To support and enhance Finnish Tax Administration's IT security on its various public web services, Finnish Tax Administration is acquiring a service provider to handle crowdsourced security testing program. The acquired service must fulfill the requirements for running and developing Tax Administration's multiple Bug Bounty campaigns. The goal for Finnish Tax Administration is to develop its security-testing procedures. As a new operational model, Finnish Tax Administration has started to use crowdsourced security testing. Crowdsourced security testing (Bug Bounty Program) includes several Bug Bounty campaigns and separate security testing events. The goal is to get a better coverage on security testing. With bug bounties, it is possible to get hold of hackers with different set of skills. It is possible to get hackers testing with wide-ranging techniques. The plan is to arrange and maintain bug bounty campaigns against Finnish Tax Administration's different ICT-services.
Määräaika
Tarjousten vastaanottamisen määräaika oli 2019-02-20.
Hankinta julkaistiin 2019-01-18.
Toimittajat
Seuraavat toimittajat mainitaan hankintapäätöksissä tai muissa hankinta-asiakirjoissa:
hankintailmoitus (2019-01-18) Kohde Hankinnan laajuus
Otsikko: Tietotekniikkapalvelut
Viitenumero: VH/45/02.10.01/2019
Lyhyt kuvaus:
To support and enhance Finnish Tax Administration's IT security on its various public web services, Finnish Tax Administration is acquiring a service provider to handle crowdsourced security testing program. The acquired service must fulfill the requirements for running and developing Tax Administration's multiple Bug Bounty campaigns. The goal for Finnish Tax Administration is to develop its security-testing procedures. As a new operational model, Finnish Tax Administration has started to use crowdsourced security testing. Crowdsourced security testing (Bug Bounty Program) includes several Bug Bounty campaigns and separate security testing events. The goal is to get a better coverage on security testing. With bug bounties, it is possible to get hold of hackers with different set of skills. It is possible to get hackers testing with wide-ranging techniques. The plan is to arrange and maintain bug bounty campaigns against Finnish Tax Administration's different ICT-services.
To support and enhance Finnish Tax Administration's IT security on its various public web services, Finnish Tax Administration is acquiring a service provider to handle crowdsourced security testing program. The acquired service must fulfill the requirements for running and developing Tax Administration's multiple Bug Bounty campaigns. The goal for Finnish Tax Administration is to develop its security-testing procedures. As a new operational model, Finnish Tax Administration has started to use crowdsourced security testing. Crowdsourced security testing (Bug Bounty Program) includes several Bug Bounty campaigns and separate security testing events. The goal is to get a better coverage on security testing. With bug bounties, it is possible to get hold of hackers with different set of skills. It is possible to get hackers testing with wide-ranging techniques. The plan is to arrange and maintain bug bounty campaigns against Finnish Tax Administration's different ICT-services.
Ilmoituksen metatiedot
Alkukieli: englanti 🗣️
Asiakirjatyyppi: hankintailmoitus
Sopimuksen luonne: Palvelut
Asetus: Euroopan unioni ja WTO-maat
Yhteinen hankintanimikkeistö (CPV)
Koodi: Tietotekniikkapalvelut📦 Suorituspaikka
NUTS-alue: Suomi/Finland
🏙️
Menettely
Menettelyn tyyppi: Avoin menettely
Tarjouksen tyyppi: Tarjous koskee kaikkia eriä
Myöntämisperusteet
Kokonaistaloudellisesti edullisin tarjous
Kohde Hankinnan laajuus
Arvioitu kokonaisarvo: 150 000 EUR 💰
Lyhyt kuvaus:
Finnish Tax Administration is heavily investing on digitalization. There are several development programs ongoing and due to security being one of the main factors, Finnish Tax Administration is constantly developing and improving issues relating to security. One of the targets is to get even better coverage for security testing. A part of fulfilling this target is to execute Bug Bounty campaigns within the program against specified online services of the Finnish Tax Administration. Finnish Tax Administration's aim is to acquire a service provider that can help on our bug bounties to be well handled and tempting targets for the testers. This requires a high-level quality on both the providers and Tax Administration's side. Finnish Tax Administration is looking for a provider that will manage the bug bounties and provide reports from the possible findings to Tax Administration. Therefore, service providers' tasks include, at least creating rules, scope, and bounty value table and consulting the correct bounty values from valid reports together with Finnish Tax Administration. Service providers tasks would then include at least launching the program in the selected platform, handling things related to hackers (for example credentials and communication), identifying findings and reporting them to Finnish Tax Administration.
Finnish Tax Administration is heavily investing on digitalization. There are several development programs ongoing and due to security being one of the main factors, Finnish Tax Administration is constantly developing and improving issues relating to security. One of the targets is to get even better coverage for security testing. A part of fulfilling this target is to execute Bug Bounty campaigns within the program against specified online services of the Finnish Tax Administration. Finnish Tax Administration's aim is to acquire a service provider that can help on our bug bounties to be well handled and tempting targets for the testers. This requires a high-level quality on both the providers and Tax Administration's side. Finnish Tax Administration is looking for a provider that will manage the bug bounties and provide reports from the possible findings to Tax Administration. Therefore, service providers' tasks include, at least creating rules, scope, and bounty value table and consulting the correct bounty values from valid reports together with Finnish Tax Administration. Service providers tasks would then include at least launching the program in the selected platform, handling things related to hackers (for example credentials and communication), identifying findings and reporting them to Finnish Tax Administration.
Oikeudelliset, taloudelliset, rahoitukselliset ja tekniset tiedot Osallistumisehdot
Kelpoisuus harjoittaa ammattitoimintaa:
Tenderer's suitability requirements are described in the ESPD form (European Single Procurement Document).
Sopimuksen toteuttaminen
Sopimuksen täytäntöönpanoehdot:
The Finnish Tax Administration selects one (1) supplier with whom it will enter into an agreement. A draft agreement is attached to this call for tenders as annex 1.
Menettely
Oikeusperusta: 32014L0024
Tarjousten vastaanottoaika: 12:00
Kielet, joilla tarjoukset tai osallistumishakemukset voidaan jättää: englanti 🗣️
suomi 🗣️
Tarjouksen voimassaoloaika: 6 kuukautta
Tarjousten avauspäivä: 2019-02-20 📅
Tarjousten avausaika: 13:00
Paikka: The opening of the tenders is not a public event.
Hankintaviranomainen Tunnistetiedot
Kansallinen rekisterinumero: 0245458-3
Yhteystiedot
Yhteyspiste: Antti Koskiniemi
Asiakirjojen URL-osoite: https://hanki.tarjouspalvelu.fi/hanki🌏
Täydentävät tiedot Arvostelurunko
Nimi: The Market Court
Postiosoite: Radanrakentajantie 5
Postitoimipaikka: Helsinki
Postinumero: 00520
Maa: Suomi 🇫🇮
Puhelin: +358 295643300📞
Sähköposti: markkinaoikeus@oikeus.fi📧
Faksi: +358 295643314 📠
Internetosoite: http://www.oikeus.fi/markkinaoikeus🌏
Tiedot muutoksenhakumenettelyjen määräajoista:
Review of the decision on public contract or other decision made during the award procedure may be sought by requesting correction from the contracting entity in accordance with the Act on Public Contracts and Concession Contracts (the Public Contracts Act, 1397/2016). In those cases where the value of the contract exceeds the threshold amount set out in section 25 and 26 of the Act, appeal may also be made to the Market Court within 14 days after contract award.
Review of the decision on public contract or other decision made during the award procedure may be sought by requesting correction from the contracting entity in accordance with the Act on Public Contracts and Concession Contracts (the Public Contracts Act, 1397/2016). In those cases where the value of the contract exceeds the threshold amount set out in section 25 and 26 of the Act, appeal may also be made to the Market Court within 14 days after contract award.
Lähde: OJS 2019/S 015-031460 (2019-01-18)
Ilmoitus tehdystä sopimuksesta (2019-07-11) Kohde Hankinnan laajuus
Lyhyt kuvaus:
To support and enhance Finnish Tax Administration's IT security on its various public web services, Finnish Tax Administration is acquiring a service provider to handle crowdsourced security testing program. The acquired service must fulfill the requirements for running and developing tax administration's multiple bug bounty campaigns. The goal for Finnish Tax Administration is to develop its security-testing procedures. As a new operational model, Finnish Tax Administration has started to use crowdsourced security testing. Crowdsourced security testing (bug bounty program) includes several bug bounty campaigns and separate security testing events. The goal is to get a better coverage on security testing. With bug bounties, it is possible to get hold of hackers with different set of skills. It is possible to get hackers testing with wide-ranging techniques. The plan is to arrange and maintain bug bounty campaigns against Finnish Tax Administration's different ICT-services.
To support and enhance Finnish Tax Administration's IT security on its various public web services, Finnish Tax Administration is acquiring a service provider to handle crowdsourced security testing program. The acquired service must fulfill the requirements for running and developing tax administration's multiple bug bounty campaigns. The goal for Finnish Tax Administration is to develop its security-testing procedures. As a new operational model, Finnish Tax Administration has started to use crowdsourced security testing. Crowdsourced security testing (bug bounty program) includes several bug bounty campaigns and separate security testing events. The goal is to get a better coverage on security testing. With bug bounties, it is possible to get hold of hackers with different set of skills. It is possible to get hackers testing with wide-ranging techniques. The plan is to arrange and maintain bug bounty campaigns against Finnish Tax Administration's different ICT-services.
Finnish Tax Administration is heavily investing on digitalization. There are several development programs ongoing and due to security being one of the main factors, Finnish Tax Administration is constantly developing and improving issues relating to security. One of the targets is to get even better coverage for security testing. A part of fulfilling this target is to execute bug bounty campaigns within the program against specified online services of the Finnish Tax Administration. Finnish Tax Administration's aim is to acquire a service provider that can help on our bug bounties to be well handled and tempting targets for the testers. This requires a high-level quality on both the providers and Tax Administration's side.
Finnish Tax Administration is heavily investing on digitalization. There are several development programs ongoing and due to security being one of the main factors, Finnish Tax Administration is constantly developing and improving issues relating to security. One of the targets is to get even better coverage for security testing. A part of fulfilling this target is to execute bug bounty campaigns within the program against specified online services of the Finnish Tax Administration. Finnish Tax Administration's aim is to acquire a service provider that can help on our bug bounties to be well handled and tempting targets for the testers. This requires a high-level quality on both the providers and Tax Administration's side.
Sopimuksen tekeminen
Sopimuksen tekemispäivä: 2019-07-10 📅
Nimi: Second Nature Security Oy
Kansallinen rekisterinumero: 2324099-8
Postitoimipaikka: Espoo
Maa: Suomi 🇫🇮
Hankinnan kokonaisarvo: 150 000 EUR 💰
Tietoa tarjouskilpailuista
Saatujen tarjousten määrä: 1
Täydentävät tiedot Arvostelurunko
Tiedot muutoksenhakumenettelyjen määräajoista:
Review of the decision on public contract or other decision made during the award procedure may be sought by requesting correction from the contracting entity in accordance with the Act on Public Contracts and Concession Contracts (the Public Contracts Act, 1397/2016). In those cases where the value of the contract exceeds the threshold amount set out in Section 25 and 26 of the Act, appeal may also be made to the market court within 14 days after contract award.
Review of the decision on public contract or other decision made during the award procedure may be sought by requesting correction from the contracting entity in accordance with the Act on Public Contracts and Concession Contracts (the Public Contracts Act, 1397/2016). In those cases where the value of the contract exceeds the threshold amount set out in Section 25 and 26 of the Act, appeal may also be made to the market court within 14 days after contract award.