Potrzebujesz pomocy eksperta ds. przetargów? Zobacz naszą usługę przygotowania przetargów
Przetargi

Umowa ramowa na testowanie bezpieczeństwa systemów informatycznych

Zamknięty

Termin składania ofert minął

Termin składania ofert w tym przetargu minął i nie przyjmujemy już zgłoszeń. Poniższe informacje zostały zachowane w celach informacyjnych.

Przeglądaj Aktywne Przetargi
Termin składania ofert
Przeterminowany
19 marca 2026
Szczegóły umowy
Kategoria
Usługi
Numer Referencyjny
305730
Wartość
€150,000
Lokalizacja
Estonia
Opublikowano
11 lutego 2026
Organizacja
Kod CPV
Kryteria oceny
Cost of one testing hour without VAT100%
Harmonogram Projektu

Ogłoszenie przetargu

11 lutego 2026

Termin składania pytań

12 marca 2026

Termin składania ofert

19 marca 2026

Otwarcie ofert

19 marca 2026

Prawdopodobieństwo wygranejPRO
🔒
Uaktualnij do Professional
Zobacz szacowane prawdopodobieństwo wygranej na podstawie danych historycznych.
Uaktualnij do wersji profesjonalnej →
Analityka zamawiającegoPRO
🔒
Odblokuj analitykę zamawiającego
Zobacz wzorce wydatków, preferowane procedury i więcej.
Uaktualnij do wersji profesjonalnej →
Analiza sektoraPRO
🔒
Odblokuj analizę sektora
Zobacz średnie ceny zwycięskie, poziomy konkurencji i trendy rynkowe.
Uaktualnij do wersji profesjonalnej →
Budżet
€150,000
Czas trwania
36 miesiące
Lokalizacja
Estonia
Typ
Usługi
81
Ocena Jakości/100
Doskonała
Benchmark rynkowy
Śr. cena wygrywająca
€187,707
Śr. liczba ofert
2.0
Konkurencja
Niska
Zwycięzcy MŚP
89%
1,029 przeanalizowanych zamówień

Oryginalny Opis Przetargu

Zakup prac rozwojowych i utrzymaniowych dla Estońskiego Urzędu Transportu dotyczących Systemu Informacyjnego Nadzoru nad Bezpieczeństwem Lotów (LOIS), zgodnie z warunkami określonymi w dokumentach zamówienia publicznego.
Składanie elektroniczne

Uruchom analizę ryzyka

Zidentyfikuj potencjalne ryzyka, niespójności i sygnały ostrzegawcze we wszystkich dokumentach przetargowych. Uzyskaj szczegółowy raport ryzyka z poziomami dotkliwości i zaleceniami dotyczącymi ich ograniczania.

Zaloguj się

Strategia wygrywania

Analiza AI wymagań, szans i wyzwań tego przetargu. Otrzymaj strategiczne wskazówki zwiększające prawdopodobieństwo wygranej.

65%
Szacowane prawdopodobieństwo wygraniaUmiarkowane dopasowanie

This tender for information system security testing is heavily price-driven, requiring a highly competitive cost-per-hour offering. Success hinges on demonstrating robust technical capability, particularly in specific methodologies, and meticulously fulfilling all submission requirements, especially the CVs and ESPD.

Kluczowe komunikaty zwycięskie

Most Cost-Effective Security Testing Partner for LOIS

Proven Expertise in Critical Information System Security

Streamlined and Compliant Bid Submission

Kluczowe szanse
The explicit mention of specific security testing methodologies (OWASP ASVS, OSSTMM, MASVS) provides a clear target for demonstrating expertise.
The tender is heavily focused on price, allowing a well-structured, cost-efficient bid to gain significant advantage.
The requirement for specific CV formats and content for Project Manager and Testers allows for targeted presentation of qualifications.
Kluczowe wyzwania
The lack of specified evaluation criteria beyond price suggests a high likelihood of intense price competition, potentially squeezing margins.

Focus on operational efficiency and a lean cost structure to offer the lowest possible hourly rate while maintaining quality. Clearly articulate value beyond price in the CVs and any narrative sections if permitted.

Ensuring 100% compliance with all mandatory requirements, especially the ESPD and CV formats, is crucial to avoid disqualification.

Implement a rigorous internal review process for all submission documents. Assign dedicated resources to meticulously check each requirement against the tender documents. Utilize checklists based on the tender requirements.

Profil idealnego oferenta
A specialized IT security services company with a proven track record in government or critical infrastructure projects, possessing a lean operational structure to offer a highly competitive hourly rate, and a well-documented team with relevant certifications and experience in OWASP ASVS, OSSTMM, and MASVS.
Kluczowe wymagania
Cost per working hour for testing, excluding VAT
Project Manager CV using the provided form
Tester CV using the provided form
Knowledge and experience in security testing methodologies such as OWASP ASVS, OSSTMM, MASVS
Comply with general exclusion grounds stipulated in the Public Procurement Act, to be declared in the European Single Procurement Document (ESPD)
Kluczowe wyróżniki
A demonstrably lower cost per working hour than competitors, achieved through efficient processes and resource allocation.
Highly specific and verifiable experience in the exact security testing methodologies requested (OWASP ASVS, OSSTMM, MASVS), backed by relevant certifications for the proposed team.
A streamlined and error-free submission process, showcasing organizational competence and attention to detail.
Możliwości w zakresie wartości społecznej
As social value is not a stated requirement, focus efforts on demonstrating value through efficient service delivery and cost savings for the contracting authority, which indirectly benefits society.
Obszary fokusowe oferty
Price (Cost per working hour)Maximum points for lowest price

Calculate the absolute lowest viable hourly rate. Benchmark against known market rates for similar services in Estonia. Ensure cost calculations are robust and defensible, factoring in all direct and indirect costs.

Technical Capability (Methodologies & Team Qualifications)N/A (likely pass/fail or significant contributing factor)

Ensure the proposed Project Manager and Testers have direct, verifiable experience and certifications in OWASP ASVS, OSSTMM, and MASVS. Highlight these prominently in the CVs and any supporting documentation. Quantify experience where possible (e.g., number of systems tested, years of experience).

Submission ComplianceN/A (mandatory)

Meticulously follow all instructions for the ESPD, CV formats, and electronic submission. Double-check all fields and required attachments. Engage a dedicated bid manager to oversee compliance.

Rekomendacje5
Aggressively Price the Hourly Rate
KrytycznyDuży nakład

Given that price is the main evaluation criterion, develop a cost model that allows for the submission of the lowest possible hourly rate for testing, excluding VAT, while remaining profitable. This requires a deep understanding of operational costs and potential efficiencies.

Directly maximizes points for the primary evaluation criterion, significantly increasing win probability.
Meticulously Complete ESPD and CVs
KrytycznyDuży nakład

Ensure the European Single Procurement Document (ESPD) is completed accurately and comprehensively, addressing all exclusion and qualification grounds. The Project Manager and Tester CVs must strictly adhere to the provided forms, detailing all requested education, experience, certificates, and language skills, with a strong emphasis on the specified security testing methodologies.

Avoids mandatory disqualification and clearly demonstrates the required technical capabilities.
Highlight Specific Methodological Expertise
WysokiŚredni nakład

In the CVs and any narrative sections, explicitly showcase the team's direct experience and certifications in OWASP ASVS, OSSTMM, and MASVS. Quantify this experience where possible (e.g., number of projects, types of systems tested).

Strengthens the technical qualification and demonstrates a direct fit for the tender's specific needs.
Conduct Thorough Internal Review
WysokiŚredni nakład

Implement a multi-stage internal review process for the entire bid submission. This should include a technical review of CVs and methodology alignment, a commercial review of pricing, and a final compliance check of all documentation against the tender requirements.

Minimizes errors and omissions, reducing the risk of disqualification and improving the overall quality of the bid.
Emphasize Efficiency and Agility
ŚredniMały nakład

If possible, subtly convey the bidder's ability to deliver security testing efficiently and with minimal overhead, which supports the low-cost offering and suggests a streamlined operational model.

Reinforces the value proposition of a cost-effective yet capable service provider.
Pozycjonowanie konkurencyjne
Position as the most cost-effective provider without compromising on essential technical expertise. Highlight the specific methodologies as a core strength, directly addressing the tender's technical needs. Ensure a flawless submission to convey professionalism and reliability.

Konkurenci

Ulepsz plan, aby zobaczyć, które firmy prawdopodobnie złożą ofertę w tym przetargu, na podstawie historycznych danych zamówień publicznych.

Zaloguj się

Wymagania i Kwalifikacje

22 wymagań w 5 kategoriach

Składanie (6)
Obowiązkowe (1)
Zgodność (8)
Techniczne (5)
Finansowe (2)
SUBMISSION REQUIREMENTS6
--Submit the European Single Procurement Document (ESPD) electronically.
--Submit confirmations regarding business secret, joint bid status, authorized persons, and agreement with general terms.
--Submit a Project Manager CV using the provided form, detailing education, work experience, certificates, and language skills.
MANDATORY EXCLUSION GROUNDS1
--Comply with general exclusion grounds stipulated in the Public Procurement Act, to be declared in the European Single Procurement Document (ESPD).
ELIGIBILITY REQUIREMENTS8
--Accept the general terms and conditions of the tender.
--Accept the terms of the draft framework agreement.
--Accept the terms of the draft procurement contract.
TECHNICAL CAPABILITY REQUIREMENTS5
--Possess a minimum team.
--Possess knowledge and experience in security testing methodologies such as OWASP ASVS, OSSTMM, MASVS.
--Project Manager must meet specific qualification requirements (education, work experience, certificates, language skills) for security testing projects.
FINANCIAL REQUIREMENTS2
--Submit the cost per working hour for testing, excluding VAT.
--The offered price will be the main evaluation criterion, with the lowest price receiving maximum points.

Podgląd wymagań

Zarejestruj się, aby zobaczyć pełne wymagania i analizę

Dokumenty

10 dokumentów dostępnych z podsumowaniami AI

VastavustingimusedPDF
305730_vastavustingimused.pdf -- 5.9 KB

This document requires bidders to provide confirmations regarding business secrets, joint bid status, authorized persons, agreement with general tender conditions, and the availability of the minimum required team.

Hindamiskriteeriumid ja hinnatavad näitajadPDF
305730_hindamiskriteeriumid.pdf -- 2.8 KB

This document outlines the tender's evaluation criteria, which is based entirely on the cost of one testing hour without VAT, with the lowest price receiving the maximum score.

Hankepass täiendatavate selgitustegaPDF
305730_hankepass_taiendavate_selgitustega.pdf -- 71.2 KB

This document serves as an explanatory guide for the European Single Procurement Document (ESPD), detailing the contracting authority's qualification and exclusion conditions that bidders must declare electronically.

HD II-1 Raamlepingu projektDOC
HD II-1 Raamlepingu projekt.docx -- 54.8 KB

This document is a draft framework agreement for information system security testing, detailing the contract terms, validity (36 months or until maximum cost is met), and appendices.

HD II-2 Hankelepingu projektDOC
HD II-2 Hankelepingu projekt.docx -- 36.7 KB

This document is a draft procurement contract for IT systems security testing services, outlining the terms and obligations between the Transpordiamet and the future contractor, concluded under a framework agreement.

HD III Tehniline kirjeldusDOC
HD III Tehniline kirjeldus.docx -- 29.4 KB

This document describes the scope, methodologies (e.g., OWASP ASVS, OSSTMM, MASVS), and general requirements for the framework agreement concerning security testing of the Transport Administration's e-services, information systems, and network infrastructure.

HD IV-1 CV vorm ProjektijuhtDOC
HD IV-1 CV vorm Projektijuht.docx -- 27.7 KB

This document is a CV template for a Project Manager, outlining specific qualification requirements for the role in security testing projects, including education, experience, certifications, and language skills.

HD IV-2 CV vorm TestijaDOC
HD IV-2 CV vorm Testija.docx -- 27.5 KB

This is a CV template for a Tester role, requiring personal data, confirmation of compliance with security testing experience, certifications, and project requirements, along with a signed consent to participate in the tender contract.

HD I VormidZIP
HD I Vormid.zip -- 43.6 KB

Brak dostępnego podsumowania dla tego dokumentu.

Riigihanke alusdokumentPDF
Riigihanke alusdokument .pdf -- 424.9 KB

This basic procurement document outlines the general terms for the Transport Administration's framework agreement for information system security testing, including contracting authority details, electronic procurement procedures, general principles for bidder exclusion and qualification, and geographical restrictions.

Podgląd dokumentów

Zarejestruj się, aby zobaczyć podsumowania i analizę dokumentów

81
Doskonała

Ocena Jakości Przetargu

This tender for information system security testing is well-structured and transparent, demonstrating strong legal compliance and fairness, though it lacks sustainability considerations and has a minor textual inconsistency in its description.

Szczegółowy Wynik

Zgodność z przepisami95/100

The tender exhibits excellent legal compliance, clearly defining the procedure type and assigning an appropriate CPV code. It explicitly references the Public Procurement Act and utilizes the ESPD, indicating adherence to national and EU regulations. All mandatory disclosure requirements are met, and there are no reported disputes or suspensions.

Przejrzystość80/100

Evaluation criteria are exceptionally clear, based solely on the lowest price per hour. Requirements for eligibility, technical capability (including specific methodologies and CV templates), and submission are well-documented and understandable. However, a minor inconsistency exists between the main description's reference to 'LOIS development and maintenance' and the tender's title/technical specifications for 'information system security testing'.

•Minor inconsistency between the main description and the tender title/scope.
Kompletność75/100

The tender provides all essential basic information, including title, reference, organization, estimated value, and detailed timeline. Requirements, evaluation criteria, and location are defined. A comprehensive set of 11 documents is listed. However, two documents (an XML ESPD and a ZIP file) were not processed for content analysis, limiting full verification of their specific details within this assessment.

•Two listed documents (XML, ZIP) were not processed for content analysis, limiting full verification of their completeness.
Uczciwość90/100

The tender demonstrates high fairness with full disclosure of the estimated value and support for e-procurement, ensuring equal access. Evaluation criteria are objective and transparent, based entirely on price. Technical requirements are generic and appear not to be tailored to a specific company, promoting broad competition.

Praktyczność85/100

The tender is highly practical, supporting electronic submission and e-procurement. The contract duration is clearly specified, and financing information is available through the estimated value. The provision of specific CV templates further aids bidders in preparation.

•Contract start date not explicitly stated (common practice, minor issue).
Spójność danych80/100

All key fields are populated, and dates are logical and sequential. There are no reported suspensions or disputes. The only minor inconsistency is the slight textual mismatch between the general description of the tender and its more specific title and technical scope, which is a minor textual discrepancy.

•Minor textual inconsistency between the main description and the tender title/scope.
Zrównoważony rozwój20/100

The tender does not include any explicit criteria or focus on green procurement, social aspects, or innovation. It is also not indicated as EU-funded. This represents a missed opportunity for incorporating broader sustainability goals into the procurement process.

•No green procurement criteria.
•No social criteria.

Mocne strony

High legal compliance and transparency, including clear procedure and CPV codes.
Objective and transparent evaluation criteria based solely on price.
Comprehensive and well-defined technical requirements using industry standards.
Full disclosure of estimated value and support for e-procurement.
Reasonable submission deadline and clear contract duration.

Wątpliwości

Absence of sustainability, social, or innovation criteria.
Minor textual inconsistency between the main tender description and its title/scope.
Inability to analyze the content of all provided documents (XML, ZIP) due to format.

Rekomendacje

1. Integrate sustainability, social, and innovation criteria into future tenders for IT services to align with broader public procurement goals.
2. Review and ensure complete textual consistency between the main tender description, title, and technical specifications to eliminate any potential ambiguity for bidders.
3. Consider providing key information from non-standard document formats (like XML or ZIP archives) in more accessible formats or as part of the main tender document for enhanced clarity and completeness.

Podgląd oceny AI

Zarejestruj się, aby zobaczyć pełne wymagania i analizę

Pełna analiza oceny jakości
Szczegółowy rozkład ocen cząstkowych
Mocne strony i obawy – informacje
Rekomendacje strategiczne

Karta kredytowa nie jest wymagana • Konfiguracja w 2 minuty