Published
IT-Angriffserkennungssysteme
Notice number: ocds-mnwr74-22d7aaab-9688-42eb-bfd7-d4d0a0e2cdac
KEY INFORMATION
- Submission deadline
- • Sep 22, 2026
- Location
- 🇩🇪 Germany
- Contracting authority
- Kaufmännische Krankenkasse - KKH
- Accepted Languages
- DEU
- Tender type
- Services
- Contract Value
- Published date
- Aug 21, 2026
TENDER DESCRIPTION
This tender seeks a modern, centrally administrable software solution for IT attack detection systems, providing continuous maintenance, support, and services for implementation, integration, operation, and training throughout the contract duration, while adhering strictly to data minimization and protection principles. The core scope encompasses a 24/7 Security Operations Center (SOC) with managed SIEM/logging/monitoring, Endpoint Protection/XDR, vulnerability management, auditability, and Server Protect for Storage, ensuring comprehensive security across diverse IT environments. Key technical requirements include ISO/IEC-27001 certification, GDPR compliance, support in German, and operational monitoring by personnel located in Germany, with main security functions originating from a unified product family. Compatibility with systems such as VMware vCenter, Linux, Citrix XenApp, Windows clients, and NetApp ONTAP® environment is essential, alongside robust cryptographic procedures, multi-factor authentication, and C5 audit reports for cloud components. Financially, bidders must confirm solvency and hold professional liability insurance with minimum coverages of €1,000,000 for…
TENDER BRIEF
The contract timeline is as follows:
The obligation to provide contractual services begins upon contract award. The implementation services, as per the service description, must commence no later than 2 weeks after the contract award. The minimum contract term is 3 years from the contract award. After this initial period, the contract automatically extends for successive 12-month periods, unless one of the parties gives 9 months' notice prior to the end of the respective contract year. During the minimum contract term, the contract cannot be ordinarily terminated. The parties will coordinate the detailed schedule and specific service contents through workshops or regular meetings immediately after the contract is concluded. Milestones and sub-goals are defined within this detailed planning.
Sources
- 107 Individuelle Festlegungen 1416-0526.pdf — “festgelegten, in diesem Dokument sowie in der Leistungsbeschreibung genannten Terminen handelt es sich um Vertragsfristen. Können die vorgenannten Termine aus Gründen, die nicht der Auftragnehmer zu vertreten hat, nicht…”
The core scope of work for this tender is the procurement of a modern, centrally administrable software solution for IT attack detection systems, which includes continuous maintenance, support, and services for implementation, integration, operation, and training throughout the contract duration. The primary objective is to provide a security solution that limits data transmission and processing to essential data and metadata for operation, analysis, protection, and support, while adhering to data minimization principles and applicable data protection requirements. This also ensures the uninterrupted operation of the IT security infrastructure, continuous monitoring and securing of IT systems, protection of endpoints and servers, central monitoring of security-relevant events, detection and evaluation of vulnerabilities, compliance with regulatory requirements, support for incident response processes, and the provision of managed services with 24/7 security monitoring through a Security Operations Center (SOC). The solution must be functionally integrated, with security-relevant components technically and professionally coordinated to provide protection, detection, analysis, reporting, and audit functions without security-relevant integration gaps.
The core deliverables and service components explicitly stated are:
- 24/7 SOC (Security Operations Center) including Managed Service for continuous monitoring, analysis, evaluation, and support in handling security incidents.
- SIEM/Logging/Monitoring for central collection, evaluation, correlation, and provision of security-relevant events and log data.
- Endpoint Protection / XDR.
- Vulnerability Scanner / Schwachstellenmanagement.
- Auditability and Evidence Management.
- Implementation, Integration, and Maintenance including Training.
- Server Protect for Storage.
Sources
- 102_Leistungsbeschreibung.pdf — “24/7-Sicherheitsüberwachung durch ein Security Operations Center (SOC). 2. Ziel der Beschaffung Ziel der Beschaffung ist die Bereitstellung einer modernen, zentral administrierbaren Sicherheitslösung, bei der die Übertra…”
- 208_Preisblatt.xlsx — “Preisblatt zur Vergabe-Nr.: 1416-0526,,,,, ,,,,, ,,,,, ,,,,, ,,,,(bitte unbedingt angeben), ,,,,, Für das Ausfüllen dieses Preisblattes sind die Vorgaben gemäß der für dieses Vergabeverfahren geltende Bewerbungsbedingung…”
Login to view all answers and insights
Unlock tender brief for freeTENDER DOCUMENTS
DIRECTORY • 18 FILES
- 02_Leistungsbeschreibung.pdf303 KBPDF
- Anlage 3 zu 4.8 What are the supported Vscan (Antivirus) vendors for ONTAP.pdf116 KBPDF
- 07 Individuelle Festlegungen 1416-0526.pdf122 KBPDF
and 11 other documents
Login to view and download all tender documents
Unlock documents for freeASK AI ABOUT THIS TENDER
Can a foreign company apply?
Yes, foreign companies can apply as long as they meet all the requirements set out in the procurement documents.
Login to ask more questions.
Unlock AI tender chat for freeUnlock your tender workflow
Run your first search, evaluate the results, save a daily monitor and start building a pipeline of tenders worth pursuing.