Buyer Name: DRIVER & VEHICLE LICENSING AGENCY
Buyer Address: Longview Road, SWANSEA, SA67JL, Wales
Contact Name: Kristopher Simeone
Contact Email: kristopher.simeone@dvla.gov.uk
Contact Telephone: 01792788426
Buyer Name: DRIVER & VEHICLE LICENSING AGENCY
Buyer Address: Longview Road, SWANSEA, SA67JL, Wales
Contact Name: Kristopher Simeone
Contact Email: kristopher.simeone@dvla.gov.uk
Contact Telephone: 01792788426
This requirement is for a Cyber Security health check company to perform vulnerability assessments and penetration tests on the DVLA infrastructure and applications (both physical and cloud based). In addition to performing on site testing the company must have a fully mature and documented remote testing solution in place, in order to remotely connect to our network. They must be PCI ASV approved and hold CESG, CHECK CERTIFIED GREEN LIGHT, CREST STAR, & Cyber Essential status. Criteria can be broken down as follows: • Must have experience of working with an internal Government Cyber Security teams to develop penetration testing strategies. • Must evidence how they have developed long term client partnerships in order to deliver required training and skills transfer. • Following the completion of the engagement the supplier must explain how they would provide guidance and recommendations on how to maintain the service alongside suggested next steps. • Fully mature remote testing solution.
{
"awards": [
{
"contractPeriod": {
"endDate": "2026-07-21T23:59:59+01:00",
"startDate": "2025-07-22T00:00:00+01:00"
},
"date": "2025-07-03T00:00:00+01:00",
"datePublished": "2025-07-17T13:18:54+01:00",
"documents": [
{
"datePublished": "2025-07-17T13:18:54+01:00",
"description": "Awarded contract notice on Contracts Finder",
"documentType": "awardNotice",
"format": "text/html",
"id": "1",
"language": "en",
"url": "https://www.contractsfinder.service.gov.uk/Notice/46910755-1150-498f-a7c3-0e5419bfeee4"
},
{
"documentType": "awardNotice",
"format": "application/pdf",
"id": "2",
"url": "https://www.contractsfinder.service.gov.uk/Notice/Attachment/1fa2b1f8-5ce8-4c5e-8676-a9fee1544359"
},
{
"documentType": "contractSigned",
"format": "application/pdf",
"id": "3",
"url": "https://www.contractsfinder.service.gov.uk/Notice/Attachment/78757b4d-5651-452a-937f-07532ba2919e"
}
],
"id": "ocds-b5fd17-67e4d5aa-476c-4c08-8ec7-b9164684d667-1",
"status": "active",
"suppliers": [
{
"id": "GB-COH-02802141",
"name": "NCC SERVICES LIMITED"
}
],
"value": {
"amount": 100000,
"currency": "GBP"
}
}
],
"buyer": {
"id": "GB-SRS-sid4gov.cabinetoffice.gov.uk/NsBK36A7",
"name": "DRIVER \u0026 VEHICLE LICENSING AGENCY"
},
"date": "2025-07-17T13:18:54+01:00",
"id": "46910755-1150-498f-a7c3-0e5419bfeee4-854821",
"initiationType": "tender",
"language": "en",
"ocid": "ocds-b5fd17-67e4d5aa-476c-4c08-8ec7-b9164684d667",
"parties": [
{
"address": {
"countryName": "Wales",
"locality": "SWANSEA",
"postalCode": "SA67JL",
"streetAddress": "Longview Road"
},
"contactPoint": {
"email": "kristopher.simeone@dvla.gov.uk",
"name": "Kristopher Simeone",
"telephone": "01792788426"
},
"id": "GB-SRS-sid4gov.cabinetoffice.gov.uk/NsBK36A7",
"identifier": {
"id": "sid4gov.cabinetoffice.gov.uk/NsBK36A7",
"legalName": "DRIVER \u0026 VEHICLE LICENSING AGENCY",
"scheme": "GB-SRS"
},
"name": "DRIVER \u0026 VEHICLE LICENSING AGENCY",
"roles": [
"buyer"
]
},
{
"address": {
"streetAddress": "Spinningfields\nM3 3AQ\nGB"
},
"details": {
"scale": "sme",
"vcse": true
},
"id": "GB-COH-02802141",
"identifier": {
"id": "02802141",
"legalName": "NCC SERVICES LIMITED",
"scheme": "GB-COH"
},
"name": "NCC SERVICES LIMITED",
"roles": [
"supplier"
]
}
],
"tag": [
"award"
],
"tender": {
"classification": {
"description": "Computer testing services",
"id": "72820000",
"scheme": "CPV"
},
"contractPeriod": {
"endDate": "2026-07-21T23:59:59+01:00",
"startDate": "2025-07-22T00:00:00+01:00"
},
"description": "This requirement is for a Cyber Security health check company to perform vulnerability assessments and penetration tests on the DVLA infrastructure and applications (both physical and cloud based). In addition to performing on site testing the company must have a fully mature and documented remote testing solution in place, in order to remotely connect to our network.\r\nThey must be PCI ASV approved and hold CESG, CHECK CERTIFIED GREEN LIGHT, CREST STAR, \u0026 Cyber Essential status.\r\nCriteria can be broken down as follows:\r\n\u2022\tMust have experience of working with an internal Government Cyber Security teams to develop penetration testing strategies.\r\n\u2022\tMust evidence how they have developed long term client partnerships in order to deliver required training and skills transfer.\r\n\u2022\tFollowing the completion of the engagement the supplier must explain how they would provide guidance and recommendations on how to maintain the service alongside suggested next steps.\r\n\u2022\tFully mature remote testing solution.",
"id": "PS.25.52",
"items": [
{
"deliveryAddresses": [
{
"postalCode": "SA6 7JL"
}
],
"id": "1"
}
],
"mainProcurementCategory": "services",
"minValue": {
"amount": 100000,
"currency": "GBP"
},
"procurementMethod": "selective",
"procurementMethodDetails": "Call-off from a framework agreement",
"status": "complete",
"suitability": {
"sme": true,
"vcse": true
},
"tenderPeriod": {
"endDate": "2025-06-10T12:00:00+01:00"
},
"title": "Provision of ICT Health Checks",
"value": {
"amount": 200000,
"currency": "GBP"
}
}
}