-
FOI request (FOI-91373478)
Request for Contract Data
Requested Wed 10 October 2018
Responded Thu 18 October 2018I am currently embarking on a research project around Cyber Security and was hoping you could provide me with some contract information relating to following information:
- Standard Firewall (Network) - Firewall service protects your corporate Network from unauthorised access and other Internet security threats
- Anti-virus Software Application - Anti-virus software is a program or set of programs that are designed to prevent, search for, detect, and remove software viruses, and other malicious software like Worms, Trojans, Adware, and more.
- Microsoft Enterprise Agreement - is a volume licensing package offered by Microsoft.
The information I require is around the procurement side and we do not require any specifics (serial numbers, models, location) that could bring threat/harm to the organisation.
For each of the different types of cyber security services can you please provide me with:
- Who is the existing supplier for this contract?
- What does the organisation spend for each of contract?
- What is the description of the services provided for each contract? Please do not just state firewall.
- Primary Brand (ONLY APPLIES TO CONTRACT 1&2)
- What is the expiry date of each contract?
- What is the start date of each contract?
- What is the contract duration of contract?
- The responsible contract officer for each of the contracts above? Full name, job title, contact number and direct email address.
- Number of License (ONLY APPLIES TO CONTRACT 3)
Response
Standard Firewall:
1 - Ideal Networks
2 - £10k Per Annum
3 - Hardware and Software Licences, Services Subscription, Support and Maintenance
4 - REFUSED (See Below)
5 - January 2022
6 - January 2017
7 - 5 Years
8 - Mark Bourne, Head of Information Technology, 01424 451066, mailto:headofit@hastings.gov.uk
9 - Not Applicable
Anti-Virus Software Application:
1 - Trustmarque Solutions
2 - £7972 Per Annum
3 - Software Licences, Services Subscription, Support and Maintenance
4 - REFUSED (See Below)
5 - February 2019
6 - February 2016
7 - 3 Years
8 - Mark Bourne, Head of Information Technology, 01424 451066, mailto:headofit@hastings.gov.uk
9 - Not Applicable
Microsoft Enterprise Agreement:
1 - Trustmarque Solutions
2 - £16314 Per Annum
3 - Software Licences, Software Assurance
4 - Not Applicable
5 - June 2021
6 - June 2018
7 - 3 Years
8 - Mark Bourne, Head of Information Technology, 01424 451066, mailto:headofit@hastings.gov.uk
9 - 25
Notice of Refusal Disclosure of specific information relating to ICT infrastructure and security constitutes a security risk as it would leave the Council's computer assets more vulnerable to a malicious hacking attack. This means that disclosure would:
• Make the Council more vulnerable to crime (Section 31)
• Risk harming the systems on which the day-to-day business of the Council relies (Section 43)
Section 31 (Law Enforcement) Section 31(1)(a) states that information is exempt if its disclosure is likely to prejudice the prevention or detection of crime. ICO guidance states that this can be used to protect information on a public authority's systems which would make it more vulnerable to crime. This exemption can be used by a public authority that has no law enforcement function:
• To protect the work of one that does
• To withhold information that would make anyone, including the public authority itself, more vulnerable to crime The crime in question would be a malicious attack on the Council's computer systems. Since the disclosure of the withheld information would make the Council's systems more vulnerable to such crime, the exemption is engaged.
The exemption is subject to the public interest test. There is an overwhelming public interest in keeping the Council's computer systems secure which would be served by non-disclosure. This outweighs the public interest in accountability and transparency that would be served by disclosure.
Section 43 (Commercial Interests) Section 43(2) states that information is exempt if its disclosure would, or would be likely to, prejudice the commercial interests of any person (including the public authority holding it).
Disclosure of specific information relating to ICT infrastructure and security puts the council at risk of a malicious hacking attack. This would compromise the Council's ability to provide its services and carry out 'business-as-usual' should our systems be compromised. Were our systems to be compromise, the cost of a system recovery would be detrimental to the Council's commercial interests.
The exemption is subject to the public interest test. There is an overwhelming public interest in keeping the Council's computer systems secure which would be served by non-disclosure.
This outweighs the public interest in accountability and transparency that would be served by disclosure.
-
Freedom of Information
Contact
Contact us if you have a question about freedom of information.
Content
The content on this page is the responsibility of our Council's Information Officer.