Norsk Tipping shall enter into a framework agreement with up to 4 tenderers for information security. 1: Strategic consulting cyber security 2: Security testing 3: Cyber security exercises 4: Security competence, security audits and consultancy ISO27001, 27017, OWASP etc. Norsk Tipping is certified in accordance with ISO 27001 and WLA SCS, and requires consultancy services that ensure that the company complies with these standards and ensures stable and secure operation of our IT services.
Frist
Fristen for mottak av tilbud var 2025-05-21.
Anskaffelsen ble publisert 2025-04-15.
Kunngjøring av konkurranse (2025-04-15) Gjenstand Anskaffelsens omfang
Tittel: Information Security
Referansenummer: NT-25-0100
Kort beskrivelse:
“Norsk Tipping shall enter into a framework agreement with up to 4 tenderers for information security. 1: Strategic consulting cyber security 2: Security...”
Kort beskrivelse
Norsk Tipping shall enter into a framework agreement with up to 4 tenderers for information security. 1: Strategic consulting cyber security 2: Security testing 3: Cyber security exercises 4: Security competence, security audits and consultancy ISO27001, 27017, OWASP etc. Norsk Tipping is certified in accordance with ISO 27001 and WLA SCS, and requires consultancy services that ensure that the company complies with these standards and ensures stable and secure operation of our IT services.
2️⃣
Beskrivelse av anskaffelsen:
“The aim of the agreement is to continually assist the company with strategic competence, consultancy, including assisting Norsk Tipping's Board of...”
Beskrivelse av anskaffelsen
The aim of the agreement is to continually assist the company with strategic competence, consultancy, including assisting Norsk Tipping's Board of Directors, Security Committee and Security Environment etc. Norsk Tipping would like to enter into a contract for strategic consultancy in the areas of management and control with information security, cyber security, threat assessments, strengthening the company's management system for information security etc.
Vis mer Tittel
Identifikasjonsnummer for delkontrakt: LOT-0002
3️⃣
Beskrivelse av anskaffelsen:
“The aim of the procurement is to cover Norsk Tipping ́s need for testing within main security. This area includes general testing of defence systems, but...”
Beskrivelse av anskaffelsen
The aim of the procurement is to cover Norsk Tipping ́s need for testing within main security. This area includes general testing of defence systems, but also testing quality, resilience and robustness of both the existing and new codes, systems and equipment. Norsk Tipping emphasises the entire KIT triad and would like, through testing, to gain knowledge of the condition and what measures must be taken to increase the safety of the test object and the system included in this object.
Vis mer Tittel
Identifikasjonsnummer for delkontrakt: LOT-0003
4️⃣
Beskrivelse av anskaffelsen:
“The aim of the contract is to see to the company ́s need for training, training and competence of Norsk Tipping ́s employees within information security....”
Beskrivelse av anskaffelsen
The aim of the contract is to see to the company ́s need for training, training and competence of Norsk Tipping ́s employees within information security. The aim of this is to increase the company's competence in the area and safeguard the relevant ISO 27001 requirements that are imposed on the company through its certification.
Vis mer Tittel
Identifikasjonsnummer for delkontrakt: LOT-0004
5️⃣
Beskrivelse av anskaffelsen:
“"We have strengthened the quality of the company's business critical processes". Norsk Tipping's business critical processes consist of: 1) Sales of Games...”
Beskrivelse av anskaffelsen
"We have strengthened the quality of the company's business critical processes". Norsk Tipping's business critical processes consist of: 1) Sales of Games 2) Payment of prizes 3) Implementation of game 4) Responsible gambling activities Norwegian betting currently uses a tool to maintain an overview of employees ́ implementation of obligatory and voluntary courses in security competence and instructions. The tool is also used for mapping employees ́ insight and understanding of e.g. a safety culture. Norsk Tipping is in addition to being certified iht. ISO 27001 standard, also as the only company in Norway certified in accordance with WLA SCS. In order to obtain WLA certification, iso 27001 certification must be at the bottom. It is a prerequisite that our contract supplier understands the WLA standard well enough to assist Norsk Tipping with consultancy services, but does not expect expert competence within the WLA standard.
Vis mer Tittel
Identifikasjonsnummer for delkontrakt: LOT-0005
Prosedyre Prosedyretype
Åpen anbudskonkurranse ✅ Administrativ informasjon
Frist for mottak av tilbud eller forespørsler om deltakelse: 2025-05-21 10:00:58 📅
Vilkår for åpning av tilbud: 2025-05-21 10:01:00 📅
Vilkår for åpning av tilbud (sted): Hamar
Språk som tilbud eller forespørsler om deltakelse kan sendes inn på: norsk 🗣️
Minste tidsramme som tilbyderen må opprettholde tilbudet i: 101
Informasjon om en rammeavtale eller en dynamisk innkjøpsordning
Rammeavtale med flere leverandører ✅
Juridisk, økonomisk, finansiell og teknisk informasjon Økonomisk og finansiell stilling
Liste og kort beskrivelse av utvelgelseskriterier:
“Annual accounts and credit rating (rating).: Requirement: Tenderers shall have satisfactory finances. • Documentation requirement: Income statement and...”
Liste og kort beskrivelse av utvelgelseskriterier
Annual accounts and credit rating (rating).: Requirement: Tenderers shall have satisfactory finances. • Documentation requirement: Income statement and balance with notes, as well as annual reports and auditor ́s report for the last year. In addition a cash flow statement is required for the companies that are obliged to set this up. • Credit evaluation/rating, not older than 6 months from the tender deadline. • If it is more than 6 months since the balance sheet for the last annual accounts, the sub-year accounts must be enclosed. • Any other information of relevance to the company's fiscal figures. • If a tenderer, for a justifiable reason, cannot present the documentation that Norsk Tipping has requested, he can prove his economic and financial style with any other document that the contracting authority can accept. If the tenderer has such a justifiable reason, he may contact Norsk Tipping in writing in order to clarify which other documentation is acceptable.
Vis mer Vilkår for deltakelse
Liste og kort beskrivelse av vilkår:
“Registered in a trade register or company register.: Tenderers are registered in a company register or a trade register in the member state in which the...”
Liste og kort beskrivelse av vilkår
Registered in a trade register or company register.: Tenderers are registered in a company register or a trade register in the member state in which the tenderer is established. As described in annex XI of directive 2014/24/EU; suppliers from certain member states may have to fulfil other requirements in the mentioned annex. Requirement: The tenderer shall be a legally established company. Foreign companies: Proof that the company is registered in a trade or business register as prescribed by the law of the country where the tenderer is established.
Vis mer Teknisk og faglig kapasitet
Liste og kort beskrivelse av utvelgelseskriterier:
“Information Security System: Sub-area 1 - Strategic consulting cyber security Requirement: • Tenderers shall have a satisfactory and well-functioning...”
Liste og kort beskrivelse av utvelgelseskriterier
Information Security System: Sub-area 1 - Strategic consulting cyber security Requirement: • Tenderers shall have a satisfactory and well-functioning management system for information security. The information security system must cover all processes that are relevant for this contract and be compliant with ISO 27001 or equivalent standard. Relevant processes are in this context defined as i.a. the purpose and need of the sub area, see annex 1 chapter 2. Documentation requirement: • To document this, a description shall be enclosed of the tenderer's management system for information security (policy, procedures and guidelines), possibly enclose an ISO 27001 certificate. Lot 2 - Security testing No qualification requirements for a management system for information security. Sub-area 3 - Cyber security exercises Requirement: • Tenderers shall have a satisfactory and well-functioning management system for information security. The information security system must cover all processes that are relevant for this contract and be compliant with ISO 27001 or equivalent standard. Relevant processes are in this context defined as i.a. the purpose and need of the sub area, see annex 1 chapter 2. Documentation requirement : • To document this, a description shall be enclosed of the tenderer's management system for information security (policy, procedures and guidelines), possibly enclose an ISO 27001 certificate Sub-area 4 - Security competence, consultancy and security audits Requirement: • The tenderer shall have a satisfactory and well-functioning system for information security, as well as be certified in accordance with ISO 27001. The information security system must cover all processes that are relevant for this contract. Relevant processes are in this context defined as i.a. the purpose and need of the sub area, see annex 1 chapter 2. Documentation requirement: • To document this, enclose a valid ISO 27001 certificate.