منافسة عامة قيد التنفيذ

الجيل الثاني من تطوير البنية الرقمية لمركز المعلومات الوطني

الهيئة السعودية للبيانات والذكاء الاصطناعي

رقم المنافسة

220139474190

المعرّف

#341517

رقم المنافسة
220139474190
رقم المنافسة الداخلي
—
الجهة الحكومية
الهيئة السعودية للبيانات والذكاء الاصطناعي
الفرع / الإدارة
الهيئة السعودية للبيانات والذكاء الاصطناعي
نوع المنافسة
منافسة عامة
حالة المنافسة
—
طريقة تقديم العروض
—
رسوم الاشتراك
500 ر.س
سعر كراسة الاشتراط
500 ر.س
تكلفة الدعوة
200 ر.س
تكلفة الشراء
500 ر.س
الضمان الإبتدائي
—
الضمان النهائي
—
مدة العقد
—
التأمين مطلوب
—
مدة الوقفة (أيام)
—
داخل المملكة
—
التاريخ ميلادي هجري
تاريخ النشر 2022/03/15 17:35 —
آخر موعد للاستفسارات 2022/08/18 1444-01-20
آخر موعد تقديم العروض 2022/08/21 14:00 1444-01-23
موعد فتح العروض 2022/08/21 15:00 1444-01-23
موعد فحص العروض — —
التاريخ المتوقع للترسية — —
تاريخ بدء الأعمال — —
تاريخ خطاب تأكيد المشاركة — —
بداية إرسال الأسئلة — —

موقع التنفيذ

منطقة التنفيذ
—
مدن التنفيذ
—

مجال التصنيف

يشمل مواد توريد
لا

جدول 1 المواد - تقنية معلومات

البند الفئة الكمية المواصفات وحدة القياس الرقم التسلسلي منتج من القائمة الإلزامية
خدمات احترافية Professional Services Underlay SDN خدمة 1 تنفيذ الخدمات الأحترافية لبناء الشبكات لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مركز بيانات الرياض (NMP/NIP ) Network Implementation من الشركة الأم "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implemenation services for the solution Cloud Use Case Validations عدد 1 0
خدمات احترافية Professional Services Load Balancing and Global DNS LLoadbalancer MLoadbalancer SLoadbalancer Type 1 2 خدمة 1 تنفيذ الخدمات الأحترافية لبناء الشبكات لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الموزعة (Distributor) وثيقة التصميم الشامل High level Design ( HLD) من الشركة الموزعة (Distributor) وثيقة التنفيذ التفصيلي للمشروع داخل مركز بيانات الرياض (NMP/NIP ) Network من الشركة الموزعة (Distributor)Implementation Plan and Network Migration Plan "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الموزعة (Distributor) implemenation services for the solution من الشركة الموزعة (Distributor) cloud use case validations عدد 2 0
خدمات احترافية Professional Services IPAM خدمة 2 تنفيذ الخدمات الأحترافية لبناء الشبكات للمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design) وثيقة التصميم الشامل High level Design ( HLD) "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه Implemenation services for the solution Cloud use case validations عدد 3 0
خدمات احترافية Professional Services Server خدمة 1 الخدمات الاحترافية من المقاول الرئيسي للخوادم القيام بمسح ميداني في مركز بيانات الرياض الخاصة بمركز المعلومات الوطني تنفيذ الخدمات الأحترافية لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية القيام بتركيب وإعداد وتنفيذ الحلول المبرمة في هذة الكراسة وتقديم كافة الوثائق في بند المخرجات القيام بورش عمل فنية للحلول المقدمة من خلال الكراسة عمل كافة الاختبارات وقياس مدى جاهزيتها على ان يتم التنفيذ في مركز بيانات الرياض عدد 4 0
خدمات احترافية PS Data Block Storage خدمة 2 PS Data Block Storage تنفيذ الخدمات الأحترافية لبناء الشبكات للمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مراكز البيانات "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه Implemenation services for the solution Cloud use case validations عدد 5 0
خدمات احترافية PS Data Object Storage خدمة 2 PS Data Object Storage تنفيذ الخدمات الأحترافية لبناء الشبكات للمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مراكز البيانات "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه Implemenation services for the solution Cloud use case validations عدد 6 0
خدمات احترافية PS MGMT Block Storage خدمة 2 PS MGMT Block Storage تنفيذ الخدمات الأحترافية لبناء الشبكات للمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مراكز البيانات "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه Implemenation services for the solution Cloud use case validations عدد 7 0
خدمات احترافية PS Service Object Storage خدمة 2 PS Service Object Storage تنفيذ الخدمات الأحترافية لبناء الشبكات للمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مراكز البيانات "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه Implemenation services for the solution Cloud use case validations عدد 8 0
خدمات احترافية Professional Services VMware خدمة 26315 PSO Credit SVC-CR-20 عدد 9 0
خدمات احترافية PS Service L Firewall Type1 خدمة 1 تنفيذ الخدمات الأحترافية لبناء الشبكات لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مركز بيانات الرياض ( Network Implementation Plan "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implemenation services for the solution من الشركة الأم cloud use case validations عدد 10 0
خدمات احترافية PS Service M Firewall Type 1 خدمة 1 تنفيذ الخدمات الأحترافية لبناء الشبكات لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مركز بيانات الرياض ( Network Implementation Plan "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implemenation services for the solution من الشركة الأم cloud use case validations عدد 11 0
خدمات احترافية PS Service M Firewall Type 2 خدمة 1 تتنفيذ الخدمات الأحترافية لبناء الشبكات لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مركز بيانات الرياض ( Network Implementation Plan "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implemenation services for the solution من الشركة الأم cloud use case validations عدد 12 0
خدمات احترافية PS Service S Firewall Type1 خدمة 1 تنفيذ الخدمات الأحترافية لبناء الشبكات لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مركز بيانات الرياض ( Network Implementation Plan "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implemenation services for the solution من الشركة الأم cloud use case validations عدد 13 0
خدمات احترافية PS Rack Preparation Structure خدمة 1 تنفيذ الخدمات الأحترافية لتفعيل التوصيلات الشبكية والضوئية لمركز بيانات الرياض For 2 Availaibility Zones حيث ان كل availability Zone منفصلة تمام عن الاخرى لتحقيق اعلى دراجات التواجدية Professionals Services including any required connectivity not limited to: Any required Copper cables Any required FO cables Network Nodes & its connectivity Copper & FO patch panels Any required power Connectivity & missing breakers Any required Cables Runner or Fiber guides the required HW as the following: 360G2-1U-MOD-SD x40 360G2-iP-2U-288F-LC-DM-LS-UHD x8 360G2-iP-2U-288F-LC-DM-TS-UHD x6 360DMiP-24LC-LS EA x250 360DMiP-24LC-SM EA x100 FOA TS MP(F)-MP(F) 24F IPD LSZH FT020 x20 FOA TS MP(f)-MP(f) 24f IPD LSZH FT025 X20 FOA TS MP(F)-MP(F) 24F IPD LSZH FT030 X20 FOA TS MP(F)-MP(F) 24F IPD LSZH FT035 X20 FOA TS MP(F)-MP(F) 24F IPD LSZH FT040 X20 FOA TS MP(F)-MP(F) 24F IPD LSZH FT045 X20 FOA TS MP(F)-MP(F) 24F IPD LSZH FT050 X20 FOA LS550 MP(F)-MP(F) 24F LSZH FT020 x40 FOA LS550 MP(F)-MP(F) 24F LSZH FT025 x40 FOA LS550 MP(F)-MP(F) 24F LSZH FT030 x40 FOA LS550 MP(F)-MP(F) 24F LSZH FT035 x40 FOA LS550 MP(F)-MP(F) 24F LSZH FT040 x40 FOA LS550 MP(F)-MP(F) 24F LSZH FT045 x40 FOA LS550 MP(F)-MP(F) 24F LSZH FT050 x40 360 iPatch 1100 Evolve 24P, Blank x50 InstaPATCH Cu GigaSPEED X10D U/UTP LSZH Preterminated Copper Cable, 360 1100 Evolve module to 360 1100 Evolve module, 12 links EA 24 InstaPATCH Cu GigaSPEED X10D U/UTP LSZH Preterminated Copper Cable, 360 1100 Evolve module to 360 1100 Evolve module, 12 links EA 24 InstaPATCH Cu GigaSPEED X10D U/UTP LSZH Preterminated Copper Cable, 360 1100 Evolve module to 360 1100 Evolve module, 12 links EA 24 InstaPATCH Cu GigaSPEED X10D U/UTP LSZH Preterminated Copper Cable, 360 1100 Evolve module to 360 1100 Evolve module, 12 links EA 24 InstaPATCH Cu GigaSPEED X10D U/UTP LSZH Preterminated Copper Cable, 360 1100 Evolve module to 360 1100 Evolve module, 12 links EA 24 InstaPATCH Cu GigaSPEED X10D U/UTP LSZH Preterminated Copper Cable, 360 1100 Evolve module to 360 1100 Evolve module, 12 links EA 24 JUMPER,LSZH,TS,1.6MM,DPLX,LC/LC,YL,FT003 x100 JUMPER,LSZH,TS,1.6MM,DPLX,LC/LC,YL,FT004 x100 JUMPER,LSZH,TS,1.6MM,DPLX,LC/LC,YL,FT006 x100 JUMPER,LSZH,TS,1.6MM,DPLX,LC/LC,YL,FT008 x100 JUMPER,LSZH,TS,1.6MM,DPLX,LC/LC,YL,FT010 x100 JUMPER,LSZH,LS,1.6MM,DPLX,LC/LC,AQ,FT003 x50 JUMPER,LSZH,LS,1.6MM,DPLX,LC/LC,AQ,FT004 x50 JUMPER,LSZH,LS,1.6MM,DPLX,LC/LC,AQ,FT006 x50 JUMPER,LSZH,LS,1.6MM,DPLX,LC/LC,AQ,FT008 x50 JUMPER,LSZH,LS,1.6MM,DPLX,LC/LC,AQ,FT010 x50 360GS10E-L-DG-3FT x150 360GS10E-L-DG-5FT x150 360GS10E-L-DG-7FT x150 360GS10E-L-DG-10FT x150 360GS10E-L-DG-33FT x50 360GS10E-L-DG-50FT x50 3091B SLT C6A 4/23 U/UTP R1000 Reel 6 FGS-MSHS-F: STRAIGHT, 4X12X6 FT, FGS YEL EA 12 FGS-MSNC-F: KIT,FGS HINGED COVER,12" YEL EA 12 FGS-MFAW-F: JUNCTION,SNAP-FIT,4X12,YEL EA 25 FGS-MHRT-F: TEE,HORIZ,4X12,YEL,FGS EA 2 FGS-SHRT-F: COVER, TEE, 4X12, FGS EA 2 FGS-MHXP-F: CROSS,HORIZ,4X12,YEL,FGS EA 2 FGS-SHXP-F: COVER, CROSS, 4X12, FGS EA 2 FGS-MH9E-F: ELBOW,90 HORIZ,4X12,YEL,FGS EA 2 FGS-SH9E-F: COVER, ELBOW, 4X12, 90 HORI EA 2 FGS-MEXP-E-A/B/F: KIT, DWNSPT EXP EXIT 2 EA 16 FGS-MEXC-E-F: CVR, EXPRESS EXIT 4X12 EA 16 FGS-MSHS-A: EXTRUSION, 4X4 TROUGH, FGS EA 6 FGS-MSSC-A: KIT,COVER,4X4, SNAP-FIT, Y EA 6 FGS-MFAW-A: JUNCTION,SNAP-FIT,4X4,YEL,FG EA 16 FGS-HNTP-F-12MM: KIT,TRPZ BRKT,12FGS EA 20 FGSB-MSHS-F: 4X12 STRAIGHT EA 12 FGSB-MSNC-F: KIT,FGS HINGED COVER,12\" Y EA 12 FGSB-MHRT-F: TEE, HORIZ, BLK, FGS EA 2 FGSB-SHRT-F: COVER, TEE, 4X12, FGS, BLAC EA 2 FGSB-MFAW-F: JUNCTION,SNAP-FIT,4X12,BLK EA 2 FGSB-MDSP-F: DWNSPT,BLACK,4X12,4X6 EXIT EA 16 FGSB-SDSP-F: COVER 4"X12" DOWNSPOUT/BLAC EA 16 FGSB-MD9E-F: ELBOW,90 DOWN,4X12,BLACK,FG EA 2 FGSB-SD9E-F: COVER, ELBOW, 4X12, 90 DOWN EA 2 FGS-HNTP-F-12MM: KIT,TRPZ BRKT,12FGS EA 20 Any required conduits. Fluke test Labelling & Documentation Installation, Testing & Commissioning. عدد 14 0
خدمات احترافية OpenSource Hypervisor Container Professional services خدمة 2 تنفيذ الخدمات الأحترافية لبناء البيئات الإفتراضية لمركزي البيانات the scope of virtualization, contaierization, and cloud platforms should cover but not limited to the following : Design and deployment of Virtualization platforms Design and deployment of OpenStack platforms Design and deployment of containrization platform. Design and deployment of Automation/patch management platforms. the outcome of the above will be the following deliverables : Virtualization deployments for TWO sites وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم ""وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implementation services for the solution من الشركة الأم cloud use case validations " Validation for the containersiation solution with integration of other cloud component. Procedures document and how to-document Design and configure minimum of 3 tenants with integration with all services offered in P-cloud عدد 15 0
خدمات احترافية Professional Services SRAH IAM خدمة 2 IAM "تنفيذ الخدمات الأحترافية للحل لمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implementation services for the solution من الشركة الأم cloud use case validations Project Requirements • Prepare detailed Project Plan and identify team size, to meet the High-Level Timelines. • Track the project and share regular status with project stakeholders in due course of project. • Co-ordinate with application teams and stakeholders during implementation Documentation Requirements • IAM Requirements Definition • IAM Business Processes • Project Plan • High Level & Low-Level Design • Implementation Document • Operate/Admin Guides عدد 16 0
خدمات احترافية Professional Services SRAH PAM خدمة 2 PAM"تنفيذ الخدمات الأحترافية للحل لمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مراكز البيانات من الشركة الأم ""وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implementation services for the solution من الشركة الأم cloud use case validations عدد 17 0
خدمات احترافية Professional Services SRAH VDI خدمة 2 "تنفيذ الخدمات الأحترافية للحل لمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم Implementation""وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implementation services for the solution من الشركة الأم cloud use case validations " عدد 18 0
خدمات احترافية Professional Services SRAH Sandboxing خدمة 2 "تنفيذ الخدمات الأحترافية للحل لمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من implementation services for the solution من الشركة الأم cloud use case validations " عدد 19 0
خدمات احترافية Professional Services SRAH Diode خدمة 2 "تنفيذ الخدمات الأحترافية للحل لمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم Plan and Network implementation من الشركة الأم ""وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implementation services for the solution من الشركة الأم cloud use case validations " عدد 20 0
خدمات احترافية Elastic Monitoring Professional Services خدمة 1 The contractor should follow the best practices in deploying separate tenants inside our Elastic Cloud Enterprise (ECE) Platform. Tenant users’ use-cases may be one of the following: Elastic Observability, Elastic Security, Elastic Enterprise Search. The contractor is required to follow the below phase when is required to engage: - Phase 1: Design and Deployment The contractor should conduct a detailed discovery session with tenant users and assess the required use case, business requirements, resources availability, data model, and query requirements for use in architecture guidance. Accordingly, the contractor should decide the tenant deployment type and sizing and plan for Elastic Cluster deployment with high scalability and high availability best practices. If the required resources are available in ECE, the contractor should start the cluster deployment with the proper configuration. - Phase 2: Ingesting New Data Sources The contractor needs to identify all the required data sources that the tenant users need to integrate with Elastic. The contractor should map any integration requirements (inbound or outbound) with the Business Goals of the tenant users and identify any integrations that need to be created. The contractor is required to ingest a max of ten (10) data sources per tenant. The contractor should normalize the ingested event data in order to better analyze, visualize, and correlate the events using Elastic Common Schema - Phase 3: Integration The contractor should integrate the Elastic Cluster Deployment with other existing systems in the environment that will receive Elastic alerts. Integrations with third-party systems are needed when background tasks on Kibana server are triggered once alert conditions are met. The contractor is required to configure a max of one (1) Third-party system. - Phase 4: Custom Dashboards Creation of custom dashboards and alerts are sometimes required for certain tenants use-cases. Accordingly, the contractor is required to build a max of ten (10) Custom dashboard and 5 alerts per Customer Tenants. with total 5 customers Required Considerations ● The contractor should set up the tenant cluster for high availability. Keeping the data safe and available in case of zone-wide outage such as power loss. ● When the contractor configures the Elastic Stack, he needs to specify sensitive settings or configurations such as passwords, endpoints, etc. Rather than relying on file system permissions to protect these values, he needs to use the Elastic product keystores to securely store values for use in configuration settings. عدد 21 0
خدمات احترافية Patch management خدمة 2 "تنفيذ الخدمات الأحترافية للحل لمركزي البيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم ""وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم implementation services for the solution من الشركة الأم cloud use case validations " should be included the implementation part as in below: - 5 tenants - 250 VM's عدد 22 0
رخصة ادارة منصة السحابة CMP License and Implementation رخصة 2 • CMP solution must support 3 sites (two in Riyadh and one in Jeddah). • CMP solution Must Be High available and scalable across sites. • CMP Solution must have all API components for each service needed by customers. • CMP should adopt Open architect. • Multi-tenancy should be supported by the CMP • CMP must integrate into the global ELK cluster provided by SDAIA and the SEIM solution. • Cloud Management Platform should support all key functionalities: o Service Brokerage & Integration o The Orchestration & Provisioning o Inventory & Configuration Management o Monitoring & Operations o Metering & Billing. • The CMP should manage the cloud services supports local HA, active-active active/standby, and traditional cloud-based DR. • CMP provides users customizable dashboard services. • The vendor should provide the following deliverables: Conceptual design من الشركة الأم Software Requirements Document (SRD), also known as the Software Requirements Specification (SRS) من الشركة الأم "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم implementation services for the solution من الشركة الأم cloud use case validations " تشمل الدعم الفني و التحديثات لكامل البرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . Customizable user interface and layout with the rebranding capability Customizable to allow end users to aggregate different user-defined metric reports and dashboard Flexibility customize, add and modify patterns to support all CMP integrations needed by Sdaia عدد 23 0
خدمات احترافيةDBaaS advanced customization خدمة 200 200 man-days for advanced customization that will be consumed over the project timeline for all SDAIA requirements for integrations and onboarding of new services and new developments وثائق تصميم وتنفيذ الأنظمة الداخلية تصاميم خدمات التكامل وتنفيذها واختبارها تصميم وتنفيذ نظام تقارير الآداء توثيق وتصميم وتنفيذ لوحات التحكم الخاصة عدد 24 0
خدمات احترافيةCMP advanced customization خدمة 800 1000 man-days for advanced customization that will be consumed over the project timeline for all SDAIA requirements for integrations and onboarding of new services and new developments وثائق تصميم وتنفيذ الأنظمة الداخلية تصاميم خدمات التكامل وتنفيذها واختبارها تصميم وتنفيذ نظام تقارير الآداء توثيق وتصميم وتنفيذ لوحات التحكم الخاصة عدد 25 0
رخصة مشغل إدارة قواعد البيانات كخدمة DBaaS License and Implementation رخصة 2 The proposed software defined container storage solution must support any distribution of Kubernetes running on VMs or physical bare-metal The proposed software defined container storage solution must support OpenShift and Charmed Kubernetes The proposed software defined container storage solution must offer container life cycle management in one solution that includes the following features: - Storage management - Backup - Replication/DR - Migration - Auto-scaling - Security - Database Services The proposed software defined container storage solution must offer container Application/Data life cycle management as standard functions not customized ( not scripted ) The proposed software defined container storage solution must support SDAIA use cases/services offering such as PaaS, DBaaS, Container as a Service, and Kubernates as a Service The proposed software defined container storage solution must offer synchronous replication of data, and asynchronous replication of Kubernetes objects in order to provide rapid failover. The proposed DBaaS platform must support different types of containerized Databases such as Redis, PostgreSQL, MongoDB, ...etc The proposed DBaaS platform must offer all functionalities via RESTful APIs with authorization required at resource level The proposed DBaaS platform must have the multi-tenancy capabilities. The proposed DBaaS platform must offer a single control plane that can run on either cloud-hosted or self-hosted. The proposed DBaaS platform must provide metrics at different levels, Application-level metrics and System-level metrics The proposed DBaaS platform must support bring-your-own-key encryption in-flight and at rest The proposed DBaaS platform must support Vault to provide credential management of database users, including revocation and rotation of credentials. The proposed DBaaS platform must support Synchronous replication within a metropolitan area network and deliver zero-RPO failover The proposed DBaaS platform must support Asynchronous replication across a WAN or geographically dispersed area and deliver low-RPO failover. The proposed DBaaS platform must allow databases to be deployed across multiple Kubernetes cluster to allow application-level replication across Datacenters or multi-clouds. The proposed DBaaS platform must support application-level backups to any object store and should have the ability to restore a backup to the same database cluster, or a newly-provisioned cluster The proposed DBaaS platform must support user or team different permissions at the database deployment level, or aggregated into projects, tenants, or organizations. The proposed DBaaS platform must offer chargeback capabilities which can be hourly rate that includes all licensing costs such as database licenses The proposed DBaaS platform must have the ability to create "configuration templates" which prepopulate configuration values, such as number of database nodes, amount of memory, etc. The proposed DBaaS platform must have the ability to limit users to specific configuration templates if desired. The proposed DBaaS platform must have the ability to set quotas for users or projects. The proposed DBaaS platform must be PCI DSS and SOC compliant The proposed software defined container storage solution must offer volumes consistency groups functionality to be able to snapshot a group of volumes at the same time The proposed software defined container storage solution must offer a mechanism to take application-consistent snapshots on-demand and schedule based. The proposed software defined container storage solution must offer a consistent encryption mechanism across infrastructure and granular to the container/volume level The proposed software defined container storage solution must offer non-disruptive upgrades. • The vendor should provide the following deliverables: Conceptual design من الشركة الأم "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه من الشركة الأم و التأكد من كفاءة الاداء مع تطبيق افضل الممارسات الخاصة و معايير الامان بكل قاعدة بيانات وثيقة التصميم التفصيلي LLD) low level design ) من الشركة الأم وثيقة التصميم الشامل High level Design ( HLD) من الشركة الأم implementation services for the solution من الشركة الأم عدد 26 0
رخصة قواعد بيانات DBaaS License MongoDB Enterprise Edition رخصة 8 8 Ram Pool for MongoDB Enterprise (2 each Datacenter) MongoDB should have the below features: - Active-Passive data replication - High availability with 99.999% uptime - Backup, cluster recovery, and disaster recovery - Sync between Riyadh datacenter. - Async between Riyadh and Jeddah. - Enterprise edition - Upgrade and follow best practices for continuous improvement, continuous Analysis - of managed production environment using automated tools. - Scales horizontally using Sharding Features. - Ad hoc queries, indexing, and real time aggregation provide powerful ways to access and analyze your data - The platform should allow storing large binary files. - Support Kubernetes/OPENSHIFT - Point in Time Recovery عدد 27 0
رخصة قواعد بيانات DBaaS License PosgresSQL EDB Edition رخصة 440 PostgreSQL DB with the below features: - Active-Passive data replication - Active-Active data replication - High availability with 99.999% uptime - Backup, cluster recovery, and disaster recovery - Sync between Riyadh datacenters. - Async between Riyadh and Jeddah datacenters. - Scales horizontally using Sharding Features. - BDR (BI Directional Replication). - Enterprise edition - Support Kubernetes/OPENSHIFT - Point in Time Recovery - Sharding. عدد 28 0
رخصة DBaaS License Redis Enterprise Production رخصة 440 440 Shards of Redis (220 Per Datacenter) - Active-Passive data replication - Active-Active data replication - Enterprise grade solution for user session data - Storing copies of the most frequently used data - High availability with 99.999% uptime - Backup, cluster recovery, and disaster recovery - Sync between Riyadh datacenter. - Async between Riyadh and Jeddah. - Enterprise edition - Upgrade and follow best practices for continuous improvement, continuous Analysis - of managed production environment using automated tools. - Scales horizontally using Sharding Features. - Support adding addons. - Support Kubernetes/OPENSHIFT - Point in Time Recovery عدد 29 0
تصميم وبناء بيئة مشابهة Design and implement a Staging Preproduction environment for the Private Cloud خدمة 1 a physical small Replica design and implementation of the proposed cloud that will be the preproduction environment to test all features and upgrades prior to release تنفيذ الخدمات الأحترافية لبناء بيئة اختبار وثيقة التصميم التفصيلي LLD) low level design ) وثيقة التصميم الشامل High level Design ( HLD) وثيقة التنفيذ التفصيلي للمشروع داخل مواقع مراكز البيانات "وثيقة الفحص والتأكد من التصميم ووثيقة اختبار القبول للاعمال المنفذه test /and DVT design and validation test " implementation services for the solution cloud use case validations عدد 30 0
تدريب احترافي مستوى ابتدائي لقواعد بيانات PostgreSQL مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Foundations of PostgreSQL عدد 31 0
Advanced PostgreSQL تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Advanced PostgreSQL عدد 32 0
PostgreSQL for Developers Architects تدريب احترافي بمستوى مطور مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة PostgreSQL for Developers & Architects عدد 33 0
Foundations of EDB تدريب احترافي مستوى ابتدائي لقواعد بيانات مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Foundations of EDB عدد 34 0
Advanced EDB تدريب احترافي مستوى متقدم لقواعد بيانات مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Advanced EDB عدد 35 0
EDB for Developers Architects تدريب احترافي بمستوى مطور مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة EDB for Developers & Architects عدد 36 0
EDB Postgres Advanced Server تدريب احترافي بمستوى محترف Performance Tuning and Optimization مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة EDB Postgres Advanced Server Performance Tuning and Optimization عدد 37 0
Disaster Recovery and High Availability مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Disaster Recovery and High Availability عدد 38 0
Redis Administration تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Redis Administration عدد 39 0
Redis Development مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Redis Development. عدد 40 0
MongoDB Administration تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة MongoDB Administration عدد 41 0
MongoDB Development تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة MongoDB Development. عدد 42 0
MariaDB Standard DBA تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة MariaDB Standard DBA عدد 43 0
MariaDB Cluster تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة MariaDB Cluster عدد 44 0
MariaDB MaxScale تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة MariaDB MaxScale عدد 45 0
MariaDB Performance Tuning تدريب احترافي مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة MariaDB Performance Tuning عدد 46 0
MySQL Database Administration مقعد تدريب 14 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةقواعد البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة MySQL Database Administration عدد 47 0
20 x Red Hat OpenStack Administration I Core Operations for Cloud Operators CL110 تدريب احترافي مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Red Hat OpenStack Administration I: Core Operations for Cloud Operators (CL110) عدد 48 0
20 x Red Hat OpenStack Administration II Infrastructure Configuration for Cloud Administrators CL210 تدريب احترافي مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Red Hat OpenStack Administration II: Infrastructure Configuration for Cloud Administrators (CL210) عدد 49 0
20 x Red Hat OpenStack Administration III Networking Foundations of NFV CL310 تدريب احترافي مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Red Hat OpenStack Administration III: Networking & Foundations of NFV (CL310) عدد 50 0
Red Hat OpenShift I Containers Kubernetes DO180 تدريب احترافي للبنية التحتية للسحابة مفتوحة المصدر مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة    Red Hat OpenShift I: Containers & Kubernetes (DO180) عدد 51 0
Red Hat OpenShift Administration II Operating a Production Kubernetes Cluster DO280 تدريب احترافي للبنية التحتية للسحابة مفتوحة المصدر مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Red Hat OpenShift Administration II: Operating a Production Kubernetes Cluster (DO280) عدد 52 0
Red Hat OpenShift Administration III Scaling Kubernetes Deployments in the Enterprise DO380 ريب احترافي للبنية التحتية للسحابة مفتوحةلمصدر مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Red Hat OpenShift Administration III: Scaling Kubernetes Deployments in the Enterprise (DO380 عدد 53 0
certified Kubernates Administrator CKA تدريب احترافي للبنية التحتية للسحابة مفتوحة المصدر مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة certified Kubernates Administrator CKA عدد 54 0
certified Kubernates application development تدريب احترافي للبنية التحتية للسحابة مفتوحة المصدر مقعد تدريب 20 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالحوسبة السحابية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة certified Kubernates application development عدد 55 0
15 x SEC401 Security Essentials Bootcamp Style تدريب احترافي امن المعلومات مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالأمن السيبراني بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة SEC401: Security Essentials Bootcamp Style عدد 56 0
15 x SEC540 Cloud Security and DevOps Automation تدريب احترافي امن المعلومات مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالأمن السيبراني بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة SEC540: Cloud Security and DevOps Automation عدد 57 0
15 x certified Kubernates Security تدريب احترافي امن المعلومات مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالأمن السيبراني بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة certified Kubernates Security عدد 58 0
6 x ISC CISSP Certified Information Systems Security Professional تدريب احترافي امن المعلومات مقعد تدريب 6 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالأمن السيبراني بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة ISC)² - CISSP (Certified Information Systems Security Professional) عدد 59 0
6 x ISC CISSPISSAP Information Systems Security Architecture Professional تدريب احترافي امن المعلومات مقعد تدريب 6 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالأمن السيبراني بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة (ISC)² - CISSP-ISSAP (Information Systems Security Architecture Professional) عدد 60 0
6 x VMware Certified Professional VCP Security تدريب احترافي امن المعلومات مقعد تدريب 6 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةأمن المعلومات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة VMware Certified Professional (VCP) – Security عدد 61 0
6 x GRC governance risk and compliance GRC framework تدريب احترافي للحوكمة والالتزام مقعد تدريب 6 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةأمن المعلومات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة GRC governance, risk, and compliance (GRC) framework عدد 62 0
6 x TOGAF 92 Enterprise Architecture methodology and framework منهجية هيكل المؤسسة وإطارها تدريب احترافي مقعد تدريب 6 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالهيكلة المؤسسية بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة TOGAF® 9.2 Enterprise Architecture methodology and framework عدد 63 0
6 x Red Hat Security Linux in Physical Virtual and Cloud RH415 تدريب احترافي مقعد تدريب 6 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالأمن السيبراني بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Red Hat Security: Linux in Physical, Virtual, and Cloud (RH415) عدد 64 0
تدريب احترافي ل ادارة السحابة الخاصة تأسيسي CMP مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةادارة التطبيقات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة python fundemental عدد 65 0
تدريب احترافي ل ادارة السحابة الخاصة محترف CMP مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةادارة التطبيقات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة python master class عدد 66 0
DevOps Foundation تدريب احترافي مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةادارة التطبيقات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة DevOps Foundation عدد 67 0
DevOps Leader تدريب احترافي مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةادارة التطبيقات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة DevOps Leader. عدد 68 0
DevSecOps Foundation تدريب احترافي مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةادارة التطبيقات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة DevSecOps Foundation عدد 69 0
Infrastructure Automation With Terraform تدريب احترافي مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Infrastructure Automation With Terraform عدد 70 0
تدريب احترافي لوحدات التخزين والنسخ الاحتياطية مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة pure PEAK training Program عدد 71 0
VMware NSXT Data Center Install Configure Manage V30 تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة VMware NSX-T Data Center: Install, Configure, Manage [V3.0] عدد 72 0
VMware NSXT Data Center Design V30 تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة VMware NSX-T Data Center: Design [V3.0] عدد 73 0
Red Hat Certified Architect RHCA تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Red Hat® Certified Architect (RHCA) عدد 74 0
Cisco ACI Data Center تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Cisco ACI Data Center عدد 75 0
VMware Certified Professional 6 Network Virtualization VCP6NV تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة VMware Certified Professional 6 – Network Virtualization (VCP6-NV) عدد 76 0
Cisco Certified Design Expert CCDE تدريب احترافي مقعد تدريب 5 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Cisco Certified Design Expert (CCDE) عدد 77 0
VMware Certified Advanced Professional Data Center Virtualization Design 2021 تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة VMware Certified Advanced Professional - Data Center Virtualization Design 2021 عدد 78 0
Cloudera Developer Training for Apache Spark and Hadoop تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Cloudera Developer Training for Apache Spark™ and Hadoop عدد 79 0
CDP Cloudera Administration تدريب احترافي مقعد تدريب 15 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة CDP Cloudera Administration عدد 80 0
Ansible trainning تدريب احترافي مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Ansible trainning عدد 81 0
Data Governance تدريب احترافي مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة Data Governance عدد 82 0
DAMA Data Management تدريب احترافي مقعد تدريب 10 تقديم التدريب الخارجي والشهادة ادناه لموظفي سدايا من المهندسين واخصائي الدعم العاملين في إدارةالبنية التحتية ومراكز البيانات بمدة 5 أيام عمل او حسب المعتمد من الشركة المصنعة DAMA Data Management عدد 83 0

83 بند

جدول 2 المعدات والأجهزة - تقنية معلومات

البند العدد الفئة المواصفات وحدة القياس الرقم التسلسلي منتج من القائمة الإلزامية
اجهزة موزع Core Switch Underlay مركز بيانات الحرس الوطني الرياض 4 جهاز • The proposed SDN solution should be able to fully integrate/support with the existing NIC HSNI SDN network, using either multisite/multipod configuration • Nonblocking performance at a latency of 5 microseconds or less at 400-, 100-, 50-, 40-, 25-, 10-, and 1-Gigabit Ethernet speeds. •minimum of 70 * 100G downlink ports without any over subscription on the data plane, and the switch should support future expansion not less than 280 * 100G downlinks ports without any over subscription on the data plane by adding more fabric/data cards • highly redundant power supplies • Industry leading integrations for leading develops configuration management applications – Ansible, Chef, Puppet, SALT. Extensive Native YANG and industry standard OpenConfig model support through RESTCONF/NETCONF. • Pervasive API’s for all switch CLI functions (JSON based RPC over HTTP/HTTPs). • The proposed solution should be able to integrate the software defined DC with the software defined campus in the policy plane. • The proposed network physical fabric must support Spine/Leaf 2-tier topology, which is the characteristic of optimized DC for east/west server-to-server traffic. • The fabric architecture must be based on hardware VXLAN overlays to provide logical topologies that are abstracted from the physical infrastructure with no performance penalty • The proposed network physical fabric must support distributed default gateway on the ToR/Leaf to optimize the traffic in DC. • The proposed network physical fabric must support decouple between endpoint id and end point location. It will have the same ID when the end point moves between ToR/Leaf. • The proposed network physical fabric must support no Flooding in IP control plane like ARP/GARP inside the tenants/Fabric. • The proposed network physical fabric must support automatic physical topology discover using LLDP and show it into Controller GUI • The proposed network physical fabric must support automatic IP control plane assignment via DHCP getting from Controller. • The proposed network physical fabric must support encapsulation normalization with standard protocol like VXLAN, to support host communication to the fabric for VLAN, VXLAN and NVGRE protocols. • All the learning (MAC, IP, VTEP ID, ...) inside the fabric must be in hardware. • The proposed network physical fabric must support scale up and scale out without any service interruption. • The proposed network physical fabric must support visibility in hardware: can send the packet drops and latency metrics to Controller to show to administrator. • The proposed network physical fabric must support hardware Loadbalancing with congestion awareness (can redirect the traffic to load balance based on the congestion status inside the fabric) • The proposed network physical fabric must support prioritize the small packet inside the fabric. • The proposed spine switch must support 40Gb and 100Gb technology. • The porposed SDN solution has to be supported by the proposed openstack distribution الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني . عدد 1 0
اجهزة موزع Core Switch fixed Underlay مركز بيانات الحرس الوطني الرياض 6 جهاز • The proposed SDN solution should be able to fully integrate/support with the existing NIC HSNI SDN network, using either multisite/multipod configuration • Compact form-factor 1-Rack-Unit (1RU) spine switch that supports minimum of 6.4 Tbps of bandwidth and 4.4bpps across 32 fixed 40/100G QSFP28 ports and 2 fixed 1/10G SFP+ ports • Management ports: 2 (1 x 10/100/1000BASE-T and 1 x 1-Gbps SFP) •Redundant Power supply supports but not exceed : 750W AC [4], 1100W AC, 1100 DC or 1100W HVAC/HVDC [5] • Input voltage: 100 to 240V AC or -40V to -72V DC (min‑max), -48V to -60V DC (nominal) • Supports input voltage of 100–120V for a max output of 800W, 200–240V for a max output of 1200W. PSU redundancy is not supported when used in 100–120V •Hot-swappable fans with redundancy • Industry leading integrations for leading develops configuration management applications – Ansible, Chef, Puppet, SALT. Extensive Native YANG and industry standard OpenConfig model support through RESTCONF/NETCONF. • Pervasive API’s for all switch CLI functions (JSON based RPC over HTTP/HTTPs). • Vendor Support: 36 months 8x5xNBD • The porposed SDN solution has to be supported by the proposed openstack distribution الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني . عدد 2 0
اجهزة موزع Leaf Switch 25Gb Underlay مركز بيانات الحرس الوطني الرياض 30 جهاز • The proposed SDN solution should be able to fully integrate/support with the existing NIC HSNI SDN network, using either multisite/multipod configuration • 36 x 40/100-Gbps QSFP28 ports • supports 7.2 Tbps of bandwidth and over 2.4 bpp • Support for standards based VXLAN EVPN fabrics, inclusive of hierarchical multi-site support • Three-tier BGP architectures, enabling horizontal, non-blocking IPv6 network fabrics at web-scale. • Segment routing allows the network to forward Multiprotocol Label Switching (MPLS) packets and engineer traffic without Resource Reservation Protocol (RSVP) Traffic Engineering (TE). It provides a control-plane alternative for increased network scalability and virtualization. • Comprehensive protocol support for Layer 3 (v4/v6) unicast and multicast routing protocol suites, including BGP, Open Shortest Path First (OSPF), , Routing Information Protocol Version 2 (RIPv2), Protocol Independent Multicast Sparse Mode (PIM-SM), Source-Specific Multicast (SSM), and Multicast Source Discovery Protocol (MSDP). • Day zero automation through Power On Auto Provisioning, drastically reducing provisioning time. • Industry leading integrations for leading develops configuration management applications – Ansible, Chef, Puppet, SALT. Extensive Native YANG and industry standard OpenConfig model support through RESTCONF/NETCONF. • Pervasive API’s for all switch CLI functions (JSON based RPC over HTTP/HTTPs). • Maximum number of Longest Prefix Match (LPM) routes: 896,000 • Airflow Vent: 1 •Redundant Power supply supports but not exceed AC 1100W PSU • SDN Premier License and subscription for 3 years • Add the required transceivers for connectivity • Vendor Support: 36 months 8x5xNBD • The porposed SDN solution has to be supported by the proposed openstack distribution 2 blocks with 8 switches and 2x more switches for GPU servers الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني . عدد 3 0
اجهزة موزع Leaf Switch 100Gb Underlay مركز بيانات الحرس الوطني الرياض 8 جهاز • The proposed SDN solution should be able to fully integrate/support with the existing NIC HSNI SDN network, using either multisite/multipod configuration • 36 x 40/100-Gbps QSFP28 ports • supports 7.2 Tbps of bandwidth and over 2.4 bpp • Support for standards based VXLAN EVPN fabrics, inclusive of hierarchical multi-site support • Three-tier BGP architectures, enabling horizontal, non-blocking IPv6 network fabrics at web-scale. • Segment routing allows the network to forward Multiprotocol Label Switching (MPLS) packets and engineer traffic without Resource Reservation Protocol (RSVP) Traffic Engineering (TE). It provides a control-plane alternative for increased network scalability and virtualization. • Comprehensive protocol support for Layer 3 (v4/v6) unicast and multicast routing protocol suites, including BGP, Open Shortest Path First (OSPF), , Routing Information Protocol Version 2 (RIPv2), Protocol Independent Multicast Sparse Mode (PIM-SM), Source-Specific Multicast (SSM), and Multicast Source Discovery Protocol (MSDP). • Day zero automation through Power On Auto Provisioning, drastically reducing provisioning time. • Industry leading integrations for leading develops configuration management applications – Ansible, Chef, Puppet, SALT. Extensive Native YANG and industry standard OpenConfig model support through RESTCONF/NETCONF. • Pervasive API’s for all switch CLI functions (JSON based RPC over HTTP/HTTPs). • Maximum number of Longest Prefix Match (LPM) routes: 896,000 • Airflow Vent: 1 •Redundant Power supply supports but not exceed AC 1100W PSU • SDN Premier License and subscription for 3 years • Add the required transceivers for connectivity • Vendor Support: 36 months 8x5xNBD • The porposed SDN solution has to be supported by the proposed openstack distribution الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني . عدد 4 0
متحكم شبكة SDN Controller مركز بيانات الحرس الوطني الرياض 2 جهاز • The proposed SDN solution should be able to fully integrate/support with the existing NIC HSNI SDN network, using either multisite/multipod configuration SDN Controller with the following capabilities: •Data-model-based declarative provisioning • Application and topology monitoring and troubleshooting • Third-party integration • Layer 4 through Layer 7 (L4-L7) services • VMware vCenter and vShield • Microsoft Hyper-V, System Center Virtual Machine Manager (SCVMM), and Azure Pack • Open Virtual Switch (OVS) and OpenStack • Kubernetes, RedHat OpenShift, Docker Enterprise • Imagemanagement (spine and leaf) • Fabric inventory and configuration • Implementation on a distributed framework across a cluster of appliances • Health scores for critical managed objects (tenants, application profiles, switches, etc.) • Fault, event, and performance management • 3x Servers for SDN Controllers with the following specs: • 2x 2.1 GHz Xeon Scalable 4110/85W 8C/11MB Cache/DDR4 2400MHz • 12x 16GB DDR4-2666-MHz RDIMM/PC4-21300/single rank/x4/1.2v • 2x 2.4 TB 12G SAS 10K RPM SFF HDD (4K) • 770W power supply • Vendor Support: 36 months 8x5xNBD الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني . عدد 5 0
موزع طرفي Access Switch OOB مركز بيانات الحرس الوطني الرياض 12 جهاز 48-port 1GE data only 50CM Type 1 Stacking Cable 8 x 10GE Network Module Redundant power supplies Network Plug-n-Play Connect for zero-touch device deployment الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني . عدد 6 0
موزع Switch 10040GB مركز بيانات الحرس الوطني الرياض 4 جهاز • Unified Access Data Plane (UADP) Application-Specific Integrated Circuit (ASIC) ready for next-generation technologies with its programmable pipeline, microengine capabilities, and template-based, configurable allocation of Layer 2 and Layer 3 forwarding, Access Control Lists (ACLs), and Quality-of-Service (QoS) entries • IPv6 support in hardware, providing wire-rate forwarding for IPv6 networks • IEEE 802.1ba AV Bridging (AVB) built in to provide a better AV experience through improved time synchronization and QoS • Precision Time Protocol (PTP; IEEE 1588v2) provides accurate clock synchronization with sub-microsecond accuracy, making it suitable for distribution and synchronization of time and frequency over the network • Dual-stack support for IPv4/IPv6 and dynamic hardware forwarding table allocations, for ease of IPv4-to-IPv6 migration • Support for both static and dynamic NAT and Port Address Translation (PAT) • Scalable routing (IPv4, IPv6, and multicast) tables and Layer 2 tables • Encrypted Traffic Analytics (ETA): You benefit from the power of machine learning to identify and take actions toward threats or anomalies in your network, including malware detection in encrypted traffic and distributed anomaly detection. Additionally, ETA is able to detect vulnerable implementations in encrypted traffic • Support for AES-256 with the powerful MACsec 256-bit encryption algorithm available on all models • Switching Capacity: Up to 3.2 Tbps • Forwarding rate: Up to 1 Bpps • Total number of MAC addresses: Up to 82,000 • Support a wide range of automation features and provide robust open APIs over Network Configuration Protocol (NETCONF) and RESTCONF using YANG data models for external tools, both off-the-shelf and custom built, to automatically provision network resources. • Secure Boot technology anchors the boot sequence chain of trust to immutable hardware, mitigating threats against a system's foundational state and the software that is to be loaded, regardless of a user's privilege level. It provides layered protection against the persistence of illicitly modified firmware. • Layer 2, Routed Access • VRF, VXLAN, MPLS, mVPN • BGP, HSRP, IS-IS, BSR, MSDP, PIM SM, PIM SSM PIM-BIDIR*, IP SLA, OSPF • 32-port 40 Gigabit Ethernet with QSFP+ / 16-port 100 Gigabit Ethernet with QSFP28, with 2 650WAC- power supplies, with advance term licenses. • Vendor Support: 36 months 8x5xN الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني . عدد 7 0
موزع احمال SLoadbalancer Type 1 Management مركز بيانات الحرس الوطني الرياض 5 جهاز Intelligent Traffic Processing: S-Loadbalancer L7 requests per second: 1.8M L4 connections per second: 800K L4 HTTP requests per second: 12M Maximum L4 concurrent connections: 40M Throughput: 60 Gbps/35 Gbps L4/L7 Hardware Offload SSL/TLS: ECC†: 20K TPS (ECDSA P-256) RSA: 35K TPS (2K keys) 20 Gbps bulk encryption Hardware Compression: 20 Gbps Hardware DDoS Protection: 50M SYN cookies per second 10 Gigabit Fiber Ports (SFP+): 8 SR or LR (sold separately); Optional 10G copper direct attach 40 Gigabit Fiber Ports (QSFP+): 4 SR4/LR4 (sold separately) (QSFP+ optical breakout cable assemblies available to convert to 10G ports) Power Supply: Redundunt Power Suplly عدد 8 0
موزع احمال SLoadbalancer Type 2 Global DNS مركز بيانات الحرس الوطني الرياض 2 جهاز Intelligent Traffic Processing: S-Loadbalancer-DNS-License L7 requests per second: 1.8M L4 connections per second: 800K L4 HTTP requests per second: 12M Maximum L4 concurrent connections: 40M Throughput: 60 Gbps/35 Gbps L4/L7 Hardware Offload SSL/TLS: ECC†: 20K TPS (ECDSA P-256) RSA: 35K TPS (2K keys) 20 Gbps bulk encryption Hardware Compression: 20 Gbps Hardware DDoS Protection: 50M SYN cookies per second 10 Gigabit Fiber Ports (SFP+): 8 SR or LR (sold separately); Optional 10G copper direct attach 40 Gigabit Fiber Ports (QSFP+): 4 SR4/LR4 (sold separately) (QSFP+ optical breakout cable assemblies available to convert to 10G ports) Power Supply: Redundunt Power Suplly عدد 9 0
موزع احمال LLoadbalancer WAFaaS مركز بيانات الحرس الوطني الرياض 4 جهاز Appliances L-Loadbalancerwith Web Application firewalls and load balancing capabilities and licenses Chassis Specs: Empty chassis, as shipped (0 blades, 8 blanks, 2 Redundnat power supplies, Redundnat fan Redundnat system controllers, with 1x 10GBase-T, 1x USB 3.0, 1x serial console 2x Blades specs for each chassis: L4/L7 throughput 90/90 Gbps 3.0M L7 requests per second 1.0M L4 connections per second minimum hardware compression 60 Gbps SSL bulk throughput 50G Maximum SSL TPS 100,000 (RSA 2K Keys) 70,000 (ECDHE P-256-ECDSA) 50,000 (ECDHE P-256-RSA-2K) 4 x 100G (QSFP28) All LB appliances should be from one vendor and managed through a centerlized management with full API integration wiht CMP. الدعم الفني لكامل الاجهزة والمعدات والبرمجيات والرخص يكون لمدة 36 شهر من تاريخ التفعيل والانتهاء من عملية القبول الاولي بشكل رسمي من ممثلي مركز المعلومات الوطني بحيث يكون جاهز للخدمة . مع التزام بتوفير قطع الغيار كاملة داخل المملكة العربية السعودية خلال فترة الدعم الفني عدد 10 0
جهاز مدير عناوين IPAM tool مركز بيانات الحرس الوطني الرياض 1 جهاز 3YRs Premium Maintenance-Enterprise • Should be offered in the form VMware OVA & OpenStack QCOW2 images • Should support ideally up-to 45K DNS QPS, 300 DHCP LPS & 440K objects. • Should support 4x vNICs (MGMT, LAN1, HA & LAN2) that can be virtually connected across various virtual segments and VLANs. • Each instance should support 4x vCPUs, 32GB memory, & 250GB HDD. • Should be compatible with VMware ESXi & OpenStack KVM environments.. • The proposed IPAM solution should support advanced IPAM with automated network discovery service for virtual and physical infrastructures. • The proposed IPAM solution should support offering internal authoritative DNS & DHCP services without any extra licenses. • The proposed IPAM solution should be in the form of virtual platforms that will be deployed in SDAIA Private Cloud with network discovery and cloud automation services being redundant across 3x data-centers. • The proposed IPAM solution should support automated virtual discovery of VMs, Tenants & VPC of OpenStack & VMware cloud environments. • The proposed IPAM solution should support automated discovery of 5000 virtual-machines (VMs) & 50,000 IP addresses. • The proposed IPAM solution should offer Cloud Adapters for orchestration and integration with VMware vRO & OpenStack. • The proposed IPAM solution should offer flexible licensing that can be moved to/from HW platforms to/from virtual based platforms and vice versa. • The proposed IPAM solution should contain a dedicated reporting server covering 1x DC. • The proposed IPAM solution should contain a cloud automation server covering 3x DCs. • advanced IPAM with automated network discovery service for virtual and physical infrastructures. • The proposed IPAM solution should be capable of integrating with 3rd party eco-systems from NGFWs, VMS, NAC and SIEM solutions thru outbound API عدد 11 0
جهاز مدير عناوين IPAM tool مركز بيانات جدة 1 جهاز 3YRs Premium Maintenance-Enterprise • Should be offered in the form VMware OVA & OpenStack QCOW2 images • Should support ideally up-to 45K DNS QPS, 300 DHCP LPS & 440K objects. • Should support 4x vNICs (MGMT, LAN1, HA & LAN2) that can be virtually connected across various virtual segments and VLANs. • Each instance should support 4x vCPUs, 32GB memory, & 250GB HDD. • Should be compatible with VMware ESXi & OpenStack KVM environments.. • The proposed IPAM solution should support advanced IPAM with automated network discovery service for virtual and physical infrastructures. • The proposed IPAM solution should support offering internal authoritative DNS & DHCP services without any extra licenses. • The proposed IPAM solution should be in the form of virtual platforms that will be deployed in SDAIA Private Cloud with network discovery and cloud automation services being redundant across 3x data-centers. • The proposed IPAM solution should support automated virtual discovery of VMs, Tenants & VPC of OpenStack & VMware cloud environments. • The proposed IPAM solution should support automated discovery of 5000 virtual-machines (VMs) & 50,000 IP addresses. • The proposed IPAM solution should offer Cloud Adapters for orchestration and integration with VMware vRO & OpenStack. • The proposed IPAM solution should offer flexible licensing that can be moved to/from HW platforms to/from virtual based platforms and vice versa. • The proposed IPAM solution should contain a dedicated reporting server covering 1x DC. • The proposed IPAM solution should contain a cloud automation server covering 3x DCs. • advanced IPAM with automated network discovery service for virtual and physical infrastructures. • The proposed IPAM solution should be capable of integrating with 3rd party eco-systems from NGFWs, VMS, NAC and SIEM solutions thru outbound API عدد 12 0
خادم Rack Mount Servers VSANCEPH ready مركز بيانات الحرس الوطني الرياض 124 جهاز Rack mount Server SDS with disks, 2U chassis with 4 nodes. totaling 10 chassis and 40 servers is prefered. vendor can propose alternative rackmount chassis build without changing any technical requirements bellow. but preference will be giving to the requested build Barebone: 2U, Dual Socket , 20 DIMMs, 6x 2.5" NVMe hot-swap bays, 2200W Redundant Power Supplies with 4 nodes in each chassis Processor: [2x] 24C/48T 2.4G 185W 36M, Vendor to propose latest Intel equivalent released CPU "Memory: [16x] 64GB DDR4-3200 2Rx4 (16Gb) ECC RDIMM" Drives Boot: [2x] minimum of 240GB M.2 SATA 6Gb/s 3D TLC 22x80mm 1DWPD (Or higher specs) Drives Cache: [2x] minimum of 375G PCIe3.0x4 2.5" 15mm 30DWPD Rev1 (Or Higher specs) Drives Storage: [4x] minimum of 7.68TB NVMe PCIe4x4 2.5" 15mm SIE 1DWPD Network 10gb: [2Ports] Network 25gb: [6Ports] HBA 32gb: [2Ports] Tranceivers: [2x] 10gb sfps & [6x] 25gb sfps & [2x] 32gb sfps Each server node Power should not exceed 550W at max load. vendor certification for power required Data Center Management software per node 3-years standard warranty VMware VSAN and Red hat CEPH certified عدد 13 0
خادم Monitoring Servers مركز بيانات الحرس الوطني الرياض 6 جهاز This Hardware will be used to expand with the same hardware the current newly deployed ELK setup in SDAIA, monitoring license is out of scope Minimum server Specifications: Processor Support: Dual 2nd generation Intel® Xeon® Scalable processors with 3 UPIs up to 10.4GT/s Memory Support: 24 DIMM slots for up to 6TB ECC 3DS LRDIMM/RDIMM DDR4-2933 Expansion: 2 PCI-E 3.0 x16 and 2 PCI-E 3.0 x2 slots Drive Bays: 32 Hot-swap EDSFF Long 9.5mm Drive slots Connectivity: 2x 25Gbase SFP+ Management: Dedicated IPMI 2.0 and KVM with dedicated LAN port, Power Supply: Redundant 1600W Platinum Level Form Factor: 1U Rackmount 3 Year Hardware Warranty Minimum configuration per each server Processor: 18-Core 2.2GHz 25MB Cache. Quantity: 2, Vendor to propose latest Intel equivalent released CPU Memory: 32GB DDR4-2933 ECC RDIMM. Quantity: 24 Boot Drives: 480GB, SATA, M.2, SATA 6.0Gb/s Solid State Drive. Quantity: 2 Storage Drives: PCIe 3.1 x4 NVMe 15.3TB. Quantity: 7" عدد 14 0
خادم Monitoring Servers مركز بيانات جدة 6 جهاز This Hardware will be used to expand with the same hardware the current newly deployed ELK setup in SDAIA, monitoring license is out of scope Minimum server Specifications: Processor Support: Dual 2nd generation Intel® Xeon® Scalable processors with 3 UPIs up to 10.4GT/s Memory Support: 24 DIMM slots for up to 6TB ECC 3DS LRDIMM/RDIMM DDR4-2933 Expansion: 2 PCI-E 3.0 x16 and 2 PCI-E 3.0 x2 slots Drive Bays: 32 Hot-swap EDSFF Long 9.5mm Drive slots Connectivity: 2x 25Gbase SFP+ Management: Dedicated IPMI 2.0 and KVM with dedicated LAN port, Power Supply: Redundant 1600W Platinum Level Form Factor: 1U Rackmount 3 Year Hardware Warranty Minimum configuration per each server Processor: 18-Core 2.2GHz 25MB Cache. Quantity: 2, Vendor to propose latest Intel equivalent released CPU Memory: 32GB DDR4-2933 ECC RDIMM. Quantity: 24 Boot Drives: 480GB, SATA, M.2, SATA 6.0Gb/s Solid State Drive. Quantity: 2 Storage Drives: PCIe 3.1 x4 NVMe 15.3TB. Quantity: 7" عدد 15 0
خادم Rack Mount Servers GPU enabled مركز بيانات الحرس الوطني الرياض 4 جهاز 4U, Dual Socket P+ (LGA-4189), 32 DIMMs, 4x 3000W Redundant Power Supplies Intel® Xeon® Scalable Processor IceLake Gold ICX 6338 2P 32C/64T 2.0G 48M 11.2GT 205W, Vendor to propose latest Intel equivalent released CPU 64GB DDR4-3200 2Rx4 (16Gb) ECC RDIMM IntelD3 S4510 240GB M.2SATA 6Gb/s 3D TLC 22x80mm 1DWPD NVIDIA DELTA (HGX-2 Next) GPU Baseboard, 8 A100 40GB SXM4 2x Std LP 2-port 25G SFP28, Mellanox ConnectX-4 DataCenter Management Package (per node license) 8x MCX653106A-HDAT, CX-6 VPI,HDR, 200GbE, 2-Port, QSFP56, PCIe4x16 6x 15.36TB NVMe PCIe4x4 2.5 15mm 1DWPD 3-Years Hardware Warranty عدد 16 0
خادم Rack Mount Servers GPU enabled مركز بيانات جدة 4 جهاز 4U, Dual Socket P+ (LGA-4189), 32 DIMMs, 4x 3000W Redundant Power Supplies Intel® Xeon® Scalable Processor IceLake Gold ICX 6338 2P 32C/64T 2.0G 48M 11.2GT 205W, Vendor to propose latest Intel equivalent released CPU 64GB DDR4-3200 2Rx4 (16Gb) ECC RDIMM IntelD3 S4510 240GB M.2SATA 6Gb/s 3D TLC 22x80mm 1DWPD NVIDIA DELTA (HGX-2 Next) GPU Baseboard, 8 A100 40GB SXM4 2x Std LP 2-port 25G SFP28, Mellanox ConnectX-4 DataCenter Management Package (per node license) 8x MCX653106A-HDAT, CX-6 VPI,HDR, 200GbE, 2-Port, QSFP56, PCIe4x16 6x 15.36TB NVMe PCIe4x4 2.5 15mm 1DWPD 3-Years Hardware Warranty عدد 17 0
موزع Infini Band Access switches مركز بيانات الحرس الوطني الرياض 2 جهاز Each server will connect with 16x Infiniband Cables to Switches: ConnectX®-6 VPI adapter card, HDR IB (200Gb/s) and 200GbE, single-port QSFP56, PCIe4.0 x16, tall bracket Mellanox Technical Support and Warranty - Silver, 5 Year, for Mellanox Adapter Cards excluding VMA. VMA support requires additional VMA support 2x Cables Between the infiniband Switches Mellanox® active fiber cable, IB HDR, up to 200Gb/s, QSFP56, LSZH, black pulltab, 10m Mellanox 4 Year Extended Warranty for a total of 5 years Bronze for ACTIVE OPTICAL CABLE Mellanox® Quantum(TM) HDR InfiniBand Switch, 40 QSFP28 ports, 2 Power Supplies (AC), x86 dual core, standard depth, P2C airflow, Rail Kit MELLANOX TECHNICAL SUPPORT AND WARRANTY - SILVER, 5 YEAR, FOR QM8700 SERIES SWITCH عدد 18 0
موزع Infini Band Access switches مركز بيانات جدة 2 جهاز Each server will connect with 16x Infiniband Cables to Switches: ConnectX®-6 VPI adapter card, HDR IB (200Gb/s) and 200GbE, single-port QSFP56, PCIe4.0 x16, tall bracket Mellanox Technical Support and Warranty - Silver, 5 Year, for Mellanox Adapter Cards excluding VMA. VMA support requires additional VMA support 2x Cables Between the infiniband Switches Mellanox® active fiber cable, IB HDR, up to 200Gb/s, QSFP56, LSZH, black pulltab, 10m Mellanox 4 Year Extended Warranty for a total of 5 years Bronze for ACTIVE OPTICAL CABLE Mellanox® Quantum(TM) HDR InfiniBand Switch, 40 QSFP28 ports, 2 Power Supplies (AC), x86 dual core, standard depth, P2C airflow, Rail Kit MELLANOX TECHNICAL SUPPORT AND WARRANTY - SILVER, 5 YEAR, FOR QM8700 SERIES SWITCH عدد 19 0
جهاز Data Block Storage Appliances مركز بيانات الحرس الوطني الرياض 1 جهاز Appliances with Three Years best support. This configuration will deliver total of 6PB of Effective capacity and should not exceed 3:1x Data reduction (only Deduplication and Compression). • The solution should support scale out architecture • This proposed solution should be able to integrate with newly deployed storage solution in SDAIA(replication/management) • Total power consumption should not exceed 6.5KW per site. • 100% End-To-End NVMe. • Free Controllers upgrade. • Flat rate of support pricing. • No end of life or end of support. • All Software Licenses features included from day one. • Block Protocols: Fiber Channel, iSCSI, NVMe-FC and NVMe-oF • File Protocols: NFS and SMB/CiFS • Data Reduction (Deduplication and Compression) always on without any performance impact. • Data Encryption always on without any performanc impact. • Built-in Active Cluster and Data Protection & Replication. • Consistent high-performance and microsecond latency. • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) with local depot • Proposed support cover the non-return option for NVMe drives and controllers. The Hardware specification per site is as follow: • Dual Active/Active storage controllers. • 100% NVMe. • NVMe-oF Expansion Shelf. • 4 x 1Gb Ethernet ports for Management (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for Replication (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for iSCSi/NAS (2 per Controller) • 12 x 32Gb FC/NVMe-FC ports (6 per Controller). • Supported Protocols: FC, iSCSi, NVMe-oF(ROCE), NVMe-FC, NFS and SMB/CiFS • Redundant Power Supplies • Redundant Multispeed fans • No single point of failure and all components are hot swappable عدد 20 0
جهاز Data Block Storage Apliance مركز بيانات جدة 1 جهاز Appliances with Three Years best support. This configuration will deliver total of 6PB of Effective capacity and should not exceed 3:1x Data reduction (only Deduplication and Compression). • The solution should support scale out architecture • This proposed solution should be able to integrate with newly deployed storage solution in SDAIA(replication/management) • Total power consumption should not exceed 6.5KW per site. • 100% End-To-End NVMe. • Free Controllers upgrade. • Flat rate of support pricing. • No end of life or end of support. • All Software Licenses features included from day one. • Block Protocols: Fiber Channel, iSCSI, NVMe-FC and NVMe-oF • File Protocols: NFS and SMB/CiFS • Data Reduction (Deduplication and Compression) always on without any performance impact. • Data Encryption always on without any performanc impact. • Built-in Active Cluster and Data Protection & Replication. • Consistent high-performance and microsecond latency. • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) with local depot • Proposed support cover the non-return option for NVMe drives and controllers. The Hardware specification per site is as follow: • Dual Active/Active storage controllers. • 100% NVMe. • NVMe-oF Expansion Shelf. • 4 x 1Gb Ethernet ports for Management (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for Replication (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for iSCSi/NAS (2 per Controller) • 12 x 32Gb FC/NVMe-FC ports (6 per Controller). • Supported Protocols: FC, iSCSi, NVMe-oF(ROCE), NVMe-FC, NFS and SMB/CiFS • Redundant Power Supplies • Redundant Multispeed fans • No single point of failure and all components are hot swappable عدد 21 0
جهاز Data Object Storage Appliances مركز بيانات الحرس الوطني الرياض 1 جهاز Appliances with Three Years best support in each site. This configuration will deliver total of 10PB per site, Massively scalable and easy-to-use global data repository for unstructured data with up to 16 DC’s • Support several geo-distributed sites with geo-replication with 100+ ms WAN latency between sites • allowing integration with both existing and next-generation applications. • Total power consumption not more than 7.2KW per site for whole solution • Support deployment options on physical or virtual servers, virtual or hardware appliances, or containers • The appliance support deployment in a hybrid environment that combines appliance nodes and virtual (software-based) nodes • Support multi-tenancy for multiple storage tenant accounts to segregate the objects stored on the system by different tenants. • Support system and account management: - Management API: system installation, system administration, tenant management, maintenance tasks, and system monitoring - Tenant API: management of users, credentials, usage, and quotas • Support advanced security and encryption capabilities: - lossless compression - Full Disk encryption drives - Transport Security Layer (TSL) 1.2 and AES 256-bit encryption - Secure Hash Algorithm 2 (SHA-2) and CPU-efficient integrity protection • Metadata-based data management: - Content-aware self-healing maintains data protection even during network disruptions - Policies can be modified and applied retroactively to existing objects • Provide high availability of data storage and management functions, with integrated load balancing to optimize the data load across object storage appliances resources • Support adjusts data policies • support bucket caching • Provide advanced system monitoring • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) with local depot • Support Non-disruptive upgrade and maintenance operations. Maintain access to content during upgrade, expansion, decommission, and maintenance procedures • Must include all required licenses • The Hardware specification per appliance is as follow: - Usable disk capacity 10,605TB per 1 site for 1 replicas - Connectivity 4 x 10GbE / 4 x 25GbE / 4 x 40GbE per appliance - Redundant controllers - Support Object access protocols: Amazon S3 and OpenStack Swift - Supported NAS access protocols: CIFS, NFS, and File object duality - Redundant Power Supplies - Redundant Multispeed fans عدد 22 0
جهاز Data Object Storage Apliance مركز بيانات جدة 1 جهاز Appliances with Three Years best support in each site. This configuration will deliver total of 10PB per site, Massively scalable and easy-to-use global data repository for unstructured data with up to 16 DC’s • Support several geo-distributed sites with geo-replication with 100+ ms WAN latency between sites • allowing integration with both existing and next-generation applications. • Total power consumption not more than 7.2KW per site for whole solution • Support deployment options on physical or virtual servers, virtual or hardware appliances, or containers • The appliance support deployment in a hybrid environment that combines appliance nodes and virtual (software-based) nodes • Support multi-tenancy for multiple storage tenant accounts to segregate the objects stored on the system by different tenants. • Support system and account management: - Management API: system installation, system administration, tenant management, maintenance tasks, and system monitoring - Tenant API: management of users, credentials, usage, and quotas • Support advanced security and encryption capabilities: - lossless compression - Full Disk encryption drives - Transport Security Layer (TSL) 1.2 and AES 256-bit encryption - Secure Hash Algorithm 2 (SHA-2) and CPU-efficient integrity protection • Metadata-based data management: - Content-aware self-healing maintains data protection even during network disruptions - Policies can be modified and applied retroactively to existing objects • Provide high availability of data storage and management functions, with integrated load balancing to optimize the data load across object storage appliances resources • Support adjusts data policies • support bucket caching • Provide advanced system monitoring • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) with local depot • Support Non-disruptive upgrade and maintenance operations. Maintain access to content during upgrade, expansion, decommission, and maintenance procedures • Must include all required licenses • The Hardware specification per appliance is as follow: - Usable disk capacity 10,605TB per 1 site for 1 replicas - Connectivity 4 x 10GbE / 4 x 25GbE / 4 x 40GbE per appliance - Redundant controllers - Support Object access protocols: Amazon S3 and OpenStack Swift - Supported NAS access protocols: CIFS, NFS, and File object duality - Redundant Power Supplies - Redundant Multispeed fans عدد 23 0
جهاز MGMT Block Storage Appliances مركز بيانات الحرس الوطني الرياض 1 جهاز Appliances with Three Years best support. This configuration will deliver total of 200TB of Effective capacity and should not exceed 3:1x Data reduction (only Deduplication and Compression). • The solution should support scale out architecture • This proposed solution should be able to integrate with newly deployed • Total power consumption 1KW per site. • 100% End-To-End NVMe. • Free Controllers upgrade. • Flat rate of support pricing. • No end of life or end of support. • All Software Licenses features included from day one. • Block Protocols: Fiber Channel, iSCSI, NVMe-FC and NVMe-oF • File Protocols: NFS and SMB/CiFS • Data Reduction (Deduplication and Compression) always on without any performance impact. • Data Encryption always on without any performance impact. • Built-in Active Cluster and Data Protection & Replication. • Consistent high-performance and microsecond latency. • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) • Proposed support cover the non-return option for NVMe drives and controllers. The Hardware specification per site is as follow: Dual Active/Active storage controllers. • 100% NVMe. • NVMe-oF Expansion Shelf. • 4 x 1Gb Ethernet ports for Management (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for Replication (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for iSCSi/NAS (2 per Controller) • 8 x 32Gb FC/NVMe-FC ports (4 per Controller). • Supported Protocols: FC, iSCSi, NVMe-oF(ROCE), NVMe-FC, NFS and SMB/CiFS • Redundant Power Supplies • Redundant Multispeed fans • No single point of failure and all components are hot swappable عدد 24 0
جهاز MGMT Block Storage Arrays مركز بيانات جدة 1 جهاز Appliances with Three Years best support. This configuration will deliver total of 200TB of Effective capacity and should not exceed 3:1x Data reduction (only Deduplication and Compression). • The solution should support scale out architecture • This proposed solution should be able to integrate with newly deployed • Total power consumption 1KW per site. • 100% End-To-End NVMe. • Free Controllers upgrade. • Flat rate of support pricing. • No end of life or end of support. • All Software Licenses features included from day one. • Block Protocols: Fiber Channel, iSCSI, NVMe-FC and NVMe-oF • File Protocols: NFS and SMB/CiFS • Data Reduction (Deduplication and Compression) always on without any performance impact. • Data Encryption always on without any performance impact. • Built-in Active Cluster and Data Protection & Replication. • Consistent high-performance and microsecond latency. • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) • Proposed support cover the non-return option for NVMe drives and controllers. The Hardware specification per site is as follow: Dual Active/Active storage controllers. • 100% NVMe. • NVMe-oF Expansion Shelf. • 4 x 1Gb Ethernet ports for Management (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for Replication (2 per Controller) • 4 x 10Gb/25Gb/40Gb Ethernet ports for iSCSi/NAS (2 per Controller) • 8 x 32Gb FC/NVMe-FC ports (4 per Controller). • Supported Protocols: FC, iSCSi, NVMe-oF(ROCE), NVMe-FC, NFS and SMB/CiFS • Redundant Power Supplies • Redundant Multispeed fans • No single point of failure and all components are hot swappable عدد 25 0
جهاز Service Object Strage Appliances مركز بيانات الحرس الوطني الرياض 1 جهاز Appliances with Three Years best support in each site. This configuration will deliver total of 2PB per site, Massively scalable and easy-to-use global data repository for unstructured data with up to 16 DC’s • Support several geo-distributed sites with geo-replication with 100+ ms WAN latency between sites • allowing integration with both existing and next-generation applications. • Total power consumption not more than 7.2KW per site for whole solution • Support deployment options on physical or virtual servers, virtual or hardware appliances, or containers • The appliance support deployment in a hybrid environment that combines appliance nodes and virtual (software-based) nodes • Support multi-tenancy for multiple storage tenant accounts to segregate the objects stored on the system by different tenants. • Support system and account management: - Management API: system installation, system administration, tenant management, maintenance tasks, and system monitoring - Tenant API: management of users, credentials, usage, and quotas • Support advanced security and encryption capabilities: - lossless compression - Full Disk encryption drives - Transport Security Layer (TSL) 1.2 and AES 256-bit encryption - Secure Hash Algorithm 2 (SHA-2) and CPU-efficient integrity protection • Metadata-based data management: - Content-aware self-healing maintains data protection even during network disruptions - Policies can be modified and applied retroactively to existing objects • Provide high availability of data storage and management functions, with integrated load balancing to optimize the data load across object storage appliances resources • Support adjusts data policies • support bucket caching • Provide advanced system monitoring • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) with local depot • Support Non-disruptive upgrade and maintenance operations. Maintain access to content during upgrade, expansion, decommission, and maintenance procedures • Must include all required licenses • The Hardware specification per appliance is as follow: - Usable disk capacity 10,605TB per 1 site for 1 replicas - Connectivity 4 x 10GbE / 4 x 25GbE / 4 x 40GbE per appliance - Redundant controllers - Support Object access protocols: Amazon S3 and OpenStack Swift - Supported NAS access protocols: CIFS, NFS, and File object duality - Redundant Power Supplies - Redundant Multispeed fans عدد 26 0
جهاز Service Object Strage Apliance مركز بيانات جدة 1 جهاز Appliances with Three Years best support in each site. This configuration will deliver total of 2PB per site, Massively scalable and easy-to-use global data repository for unstructured data with up to 16 DC’s • Support several geo-distributed sites with geo-replication with 100+ ms WAN latency between sites • allowing integration with both existing and next-generation applications. • Total power consumption not more than 7.2KW per site for whole solution • Support deployment options on physical or virtual servers, virtual or hardware appliances, or containers • The appliance support deployment in a hybrid environment that combines appliance nodes and virtual (software-based) nodes • Support multi-tenancy for multiple storage tenant accounts to segregate the objects stored on the system by different tenants. • Support system and account management: - Management API: system installation, system administration, tenant management, maintenance tasks, and system monitoring - Tenant API: management of users, credentials, usage, and quotas • Support advanced security and encryption capabilities: - lossless compression - Full Disk encryption drives - Transport Security Layer (TSL) 1.2 and AES 256-bit encryption - Secure Hash Algorithm 2 (SHA-2) and CPU-efficient integrity protection • Metadata-based data management: - Content-aware self-healing maintains data protection even during network disruptions - Policies can be modified and applied retroactively to existing objects • Provide high availability of data storage and management functions, with integrated load balancing to optimize the data load across object storage appliances resources • Support adjusts data policies • support bucket caching • Provide advanced system monitoring • 24/7 support (15min SLA for SEV1, and 4hrs for HW replacement) with local depot • Support Non-disruptive upgrade and maintenance operations. Maintain access to content during upgrade, expansion, decommission, and maintenance procedures • Must include all required licenses • The Hardware specification per appliance is as follow: - Usable disk capacity 10,605TB per 1 site for 1 replicas - Connectivity 4 x 10GbE / 4 x 25GbE / 4 x 40GbE per appliance - Redundant controllers - Support Object access protocols: Amazon S3 and OpenStack Swift - Supported NAS access protocols: CIFS, NFS, and File object duality - Redundant Power Supplies - Redundant Multispeed fans عدد 27 0
موزع SAN Switches مركز بيانات الحرس الوطني الرياض 4 جهاز FC switch (48 active ports) with Three Years Support The Hardware specification per FC Swtch is as follow: 48 x 32Gb FC ports vendor to provide SFP's fully populated • Redundant Power Supplies • Redundant Multispeed fans • Rack Space is 1U • Power Specification: 300W (nominal). عدد 28 0
موزع SAN Switches مركز بيانات جدة 4 جهاز FC switch (48 active ports) with Three Years Support The Hardware specification per FC Swtch is as follow: 48 x 32Gb FC ports vendor to provide SFP's fully populated • Redundant Power Supplies • Redundant Multispeed fans • Rack Space is 1U • Power Specification: 300W (nominal). عدد 29 0
رخصة OpenStack Platform License مركز بيانات الحرس الوطني الرياض 32 رخصة IAAS platform with Unlimited Linux Operating System (license per Host as per proposed cloud servers specs by bidder) عدد 30 0
رخصة OpenStack Platform License مركز بيانات جدة 32 رخصة IAAS platform with Unlimited Linux Operating System (license per Host as per proposed cloud servers specs by bidder) عدد 31 0
رخصة Management Clutster for kuberbetes Cloud Container مركز بيانات الحرس الوطني الرياض 32 رخصة Advanced Cluster Management for Kubernetes, Highest Support (license per Host as per proposed cloud servers specs by bidder) عدد 32 0
رخصة Management Clutster for kuberbetes Cloud Container مركز بيانات جدة 32 رخصة Advanced Cluster Management for Kubernetes, Highest Support (license per Host as per proposed cloud servers specs by bidder) عدد 33 0
رخصة Management Clutster Security for kuberbetes Cloud Container مركز بيانات الحرس الوطني الرياض 32 رخصة Advanced Security for Kubernetes , Highest Support (license per Host as per proposed cloud servers specs by bidder) عدد 34 0
رخصة Management Clutster Security for kuberbetes Cloud Container مركز بيانات جدة 32 رخصة Advanced Security for Kubernetes , Highest Support (license per Host as per proposed cloud servers specs by bidder) عدد 35 0
رخصة Tools and components to develop and maintain cloudnative applications مركز بيانات الحرس الوطني الرياض 6 رخصة PAAS Runtimes support (64 Cores or 128 vCPUs) عدد 36 0
رخصة Tools and components to develop and maintain cloudnative applications مركز بيانات جدة 6 رخصة PAAS Runtimes support (64 Cores or 128 vCPUs) عدد 37 0
رخصة Software defined Storage license مركز بيانات الحرس الوطني الرياض 1 رخصة Software defined storage solution with up to 10PB and 400 Physical nodes عدد 38 0
رخصة Software defined Storage license مركز بيانات جدة 1 رخصة Software defined storage solution with up to 10PB and 400 Physical nodes عدد 39 0
رخصة Cloud Container Platform License مركز بيانات الحرس الوطني الرياض 10 رخصة PAAS platform with Unlimited Linux Operating System (2 sockets, 32 cores) عدد 40 0
رخصة Cloud Container Platform License مركز بيانات جدة 10 رخصة PAAS platform with Unlimited Linux Operating System (2 sockets, 32 cores) عدد 41 0
رخصة Cloud Container registry مركز بيانات الحرس الوطني الرياض 2 رخصة Image registry platform عدد 42 0
رخصة Cloud Container registry مركز بيانات جدة 2 رخصة Image registry platform عدد 43 0
جدار ناري NextGenerationFirewall LFirewall Type1 مركز بيانات الحرس الوطني الرياض 8 جهاز The proposed firewall solution must support a centralized management server for enterprise management of the Type-1 firewall devices and have no feature parity from the location management GUI. Vendor to integrate the Centralized Managent with the proposed CMP The proposed firewall must be modular design that enables us to increase performance as needed in the future. At least 115 Gigabits per second of application firewall throughput utilizing 64K HTTP transactions and 190 Gigabits if it is fully populated. At least 70 Gigabits per second for threat prevention protection utilizing 64K HTTP transactions and 145 Gigabits if it is fully populated. The NGFW firewalls shall support at least 19 million concurrent sessions and at least 700,000 new sessions per second and 100 million concurrent sessions, 3.5 million sessions per second if it is fully populated. VPN client license minimum 500 users only in two firewalls VPN client security posture check license minimum 500 users only in two firewalls Vendor must propose the hardware and number of cards that meet this requirements swappable line cards to enable expandability as needs grow and can provide up to 390 Gbps of throughput when fully loaded cards Must have three data network cards on each firewall Vendor must propose the Centralized management for Type-1 firewalls part of the proposal and CMP integration and automation within scopeProposed Firewall must be recognized as leader in Gartner Enterprise Network Firewall Report for 2019, 2018, 2017,2016, 2015, 2014 and 2013 consecutively. Product, and licenses must come with 3Y Support 24x7 highest Support. The bidder should propose a centralized management to manage the firewalls and integrate with the proposed CMP through API Proposed firewalls must support all functions are working in parallel when all features are enabled including Application identification, User identification and Threat Prevention (IPS, Anti-Virus, and Anti-Spyware) and URL Filtering. Proposed Firewall Solution must support File blocking feature to alert or block on upload and/or download any file type, this feature must be enabled without any additional license. The proposed firewall should have high performance modular firewall designed for large enterprise and carrier class environments. The multi-blade chassis has hot- A dedicated log card handles all log processing and uses two pairs of drives, each pair in a RAID 1 configuration, to provide two terabytes of log storage. t prevention and modern malware protection. The proposed firewalls shall support at least 30,000,000 million concurrent sessions and at least 620,000 new sessions per second. The proposed firewalls shall come with (8) 1Gbps or 10Gbps based on the transever. and upto (4) 40 /100 Gbps The proposed firewalls must allow policy rule creation for application identification, user identification, threat prevention, Uniform Resource Locator (URL) filtering, traffic management Quality of Service (QoS) per policy and scheduling in a single unified rule and not in multiple data-entry locations in the management console. The proposed firewalls shall have the hardened Operating System (OS) and built as a firewall appliance (i.e. not on generic server hardware) and shall handle traffic in a single pass stream-based manner with all features turned on. It shall be optimized for layer 7 application level content processing and have special Application-Specific Integrated Circuit (ASIC) to handle signature matching and processing in a single pass parallel processing architecture. The proposed solution must Support Clientless SSL VPN. Dedicated High Availability ports to provide full hardware redundancy in an active/passive or active/active configurations. The proposed firewalls must allow policy rule creation for application identification, user identification, threat prevention, Uniform Resource Locator (URL) filtering, traffic management Quality of Service (QoS) per policy and scheduling in a single unified rule and not in multiple data-entry locations in the management console. It must be optimized for layer 7 application level content processing and have a special processing unit to handle signature matching and processing in a single pass parallel processing architecture. The proposed firewalls must be administered locally on the appliance even if centralized management is used. The proposed firewalls must support multiple logically separated virtual systems or contexts on a physical firewall. The proposed firewalls must support policy based Network Address Translation (NAT) and Port Address Translation (PAT) and be able to operate in routing/NAT mode. The proposed firewalls must support Denial of Service (DoS) and fragmented packet Transmission Control Protocol (TCP) reassembly, brute force attack, “SYN cookie”, “IP spoofing” and malformed packet protection. "The proposed firewall must support credential phishing prevention to identify and prevent in-progress phishing attacks by controlling sites to which users can submit corporate credentials based on the site’s URL category. This feature must integrate with User identification (group mapping or user mapping, depending on which method you choose to detect credentials) to enable the firewall to detect when users are attempting to submit their corporate username and or username and password and block the submission" "The proposed firewall must provide malicious IP address feeds that can be used to secure our network from known malicious hosts on the Internet. The firewall must provide two feeds: - Known malicious IP addresses —Contains IP addresses that the firewall vendor has verified as malicious. - High risk IP addresses —Contains malicious IP addresses from threat advisories issued by trusted third-party organizations." The proposed firewall must support Data filtering features that work with third- party, endpoint DLP solutions that populate file properties to indicate sensitive content, enabling the firewall to enforce DLP policy. The proposed solution must support external dynamic lists for URLs, domain names and IP addresses and use these lists directly in the policy enforcement (allow/deny) without the need of committing the configuration The proposed firewall must integrate with an external dynamic list of IP addresses, domains, or URLs hosted on an external web server. Administrators can configure the firewall to periodically import an external dynamic list and block or allow traffic based on its contents. The firewall must provide more visibility into the contents of the external dynamic list and the list entries currently used in policy. External dynamic lists must give administrators the flexibility to choose list entries to exclude before using a list to enforce policy. The firewall must support authentication measures to use external dynamic lists more securely. The proposed solution must function as Security Assertion Markup Language (SAML) 2.0 service providers to enable single sign-on and single logout for end users and for administrators. The SAML must enhance the user experience by enabling a single, interactive login to provide automatic access to multiple authenticated services that are internal or external to our organization. The proposed firewall must be able to protect critical resources from attackers using authentication policy to ensure all end users authenticate when they access critical resources. This feature should support the option of using Multi-factor Authentication services (MFA) to require users to authenticate when accessing any critical assets in the network. The proposed solution must support MFA by integrating directly with several MFA platforms (Duo v2, Okta Adaptive, and PingID) and integrating with SDAIA MFA platform. The proposed firewalls must support 802.1Q Virtual Local Area Networks (VLANs) tagging (in tap, transparent, layer 2 and layer 3). The proposed firewalls shall support dual IPv4 and IPv6 stacks application control and threat inspection support in The proposed firewall must support Transparent deployment with no MAC address distribution The proposed firewall must support L2, L3 Interfaces at the same time using single virtual system The proposed firewalls must support standards based link aggregation (IEEE 802.3ad) to achieve higher bandwidth. The proposed firewalls must support logical Ethernet sub-interfaces tagged and untagged. The proposed firewalls must support static, Routing Information Protocol version 2 (RIPv2), Open Shortest Path First (OSPF) and Border Gateway Protocol version 4 (BGPv4) routing protocols. The proposed firewalls must support policy based forwarding based on zone, source or destination address, source or destination port, application and Active Directory (AD)/ Lightweight Directory Access Protocol (LDAP) Remote Authentication Dial-In User Service (RADIUS) user or user groups. The proposed firewalls must support Domain Name System (DNS) proxy and Dynamic Host Configuration Protocol for IPv6 (DHCPv6) relay The proposed firewalls must support IPv6 routing for virtual routers. The proposed firewalls must support in-box logging and reporting mechanism to generate comprehensive reports like “but not limited to” (User Activity Reports, Top Applications, Top Attackers, Top victims, Applications running in port 80…) The proposed firewall must store reports on HDD and have the ability to schedule PDF report generation and send it over email The proposed firewall solution must be capable of detecting link and path failure in addition to device failure The proposed firewalls must synchronize all sessions, decryption certificates, all VPN security associations, all threat and application signatures, all configuration changes and Forwarding Information Base (FIB) tables for HA The proposed firewall solution must support a centralized management server for enterprise management of the firewall devices and have no feature parity from the location management GUI. The proposed reporting management system must be capable of allowing updating of the latest signatures update manually or automatically. Rich reports must be generated based on application, users and threats or in any combination. The management server must provide the ability to generate and deploy numerous policies to multiple firewalls through intuitive policy management user interface. The management server must support report generation on a manual ad-hoc or schedule (daily, weekly, monthly, etc) basis. The logs from the management server must allow for archiving and backup of configurations and historical logs to tapes or similar devices. The proposed firewall must be able to trigger an action or initiate a workflow on an external HTTP-based service when a log is generated on the firewall. This will be used to better integrate between the firewall and IT infrastructure. The firewall must be able to send an HTTP-based API request directly to a third-party service to trigger an action based on the attributes in a firewall log. The proposed firewalls must support network traffic classification, which identifies applications across all ports irrespective of port/protocol/evasive tactics. The proposed firewalls must have multiple mechanisms for classifying applications and application identification technology based upon Intrusion Prevention System (IPS) or deep packet inspection. The proposed firewalls must include a searchable list of currently identified applications with explanation and links to external sites for further clarification. The proposed firewalls must warn the end-user with a customizable page when the application is blocked. The proposed firewalls must support user-identification allowing AD, LDAP, RADIUS groups, or users to access a particular application, while denying others. The proposed firewalls must support URL filtering/categorization and have databases stored locally on the appliance. The proposed firewalls must support logs populated with end user activity reports for site monitoring within the local firewall. The proposed firewalls must support URL filtering policies by AD/LDAP user, user group, machines and IP address/range. The proposed firewalls must support file identification and control by signature and not file extensions. The proposed firewalls must unpack zipped file for packet inspection. The proposed firewalls must populate and correlate all logs with user identity (traffic, IPS, URL, data, etc) without any additional products or modules in real- time. The proposed firewalls must be able to identify, decrypt and evaluate SSL/SSH traffic in an outbound and inbound connection. The proposed firewalls must be able to decrypt in transparent, layer 2 and layer 3 modes. The proposed firewall must support forwarding copy of SSL Decrypted traffic to external device The proposed firewalls must support automated signature generation for discovered malware. The proposed firewalls must support in-line control of malware infection. and command/control traffic. The proposed modern malware prevention solution must support files exchanged over Web, Email, and file sharing traffic. The proposed Firewall must support IoT security by collecting metadata to detect and identify devices on your network and obtain recommendations on how to secure them so you can know what devices are connecting to your networks and use them as match criteria to create adaptive device-based policy rules. The proposed firewall should support regular expression (regex) syntax and shorter data patterns. The proposed firewall must support DNS security with the ability to implement granular access control to different categories of domains based on the risk that these domains pose to the organization. The proposed firewall must support machine learning on the dataplane to analyze web page content to determine if it contains malicious JavaScript or is being used for credential phishing. The proposed firewall must have the capability to block compromised devices from the network by allowing administrators to track compromised devices using unique attributes, such as the hardware serial number of the device and unique host information. The proposed firewalls must support horizontal scalability of perfor عدد 44 0
جدار ناري NextGenerationFirewall MFirewall Type2 مركز بيانات الحرس الوطني الرياض 4 جهاز Each NGFW physical appliance should provide 45 Gbps Threat Protection throughput.. Each NGFW physical appliance should provide minimum of 50 Gbps SSL Inspection Throughput Each NGFW physical appliance must have 8x 100GE QSFP28 / 40GE QSFP+ Each NGFW physical appliance must have 18x 25GE SFP28 / 10GE SFP+ / GE SFP slots Each NGFW physical appliance must support of 7 Million or more new TCP connections per second. Each NGFW physical appliance must support of 300 million or more concurrent connections. The solution should be deployed in cluster Active/Active mode without any limitation. The proposed solution should be integrated with any authentication and identification platform and support at minimum; Active Directory, LDAP, RADIUS, TACACS+. The firewall must be a Next Generation firewall that includes features like Application ID, User ID, DoS protection, Load balancing as basic and not as an add-on license or subscription. The proposed licenses should include Antivirus and Intrusion Prevention System from same vendor The proposed firewall solution must support a centralized management server for enterprise management of the firewall devices and have no feature parity from the location management GUI. Vendor to integrate the Centralized Managent with the proposed CMP Vendor must propose the Centralized management for Type-2 firewalls part of the proposal and CMP integration and automation within scope Product, and licenses must come with 3Y Support 24x7 highest Support. عدد 45 0
جدار ناري NextGenerationFirewall Management SFirewall Type1 مركز بيانات الحرس الوطني الرياض 4 جهاز The proposed firewall solution must support a centralized management server for enterprise management of the firewall devices and have no feature parity from the location management GUI. The proposed reporting management system must be capable of allowing updating of the latest signatures update manually or automatically. Rich reports must be generated based on application, users and threats or in any combination. The management server must provide the ability to generate and deploy numerous policies to multiple firewalls through intuitive policy management user interface. The management server must support report generation on a manual ad-hoc or schedule (daily, weekly, monthly, etc) basis. The logs from the management server must allow for archiving and backup of configurations and historical logs to tapes or similar devices. The proposed firewall must be able to trigger an action or initiate a workflow on an external HTTP-based service when a log is generated on the firewall. This will be used to better integrate between the firewall and IT infrastructure. The firewall must be able to send an HTTP-based API request directly to a third-party service to trigger an action based on the attributes in a firewall log. The proposed firewalls must support network traffic classification, which identifies applications across all ports irrespective of port/protocol/evasive tactics. The proposed firewalls must have multiple mechanisms for classifying applications and application identification technology based upon Intrusion Prevention System (IPS) or deep packet inspection. The proposed firewalls must include a searchable list of currently identified applications with explanation and links to external sites for further clarification. The proposed firewalls must warn the end-user with a customizable page when the application is blocked. The proposed firewall solution must support a centralized management server for enterprise management of the Type-1 firewall devices and have no feature parity from the location management GUI. Vendor to integrate the Centralized Managent with the proposed CMP Vendor must propose the Centralized management for Type-1 firewalls part of the proposal and CMP integration and automation within scope عدد 46 0
جهاز ESB Hardware base مركز بيانات الحرس الوطني الرياض 36 جهاز Rackmount Server with following specs WIO 1U, 4x 3.5 SATA, 2x GbE 2x Intel® Xeon® Gold 6240R Processor 24-Core 2.4GHz, Vendor to propose latest Intel equivalent released CPU 12x 16GB DDR4 1.2V 2933 ECC REG 2x Intel S4510 240GB, SATA 6Gb/s, 3D, TLC 2.5" 1DWPD, HF,RoHS 2port 32Gb LCSFP+ Emulex LPE32002-M2 Fibre Channel, Gen3 x8 LP 3x 2 port 25GbE SFP28 Intel XXV710, Gen3 x8 LP LSI 3108 SAS RAID, 16HDD, 8 internal 12Gb ports, RAID 0,1,5,6,10,50,60, AOM x16 MiniSAS HD to 4 SATA, 12Gb/s, 75/75/90/90cm, 75cm SB, 28/30AWG 2.5" HDD TRAY IN 4TH GENERATION 3.5" HOT SWAP TRAY DataCenter Management Package (per node license) 3-years standard warranty عدد 47 0
جهاز SDN with Distributed L7 Firewall with Production SupportSubscription 3 years مركز بيانات الحرس الوطني الرياض 72 جهاز Edge Nodes: service appliances dedicated to running centralized network services. They can be instantiated as a bare metal appliance or in virtual machine form factor. They are grouped in one or several clusters, representing a pool of capacity; Required Edge Services: Support a multi-tiered and multi-tenant routing model with logical separation between different gateways Scale-out routing with ECMP (Active-Active) failover (static routing / BGP / MP-BGP/OSPF) Virtual Routing and Forwarding (VRF-lite), Complete data plane isolation among tenants with a separate routing table, NAT and edge firewall support in each Network Address Translation NAT (Source NAT, Destination NAT, NAT N:N, Stateless NAT, NAT Logging, NAT64) Provides both DHCP relay and DHCP server functionality Gateway Firewall, Stateful firewalling up to Layer 7 (including app identification and distributed FQDN allow listing) Gateway Intrusion Detection and Prevention IDS/IPS Advanced Threat Analyzer, for Anti-Malware TLS Inspection support for both Inbound and Outbound Traffic Site-to-site (IPSec VPN) and Layer 2 VPN (L2 VPN) capabilities Software L2 Bridging to Physical Environments Leverage the Data Plane Development Kit (DPDK), providing low latency, high bandwidth and scalable traffic forwarding performance. Support Active-Active high availability deployment and multi-site high availability RESTful API based on JSON for integration with P-Cloud cloud management platforms, DevOps automation tools Native operations capabilities such as central CLI, traceflow, overlay logical SPAN and IPFIX to troubleshoot and proactively monitor the virtual network infrastructure Scalability up to 320 System Wide Edge Nodes and up to 160 Edge Clusters under one management domain, and have the ability to scale and federate management domains عدد 48 0
جهاز Gateway Firewall with Threat Prevention Virtual Edge Per Core 3 years مركز بيانات الحرس الوطني الرياض 960 جهاز Network virtualization and security platform that enables the virtual cloud network, a software-defined approach to networking that extends across data centers Gain consistent management of networking and security policies independent of physical network topology within and across data centers Obtain detailed application topology visualization, automated security policy recommendations and continuous flow monitoring Centrally managed distributed L2 switching services that are kernel-level integrated into the hypervisor host architecture Centrally managed distributed L3 routing services that are kernel-level integrated into the hypervisor host architecture Centrally managed distributed load balancing services that are kernel-level integrated into the hypervisor host architecture Dynamic routing services (e.g. OSPF, BGP) Should support SNAT and DNAT Should support VPN services (e.g. IPSEC, SSL-VPN, L2-VPN) Should use different replication types: Multicast or Hybrid or Unicast (not only Multicast replication) Centrally managed distributed L2-L4 stateful firewall that is kernel-level integrated into the hypervisor host architecture عدد 49 0
جهاز Distributed Advanced Load Balancer Addon with WAF 3 years مركز بيانات الحرس الوطني الرياض 80 جهاز OWASP Top 10 attack protection including HTTP validation, injection, data leakage protection, automated attack blocking and application specific security Rate-limiting per app to limit L3/L4 and L7 traffic based on parameters such as Client IP, URL and Path. Acceptlist rules that allow bypassing WAF with known good sources. E.g: Allow DAST scanner IPs from WAF inspection, to exclude internal IP addresses from WAF inspection or to bypass WAF for all POST requests. Signatures protection against known threats through a negative security approach by analyzing every part of the incoming and outgoing requests against SQLi, XSS and other threats based on Core Rule Set (CRS). Positive Security Model rules define allowed application behavior and can be created automatically by the learning engine through sampling acceptlist traffic or manually Guided false-positive mitigation with customizable paranoia levels that control the strictness of the policy based on the logs and analytics. Client Validation: Authentication, Two Factor Authentication Bot Detection, IP Reputation and GeoIP blocking Automation; Full RESTful API, SDK Python / Go, Ansible, Terraform etc.. Per-Tenant or Per-app deployment for precision protection of specific tenant/ applications with different security policy levels while ensuring tenant/application performance. Application analytics for WAF events based on historical trend information and real-time visibility into ongoing operations, application behavior analysis, and attack patterns. On-demand autoscaling to elastically scale the number of WAF instances and application servers to handle unpredictable traffic without impacting performance. Ability to build clusters of up to a 400 WAF engines managed from a central management point for all configuration, troubleshooting, upgrade/downgrade, and provisioning functions Support Distributed architecture, Central control and policy management for distributed pool of WAF resources. Ability to Run Active/Active/N The Requested Software WAF Solution should support 1000 WAF HTTPs Request per Second and scalable to 30000 WAF HTTPs RPS per tenant per single appliance عدد 50 0
جهاز ESB Hardware platform licenses مركز بيانات الحرس الوطني الرياض 72 جهاز Virtualization software shall be the market Leader for x86 Server Virtualization Infrastructure Virtualization software must be the same as the existing hypervisor implemented in NIC. Virtualization software shall have the capability to create Virtual machines with up to 768 virtual processors and 24 TB virtual RAM in virtual machines for all the guest operating system supported by the hypervisor when using version7.0U1 with HW version 18. Virtualization software should support live Virtual Machine migration from one physical host to another and between virtual switches with enhanced CPU compatibility and without the need for shared storage. Virtualization software should perform live migration of virtual machines’ files from one storage array to another without any Virtual Machine downtime. It should support this migration from one storage protocol to another (ex. FC, iSCSI, NFS, DAS) عدد 51 0
جهاز IAM مركز بيانات الحرس الوطني الرياض 1 جهاز Licence BOQ: 500 Employees / Users. for external users part of SARH IdentityIQ Compliance Manager IdentityIQ LifeCycle Manager IdentityIQ Password Manager Integration Module for PAM Integration Module for Oracle ERP SSO / MFA Project Governance 3 year support IAM installation , configuration and onboarding of 10 application SSO/MFA installation , configuration and onboarding of 10 application • Centralized on-premise deployment of Identity Access Governance (IAG) and Single Sign On and Multi Factor Authorization for approximately 500 Active Users. • Provisioning and SSO – MFA Integrations with 40 Infrastructure Applications and Business Applications • Test, Production and DR environment to be set up. Instance in production to be in HA mode. IAM Planning and Roadmap • Application Assessment and Identification of 40 Critical Applications • Business Process Analysis – Current State and Desired State IAM Implementation • Building an Identity Warehouse o Aggregate Identity Data from Authoritative Sources and Create Identities o Aggregate Accounts Data from all systems o Single View for a User showing all his accounts, entitlements, roles, policy violations, history and risk score • Clean-Up of Users/Accounts in Target Systems o Correlate/Link all Accounts for a user in target systems with his Identity Profile in Identity Warehouse o Tag/Correlate all Privileged Accounts with their actual owners/identities in Identity Warehouse o Tag all Service Accounts to avoid any accident de-provisioning to Service Accounts o Provide a report for all Orphan Accounts for the clean-up/closure • Building an Entitlement Catalog o Aggregate all Entitlements from target systems into a Catalog o Provide flexibility to add Ownership, Description, Tags etc. in an Entitlement Data o Provide flexibility to add a requestable/non-requestable flag to an entitlement • Joiner Process o Provide a Joiner Process to automatically provision basic access for users as soon as they are Hired in HR o Joiner Process should also add extra privileges to a user as per his Job Title, Location, Job Group, Department etc. o Joiner Process should distribute the AD password to user on his cell phone or manager email address o Joiner Process should also send required notifications or create tickets in external 3rd party systems if required • Mover Process o A Mover Process should be executed as soon as a user is transferred from current position/location/department to another o User's existing accesses (as per his role) should be removed and new accesses (as per his job/location/department etc.) should be granted o An automatic review should be executed to review his existing extra accesses by sending a review to his new manager/application owners o Mover process should also send extra notifications, create tickets etc. if required • Leaver Process o A Leaver Process should be executed as soon as a user is terminated in HR o All existing accounts of user should be disabled o All existing entitlements and roles of user should be removed o Delete Accounts in target systems after a specific time of Disable • Automatic Provisioning / De-Provisioning o Automatic Provisioning / De-Provisioning should be provided with all target systems to avoid any manual intervention related to Users Accesses • Access Request Management o A Self-Service Interface should be provided to request Roles and Entitlements for target systems o A dynamic approval mechanism should be configured as per company approval process o Managers/Approvers should be notified via email and an interface must be provided to Approve/Reject an "Access Request" o An automatic provisioning of requested access should happen in target system after all the approvals are completed • Policy Checking o SOD or other IT Policies related to User's Accesses should be checked during requesting a new access (Preventive Policy Violation) o For existing data in systems, Policy Violations should be scanned and highlighted for any violent access (Detective Policy Violation) • Access Review o Access Review Processes should be provided to comply with local/global regulations o Access Review Process should be provided for Manager Access Review, Application Owner Access Review and Role/Entitlement Owner Access Review o Access Review Process should be configured to send automatic reminders and escalations to achieve maximum response from managers o An automatic revocation should be initiated in target systems in a result of rejected accesses as part of review • Analytics and Reporting o Reports should be provided for Certifications, Access Requests, Policy Violations, Risky Users, Users' and their Accesses etc o Key Reports should be scheduled to execute automatically and send vial email to stakeholders o An Analytics Engine should be provided to run Dynamic/Real-Time Queries to analyze User's Accesses and get Ad-Hoc Reports o Reports should be available to download in PDF/CSV format for external distribution • Contractor's Management o Process to Create Contractors/Contingent Workers with a request and approval process (Joiner for Contractors) o Process to Update Contractors o Automatic (as per end date) leaver process • Auditing o All actions related to change in user's access, configurations, requests, login/logouts etc. should be recorded in the form of Audit Events o An interface should be provided to query Audit Events o An interface should be provided to query Existing Requests, Approvals, Certifications, Entitlements etc. o Existing Snapshots of User's Access should be recorded and keep available for Audit Queries • Password Management o Synchronize the Active Directory Password to all other systems which are non-AD authenticated o Provide Self Service Password Reset and Forget Password feature • Systems in Scope o 10 key/critical integrations will be in scope including PAM Integration, Active Directory, Exchange and Oracle ERP. عدد 52 0
جهاز IAM مركز بيانات جدة 1 جهاز Licence BOQ: 500 Employees / Users. for external users part of SARH IdentityIQ Compliance Manager IdentityIQ LifeCycle Manager IdentityIQ Password Manager Integration Module for PAM Integration Module for Oracle ERP SSO / MFA Project Governance 3 year support IAM installation , configuration and onboarding of 10 application SSO/MFA installation , configuration and onboarding of 10 application • Centralized on-premise deployment of Identity Access Governance (IAG) and Single Sign On and Multi Factor Authorization for approximately 500 Active Users. • Provisioning and SSO – MFA Integrations with 40 Infrastructure Applications and Business Applications • Test, Production and DR environment to be set up. Instance in production to be in HA mode. IAM Planning and Roadmap • Application Assessment and Identification of 40 Critical Applications • Business Process Analysis – Current State and Desired State IAM Implementation • Building an Identity Warehouse o Aggregate Identity Data from Authoritative Sources and Create Identities o Aggregate Accounts Data from all systems o Single View for a User showing all his accounts, entitlements, roles, policy violations, history and risk score • Clean-Up of Users/Accounts in Target Systems o Correlate/Link all Accounts for a user in target systems with his Identity Profile in Identity Warehouse o Tag/Correlate all Privileged Accounts with their actual owners/identities in Identity Warehouse o Tag all Service Accounts to avoid any accident de-provisioning to Service Accounts o Provide a report for all Orphan Accounts for the clean-up/closure • Building an Entitlement Catalog o Aggregate all Entitlements from target systems into a Catalog o Provide flexibility to add Ownership, Description, Tags etc. in an Entitlement Data o Provide flexibility to add a requestable/non-requestable flag to an entitlement • Joiner Process o Provide a Joiner Process to automatically provision basic access for users as soon as they are Hired in HR o Joiner Process should also add extra privileges to a user as per his Job Title, Location, Job Group, Department etc. o Joiner Process should distribute the AD password to user on his cell phone or manager email address o Joiner Process should also send required notifications or create tickets in external 3rd party systems if required • Mover Process o A Mover Process should be executed as soon as a user is transferred from current position/location/department to another o User's existing accesses (as per his role) should be removed and new accesses (as per his job/location/department etc.) should be granted o An automatic review should be executed to review his existing extra accesses by sending a review to his new manager/application owners o Mover process should also send extra notifications, create tickets etc. if required • Leaver Process o A Leaver Process should be executed as soon as a user is terminated in HR o All existing accounts of user should be disabled o All existing entitlements and roles of user should be removed o Delete Accounts in target systems after a specific time of Disable • Automatic Provisioning / De-Provisioning o Automatic Provisioning / De-Provisioning should be provided with all target systems to avoid any manual intervention related to Users Accesses • Access Request Management o A Self-Service Interface should be provided to request Roles and Entitlements for target systems o A dynamic approval mechanism should be configured as per company approval process o Managers/Approvers should be notified via email and an interface must be provided to Approve/Reject an "Access Request" o An automatic provisioning of requested access should happen in target system after all the approvals are completed • Policy Checking o SOD or other IT Policies related to User's Accesses should be checked during requesting a new access (Preventive Policy Violation) o For existing data in systems, Policy Violations should be scanned and highlighted for any violent access (Detective Policy Violation) • Access Review o Access Review Processes should be provided to comply with local/global regulations o Access Review Process should be provided for Manager Access Review, Application Owner Access Review and Role/Entitlement Owner Access Review o Access Review Process should be configured to send automatic reminders and escalations to achieve maximum response from managers o An automatic revocation should be initiated in target systems in a result of rejected accesses as part of review • Analytics and Reporting o Reports should be provided for Certifications, Access Requests, Policy Violations, Risky Users, Users' and their Accesses etc o Key Reports should be scheduled to execute automatically and send vial email to stakeholders o An Analytics Engine should be provided to run Dynamic/Real-Time Queries to analyze User's Accesses and get Ad-Hoc Reports o Reports should be available to download in PDF/CSV format for external distribution • Contractor's Management o Process to Create Contractors/Contingent Workers with a request and approval process (Joiner for Contractors) o Process to Update Contractors o Automatic (as per end date) leaver process • Auditing o All actions related to change in user's access, configurations, requests, login/logouts etc. should be recorded in the form of Audit Events o An interface should be provided to query Audit Events o An interface should be provided to query Existing Requests, Approvals, Certifications, Entitlements etc. o Existing Snapshots of User's Access should be recorded and keep available for Audit Queries • Password Management o Synchronize the Active Directory Password to all other systems which are non-AD authenticated o Provide Self Service Password Reset and Forget Password feature • Systems in Scope o 10 key/critical integrations will be in scope including PAM Integration, Active Directory, Exchange and Oracle ERP. عدد 53 0
جهاز PAM مركز بيانات الحرس الوطني الرياض 1 جهاز Appliance 2 VM-Subscription 3 Years / for external users part of SARH Per Asset 3500 Subscription 3 Years Training for 5 peoples عدد 54 0
جهاز PAM مركز بيانات جدة 1 جهاز Appliance 2 VM-Subscription 3 Years / for external users part of SARH Per Asset 3500 Subscription 3 Years Training for 5 peoples عدد 55 0
جهاز File Sandboxing مركز بيانات الحرس الوطني الرياض 2 جهاز Performance Up to 70,000 Files per day Network Interface Ports4x 1GigE BaseT, Serial Port USB Ports (rear panel)2x USB Type A Front, 2x USB Type A Rear Storage Capacity4x 2TB, RAID 10, HDD 3.5 inch AC Power Supply Redundant (1+1) 800 watt, 100 - 240 VAC, 9 – 4.5A,50-60 Hz Power Consumption Maximum 530 watts 36 month HW Maintenance/warranty عدد 56 0
مرشح ملفات File Sandboxing مركز بيانات جدة 2 جهاز Performance Up to 70,000 Files per day Network Interface Ports4x 1GigE BaseT, Serial Port USB Ports (rear panel)2x USB Type A Front, 2x USB Type A Rear Storage Capacity4x 2TB, RAID 10, HDD 3.5 inch AC Power Supply Redundant (1+1) 800 watt, 100 - 240 VAC, 9 – 4.5A,50-60 Hz Power Consumption Maximum 530 watts 36 month HW Maintenance/warranty عدد 57 0
جهاز Diode مركز بيانات الحرس الوطني الرياض 2 جهاز Data Diode with 2 Networks Data Diode Additional Networks Data Diode UDP & TCP Adaptor Data Diode Virus Scanner Data Diode Web Adaptor Data Diode File Drop Adaptor Data Diode Glasswall Plugin Data Diode XML Plugin Data Diode Video Adaptor FDG Large 2U Server- 256GB 36 month HW Maintenance عدد 58 0
دايود Diode مركز بيانات جدة 2 جهاز Data Diode with 2 Networks Data Diode Additional Networks Data Diode UDP & TCP Adaptor Data Diode Virus Scanner Data Diode Web Adaptor Data Diode File Drop Adaptor Data Diode Glasswall Plugin Data Diode XML Plugin Data Diode Video Adaptor FDG Large 2U Server- 256GB 36 month HW Maintenance عدد 59 0
جهاز Upload Security and sanitization مركز بيانات الحرس الوطني الرياض 2 جهاز Upload Security and sanitization Platform This Windows ONLY package includes 20 antimalware engines - currently included engines listed at this link: Deep CDR Metascan Proactive DLP Sandbox Threat Intelligence File-based Vulnerabilites This product leverage ICAP Server protects web traffic or storage devicesfrom advanced cybersecurity threats such as zero-day attacks,phishing, ransomware, and others that bypass sandboxes, AIbasedand traditional cyber attack prevention. ICAP integrats to enable devices such as reverse, forwardproxies, and compatible NAS (network-attached storage) devices. This product leverages technologies such as multiscanning, DLP, CDR (data sanitization), threat intelligence and vulnerability checks of IoT firmware and application installers.Price reflects per instance enablement cost. Central Management streamlines product configuration and enhances the security stance of organizations to protect against risky. Central Management offers administrators a single management console to view risks, update security policy and settings for the Product instances, and manage anti-malware virus definitions. عدد 60 0
جهاز Upload Security and sanitization مركز بيانات جدة 2 جهاز Upload Security and sanitization Platform This Windows ONLY package includes 20 antimalware engines - currently included engines listed at this link: Deep CDR Metascan Proactive DLP Sandbox Threat Intelligence File-based Vulnerabilites This product leverage ICAP Server protects web traffic or storage devicesfrom advanced cybersecurity threats such as zero-day attacks,phishing, ransomware, and others that bypass sandboxes, AIbasedand traditional cyber attack prevention. ICAP integrats to enable devices such as reverse, forwardproxies, and compatible NAS (network-attached storage) devices. This product leverages technologies such as multiscanning, DLP, CDR (data sanitization), threat intelligence and vulnerability checks of IoT firmware and application installers.Price reflects per instance enablement cost. Central Management streamlines product configuration and enhances the security stance of organizations to protect against risky. Central Management offers administrators a single management console to view risks, update security policy and settings for the Product instances, and manage anti-malware virus definitions. عدد 61 0
رخصة VDI License مركز بيانات الحرس الوطني الرياض 5 رخصة Expantion for current SDAIA VDI license :Horizon 8 Enterprise: 100 Pack (Named)Production Support/Subscription for VMware Horizon 8 Enterprise: 100 Pack (Named) for 3 year عدد 62 0
رخصة VDI License مركز بيانات جدة 5 رخصة Expantion for current SDAIA VDI license :Horizon 8 Enterprise: 100 Pack (Named)Production Support/Subscription for VMware Horizon 8 Enterprise: 100 Pack (Named) for 3 year عدد 63 0
رخصة Monitoring Expansion License As a service مركز بيانات الحرس الوطني الرياض 24 رخصة Expanding current SDAIA Monitoring Tool License Elastic Enteprrise by 24 licenes for 3 years to be combined with existing License for SDAIA Elastic Enterprise Resource Unit (ERU) - 64GB (for 3 years) عدد 64 0
خدمة Monitoring Expansion License As a service مركز بيانات جدة 24 رخصة Expanding current SDAIA Monitoring Tool License Elastic Enteprrise by 24 licenes for 3 years to be combined with existing License for SDAIA Elastic Enterprise Resource Unit (ERU) - 64GB (for 3 years) عدد 65 0
رخصة ادارة التحسينات Patch management as a service مركز بيانات الحرس الوطني الرياض 1 رخصة • a True Multi tenancy with a Self-service, real-time reporting and dashboard solution is required to help meeting the IT business intelligence needs with less effort. Merge multiple vendor tools data in one place. Power the IT decisions based on real-time, comprehensive views of IT environment.The solution should provide license for 4000 devices (Agents) for 3 yearsThe solution should be an on-premThe solution core modules: Policy Management, Agent Procedures, Monitor, Software Management, and Reporting. عدد 66 0
رخصة ادارة التحسينات Patch management as a service مركز بيانات جدة 1 رخصة • a True Multi tenancy with a Self-service, real-time reporting and dashboard solution is required to help meeting the IT business intelligence needs with less effort. Merge multiple vendor tools data in one place. Power the IT decisions based on real-time, comprehensive views of IT environment.The solution should provide license for 4000 devices (Agents) for 3 yearsThe solution should be an on-premThe solution core modules: Policy Management, Agent Procedures, Monitor, Software Management, and Reporting. عدد 67 0
محول 1G RJ45 base GLC مركز بيانات الحرس الوطني الرياض 40 جهاز 1G RJ45 base GLC عدد 68 0
محول 10G BASESR SFP Module مركز بيانات الحرس الوطني الرياض 240 جهاز 10G BASE-SR SFP Module عدد 69 0
محول 25G BASESR SFP Module مركز بيانات الحرس الوطني الرياض 960 جهاز 25G BASE-SR SFP Module عدد 70 0
محول 100GBASE SR4 QSFP Transceiver MPO 100m over OM4 MMF مركز بيانات الحرس الوطني الرياض 240 جهاز 100GBASE SR4 QSFP Transceiver, MPO, 100m over OM4 MMF عدد 71 0

71 بند

كراسة الشروط الرئيسية

كراسة الشروط والمواصفات وملاحق المنافسة

2.0 MB تم التحميل

2022/341517/main_booklet_كراسة_الشروط.html

فتح

المستندات الداعمة (12 ملف)

خطاب تقديم العروض.pdf

311 KB تم التحميل

2022/341517/idd_0B3325FD-9322-C47E-871D-7E3DC8300000_خطاب_تقديم_العروض.pdf

فتح

نموذج الاسئلة والاستفسارات.pdf

566 KB تم التحميل

2022/341517/idd_1B6B75F5-3A93-CE94-85EF-7E3DC8300000_نموذج_الاسئلة_والاستفسارات.pdf

فتح

Local Content Plan Template at Contract Level.zip

76 KB تم التحميل

2022/341517/idd_1FB1E36C-FB96-C9D4-86DC-82AB80900000_Local_Content_Plan_Template_at_Contract_Level.zip

فتح

تقنية معلومات.pdf

1.2 MB تم التحميل

2022/341517/idd_20AF3357-30E2-C2F9-851D-7E3DC9300000_تقنية_معلومات.pdf

فتح

Local Content.zip

1.8 MB تم التحميل

2022/341517/idd_2C9F0D35-E3A2-C10E-8464-7ED8E3200000_Local_Content.zip

فتح

مكان التسليم 1.pdf

166 KB تم التحميل

2022/341517/idd_425C60AD-CE2F-C0B3-8683-7E3E72C00000_مكان_التسليم_1.pdf

فتح

نموذج التأهيل المستوى الاول.pdf

235 KB تم التحميل

2022/341517/idd_546176F8-E8DC-C91A-8676-7E3DC8300000_نموذج_التأهيل_المستوى_الاول.pdf

فتح

NIC-GEN2 الاستبيان التقني ملحق رقم 8.pdf

3.1 MB تم التحميل

2022/341517/idd_5900F6E2-4C0A-CB8C-840F-7E3DCA200000_NIC-GEN2_الاستبيان_التقني_ملحق_رقم_8.pdf

فتح

قائمة التدقيق.pdf

487 KB تم التحميل

2022/341517/idd_86BC9412-216F-CE59-86E2-7E3DC8300000_قائمة_التدقيق.pdf

فتح

المتطلبات العامة 1.pdf

939 KB تم التحميل

2022/341517/idd_A8AC686C-5E8B-CF5C-84FF-7E3DC8300000_المتطلبات_العامة_1.pdf

فتح

RFP update NICGEN2.pdf

1,002 KB تم التحميل

2022/341517/idd_D542A6EE-8AB9-C0AC-8726-8238D1900000_RFP_update_NICGEN2.pdf

فتح

معايير تقييم العروض .pdf

854 KB تم التحميل

2022/341517/idd_ECA4B0B7-DD87-C17E-8715-7F4EB9200000_معايير_تقييم_العروض_.pdf

فتح

لم يتم ترسية هذه المنافسة بعد

لا توجد بيانات للمحتوى المحلي

معايير التقييم

لا توجد معايير تقييم

أخبار المنافسة

لا توجد أخبار