Closed

Splunk Support, Professional Services/Enterprise Security.

Tender ID: 419045


Tender Details

Organisation:
Tender #:
6924  
Status:
Closed
Publish Date:
24 April 2020
Closing Date:
8 May 2020

Tender Description

⁠⁠⁠Splunk support services:
• Experienced Splunk personnel to provide support and maintenance to the Department of Finance’s -Splunk Enterprise Security (ES) instance, migration to new versions and upgrades to new versions over the life of the contract.
• Splunk onsite support for maximum of 120 days per annum maximum for the next 3 years.
• Provide pricing (hourly rate) for experienced Splunk personnel to provide services outside of the above on a times and material basis.
• 3 years experience in implementing and supporting Splunk Enterprise Security
• The vendor is required to provide onsite support at the Department of Finance, Canberra ACT.

Services to include but not limited to:
• Work in the IT Security team reporting weekly to the Assistant ITSA
• Provide periodic health checks every 3 months and provide a summary report
• Assist in resolving ad hoc queries
• Creation of Enterprise Security use cases, dashboards, reports and alerts and monitoring console health check
• Skills transfer Splunk instance to Finance staff for daily monitoring regarding dash boards, investigation and reporting
• Maintain Splunk documentation
• Comply with Finance’s Change Management process
• Providing ongoing knowledge transfer for the Departments Splunk Admins
• Provide a walk-through of Splunk ES functionality for the Departments Splunk Admins
• Optimizing out-of-the-box content and ES Content Updates (ESCU)
• The ability to integrate from additional data sources
• Ability for Dept. of Finance to meet any ANAO reporting requirements in a timely manner
• Splunk Enterprise Security instance must be in accordance with all applicable Australian Signals Directorate’s 2020 Information Security Manual (ISM) controls.
• Of important note, to protect both Finance and the Service Provider is that the Department of Finance Applications\Systems contain data classified at ‘PROTECTED’.
• Splunk certifications or demonstrated 3 years experience in supporting and maintaining Splunk Enterprise Security
• Service Provider to indicate the number of specified personnel it proposes to use for the provision of the Services.
• Personnel with NV1 security clearances. 



Similar Tenders

Open opportunities matching this tender's categories and regions.