This opportunity has closed
The submission deadline was July 3, 2026. This page is kept for reference purposes.
Ransomware Tabletop Exercise
PROCUREMENT OVERVIEW The Office of the Superintendent of Financial Institutions (OSFI) is seeking to conduct a Ransomware Tabletop Exercise as part of its initiative to enhance its Business Continuity Management function. The objective is to validate the operational readiness of OSFI's revised corpo...
Read full summaryActions
Create a free account to analyze this opportunity, get daily notifications, and win more bids with Narwin.ai
Documents
No documents are currently available in Narwin.
Visit original source to check related documentsDescription
NOTICE OF PROPOSED PROCUREMENT (NPP) For Solutions-based informatics professional services (SBIPS) Requirement Details Tendering Procedure: Selective Tendering This requirement is open only to those SBIPS Supply Arrangement Holders who qualified under Tier 1 for services in the National Capital Region under the Domain of expertise of Security management. The following SA Holders have been invited to submit a proposal: 1) Accenture Inc. 2) CGI Information Systems and Management Consultants Inc. Systems and Management Consultants Inc. 3) CIMA+ S.E.N.C. 4) Compusult Limited 5) Deloitte Inc. 6) DONNA CONA INC., IBM CANADA LIMITED IN JOINT VENTURE 7) DXC TECHNOLOGY CANADA CO. 8) Ernst & Young LLP 9) Gartner Canada Co. 10) IBISKA Telecom Inc. 11) IBM Canada Limited/IBM Canada Limitée Limitée 12) IPSS INC. 13) IT/Net - Ottawa Inc. 14) IT/NET OTTAWA INC, KPMG LLP, in joint venture 15) KPMG LLP 16) Malarsoft Technology Corporation 17) MDOS CONSULTING INC. 18) Open Text Corporation 19) OPTIV CANADA FEDERAL INC. 20) Pricewaterhouse Coopers LLP 21) S.I. SYSTEMS ULC 22) T-REX SOLUTIONS LLC 23) Tata Consultancy Services Canada Inc. 24) TEKsystems Global Services Corp. 25) The Bell Telephone Company of Canada or Bell Canada/La Compagnie de Téléphone Bell duCanada ou Bell Canada 26) TPG Technology Consulting Ltd. 27) TRM Technologies Inc. 28) Wiz Management Inc Description of Work: OSFI is maturing its Business Continuity Management function and has updated its Corporate Incident Management capability that incorporates Incident Command System (ICS) incident management principles, and closely integrates actions associated with the transition from emergency and incident response to the continuance and/or recovery of business operations. OSFI has identified a requirement to validate the operational readiness of all layers of the revised corporate incident management capability by conducting a corporate incident response exercise with a scenario focused on a ransomware event. Security Requirement: See Request for Proposal Minimum Corporate Security Required: Secret Minimum Resource Security Required: Secret Contract Authority Name: Craig Kenny, Lead Senior Contracting Officer Email Address: [email protected] Inquiries Inquiries regarding this RFP requirement must be submitted to the Contracting Authority named above. Request for Proposal (RFP) documents will be e-mailed directly from the Contracting Authority to the Qualified Supply Arrangement Holders who are being invited to bid on this requirement. BIDDERS ARE ADVISED THAT “BUYANDSELL.GC.CA” IS NOT RESPONSIBLE FOR THE DISTRIBUTION OF SOLICITATION DOCUMENTS. The Crown retains the right to negotiate with any supplier on any procurement. Documents may be submitted in either official language. NOTE: For Solutions-based informatics professional services (SBIPS)Method of Supply is refreshed three (3) times per year. If you wish to find out how you can be a “Qualified SA Holder”, please contact [email protected]
Additional Information
Amendment Number
000
Contact Info Email
Contact Info Name
Craig Kenny
Contracting Entity Name
Office of the Superintendent of Financial Institutions (OSFI)
Created
June 17, 2026
Is Public
true
Organization Address City
Ottawa
Organization Country
Canada
Organization Address Line
255 Albert St
Organization Address Postal Code
K1A0H2
Organization Address Province
Ontario
Procurement Category
*SRV
Procurement Method
Competitive - Selective tendering
Reference Number
cb-553-91017696
Regions Of Delivery
*Canada
Regions Of Opportunity
*National Capital Region (NCR)
Selection Criteria
Highest Combined Rating of Technical Merit and Price
Source
canadabuys
Source Record ID
cb-553-91017696_000
Source System
canadabuys
Status
closed
Status En
closed
Summary Updated At
June 17, 2026
Tender Closing Date
July 3, 2026
Last Updated
July 29, 2026
Frequently Asked Questions
When is the proposal submission deadline?
The proposal submission deadline is July 3, 2026 (Overdue).
Note: This opportunity has already closed. See similar active opportunities above.
Where can I submit a proposal or get solicitation documents?
You can access the full solicitation documents and submit your proposal at the official source:
Visit Official Source AI Summary
PROCUREMENT OVERVIEW
The Office of the Superintendent of Financial Institutions (OSFI) is seeking to conduct a Ransomware Tabletop Exercise as part of its initiative to enhance its Business Continuity Management function. The objective is to validate the operational readiness of OSFI's revised corporate incident management capability, which integrates Incident Command System (ICS) principles. The exercise will simulate a ransomware event to assess the effectiveness of the incident response strategies and ensure a smooth transition from emergency response to business recovery.
ISSUING ORGANIZATION
- Organization Name: Office of the Superintendent of Financial Institutions (OSFI)
- Location: Ottawa, Ontario, Canada
- Primary Contact: Craig Kenny, Lead Senior Contracting Officer
- Email: [email protected]
KEY DATES
- Posted Date: June 16, 2026
- Proposal Due Date: July 3, 2026
- Anticipated Award Date: Not specified
- Performance Period: Not specified
CONTRACT DETAILS
- Contract Type: Not explicitly stated, but likely to be a firm-fixed-price or similar based on the nature of the exercise.
- Estimated Contract Value: Not mentioned.
- Option Years: Not specified.
MANDATORY REQUIREMENTS
Bidders must meet the following mandatory requirements to be eligible:
- Security Clearance: Minimum corporate security clearance required is "Secret," and the same applies to individual resources.
- Supply Arrangement Holders: Only qualified SBIPS Supply Arrangement Holders under Tier 1 for services in the National Capital Region are eligible to submit proposals.
TECHNICAL CAPABILITIES
Bidders should demonstrate expertise in:
- Business Continuity Management
- Incident Command System (ICS) principles
- Cybersecurity, specifically in relation to ransomware scenarios
- Experience in conducting tabletop exercises or incident response simulations
DELIVERABLES AND PERFORMANCE STANDARDS
The key deliverables include:
- A comprehensive tabletop exercise focused on a ransomware scenario.
- Documentation of the exercise outcomes, including lessons learned and recommendations for improvement.
- Reporting on the effectiveness of the incident management strategies employed during the exercise.
EVALUATION CRITERIA
Proposals will be evaluated based on a combined high score for technical merit and price. Specific weighting or priority factors have not been disclosed, but bidders should focus on demonstrating their technical approach and past performance in similar exercises.
PREFERRED QUALIFICATIONS
While not mandatory, the following qualifications may provide a competitive advantage:
- Previous experience with government or financial institutions in conducting similar exercises.
- Advanced certifications in cybersecurity or business continuity management.
- Proven track record of successful incident response planning and execution.
This summary provides a comprehensive overview of the RFP for the Ransomware Tabletop Exercise, highlighting the essential information that potential bidders need to assess their fit for this opportunity.
Narwin.ai is a great way to find government contracts and opportunities. Disclaimer: This bid/tender/opportunity information is presented as is and may be incorrect at times. Please read the tender documents carefully before finalizing bids. We do not accept any responsibility and cannot be held legally liable for any inaccuracies.
