NMDC Steel Limited Cyber Security Audit Tender NSL SAP CERT-IN Empanelled Auditor 2025
Nmdc Steel Limited
BASTAR, CHHATTISGARH
Progress
Quantity
1
Bid Type
Two Packet Bid
Canara Bank seeks a CERT-IN empaneled auditor to conduct comprehensive security testing and configuration reviews, including VAPT, secure configuration audit, and secure configuration document review, with API assessment as part of the scope. The engagement is targeted for half-year readiness through March 2026 and involves Bangalore, Karnataka operations. The bidding includes an EMD of ₹6,00,000 and term flexibility of up to 25% in contract quantity or duration. The vendor must comply with bank procurement policies and integrity commitments, with online/ DD payment options for EMD and timely submission of documents. Unique emphasis on credentials and regulatory alignment differentiates bidders with proven CERT-IN accreditation and security testing capabilities. This opportunity sits within Canara Bank’s Department of Financial Services procurement framework and requires rigorous documentation and adherence to the bank’s established ATC terms.
VAPT and secure configuration audit scope
CERT-IN empanelled auditor requirement
API security assessment as part of scope
Layout: Bangalore, Karnataka procurement locality
EMD ₹6,00,000; online or DD payment modes
Variation up to 25% in contract quantity/duration
Integrity Pact and all bid documents mandatory
EMD payment options via RTGS/online or DD with proof; no schedule yet for final payment terms.
No explicit delivery timeline published; bidders must comply with Canara Bank ATC terms and procurement schedule.
Penalties not specified in terms; follow standard bank contract LD provisions per ATC.
CERT-IN empanelment for audit services
No prior liquidation or bankruptcy
Financially sound with supporting statements
Nmdc Steel Limited
BASTAR, CHHATTISGARH
Office Of The Registrar General And Census Commissioner Census Of India
EAST DELHI, DELHI
Canara Bank
BANGALORE, KARNATAKA
Canara Bank
Iocl Bongaigaon Refinery
BONGAIGAON, ASSAM
Tender Results
Loading results...
Discover companies most likely to bid on this tender
GST Registration Certificate
Permanent Account Number (PAN) Card
Experience Certificates for similar VAPT/security audits
Audited Financial Statements for the past 3 years
EMD submission proof (online transfer slip or DD copy)
Technical bid documents demonstrating CERT-IN empanelment
Integrity Pact signed and uploaded
OEM authorizations or proof of security testing credentials (if applicable)
Key insights about KARNATAKA tender market
Bidders must be CERT-IN empaneled auditors and submit EMD ₹6,00,000 via RTGS/DD, proof of online transfer, GST, PAN, financials, experience certificates, integrity pact, and technical bid per ATC. Ensure 25% variation clause acceptance and upload all required documents.
Submit GST certificate, PAN card, last 3 years financial statements, experience certificates for VAPT/security audits, EMD proof (online/DD), technical bid demonstrating CERT-IN credentials, integrity pact, and OEM authorizations if applicable.
Bidders must hold CERT-IN empanelment and demonstrate IS-550/ISO 27001-aligned processes where applicable; provide security testing methodology, reporting formats, and evidence of prior VAPT engagements for similar bank clients.
EMD is ₹6,00,000; pay via online RTGS or internet banking to account Canara Bank, or submit a Demand Draft payable at Bangalore, with scanned proof uploaded to the bid. Include bid number and bidder name in transfer details.
Exact bid end date not disclosed in available data; bidders should monitor the canara bank procurement ATC and ensure submission of all mandatory documents, including integrity pact, prior to the stated bid end date.
Specific delivery timelines and LDs are not stated; bidders must align with Canara Bank ATC terms, and any penalties would follow standard bank contract provisions, with potential LDs for delays in audit reporting or incomplete scope.
Provide documented API security testing experience, including methodology (OWASP-based), testing tools, results, and references; include scope covering API discovery, authentication, authorization, rate-limiting, and secure configurations in audit reports.
Scope includes evaluating secure baseline configurations, patch management, access controls, and hardening guides; provide evidence of prior engagements delivering secure configuration reviews for financial institutions and clear remediation recommendations.
Sign up now to access all documents
Main Document
SCOPE_OF_WORK
PAYMENT
OTHER
OTHER
OTHER
ATC
GEM_GENERAL_TERMS_AND_CONDITIONS