This opportunity has closed

The submission deadline was July 3, 2026. This page is kept for reference purposes.

Ransomware Tabletop Exercise

Office of the Superintendent of Financial Institutions (OSFI)
canadabuys Posted: June 16, 2026

PROCUREMENT OVERVIEW The Office of the Superintendent of Financial Institutions (OSFI) is seeking to conduct a Ransomware Tabletop Exercise as part of its initiative to enhance its Business Continuity Management function. The objective is to validate the operational readiness of OSFI's revised corpo...

Read full summary
Due Date
July 3, 2026
(Overdue)
Solicitation #
20260158

Actions

Create a free account to analyze this opportunity, get daily notifications, and win more bids with Narwin.ai

Documents

No documents are currently available in Narwin.

Visit original source to check related documents

Description

Read full description

NOTICE OF PROPOSED PROCUREMENT (NPP) For Solutions-based informatics professional services (SBIPS) Requirement Details Tendering Procedure: Selective Tendering This requirement is open only to those SBIPS Supply Arrangement Holders who qualified under Tier 1 for services in the National Capital Region under the Domain of expertise of Security management. The following SA Holders have been invited to submit a proposal: 1) Accenture Inc. 2) CGI Information Systems and Management Consultants Inc. Systems and Management Consultants Inc. 3) CIMA+ S.E.N.C. 4) Compusult Limited 5) Deloitte Inc. 6) DONNA CONA INC., IBM CANADA LIMITED IN JOINT VENTURE 7) DXC TECHNOLOGY CANADA CO. 8) Ernst & Young LLP 9) Gartner Canada Co. 10) IBISKA Telecom Inc. 11) IBM Canada Limited/IBM Canada Limitée Limitée 12) IPSS INC. 13) IT/Net - Ottawa Inc. 14) IT/NET OTTAWA INC, KPMG LLP, in joint venture 15) KPMG LLP 16) Malarsoft Technology Corporation 17) MDOS CONSULTING INC. 18) Open Text Corporation 19) OPTIV CANADA FEDERAL INC. 20) Pricewaterhouse Coopers LLP 21) S.I. SYSTEMS ULC 22) T-REX SOLUTIONS LLC 23) Tata Consultancy Services Canada Inc. 24) TEKsystems Global Services Corp. 25) The Bell Telephone Company of Canada or Bell Canada/La Compagnie de Téléphone Bell duCanada ou Bell Canada 26) TPG Technology Consulting Ltd. 27) TRM Technologies Inc. 28) Wiz Management Inc Description of Work: OSFI is maturing its Business Continuity Management function and has updated its Corporate Incident Management capability that incorporates Incident Command System (ICS) incident management principles, and closely integrates actions associated with the transition from emergency and incident response to the continuance and/or recovery of business operations. OSFI has identified a requirement to validate the operational readiness of all layers of the revised corporate incident management capability by conducting a corporate incident response exercise with a scenario focused on a ransomware event. Security Requirement: See Request for Proposal Minimum Corporate Security Required: Secret Minimum Resource Security Required: Secret Contract Authority Name: Craig Kenny, Lead Senior Contracting Officer Email Address: [email protected] Inquiries Inquiries regarding this RFP requirement must be submitted to the Contracting Authority named above. Request for Proposal (RFP) documents will be e-mailed directly from the Contracting Authority to the Qualified Supply Arrangement Holders who are being invited to bid on this requirement. BIDDERS ARE ADVISED THAT “BUYANDSELL.GC.CA” IS NOT RESPONSIBLE FOR THE DISTRIBUTION OF SOLICITATION DOCUMENTS. The Crown retains the right to negotiate with any supplier on any procurement. Documents may be submitted in either official language. NOTE: For Solutions-based informatics professional services (SBIPS)Method of Supply is refreshed three (3) times per year. If you wish to find out how you can be a “Qualified SA Holder”, please contact [email protected]

Additional Information

Source

canadabuys

Status

closed

Procurement Method

Competitive - Selective tendering

Procurement Category

*SRV

Selection Criteria

Highest Combined Rating of Technical Merit and Price

Regions of Opportunity

*National Capital Region (NCR)

Regions of Delivery

*Canada

Reference Number

cb-553-91017696

Amendment Number

000

Contracting Entity

Office of the Superintendent of Financial Institutions (OSFI)

Contact Name

Craig Kenny

Contact Email

Organization City

Ottawa

Organization Province / State

Ontario

Organization Country

Canada

Last Updated

July 29, 2026

Frequently Asked Questions

When is the proposal submission deadline?

The proposal submission deadline is July 3, 2026 (Overdue).

Note: This opportunity has already closed. See similar active opportunities above.

Where can I submit a proposal or get solicitation documents?

You can access the full solicitation documents and submit your proposal at the official source:

Visit Official Source

AI Summary

Read full summary

PROCUREMENT OVERVIEW

The Office of the Superintendent of Financial Institutions (OSFI) is seeking to conduct a Ransomware Tabletop Exercise as part of its initiative to enhance its Business Continuity Management function. The objective is to validate the operational readiness of OSFI's revised corporate incident management capability, which integrates Incident Command System (ICS) principles. The exercise will simulate a ransomware event to assess the effectiveness of the incident response strategies and ensure a smooth transition from emergency response to business recovery.

ISSUING ORGANIZATION

  • Organization Name: Office of the Superintendent of Financial Institutions (OSFI)
  • Location: Ottawa, Ontario, Canada
  • Primary Contact: Craig Kenny, Lead Senior Contracting Officer
  • Email: [email protected]

MANDATORY REQUIREMENTS

Bidders must meet the following mandatory requirements to be eligible:

  • Security Clearance: Minimum corporate security clearance required is "Secret," and the same applies to individual resources.
  • Supply Arrangement Holders: Only qualified SBIPS Supply Arrangement Holders under Tier 1 for services in the National Capital Region are eligible to submit proposals.

TECHNICAL CAPABILITIES

Bidders should demonstrate expertise in:

  • Business Continuity Management
  • Incident Command System (ICS) principles
  • Cybersecurity, specifically in relation to ransomware scenarios
  • Experience in conducting tabletop exercises or incident response simulations

DELIVERABLES AND PERFORMANCE STANDARDS

The key deliverables include:

  • A comprehensive tabletop exercise focused on a ransomware scenario.
  • Documentation of the exercise outcomes, including lessons learned and recommendations for improvement.
  • Reporting on the effectiveness of the incident management strategies employed during the exercise.

PREFERRED QUALIFICATIONS

While not mandatory, the following qualifications may provide a competitive advantage:

  • Previous experience with government or financial institutions in conducting similar exercises.
  • Advanced certifications in cybersecurity or business continuity management.
  • Proven track record of successful incident response planning and execution.

This summary provides a comprehensive overview of the RFP for the Ransomware Tabletop Exercise, highlighting the essential information that potential bidders need to assess their fit for this opportunity.

Narwin.ai is a great way to find government contracts and opportunities. Disclaimer: This bid/tender/opportunity information is presented as is and may be incorrect at times. Please read the tender documents carefully before finalizing bids. We do not accept any responsibility and cannot be held legally liable for any inaccuracies.