meet compliance requirements through automated reporting and audit trails. Target Users: Security Operations Centers (SOCs): Assists SOC analysts with incident handling, threat detection, and investigation. Security Analysts: Provides tools and automation to improve efficiency and decision-making. IT Security Teams: Helps manage security operations and improve overall security posture. Support for 3 years | عدد | 13 | 2806 | 1 |
| 14 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام الحماية المركزي (AV) وتفعيل حزمة رخص لعدد (800) حساب خاصة لهذا النظام مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | Licenses Qty: 800 account for (AV) solution Solutions should have Advanced protection technology Our multi-layered protection approach is based on Machine Learning technology and outstanding Threat Intelligence. Fileless threats, exploits, rootkits and a multitude of other threats – whatever comes your way, we’ve got you covered. Solution should Lay a strong foundation for the future with a seamless upgrade path to EDR, gateway protection and cloud security – bringing different security tools under a single solution for maximum efficiency and convenience. Solution should Stops attacks before or in earliest stages of execution with File, Mail and Web Protection coupled with Exploit Prevention – and rolls back any changes with our Remediation Engine. Solution should Detects polymorphic and other threats with Machine Learning behavior analysis, cloud analysis and both AI and human expert-driven Threat Intelligence - united in a single lightweight engine. Solution should Cuts off possible entryways for attackers by controlling web, device and application usage. Adapts to your users’ behavior using Machine Learning – providing better security with no adverse impact on productivity. Solution should Automates critical yet taxing and routine tasks - like vulnerability and patch management, encryption management and attack surface reduction rules and policies - in a simple way. Solution should Makes IT work easier and provides transparency into your hosts with software and hardware inventory, remote installation of 3rd party software and remote control options. Solution should Provides a single enterprise-grade console for one or multiple users using role-based access. Uses a single lightweight agent with virtually no impact on performance. Solution should be No more ransomware: The #1 threat to businesses - ransomware – is prevented automatically! We are the only vendor to show 100% protection against ransomware, according to a recent AV-Test assessment. Solution should Protects Windows, macOS, Linux, mobile devices and servers with a single solution. Goes beyond endpoint and secures web and email traffic. Solution should Quick and easy to deploy in cloud, on-premises, in hybrid mode – or even on an air-gapped network. Want to bring your installation to cloud after using on-prem? A simple wizard to get you there. Solution should Switch to Kaspersky from a different solution with no hassle – it’s a smooth, error-free, secure and most importantly automated process. Or move up another gear with a quick and easy upgrade to EDR, using the same single endpoint agent. Solution should have Application Control — with ‘Dynamic Whitelisting’, using realtime file reputations delivered by Security Network, Solution should enables IT administrators to allow, block or regulate applications, including operating a ‘Default Deny’ scenario. Solution should have Application Privilege Control monitors and restricts applications performing suspiciously. Solution should have Web Control — browsing policies can be created around pre-sets or customized databases of inappropriate sites, following the user on the corporate network and when roaming. Solution should have Device Control — allows users to set, schedule and enforce data policies controlling the connection of removable storage and other peripheral devices to any bus type. Solution should have Mobile Anti-Malware — combined signature-based, proactive and cloud-assisted technologies deliver powerful real-time mobile device protection A safe browser and anti-spam increase security. Solution should have Mobile Device Management (MDM) — Security for Mobile supports functionality provided by Microsoft Exchange ActiveSync, Apple MDM and Samsung SAFE. Remote Anti-Theft — SIM-Watch, Remote Lock, Full or Selective Wipe and Find all prevent unauthorized access to corporate data if a mobile device is lost or stolen. Solution should have Mobile Controls — administrators can manage and restrict applications usage, while prohibiting the usage of unwanted or grey software. As well as blocking malicious sites, they can also control access to sites, that do not conform to corporate policies. App Containerization for BYOD — corporate data and applications can be isolated from the personal files on the employee device by placing corporate apps in special containers, which can be encrypted and wiped separately from the user’s personal data. Solution should have FILE SERVER SECURITY Managed together with endpoint security through Kaspersky Security Center, file server protection ensures that malware cannot spread to secured endpoints through stored, infected data. Vulnerability and Patch Management — automated OS and application vulnerability detection and prioritization, combined with the automated distribution of patches and updates. Operating System Deployment — easy creation, storage and deployment of OS images from a central location, as well as OS migration. Solution should have Remote Software Distribution And Troubleshooting — remote deployment and update from a single console, automated for over 100 applications, can be ondemand or scheduled for quieter periods. Time-saving remote troubleshooting is fully supported and a single ‘agent’ at branch offices can accept updates for local rollout, using Multicast technology. Solution should have Network Access Control (NAC) — automatically recognizes and checks new devices on the network against inventories and IT security policies, denies access to compromised devices and redirects guest devices to a captive portal. Solution should have Hardware and Software Inventories — full visibility and control (including blocking) of all software deployed across the network, together with the automatic identification, registration and tracking of all hardware, including removable devices. Solution should have ENCRYPTION Comprehensive File/Folder and Full Disk — choose from full-disk or file level that is transparent to the user and is backed by Advanced Encryption Standard (AES) 256 bit encryption to secure critical business information in the event of device theft or accidental loss. Includes support for removable devices. Secure Data Sharing — allows Users to easily create encrypted and self-extracting packages to ensure data is protected when sharing via removable devices, email, network or web. Support for 3 years | عدد | 14 | 0 | |
| 15 | توريد و تركيب وتهيئة | 2 | توريد وتركيب وتهيئة نظام الحماية (NDR) مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | NDR Physical or Virtual appliance 2 Network Detection and Response (NDR) solution, NDR should offers functionalities that address many of the core capabilities. Here are the key features relevant to network security: Ability to automatically differentiate between general botnet behaviors and those that are more likely to be targeted threats Ability to categorize the following Threats: • Botnet behavior including spam, DDoS, external vulnerability scanning, Bitcoin mining, etc. • Hidden tunnels within HTTP, HTTPS, and DNS used for command-and-control and data exfiltration. Without false positives due to standard beaconing from common tools and apps such as news tickers” will take out simple beacon detectors • The use of algorithmically generated domains or DGAs • Custom RATs (remote administration tools) from normal user traffic • Unknown command & control (no reputation history) using other traffic attributes • Data exfiltration independent of user identity or IP address • Internal reconnaissance of an attacker • Reconnaissance using slow or “paranoid” network scans • Improper use of administrative and management protocols, including RDP, SSH, iDRAC, and IPMI • Activation of sub-OS rootkits using port hijacking • Remote execution of procedure calls or code via SMB or DCERPC protocols • Privileged access analytics use cases by observing the privilege for the (account, host and service). Automatically re-categorize behaviors that are caused by approved systems or usage, e.g. network scanners Ability to automatically identify and outline attack campaigns *Link attacker activity across multiple hosts to give comprehensive campaign view *Advanced C&C detection is the foundation *Detect all hosts that have connected to the C&C infrastructure *Highlight relevant lateral detections between hosts Solution must be protocol agnostic Solution must provide an accounts based view and prioritization based on threat and certainty scores Using the AI to do the Triage and eliminate the manual work from the security teams and saving time and help the security teams to focus on what matters. Solution should be On Premise solution where no data leaves the customer network Solution should Integrate with other Security Fabric Solution should Supports standalone, center, and sensor modes for distributed deployment Solution should Patented high throughput malware scanning based on Artificial Neural Networks (ANN) 1 to identify file-based attacks, with over 20+ malware attack scenarios Solution should Reduce malware detection and investigation time from minutes to seconds Solution should Detect North/South/East/West intrusions accurately Solution should Detect botnets and weakciphers on network Solution should Virtual Security Analyst™ to mimic experienced security analyst for outbreak, anomalies, and root causes for malware infections Solution should Provide on-premises learning to reduce false positives by analyzing organizational-specific traffic and adapting to newly disguised threats Solution should Monitors network traffic for suspicious behavior and potential threats. Solution should Analyzes network flows and identifies anomalies using techniques like: Solution should Flow inspection: Examining network traffic metadata to identify unusual patterns. Solution should Deep packet inspection (DPI): Inspecting the content of packets to detect malicious payloads. Solution should Utilizes advanced analytics, machine learning, and threat intelligence to identify potential threats across the network. Solution should Detects various network-based threats like: Lateral movement: Malicious actors trying to move within the network after gaining initial access. Command and control (C2) communications: Communication between infected devices and attacker-controlled servers. Data exfiltration: Unauthorized transfer of sensitive data from the network. Solution should Triggers automated actions to contain threats based on pre-defined rules and threat severity. Examples of automated responses include: Solution should have Isolating infected devices to prevent further lateral movement. Solution should have Blocking malicious traffic at the network perimeter. Solution should have Quarantining suspicious files for further analysis. Solution should Provides tools to investigate security incidents effectively. Solution should have Timeline view of events leading up to and following an incident. Solution should have Root cause analysis to pinpoint the source of the attack. Solution should Forensic analysis of network traffic and endpoint data to gather evidence. Solution NDR should integrates with other Kaspersky security solutions like Endpoint Detection and Response (EDR), providing a unified view of security posture across various endpoints and the network. The platform leverages the Kaspersky Security Network (KSN) for real-time threat intelligence to improve threat detection capabilities. Support for 3 years | عدد | 15 | 0 | |
| 16 | توريد و تركيب | 96 | توريد وتركيب الذاكرة العشوائية للخوادم مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | (DDR4) 2933MHz Gen 10 PL380 64GB Support for 3 years | عدد | 16 | 0 | |
| 17 | توريد | 28 | توريد قطع (SFP) لأجهزة الموزعات - النوع الأول مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | SFP Converter From QSFP-40G\100G interface to accept SFP\SPF+ 1G\10G Compatible with Cisco switches Support for 3 years | عدد | 17 | 0 | |
| 18 | توريد | 10 | توريد قطع (SFP) لأجهزة الموزعات - النوع الثاني مع الدعم الفني لمدة 3 سنوات من الشركة المصنعة | SFP+/10G BaseT to accept RJ45 Compatible with Cisco switches Support for 3 years | عدد | 18 | 0 | |
| 19 | تجديد رخصة | 5 | تجديد رخصة أجهزة فحص الوسائط الإلكترونية (OPSWAT) لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | OPSWAT for 3 years - OPSWAT 5 Kiosks Applications & 1 Core MD-VAULT-SA MetaDefender Vault Server MD-KIOSK-APP MetaDefender Kiosk Application MD-PLTF MetaDefender Core Platform OPSWAT Central Management MD-MSW-20 Metascan 20 Engines MD-DCDR Deep CDR Module Support for 3 years | عدد | 19 | 0 | |
| 20 | تجديد رخصة | 1 | تجديد رخصة جهاز ونظام الحماية (SANDBOX) لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | Renew license 3 years for Kaspersky Sandbox SAND BOXING Anti Targeted Attack Platform Advanced Middle East Edition. 1 - Instance 3 years Base License - 1 (Qty) like (Kaspersky) Solution must operationalize threat intelligence for effective alert triage. like Kaspersky Database should support full-text search and advanced queries. Research Graph for visual exploration of data and threat commonalities. like (Kaspersky) Each Analysis Centre should support processing of up to 4 Gbps of SPAN traffic The solution must support aggregating and analysing information from up to 150,000 endpoints. Research Graph features include transformations, mini graph, grouping nodes, etc. IoCs enrichment on Research Graph from VirusTotal is supported. Indicators to export feature for native integration with third-party security controls. Tagging IoCs simplifies management; tags have weight for sorting/filtering. like (Kaspersky) Historical correlation feature (retroscan) for analyzing observables from previous events. All historical detections included in the report for future investigations. Filters for sending detection events to SIEM to reduce analyst alert fatigue. like (Kaspersky) Multitenancy supports handling events from different branches separately. Single instance can be connected with different SIEM solutions for different tenants. Threat Data Feeds (TDF): 13. TDF provides full visibility across the kill chain. like (Kaspersky Covers Confidential Data breach Prevention, Fraud Prevention, Insider Threat, and Ransomware Incidents. Prerequisites include configured log sources and logs forwarded to feeds-matching solution. TDF must provide up-to-date information on active threats for the last 2 months. Information sourced from global anti-malware vendors and a global network of sensors. Information provided in JSON, exportable in CSV, OpenIOC, or STIX formats. like Kaspersky Feeds include IP reputation, Malicious URLs, Phishing URLs, Botnet C&C URLs, Ransomware URLs, etc. Feed update frequency, record count, and additional contextual information specified for each feed. Passive DNS feed includes resolutions within the last hour. Data Structure Requirements: 22. Solution must include various threat indicators like Hashes, IP, URLs, Domains, etc. Ability to deliver URLs/Domains threat indicators as Snort/Suricata rules. IoC updates based on close to real-time. Real-time detection module for logs scanning in conjunction with SIEM. Architecture Requirements: 26. Integrates with well-known SIEM brands (e.g., Alien Vault, Splunk) and Threat Intelligence Platforms. Integration with security controls brands like Maltego, Elastic, McAfee. Scans custom input such as retro-logs. External correlation engine for Data Feeds without Internet access. Threat Intelligence Reports: 30. Provides heightened intelligence and awareness in cyberespionage campaigns. Early notification reports on new APT campaigns and updates on active threats. Reports include Executive summary, Detailed description, Conclusions, and Recommendations. Appendix includes Technical analysis, IOC, C&C, hashes, and other relevant information. Solution must deliver timely detailed reports about newest APT campaigns. Functional Requirements: 35. Minimum 100 reports per year, including Executive summary reports for C-level managers. Reports containing IoCs, YARA rules, and available for download through the web interface. Web interface/portal and API supporting full-text search in reports, IOCs, Yara. Reports based on target identifiers like Industry, Geography, Actor, and Date. Service provider delivers APT reports without collecting information from clients. Additional Threat Intelligence: 40. Solution provides knowledge about cyber-threats and their relationships. Provides latest detailed threat intelligence about URLs, domains, IP addresses, etc. Personalized Notifications: Provides personalized notifications about matching brand names via HTTPS in HTML or JSON. Premium Support Requirements: 24/7 priority support line for highest-level issues. 8 assigned customer technical contacts. Response to highest-level issues within 4 hours. Assigned Technical Account Manager (TAM) for security assurance. Unlimited Premium Incidents Per Year. Response Time: Severity Level 1 in 30 Minutes, Level 2 in 4 hours, Level 3 in 6 hours, Level 4 in 8 hours. Dedicated TAM for proactive troubleshooting and ongoing service updates. Highest Priority Escalation of Support Requests. Quality Monitoring and Reporting. Review Call. Onsite Health Check (3rd Month). Private Patching and Error Fixing. Support for 3 years | عدد | 20 | 0 | |
| 21 | تجديد رخصة | 2 | تجديد رخصة خوادم (DNS) - النوع الأول لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | Renewal of PA-3420, DNS security subscription, for one (1) device in an HA pair, 3 years (36 months) term. Support for 3 years | عدد | 21 | 0 | |
| 22 | تجديد رخصة | 1 | تجديد رخصة خوادم (DNS) - النوع الثاني لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | Renewal of PA-3410, DNS security subscription, for one (1) device in an HA pair, 3 years (36 months) term. Support for 3 years | عدد | 22 | 0 | |
| 23 | تجديد وترقية رخصة | 1 | تجديد وترقية رخصة نظام مسح الثغرات الأمنية (Tenable Nessus) لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | Vunlerability Assessment tool built for the modern attack surface, which enables us to fortify our web applications, gain visibility into our internet-connected assets and secure your infrastructure. Unlimited IT vulnerability assessments Configuration, compliance and security audits Use anywhere Configurable reports Community support Advanced support (available as an option) On-demand training (available as an option) Web application scans (5 FQDNs) Ability to add FQDNs External attack surface scans Ability to add domains Cloud infrastructure scans 500 prebuilt scanning policies Support for 3 years | عدد | 23 | 0 | |
| 24 | تجديد وترقية رخصة | 1 | تجديد وترقية رخصة نظام البلاغات (ManageEngine ServiceDesk Plus) لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | Renewal of Enterprise edition ManageEngine ServiceDesk Plus Multi-Language Enterprise Edition - Subscription model Annual Subscription fee for 50 Technicians and 2000 nodes Support for 3 years | عدد | 24 | 0 | |
| 25 | تجديد وترقية رخصة | 1 | تجديد وترقية رخصة نظام إدارة الشبكات (ManageEngine OpManager) لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | Renewal of ManageEngine OpManager Enterprise Edition Subscription Model Upgrade Annual Subscription fee for additional 10 FWA Devices Pack with 15 users Support for 3 years | عدد | 25 | 0 | |
| 26 | تجديد وترقية رخصة | 1 | تجديد وترقية رخصة نظام إدارة الأجهزة (ManageEngine Endpoint Central) لمدة 3 سنوات مع الدعم الفني من الشركة المصنعة | Renewal of ManageEngine Endpoint Central UEM Edition- Subscription Model Upgrade Annual subscription fee for 3 years with 20 endpoint. Support for 3 years | عدد | 26 | 0 | |
| 27 | خدمات فنية | 1 | خدمات فنية لكافة بنود المشروع | Professional Service includeing Installation and Configuration for all products in this project | عدد | 27 | 0 | |
| 28 | توريد و تركيب وتهيئة | 1 | توريد وتركيب وتهيئة نظام التحكم في الوصول إلى الشبكة (NAC) وتفعيل حزمة رخص لعدد (1000) حساب خاصة لهذا النظام مع الدعم الفني لمدة سنة من الشركة المصنعة | NAC The proposed solution MUST be proposed as Physical or virtual appliance equipped with 1000 license that support the main features of profiling and user visibility, user authentication and captive portal, MAB authentication, Full Radius, BYOD, Guest Management, Endpoint Compliance. 2. License should cover three years 24/7 support. 3. Devices should have Redundant Power Supplies 4. Devices should support up to 1,000 total ports 5. Devices should have at least 2 TB Storage 1. The NAC solution must eliminate ‘blind spots’ and provides a wealth of actionable data. 2. The NAC solution must offer Network Visibility, Device Profiling, Easy and powerful Onboarding process, Endpoint Compliance, Network Provisioning and Threat Identification module provide security actions through integration 3. The system should be provided from same Firewall Vendor. 4. The system should not be based on SPAN port integration. 5. Allows organization to authenticate and authorize users and endpoints via wired, wireless, and VPN with consistent security policy. 6. NAC solution must be vendor agonistic solution suited for heterogeneous network. 7. NAC solution must be integrated with existing network and security equipment and application. 8. The proposed solution must be capable of working with endpoint agents and agentless. 9. NAC solution must have the ability to inventory all devices on a network including non-PC equipment like printers, smart phones, IP- phones, and appliances. 10. Must authorize access via VLAN assignment and/or applying access control lists (ACLs). 11. The NAC solution must integrate with infrastructure devices by using SNMP, CLI and RADIUS. 12. The NAC Solution should not be dependent on 802.1x & RADIUS integration. 13. The NAC solution must be scalable allowing to implement the solution on a small scale initially and expanding it later. 14. The NAC solution MUST be best in class fully out-of-band NAC solution that fits in any heterogeneous network. 15. Guest management capabilities must be quickly and easily to set up guest account without engaging IT staff. 16. NAC solution must be based on perpetual license model. 17. System can be delivered On-Premises via a Physical Appliance, Virtual Appliance. 18. System must support Hybrid deployment. 19. Must support profiling for clientless devices based on a DHCP fingerprint, NMAP scan, Vendor OUI, location, open ports, and the existence of the persistent agent. 20. Must support profiling for iPhone, iPad, Android, network printers, IP surveillance cameras. etc. 21. Profiling via SNMP, NMAP, TCP & UDP characteristic must be supported. 22. Profiling via WMI must be supported. 23. Must provide the ability to create custom profiling rules. 24. Authentication and Enforcement المصادقة والتنفيذ 25. Must support RADIUS MAC-address whitelisting & blacklisting natively. 26. Must support flexible authentication options to include, 802.1X, Web Authentication and MAC Authentication 27. Must support LDAP integration. 28. Must support Microsoft Active Directory integration. 29. Must support RADIUS Identity store. 30. Must support Token Server with backend LDAP. 31. Should support seamless integration with Active directory in the infrastructure without the need for any additional components. 32. It should support both user and machine authentication without any additional configurations. 33. Should be able to append additional attributes to incorporate the authenticator's location, device type, vendor etc. apart from the user attributes. 34. The solution must provide the ability to authenticate an endpoint using an agentless scanning capability. 35. The solution should allow only authenticated/managed devices to connect to organization networks and enforces security policies by blocking, isolating, and repairing noncompliant machines in a quarantine area without needing administrator attention. 36. Must have tight integration with leading MDM solutions such as AirWatch, Maas360, & MobileIron. 37. The solution must support both agent-based (Persistent Agent, Dissolvable Agent) and agentless endpoint inspection. 38. The NAC solution must perform system checks on service packs, patches, critical updates enabled, Antivirus & Antispyware, static IP, services/processes running, invalid services/processes, file existence, any Microsoft registry settings. 39. The solution must provide a quarantine role that ties into the integrated patch management systems. Within this quarantine role the solution shall provide a "self-remediation" web captive portal. Non-compliant devices must be quarantined dynamically and provided with instructions for self-remediation or can be interfaced with auto- remediation systems such as BigFix and Patch Link. 40. The NAC solution must provide scheduled updates for AV and Antispyware (.dat file and engine version) and exceptions to be created if required. 41. Guest Management should support notification by SMS and email. 42. Guest Management should be configurable to meet various requirements such as short or long-term guests, conference mode or self-registered guest. 43. Solution should support limited and controlled administrative access for Guest Management Only. 44. Guest Management should support employee sponsorship workflow. 45. Offers a built-in monitoring, reporting, and troubleshooting console to assist helpdesk operators and administrators streamline operations. 46. It should have a policy creation template with pre-defined templates and wizard for creating policies for easy Enterprise-wide policy deployment. 47. Must support the option of having dedicated reporting and monitoring system. 48. Must include integrated monitoring, reporting, and troubleshooting engine accessible through a web-based GUI. 49. The proposed solution MUST provide ongoing integrity through an Automated Response Technology via the integration with other Inline /out-of-band Security solutions. 50. Automated Response integration should allow the organization to quickly identify critical security events with precision and reduce threat containment. 51. The solution should provide automated response to Contain Threats via multiple control methods. Support for 1 years | عدد | 28 | 0 |
28 بند
كراسة الشروط الرئيسية
المستندات الداعمة (9 ملف)
| اسم المورد | قيمة العرض (ر.س) | قيمة الترسية (ر.س) | النتيجة الفنية | الحالة |
|---|---|---|---|---|
| شركة حلول الأبعاد للاتصالات و تقنية المعلومات | 21,846,378.65 | — | مطابق | مشارك |
| الشركة السعودية للحاسبات الالكترونية المحدودة | 19,199,536.35 | — | مطابق | مشارك |
| شركة المتقدمة للتقنية و الأمن السيبراني المحدودة شركة شخص واحد | 41,604,813.85 | — | مطابق | مشارك |
| شركة سجل التقنيه للتطبيقات الإلكترونية | 46,446,604.80 | — | مطابق | مشارك |
| الشركة السعودية للحاسبات الالكترونية المحدودة | 19,199,536.35 | 19,199,536.35 | — | مرسّى |
الآليات
القائمة الإلزامية
تفضيل المنشآت الصغيرة والمتوسطة
وثائق المحتوى المحلي
معايير التقييم
معايير التقييم الفني
| المستوى الاول | المستوى الثاني | المستوى الثالث | الوزن النهائي |
|---|---|---|---|
| التقييم الفني |
معايير التقييم المالي
| المستوى الاول | المستوى الثاني | المستوى الثالث | الوزن النهائي |
|---|---|---|---|
| التقييم المالي | السعر | التكلفة الكلية | 100% |
أخبار المنافسة
title
تاريخ الإنشاء
value
16/10/45 10:52:47 ص
title
تاريخ فتح العروض
value
19/11/45 10:00:00 ص
title
تمديد تواريخ المنافسة
value
تاريخ فتح العروض19/11/45 10:00:00 صآخر موعد لتقديم العروض19/11/45 10:00:00 صآخر موعد لإستلام الإستفسارات12/11/45 12:00:00 ص
title
تاريخ الترسيه
value
11/01/1446