Published
Nástroj pro bezpečnostní monitoring technologické sítě ii
Notice number: 00544975-2026
KEY INFORMATION
- Submission deadline
- • Sep 7, 2026
- Location
- 🇨🇿 Czechia
- Contracting authority
- ČEZ Distribuce, a. s.
- Accepted Languages
- Czech
- Tender type
- Goods
- Contract Value
- Published date
- Aug 6, 2026
TENDER DESCRIPTION
This tender seeks a "Tool for Security Monitoring of Technological Network II" to establish a Framework Agreement for the supply, implementation, and ongoing support of technology for continuous security monitoring of operational technology (OT) environments, focusing on threat detection, vulnerability assessment, and anomaly identification without operational disruption. The solution must support passive monitoring via TAP/SPAN, be deployed on-premise, integrate with existing SIEM solutions (e.g., Qradar, Splunk) via API and REST API, and export data in CEF or JSON syslog formats, with specific hardware requirements including baremetal probes and VMware/Broadcom virtualization support. Key deliverables encompass pre-implementation analysis, a functional technical solution including a central analytical component, ten network probes, SFP modules, and comprehensive documentation, followed by optimization of security policies and ongoing maintenance services. The project is structured into phases: Target Concept within T + 2 months, Realization and Preparation for Productive Operation within T + 2 months, and Productive Operation and Support within T + 3 months, relative to the…
TENDER BRIEF
The contract timeline is structured around several key phases, with durations relative to the day a partial contract becomes effective (T).
The phases are:
1. Cílový koncept (Target Concept): To be completed and signed within T + 2 months, including time for the comments process.
2. Realizace a Příprava produktivního provozu (Realization and Preparation for Productive Operation): To be completed and signed within T + 2 months, including time for testing.
3. Produktivní provoz a podpora (Productive Operation and Support): To be completed and signed within T + 3 months.
"T" is defined as the day the partial contract becomes effective, and "M" denotes a month.
The document does not explicitly state a fixed contract start date, end date, or overall total duration in calendar days or months, only the relative durations of the phases from the effectiveness of a partial contract.
Sources
- 1ZD_část4_Návrh Rámcové dohody.docx — “provedení zpracovaná dle vzoru uvedeného v P1.9 Harmonogram plnění Jednotlivé fáze plnění budou provedeny (dokončení a podpis Předávacího protokolu) v termínech dle následující tabulky od uzavření první dílčí kupujícího:…”
The core scope of work for this tender is centered around "NÁSTROJ PRO BEZPEČNOSTNÍ MONITORING TECHNOLOGICKÉ SÍTĚ II" (Tool for Security Monitoring of Technology Network II), specifically for the security monitoring of operational technology (OT) environments.
The high-level summary of the Statement of Work and core deliverables includes:
Main Objective:
The primary goal is the continuous detection of threats and ensuring detailed visibility of the operational network. The solution must allow for passive monitoring of operations and analysis of network communication without disrupting the normal functioning of the OT/ICS environment.
Key Functionalities:
The system is required to provide an overview of all active devices, detect security threats, vulnerabilities, and anomalies in network traffic, and ensure effective integration with existing security tools such as log management and SIEM.
Core Phases and Activities:
- Pre-implementation Analysis: This involves creating a detailed technical specification that covers all planned implementation procedures. The output will be a document containing descriptions of the technical solution and its components, a proposed architecture for the client's environment, detailed implementation steps, specific technical requirements (e.g., location, power, network segments, IP addressing, hardware for virtualization platforms, network pass-throughs, internet access, remote access, system monitoring, additional necessary hardware like TAPs, active network elements, SFP modules), mutual integration procedures, required client cooperation, proposed acceptance tests, a project risk catalog with mitigation proposals, and a detailed implementation schedule.
- Implementation and Preparation for Productive Operation / Installation and Configuration: This phase includes the delivery, installation, and configuration of all technical solution components that meet the tender's requirements and the specifics outlined in the pre-implementation analysis document. The outcome is a functional technical solution that includes all necessary licenses, subscriptions, and manufacturer technical support. It also involves the delivery of essential hardware, specifically one central analytical component, ten network probes with a computing platform, and the required number of SFP modules for optical connectivity. The solution must be deployed in all specified locations, conform to the approved architecture, and be fully functional for OT security monitoring, passing defined acceptance tests.
- Productive Operation and Support / Optimization of Security/Detection Policy: During this stage, the supplier will evaluate the effectiveness of the deployed solution, adjust the security/detection policy, and document all configuration changes aimed at enhancing detection efficiency for the client's future SOC analytical team. This includes incorporating the client's actual IP addresses into detection policies, specifying valid assets (such as DNS, SMTP, WEB, NTP, PROXY, MS AD) crucial for detection rules, and applying exceptions recommended by the client. All modified configurations will be documented and submitted as an output of this project phase.
- Ongoing Supplier Services: These services are essential for maintaining the long-term functionality and effectiveness of the implemented solution, covering comprehensive service support for all delivered technologies, which includes both reactive problem resolution and proactive maintenance.
Key Deliverables (Hardware and Documentation):
- Computing platform
- Network probe
- SFP module
- Target Concept (CK) document
- As-built documentation (DSP)
- Detailed technical specification document
- A functional technical solution
- Documented configuration adjustments
- Maintenance services including new software versions/updates, helpdesk support, bug fixes, functional enhancements, legal compliance, and technical support.
The overall subject of the public contract is the establishment of a Framework Agreement for the supply of technology for security monitoring of the operational technological environment.
Sources
- 1ZD_část5_Formuláře.docx — “ZADÁVACÍ DOKUMENTACE JEDNACÍ ŘÍZENÍ S UVEŘEJNĚNÍM „NÁSTROJ PRO BEZPEČNOSTNÍ MONITORING TECHNOLOGICKÉ SÍTĚ II“ část 5 formuláře pro zpracování předběžné nabídky_nabídky OBSAH: p1 – průvodní listy PŘEDBĚŽNÉ nabídky/nabídky…”
- 2ZD_část1_Pokyny_sondyOTII.docx — “ZADÁVACÍ DOKUMENTACE JEDNACÍ ŘÍZENÍ S UVEŘEJNĚNÍM „nástroj pro bezpečnostní monitoring technologické sítě II“ ČÁST 1 Pokyny pro DODAVATELE průběh zadávacího řízení OBSAH 1. definice A výklad pojmů 4 2. Zásady etického je…”
- 3ZD_část3_Technická_specifikace.docx — “ZADÁVACÍ DOKUMENTACE JEDNACÍ ŘÍZENÍ S UVEŘEJNĚNÍM „NÁSTROJ PRO BEZPEČNOSTNÍ MONITORING TECHNOLOGICKÉ SÍTĚ II“ část 3 – technická specifikace Obsah Úvod 4 Požadované funkcionality 4 Viditelnost a inventarizace aktiv 4 Det…”
- 4ZD_část4_Návrh Rámcové dohody.docx — “provedení zpracovaná dle vzoru uvedeného v P1.9 Harmonogram plnění Jednotlivé fáze plnění budou provedeny (dokončení a podpis Předávacího protokolu) v termínech dle následující tabulky od uzavření první dílčí kupujícího:…”
Login to view all answers and insights
Unlock tender brief for freeTENDER DOCUMENTS
DIRECTORY • 6 FILES
- NEN_2026_veřejný klíč.crt2 KBCRT
- ZD_část2_KD_sondyOTII.docx244 KBDOCX
- ZD_část5_Formuláře.docx411 KBDOCX
Login to view and download all tender documents
Unlock documents for freeASK AI ABOUT THIS TENDER
Can a foreign company apply?
Yes, foreign companies can apply as long as they meet all the requirements set out in the procurement documents.
Login to ask more questions.
Unlock AI tender chat for freeUnlock your tender workflow
Run your first search, evaluate the results, save a daily monitor and start building a pipeline of tenders worth pursuing.