Broad-Based Black Economic Empowerment Act (B-BBEE Act)
Act 53 of 2003
Provides the empowerment-compliance context often used in public-sector supplier evaluation.
Relevant because this is a South African public-sector procurement opportunity.
Issuing Organization
South African Broadcasting Corporation LimitedLocation
National
Closing Date
17 Jun 2026
Documents available on tender detail page
Tender Type
Request for Proposal
Delivery Location
Corner Artillery and Henley Road - Auckland Park - j - 2006
Organization Type
GOVERNMENT
Published
22 May 2026
OCDS Reference
ocds-9t57fa-156918
The south african broadcasting corporation (SABC) seeks a service provider to supply, implement, maintain, and support an enterprise vulnerability scanning management solution for a 5-year period. The solution must address modern network security challenges, including dynamic asset discovery, threat-aware risk prioritization, and compliance reporting across physical, virtual, cloud, and mobile environments.
Continue with tenders sharing this issuer, category, or province.
Return to this tender’s issuing organisation, province, or category.
Continue with tenders sharing this issuer, category, or province.
Categories
Request for Proposal
Corner Artillery and Henley Road - Auckland Park - j - 2006
Tenders in this industry often require registration with these bodies.
Recommended Certifications
Having these can improve your winning chances: APSO Membership, Services SETA Accreditation
AI Document Analysis Stages
Review in progress
The information shown on this card is preliminary. Our procurement team is currently finalising the submission guidelines, evaluation criteria, technical specifications, financial requirements, and compliance sections so you have a clean, bid-ready summary to work from. Document being finalised: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdf. You don’t need to refresh — this page will pick up the updated review automatically.
22 May
2026
Tender Published
Tender was published
17 Jun
2026
Closing Date
Tender closing date
These references help suppliers understand the public-procurement framework around this opportunity. They are generated from the tender category, issuing organisation type and procurement context.
These rules commonly apply to South African public-sector procurement.
Act 53 of 2003
Provides the empowerment-compliance context often used in public-sector supplier evaluation.
Relevant because this is a South African public-sector procurement opportunity.
Act 108 of 1996 (s217)
This is general procurement context, not legal advice. Always verify requirements in the official tender documents and issuing authority notices.
ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdf
The South African Broadcasting Corporation (SABC) is seeking a service provider for a 5-year contract to license, implement, maintain, and support an Enterprise Vulnerability Scanning Management Solution. The solution must provide comprehensive vulnerability scanning, assessment, prioritization, and remediation capabilities across SABC's dynamic IT environment, including cloud (Azure, AWS), mobile applications (SABC+), and traditional networks.
To download these documents and access AI-powered analysis, visit the main tender page.
Win SABC tenders with AI Recommendations, media-intelligence, compliance analysis, and structured support for broadcasting, content, and ICT contracts.
Matched by category & region
Free guidance to prepare before you bid
Not sure if your business is ready for this tender? Check CSD, CIDB, and B-BBEE requirements, run a readiness assessment, and move from opportunity to submission.
Open Supplier Readiness HubLearn how to submit a winning bid with these related articles
Median Estimate
R 2 906 155
Range
Based on 9 comparable awarded tenders. Companies with similar profiles typically bid near the median.
* Estimates are based on historical data and do not guarantee actual award values.
We refine every tender document through these stages so you can brief your team and prepare your bid with confidence. Anything marked as "in progress" will be upgraded automatically — no action required from you.
Important Dates
Source: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdfBid Advertisement Date: 22 May 2026. Bid Documents Available From: 03 June 2026 (SABC website: www.sabc.co.za/sabc/tenders/). Non-Compulsory Briefing Session: 03 June 2026 @ 10h00 AM (Microsoft Teams; link provided in document). Clarification Queries Deadline: 14 June 2026 (3 days before closing). Bid Closing Date and Time: 17 June 2026 @ 12h00. Bid Validity Period: 180 days from closing date. SABC may adjust timeframes at its discretion.
Contact Information
Source: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdfAll enquiries must be directed to: Tender Office, SCM Division, Radio Park Office Block, Henley Road, Auckland Park, Johannesburg, South Africa. Email: [email protected]. Unauthorised communication with SABC staff (outside this channel) may result in disqualification. Whistleblower hotline: 0800 372 831 (for reporting fraud, theft, or corruption). Submission email: [email protected].
Submission Guidelines
Source: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdfSubmit bids electronically to [email protected] in PDF format (write-protected). Separate financial and technical responses into distinct attachments. Email subject line must include: Bidder’s Name, Tender Number (RFP/IT/2026/10249272/11), and Tender Title. Submit at least 30 minutes before 17 June 2026 @ 12h00 to avoid transmission delays. Late submissions are rejected. SABC is not liable for incomplete bids, transmission failures, or misidentified submissions. Include all mandatory and required documents. Required forms: SBD 6.1 (Preference Points Claim), SBD 8 (Past SCM Practices), SBD 9 (Independent Bid Determination), and all annexures listed in the RFP. Non-compliance with submission rules (e.g., unsigned pages, altered bid forms, or missing documents) may result in automatic disqualification.
Evaluation Criteria
Source: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdfAutomatic disqualification for: Non-submission of mandatory documents (OEM authorization, ISO 27000/27001, ISO 9001), invalid or missing CSD registration, unresolved tax/TV license issues, or misrepresentation/fronting. B-BBEE compliance is mandatory; winning bidder must maintain or improve their B-BBEE level. Bids must comply strictly with technical specifications; non-compliance results in disqualification. Evaluation stages: 1) Mandatory compliance check (CSD, tax, TV license, certifications, OEM authority), 2) Technical compliance (scope, deliverables, standards), 3) Functional evaluation (capabilities, reporting, remediation), 4) Financial evaluation (pricing, cost inclusivity). Preference points awarded per PPF 2017 regulations (SBD 6.1). SABC reserves the right to reject non-compliant bids, negotiate with preferred bidders, or award to the highest-scoring bidder (not necessarily lowest price).
Technical Specifications
Source: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdfScope: Licensing, implementation, maintenance, and support of an Enterprise Vulnerability Scanning Management Solution for 5 years. Minimum capabilities: Flexible scanning options, unified endpoint agent, dynamic asset discovery, live/customizable dashboards, threat-aware risk prioritization (with active risk scoring), AI-driven CVSS scoring, expert-curated vulnerability research, integrated threat feeds, remediation projects/goals/SLAs, policy assessment (PCI, CIS, NIST), advanced report customization, dynamic discovery (VMware, Mobile), distributed scanning, Microsoft Azure/AWS support, dynamic asset groups/tagging, Real Risk score, integrated vulnerability validation (Metasploit), executive/remediation reporting, multi-OS support (Windows, Linux). Must scan and identify all vulnerabilities (manual, scheduled, or continuous; full/partial; non-intrusive). Subscription licensing for max 10,000 IP addresses. Implementation on new hardware (physical or virtual with redundancy), log production, and integration with SABC Enterprise Monitoring Tool. Managed service must include: Monthly vulnerability scanning/assessment, asset/risk prioritization, executive reports (trends, risk scores, heatmaps), technical remediation reports (exploitable/high-risk vulnerabilities), patch status/remediation progress tracking, attack surface monitoring, vulnerability exception/risk acceptance handling, solution maintenance/support, monthly remote meetings, training, and a detailed project plan. Reporting: Live dashboards, pre-formatted templates (Assets, Containers, Executive Summaries, Vulnerabilities), consolidated reporting (vulnerabilities, configurations, policy compliance, asset details), asset/vulnerability filtering, customizable queries, CSV exports, remediation tracking/validation, threat-aware prioritization, audit reports. Network vulnerability assessment: Discovery (all assets, OS, applications, services), unified vulnerability/configuration assessment, container assessment, authenticated scans, virtual/cloud environment support, network change adaptation, scheduled scanning (monthly/weekly/daily). Prioritization: Risk scoring, business context adjustment, threat feeds, vulnerability validation. Remediation: Automated/IT-integrated patching, automated containment, remediation workflows/planning, remediation analytics. Administration: Role-based access, exceptions management, application/coverage updates. Compliance: Templates for PCI, NIST, CIS; configuration/compliance assessments in single scan; controls assessment.
Financial Requirements
Source: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdfPricing must be in South African Rand (ZAR) with VAT as a separate line item. Prices must be fixed for the first year; annual increases capped at CPI. All costs must be included: guarantee bonds, taxes, duties, customs, customs clearance, inland transportation, storage, unpacking, installation, integration, testing, packaging, and full project duration costs. Local suppliers quoting in foreign currency must convert to ZAR and provide exchange rate evidence. Payment terms: 60 days from invoice date. Foreign currency payments (if applicable) via telegraphic/wired bank transfer. Bidder must provide: Bank name/address, company account number, and SWIFT/sort code. Bid validity: 180 days from closing date. Schedule of Quantities required: Itemised descriptions, quantities, and unit prices. No price changes allowed post-submission unless negotiated with SABC. Prices for supplies requiring installation must include all delivery-on-site costs. Returnable packaging must specify credit amounts. Bid prices must cover the entire 5-year period.
Compliance Requirements
Source: ENTERPRISE VULNERABILITY SCANNING MANAGEMENT SOLUTION FOR A PERIOD OF 5 YEARS ..pdfMandatory documents: CSD registration details (unique reference number), SARS Compliance Status PIN (for tax validation), valid B-BBEE certificate (SANAS-accredited) or sworn affidavit for EMEs/51% black-owned QSEs (confirming annual turnover ≤R10M for EMEs or R10M–R50M for QSEs, and black ownership percentage). Proof of valid TV license (company, shareholders, directors) or affidavit if none; SABC will verify internally. Certified company registration document (name, registration number, date, active directors/members), certified shareholders’ certificates, certified ID copies of directors/members, and last 3 years’ audited financial statements or management accounts. Mandatory certifications: ISO 27000/27001 (Information Security Management) and ISO 9001 (Quality Management) at company level, valid for 2026 and not expiring within 9 months of submission. Proof of authority from OEM to resell/distribute the proposed solution in South Africa (valid for 9 months from closing date). No contract awarded to bidders with outstanding tax/TV license issues or not registered on CSD. Winning bidder must maintain or improve B-BBEE level. IRBA-accredited auditors cannot issue B-BBEE certificates post-30 September 2016. Misrepresentation or fronting is prohibited; may result in criminal charges or blacklisting. Trusts/consortia/joint ventures must submit B-BBEE certificates under their name or consolidated scorecards. Start-ups may use EME or QSE/Generic Scorecard. Local content percentage must be stated for equipment/goods partially or fully manufactured in South Africa, with supporting documentation. Required forms: SBD 6.1 (Preference Points Claim), SBD 8 (Past SCM Practices), SBD 9 (Independent Bid Determination), Declaration of Interest (SBD 4), Acceptance of Conditions of Bid.
Sets the constitutional standard for fair, equitable, transparent, competitive and cost-effective public procurement.
Relevant because this is a South African public-sector procurement opportunity.
Act 5 of 2000
Covers preferential procurement and preference-point systems used in public tenders.
Relevant because this is a South African public-sector procurement opportunity.
Act 12 of 2004
Supports anti-corruption controls and supplier integrity in procurement processes.
Relevant because this is a South African public-sector procurement opportunity.
Act 28 of 2024
Provides the national framework for public procurement across government.
Relevant because this is a South African public-sector procurement opportunity.
Act 2 of 2000
Supports access to tender records, award decisions and public-sector procurement information.
Relevant because this is a South African public-sector procurement opportunity.
Act 3 of 2000
Supports lawful, reasonable and procedurally fair administrative tender decisions.
Relevant because this is a South African public-sector procurement opportunity.
Website
www.sabc.co.za/
Address
Uitsaaisentrum, Johannesburg, 2092, South Africa
Source confidence
High source confidence
Official source
eTenders.gov.za
Documents found
1
Last checked
05 Jun 2026
AI status
Enhanced
Data conflicts
None detected
This tender has strong source evidence, including source metadata and supporting tender information synced from the government tender portal.
Tenders SA is not the issuing authority. All tenders are automatically synced from the official government tender portal. Always confirm final submission details, closing dates, briefing sessions, eligibility requirements, and documents on the official government portal before applying.
Key Personnel
Provinces Active
Industries
💡 Want more tendering tips and strategies?
Explore Our BlogGet deep intelligence on Administrative and support activities. Unlock full pricing strategies, bid frequency, and historical win rates.