Cyber Security Audit - Infrastructure Audit
Sashastra Seema Bal (ssb)
Bid Publish Date
12-Jun-2026, 9:57 am
Bid End Date
22-Jun-2026, 10:00 am
Value
₹1,00,000
Location
Progress
Quantity
1
Bid Type
Two Packet Bid
Organization: National Disaster Response Force (ndrf) under the Central Armed Police Forces. Product/Service: External cyber security audit (VAPT) for 15th BN NDRF at Gadarpur, Uttarakhand. Quantity/Scope: IT assets include 79 desktops, 3 laptops, 1 firewall, 1 24-Port switch, 5 x 8-Port non-manageable switches, 5 wifi routers, and 3 photocopiers. Estimated Value: ₹100,000. Location: Gadarpur, Uttarakhand. Audit Mode: Hybrid (on-site and off-site). Key Differentiator: Must be conducted by a CERT-In empaneled auditor with detailed audit methodology, logs, and evidence delivery. Unique deliverables cover VAPT plan, configuration reviews, API security assessment, and risk reports. This tender requires GeM portal submission and adherence to central government cyber guidelines.
External cyber security audit for 15th BN NDRF Gadarpur Uttarakhand
Assets: 79 desktops, 3 laptops, 1 firewall, 1 24-port switch, 5 x 8-port non-manageable switches, 5 wifi routers, 3 photostat machines
Audit mode: Hybrid (on-site + off-site)
Deliverables include VAPT plan, logs, configuration review, API security assessment, risk/impact report
CERT-In empanelment certificate and NDA must be provided by auditor
EMD amount not specified in provided data; ensure submission of required certificates
25% scope adjustment permitted; contractual quantity/duration may change up to 25%
Audit must be performed by CERT-In empaneled auditor with govt experience
Deliverables must include detailed methodology, tools, logs, and risk reports
Compliance with GeM portal process and central government guidelines
Not explicitly defined in data; subject to contract terms post-award with 25% adjustment rights
Audit plan and methodology to be provided by auditor; final deliverables include comprehensive VAPT reports
Not specified in data; penalties may be governed by standard GeM/organization terms
CERT-In empanelled auditor with government sector experience
Must provide NDA and data confidentiality declarations
Ability to deliver VAPT with detailed methodology and evidence
Tender Category
Service
Bid To RA
No
Bid To RA Enabled
Yes
Item Category
Cyber Security Audit - Infrastructure Audit, Cyber security Audit of 15th BN NDRF
End-to-end support — bid preparation, GeM registration, document filing & compliance by industry experts.
Free consultation · 24h response
Main Document
SCOPE_OF_WORK
OTHER
GEM_GENERAL_TERMS_AND_CONDITIONS
Sashastra Seema Bal (ssb)
Sashastra Seema Bal (ssb)
Sashastra Seema Bal (ssb)
Sashastra Seema Bal (ssb)
Sashastra Seema Bal (ssb)
Tender Results
Loading results...
Discover companies most likely to bid on this tender
CERT-In empanelment certificate (valid copy)
Auditor’s identity details and CES certified letter
Audit authorization letter
Non-disclosure agreement (NDA) and Data Confidentiality declaration
Past audit experience in Govt. organizations
Registration copy of auditing agency
Audit plan, methodology, and schedule
List of tools/scripts/OWASP techniques to be used
Evidence of deliverables (VAPT plan, logs, configuration reports, API security assessments)
Key insights about UTTARAKHAND tender market
Bidders must be CERT-In empaneled auditors with govt audit experience, submit NDA and data confidentiality declarations, provide audit methodology and schedule, and upload required certificates via GeM. Ensure readiness to deliver VAPT plan, logs, and risk reports for the 15th BN NDRF assets.
Required documents include CERT-In empanelment certificate, Auditor identity details, CES letter, audit authorization letter, NDA, data confidentiality declaration, past govt audit experience, agency registration, audit plan, tool list, and evidence of deliverables for the 15th BN NDRF audit.
Assets include 79 desktops, 3 laptops, 1 firewall, 1 24-Port switch, 5 x 8-Port non-manageable switches, 5 wifi routers, and 3 photocopiers for on-site/off-site VAPT assessment.
Deliverables consist of a detailed VAPT plan with logs, server/network/DB/API configuration reviews, application security assessment, risk/threat/vulnerability report, and a documented audit methodology with tools/techniques used.
The audit mode is Hybrid: on-site assessments at Gadarpur and off-site analysis, enabling comprehensive testing across network, server, and application layers per central government guidelines.
Yes. The buyer may adjust contract quantity or duration by up to 25% before award or after contract issuance, with consent for lump-sum service contracts if scope changes.
Audits must align with central government cybersecurity guidelines and CERT-In requirements; auditors must provide CERT-In empanelment proof, NDA, and data confidentiality documents as part of submission.
National Disaster Response Force (ndrf)
📍 NADIA, WEST BENGAL
National Disaster Response Force (ndrf)
📍 GHAZIABAD, UTTAR PRADESH
Sashastra Seema Bal (ssb)
📍 BHOPAL, MADHYA PRADESH
Central Industrial Security Force (cisf)
Bureau Of Indian Standards (bis)
📍 CENTRAL DELHI, DELHI
Sign up now to access all documents
Main Document
SCOPE_OF_WORK
OTHER
GEM_GENERAL_TERMS_AND_CONDITIONS