RFP #2026-19 24/7 CYBERSECURITY MONITORING Q & A
Project Information
- Bid Title
- RFP #2026-19 24/7 CYBERSECURITY MONITORING Q & A
- Issuing Agency
- Jasper County
- Location
- South Carolina
- Published Date
- Jun 24, 2026
- Closing Date
- Jul 1, 2026
- Government Level
- State & Local
- Status
- Closed
- Original Source
- Join to Access Full Details
- Bid Inquiries
- Join to Access Full Details
- Bid Documents
- Join to Access Full Details
- Project Description
-
RFP #2026-19 24/7 CYBERSECURITY MONITORING
Jasper County Government (“County”) is soliciting sealed proposals from qualified cybersecurity managed service providers (MSPs), managed security service providers (MSSPs), or cybersecurity consulting firms to provide comprehensive 24/7 cybersecurity monitoring, cyber network monitoring, patch management, incident response support, and compliance-related cybersecurity services until Wednesday, July 1, 2026, at 1:00 p.m. at which time the names of the Proposers will be publicly read aloud in the Jasper County Council Chamber.
RFP #2026-19 Cybersecurity Q & A
The Proposal may also be submitted via mail or hand delivered in a sealed envelope to the address below with “24/7 Cybersecurity RFP #2026-19” written on the outside of the envelope. It must be received no later than 1:00 p.m. on Wednesday, July 1, 2026. Vendors choosing to submit a hard copy should submit an original and five copies. Any Proposals submitted or delivered after the above time will NOT be accepted under any circumstances. Proposals submitted by email will NOT be accepted.
The Proposal can be mailed or hand delivered to:
Kimberly Burgess, Dir., Administrative Services Jasper County Government Building
358 Third Avenue, Suite 304
PO Box 1194
Ridgeland, SC 29936
The Proposal name reading will take place in the Jasper County Council Chamber located at:
Clementa C. Pinckney
Jasper County Government Building
358 3 rd Avenue, Third Floor
Ridgeland, SC 29936
Questions Regarding the RFP
All questions regarding this RFP shall be submitted in writing to:
Lekisha Brown
Deputy Director
Information Technology
252 Russell St.
Ridgeland, SC 29936
Any questions regarding this Proposal must be submitted in writing via email to labrown@jaspercountysc.gov
NO LATER than Monday, June 22, 2026, by 5:00 pm.
- Attachment Preview
-
REQUEST FOR PROPOSAL (RFP)RFP #2026-1924/7 CYBERSECURITY MONITORING,PATCH MANAGEMENT, AND CYBER NETWORKMONITORING SERVICESJASPER COUNTY, SOUTH CAROLINAJUNE 4, 20261. INTRODUCTION1.1 PurposeJasper County Government (“County”) is soliciting sealed proposals from qualifiedcybersecurity managed service providers (MSPs), managed security service providers (MSSPs),or cybersecurity consulting firms to provide comprehensive 24/7 cybersecurity monitoring,cyber network monitoring, patch management, incident response support, and compliance-related cybersecurity services until Wednesday, July 1, 2026, at 1:00 p.m. at which time thenames of the Proposers will be publicly read aloud in the Jasper County Council Chamber.The County seeks a vendor partner capable of leveraging the County’s existing cybersecurity andIT infrastructure, tools, and software platforms while enhancing the County’s overallcybersecurity posture. The selected vendor should provide continuous monitoring, proactivethreat detection, vulnerability management, patch management, incident response coordination,reporting, and audit support.Additionally, the selected vendor shall be responsible for assisting with and completing allrequired NCIC, CJIS, and South Carolina Law Enforcement Division (SLED) cybersecurityaudits, compliance reviews, documentation, and reporting requirements applicable to JasperCounty Government.2. BACKGROUNDJasper County Government operates a diverse technology environment supporting countyadministration, public safety, emergency services, judicial systems, public works, finance, GIS,and other county operations. The County maintains cybersecurity tools and software currently inplace and desires a cybersecurity partner capable of integrating with and utilizing existingsystems wherever feasible.The County’s primary goals include:• Enhancing cybersecurity visibility and protection• Providing continuous 24/7 monitoring and alerting• Reducing cybersecurity risk exposure• Improving incident response readinessPage 1 of 13• Maintaining compliance with CJIS, NCIC, SLED, and applicable state and federalcybersecurity standards• Strengthening vulnerability and patch management processes• Ensuring operational continuity and cybersecurity resilience3. SCOPE OF SERVICESThe selected vendor shall provide the following services at a minimum.3.1 24/7 Security Operations Center (SOC) MonitoringVendor shall provide continuous 24 hours per day, 7 days per week, 365 days per yearcybersecurity monitoring services.Services shall include:• Continuous monitoring of network traffic, endpoints, servers, firewalls, switches, routers,and security devices• Monitoring of security events, alerts, and logs• Threat detection and correlation analysis• Real-time alerting and escalation procedures• Detection of ransomware, malware, unauthorized access attempts, and suspicious activity• Continuous review of security telemetry and threat indicators• Identification and triage of critical cybersecurity incidents• Threat intelligence integration• Continuous monitoring of cloud-based systems and services where applicable• Security event management and reporting• Security log review and analysis• Security alert prioritization and escalationVendor shall provide documented escalation procedures and incident notification timelines.3.2 Cyber Network MonitoringVendor shall provide comprehensive cyber network monitoring services for the County’s ITinfrastructure.Services shall include:• Network traffic analysis• Internal and external network monitoring• Firewall monitoring and rule review• Intrusion detection and prevention monitoring• Unauthorized device detectionPage 2 of 13• Network anomaly detection• Bandwidth and suspicious communication monitoring• Monitoring for lateral movement within the network• DNS monitoring and analysis• VPN monitoring• Remote access monitoring• Monitoring of privileged accounts and administrative access• Continuous health monitoring of cybersecurity systemsVendor shall provide recommendations for improving network security architecture wherevulnerabilities or weaknesses are identified.3.3 Patch Management ServicesVendor shall provide comprehensive patch management services utilizing the County’s existingsoftware and patch management tools whenever feasible.Services shall include:• Operating system patch management• Third-party software patch management• Firmware update management• Security update testing and validation• Critical vulnerability remediation• Patch deployment scheduling and coordination• Emergency patch deployment for critical threats• Patch compliance reporting• Vulnerability prioritization• Documentation of applied patches and remediation activities• Verification and validation of successful patch deploymentVendor shall maintain procedures to minimize operational disruption while ensuring timelyremediation of vulnerabilities.3.4 Vulnerability ManagementVendor shall provide ongoing vulnerability management services.Services shall include:• Routine vulnerability scanning• Internal and external vulnerability assessments• Vulnerability prioritization based on risk• Remediation recommendations• Validation of remediation effortsPage 3 of 13• Reporting of critical vulnerabilities• Risk scoring and tracking• Assistance with remediation planning• Coordination with County IT staffVendor shall provide monthly vulnerability assessment summaries and remediation statusreports.3.5 Incident Response ServicesVendor shall provide incident response support services.Services shall include:• Incident detection and analysis• Incident containment recommendations• Threat eradication support• Recovery assistance• Root cause analysis• Incident documentation• Forensic coordination support• Coordination with County IT staff and leadership• Escalation procedures for critical incidents• After-action reporting and recommendationsVendor shall provide emergency contact procedures and escalation paths available 24/7.3.6 Existing Tools and Software IntegrationThe County intends to maintain and continue utilizing existing cybersecurity and IT managementtools where operationally feasible.Vendor shall:• Assess and integrate with the County’s existing cybersecurity tools• Utilize existing monitoring, logging, and endpoint solutions whenever possible• Minimize unnecessary replacement of existing systems• Provide recommendations only where improvements are necessary• Identify any required licensing or integration costs• Coordinate with County IT staff regarding compatibility and implementationVendor shall clearly identify:• Tools currently supported• Additional tools proposedPage 4 of 13• Any required software changes• Any additional hardware requirements• Any licensing dependencies3.7 Compliance and Audit SupportThe selected vendor shall be responsible for supporting and completing cybersecurity-relatedaudits and compliance requirements applicable to Jasper County Government.This includes, but is not limited to:• NCIC audit preparation, management, and support• SLED cybersecurity audit support and completion• CJIS audit preparation, compliance support, and documentation management• CJIS Security Policy compliance assistance• Security documentation maintenance• Policy and procedure review assistance• Audit evidence collection and preparation• Remediation planning for audit findings• Compliance reporting• Coordination with state and law enforcement entities as required• Assistance with cybersecurity risk assessments• Documentation necessary for compliance reviewsVendor must demonstrate familiarity with:• NCIC requirements• CJIS Security Policy• South Carolina state cybersecurity requirements• SLED audit expectations• Government cybersecurity best practices• Law enforcement system security requirementsVendor shall assume primary responsibility for completing all required cybersecurity auditdeliverables under the scope of this contract.3.8 Reporting RequirementsVendor shall provide detailed reporting including:• Weekly cybersecurity briefing reports summarizing incidents, vulnerabilities,remediation activities, patching status, and threat activity• Weekly status meetings or virtual briefings with County IT leadership as requested• Comprehensive monthly executive cybersecurity reports• Incident summariesPage 5 of 13
- Commodity Codes
-
- NAICS 541512Computer Systems Design Services
- NAICS 541519Other Computer Related Services
Empower Your Bidding Strategy
Unlock Government BidHub's unparalleled access to high-quality, tailored bid information.
- Access an extensive database of bids, including comprehensive local and state opportunities.
- Receive customized alerts for the bids that matter most to your business.
- Explore detailed specifications to ensure precise and competitive submissions.
- Gain a competitive edge with up-to-date information and exclusive opportunities.
See Also
Tree Planting on Francis Mari...
Ad Title: Tree Planting on Francis Marion National Forest Purchasing Agent/Entity: SC Forestry
State of South Carolina - State Fiscal Accountability Authority(SFAA)
Bid Due: 8/25/2026
McCormick One Stop Renovations
Project Name: McCormick One Stop Renovations Agency/Owner: Town of McCormick Ad Publish Date:
State of South Carolina - State Fiscal Accountability Authority(SFAA)
Bid Due: 8/11/2026