Broad-Based Black Economic Empowerment Act (B-BBEE Act)
Act 53 of 2003
Provides the empowerment-compliance context often used in public-sector supplier evaluation.
Relevant because this is a South African public-sector procurement opportunity.
Documents available on tender detail page
Tender Type
Request for Quotation
Delivery Location
32 Jones Road, Airways Park, Johannesburg (Head Office) - Kempton Park - Isando - 1627
Organization Type
GOVERNMENT
Published
12 Jun 2026
OCDS Reference
ocds-9t57fa-158986
South african airways (saa) is seeking quotations from qualified service providers to deliver enterprise-grade penetration testing services (both internal and external) along with continuous active exploit monitoring capabilities. The successful bidder will be responsible for identifying vulnerabilities, simulating real-world attacks, and providing actionable intelligence to strengthen saa's cybersecurity posture across a minimum of 2,200 user endpoints. This tender is specifically targeted at cybersecurity firms with proven experience in financial and aviation sectors, with a minimum of 8 years relevant experience.
Bidders must have a minimum of 8 years combined professional experience in penetration testing and active watch services within financial and aviation industries, supported by purchase orders and contracts as evidence. The delivery team must include at least 5 OSCP-certified security professionals with additional certifications such as CREST, CEH, GPEN, or equivalent. A technical functionality threshold of 75% must be achieved; bidders who fail to meet this will be disqualified from further evaluation. Bidders must demonstrate compliance with internationally recognised cybersecurity standards (ISO/IEC 27001 or NIST Cybersecurity Framework) and certifications such as OSSTMM, OWASP Testing Guide, or PTES. Submissions must include all mandatory returnable documents (SAA Vendor Document, SBD 4, General Conditions of Contract) and a valid Tax Clearance Certificate. Pricing must be submitted exclusive of VAT, be firm (fixed), and broken down by individual components. Preference points (20 points) are allocated for B-BBEE Level 1 or 2 (10 points) and 30%+ Black Women Ownership (10 points).
Continue with tenders sharing this issuer, category, or province.
Return to this tender’s issuing organisation, province, or category.
Continue with tenders sharing this issuer, category, or province.
Date & Time
Friday, 19 June 2026 - 16:00
Venue
null
Categories
Request for Quotation
32 Jones Road, Airways Park, Johannesburg (Head Office) - Kempton Park - Isando - 1627
Tenders in this industry often require registration with these bodies.
Recommended Certifications
Having these can improve your winning chances: IITPSA Membership, ISO 27001 (Information Security Management), ISO 20000 (IT Service Management), CISSP
AI Document Analysis Stages
Description
Source: Annexure 1 - Vendor application Local.pdf12 Jun
2026
Tender Published
Tender was published
19 Jun
2026
Closing Date
Tender closing date
These references help suppliers understand the public-procurement framework around this opportunity. They are generated from the tender category, issuing organisation type and procurement context.
These rules commonly apply to South African public-sector procurement.
Act 53 of 2003
Provides the empowerment-compliance context often used in public-sector supplier evaluation.
Relevant because this is a South African public-sector procurement opportunity.
Act 108 of 1996 (s217)
This is general procurement context, not legal advice. Always verify requirements in the official tender documents and issuing authority notices.
RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf
South African Airways (SAA) is requesting quotations for network penetration testing services (internal & external) and ongoing active monitoring of hacking exploits tailored to SAA’s environment and industry. The scope includes continuous penetration testing, real-time exploit detection, threat intelligence monitoring, and managed services with scalability for 2,200+ endpoints. The contract requires compliance with international cybersecurity standards (e.g., ISO 27001, NIST, CIS Controls) and demonstrated experience in aviation, financial services, or eCommerce sectors.
Annexure 2 - SAA SBD 4 Standard Bidding Document.pdf
South African Airways (SAA) is requesting quotations for network penetration testing services (both internal and external) and ongoing monitoring of hacking exploits relevant to SAA's environment and industry. The tender closes on June 19, 2026, and requires bidders to complete a disclosure form (SBD4) to ensure transparency, accountability, and compliance with ethical and legal standards.
Annexure 1 - Vendor application Local.pdf
South African Airways (SAA) is requesting quotations for network penetration testing services (both internal and external) along with ongoing monitoring of hacking exploits relevant to SAA's environment and industry. The tender requires vendors to submit detailed company, financial, and compliance documentation.
Annexure 3 - SAA General conditions of contract.pdf
South African Airways (SAA) is requesting quotations for network penetration testing services (internal and external) and ongoing active monitoring of hacking exploits relevant to SAA's environment and industry. The tender uses standard South African government General Conditions of Contract (GCC) with no specific technical specifications provided in this document. The closing date is June 19, 2026.
To download these documents and access AI-powered analysis, visit the main tender page.
Win SAA tenders with AI Discovery, aviation intelligence, compliance gap analysis, and structured application support for aeronautical contracts.
Matched by category & region
Free guidance to prepare before you bid
Not sure if your business is ready for this tender? Check CSD, CIDB, and B-BBEE requirements, run a readiness assessment, and move from opportunity to submission.
Open Supplier Readiness HubLearn how to submit a winning bid with these related articles
Median Estimate
R 2 504 474
Range
Based on 25 comparable awarded tenders. Companies with similar profiles typically bid near the median.
* Estimates are based on historical data and do not guarantee actual award values.
We refine every tender document through these stages so you can brief your team and prepare your bid with confidence. Anything marked as "in progress" will be upgraded automatically — no action required from you.
Contact Information
Source: Annexure 1 - Vendor application Local.pdf (unknown)Submission Guidelines
Source: Annexure 1 - Vendor application Local.pdf (unknown)Returnable Documents
Source: Annexure 1 - Vendor application Local.pdf (unknown)Evaluation Criteria
Source: Annexure 1 - Vendor application Local.pdf (unknown)Technical Specifications
Source: Annexure 1 - Vendor application Local.pdf (unknown)Experience & Qualifications
Source: Annexure 1 - Vendor application Local.pdf (unknown)Financial Requirements
Source: Annexure 1 - Vendor application Local.pdf (unknown)Compliance Requirements
Source: Annexure 1 - Vendor application Local.pdf (unknown)B-BBEE Requirements
Source: Annexure 1 - Vendor application Local.pdf (unknown)Contractual Terms
Source: Annexure 1 - Vendor application Local.pdf (unknown)Description
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdfImportant Dates
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Contact Information
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Submission Guidelines
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Returnable Documents
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)G.1 Written Quote Form
Evaluation Criteria
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Technical Specifications
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Experience & Qualifications
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdfQuality Management
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdfPricing Schedule
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdfFinancial Requirements
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Compliance Requirements
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)B-BBEE Requirements
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Contractual Terms
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Requirements
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Section
Source: RFQ GSM040-2026 - Request for Quotation for network penetration service (Internal & External), and ongoing active watch on hacking exploits that are applicable for South African Airways’s (SAA.pdf (RFQ)Description
Source: Annexure 3 - SAA General conditions of contract.pdfThe General Conditions of Contract include clauses covering definitions, application, standards, use of contract documents, patent rights, performance security, inspections, packing, delivery, insurance, transportation, incidental services, and other general terms.
Submission Guidelines
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)Returnable documents and submission details are specified in the Special Conditions of Contract (SCC). The SCC supplements the General Conditions of Contract and prevails in case of conflict. Bidders must compile and submit the SCC separately for this bid.
Returnable Documents
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)Documents to be submitted by the supplier are specified in the Special Conditions of Contract (SCC).
Evaluation Criteria
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)Must be registered with South African Revenue Services and provide a valid tax clearance certificate. Must not be restricted from doing business with the public sector. Must comply with the National Industrial Participation Programme if applicable. Foreign suppliers are responsible for all taxes and levies outside South Africa.
Technical Specifications
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)Goods supplied must conform to the standards mentioned in the bidding documents and specifications. The purchaser may inspect the supplier's premises and records. All pre-bidding testing is at the bidder's cost. Goods may be rejected if they do not comply with contract requirements. Packing must prevent damage during transit and comply with special requirements in the contract.
Methodology
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)Delivery of goods must be made in accordance with terms specified in the contract.
Quality Management
Source: Annexure 3 - SAA General conditions of contract.pdfGoods must conform to standards in bidding documents. The supplier must maintain confidentiality of contract documents and permit inspections and audits by the purchaser. Inspection, testing, and analysis costs are allocated based on compliance. Non-compliant supplies may be rejected.
Pricing Schedule
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)If a price other than an all-inclusive delivered price is required, it will be specified in the SCC. Prices charged must not vary from bid prices except as authorized in the SCC or bid validity extension.
Financial Requirements
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)Prices must not vary from the bid price except as authorized in the SCC or bid validity extension. Payment terms are specified in the SCC. Payments are made in Rand, within 30 days of invoice submission, upon fulfillment of contract obligations.
Compliance Requirements
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)A tax clearance certificate issued by SARS is required prior to award. No contract will be concluded with bidders whose tax matters are not in order. The National Industrial Participation (NIP) Programme applies if subject to NIP obligation. Collusive bidding is prohibited and may lead to restriction from public sector business.
B-BBEE Requirements
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)The National Industrial Participation (NIP) Programme administered by the Department of Trade and Industry applies to all contracts subject to NIP obligation.
Contractual Terms
Source: Annexure 3 - SAA General conditions of contract.pdfThe contract includes clauses on payment, prices, amendments, assignment, subcontracts, delays, penalties, termination for default, force majeure, termination for insolvency, dispute settlement, limitation of liability, governing language, applicable law, notices, taxes and duties, National Industrial Participation Programme, and prohibition of restrictive practices. Special Conditions of Contract (SCC) supplement these and prevail in conflict.
Special Conditions
Source: Annexure 3 - SAA General conditions of contract.pdf (TENDER)Special Conditions of Contract (SCC) relevant to this bid must be compiled separately and will supplement the General Conditions of Contract. The SCC prevails in case of conflict.
Description
Source: Annexure 2 - SAA SBD 4 Standard Bidding Document.pdfThis document is an SBD4 (Standard Bidding Document 4) - Bidder's Disclosure annexure only. It does not contain the description of the network penetration services tender. The actual tender is for network penetration testing services (internal and external) and ongoing active monitoring of hacking exploits applicable to South African Airways's environment and industry. Full scope details are not present in this document.
Contact Information
Source: Annexure 2 - SAA SBD 4 Standard Bidding Document.pdf (TENDER)Contact details are limited. Department: Supply Chain Management. No specific contact person, email address, or phone number is provided in this document. Bidders should consult the full tender documentation for SCM and technical contact details.
Compliance Requirements
Source: Annexure 2 - SAA SBD 4 Standard Bidding Document.pdf (TENDER)Mandatory sbd4 disclosure requirements:
Bidder disclosure requirements (sbd4):
Section
Source: Annexure 2 - SAA SBD 4 Standard Bidding Document.pdfNo evaluation criteria for the network penetration services tender are contained in this document. Only the mandatory SBD4 disclosure form is provided here.
Sets the constitutional standard for fair, equitable, transparent, competitive and cost-effective public procurement.
Relevant because this is a South African public-sector procurement opportunity.
Act 5 of 2000
Covers preferential procurement and preference-point systems used in public tenders.
Relevant because this is a South African public-sector procurement opportunity.
Act 12 of 2004
Supports anti-corruption controls and supplier integrity in procurement processes.
Relevant because this is a South African public-sector procurement opportunity.
Act 28 of 2024
Provides the national framework for public procurement across government.
Relevant because this is a South African public-sector procurement opportunity.
Act 2 of 2000
Supports access to tender records, award decisions and public-sector procurement information.
Relevant because this is a South African public-sector procurement opportunity.
Act 3 of 2000
Supports lawful, reasonable and procedurally fair administrative tender decisions.
Relevant because this is a South African public-sector procurement opportunity.
Address
32 Jones Road, Airways Park, Johannesburg (Head Office) - Kempton Park - Isando - 1627
Source confidence
High source confidence
Official source
eTenders.gov.za
Documents found
4
Last checked
12 Jun 2026
AI status
Enhanced
Data conflicts
None detected
This tender has strong source evidence, including source metadata and supporting tender information synced from the government tender portal.
Tenders SA is not the issuing authority. All tenders are automatically synced from the official government tender portal. Always confirm final submission details, closing dates, briefing sessions, eligibility requirements, and documents on the official government portal before applying.
Key Personnel
💡 Want more tendering tips and strategies?
Explore Our BlogGet deep intelligence on Information service activities. Unlock full pricing strategies, bid frequency, and historical win rates.