Broad-Based Black Economic Empowerment Act (B-BBEE Act)
Act 53 of 2003
Provides the empowerment-compliance context often used in public-sector supplier evaluation.
Relevant because this is a South African public-sector procurement opportunity.
Documents available on tender detail page
Tender Type
Request for Proposal
Delivery Location
546 EDMOND STREET - ARCADIA - PRETORIA - 0083
Organization Type
GOVERNMENT
Published
13 Aug 2026
OCDS Reference
ocds-9t57fa-165531
The department of public service and administration (dpsa) seeks a service provider to develop and deliver a comprehensive, online, self-paced departmental information security officer (diso) training programme for the public service. The programme must include 13 modules covering governance, risk management, compliance, and strategic leadership, and must be developed within three months. Bidders must achieve a minimum functionality score of 75% and comply with the 80/20 preference point system.
Closing date and time: 27 August 2026 at 11:00; submit the completed bid into the bid box at Batho Pele House, 546 Edmond Street (corner Hamilton Street), Arcadia.
Offer must remain valid for 90 days from the closing date.
Mandatory documents: SBD 1, SBD 3.3, SBD 4, SBD 6.1, proof of CSD registration, and for consortium/joint venture parties, a valid Tax Clearance Certificate for each party.
Minimum functionality score: 75%.
Key personnel qualifications: Lead Information Security Expert/SME must hold CISSP or CISM (or equivalent) with minimum 8 years' experience in information security governance and risk management; Instructional Designer/eLearning Developer must have a relevant qualification (NQF level 6 or higher) and minimum 5 years' experience.
Provide at least three (3) reference sites with signed reference letters on referee's letterhead, and submit Annexure A for each.
Demonstrate an online learning platform via screenshots or a link showing unit structure, quizzes, video integration, and learner progress tracking.
Detailed cost breakdown must be all-inclusive (no hidden costs) and cover curriculum development, video production, quiz creation, stakeholder workshops, quality assurance, and project management.
Preference points (80/20 system): Price 80 points; Specific goals 20 points – Black Equity Ownership 8, Women Equity Ownership 6, Persons Living with Disabilities Equity Ownership 3, Youth Equity Ownership 3.
B-BBEE minimum level: 6 (3 points allocated for B-BBEE status).
Training programme must be developed within three (3) months of project commencement.
Course must be delivered on Moodle 4.5 eLearning platform and in a format allowing DPSA to modify and republish without redevelopment.
SCM enquiries: Lorraine Masenya / Mmapula Kotsokoane, tel 012 336 1126 / 012 336 1389; Technical enquiries: Alfred Mohlala, tel 012 336 1220, email [email protected].
Continue with tenders sharing this issuer, category, or province.
Return to this tender’s issuing organisation, province, or category.
Continue with tenders sharing this issuer, category, or province.
Date & Time
Thursday, 27 August 2026 - 11:00
Venue
null
Kindly register your proposal in the register at the dpsa reception.
Categories
Request for Proposal
546 EDMOND STREET - ARCADIA - PRETORIA - 0083
AI Document Analysis Stages
Description
13 Aug
2026
Tender Published
Tender was published
27 Aug
2026
Closing Date
Tender closing date
These references help suppliers understand the public-procurement framework around this opportunity. They are generated from the tender category, issuing organisation type and procurement context.
These rules commonly apply to South African public-sector procurement.
Act 53 of 2003
Provides the empowerment-compliance context often used in public-sector supplier evaluation.
Relevant because this is a South African public-sector procurement opportunity.
Act 108 of 1996 (s217)
This is general procurement context, not legal advice. Always verify requirements in the official tender documents and issuing authority notices.
COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf
The Department of Public Service and Administration (DPSA) is procuring a service provider to develop and deliver a comprehensive Departmental Information Security Officer (DISO) training programme for the public service. The programme aims to equip DISOs with the knowledge, skills, and competencies required to effectively execute their responsibilities.
To download these documents and access AI-powered analysis, visit the main tender page.
Matched by category & region
Free guidance to prepare before you bid
Not sure if your business is ready for this tender? Check CSD, CIDB, and B-BBEE requirements, run a readiness assessment, and move from opportunity to submission.
Open Supplier Readiness HubWe refine every tender document through these stages so you can brief your team and prepare your bid with confidence. Anything marked as "in progress" will be upgraded automatically — no action required from you.
The Department of Public Service and Administration (DPSA) draws its legislative
mandate from section 197, read with section 195(1) of the Constitution, the Public
Service Act of 1994, and the Public Administration Management Act of 2014. The
functions of the Minister of Public Service and Administration, as enshrined in the
Public Service Act, 1994, include the responsibility to develop the norms and
standards for governance and management of electronic government in the public
service.
The Directive on Public Service Information Security requires departments to establish
and maintain an effective information security capability through the appointment of
Departmental Information Security Officers (DISOs). The DISO plays a critical role in
protecting government information assets, providing assurance in the effectiveness of
information security controls, managing cyber risks, promoting information security
awareness, and ensuring compliance with applicable legislation, policies, and
standards. The term DISO refers to the role equivalent to that of a Chief Information
Security Officer (CISO) in the private sector.
To support departments in implementing the Directive on Public Service Information
Security, the DPSA intends to develop (customize) a comprehensive DISO Training
Programme that will equip current and prospective DISOs with the knowledge, skills
and competencies required to effectively execute their responsibilities.
The purpose of this Request for Proposal (RFP) is to source a service provider to
develop (customize) and deliver a comprehensive DISO training programme.
The programme must provide a structured learning pathway that enables
Departmental Information Security Officers to establish, implement, monitor, and
continuously improve departmental information security programmes aligned with
government requirements, cybersecurity best practices, and international standards.
The programme must include learning modules, case studies, practical exercises,
reflection activities, assessments and quizzes.
of 24
Restricted
The objectives of the training program are to equip the DISOs in the public service to
effectively execute their assigned duties as follows:
i. Establishing Governance and Strategic Alignment: The DISO acts as a
strategic advisor who establishes and matures the department's information
security governance framework, ensuring that security initiatives align with
corporate governance, business strategies, and national directives.
ii. Information Risk Management: Operating as an independent risk advisor, the
DISO establishes structured risk management processes, oversees ongoing
threat and vulnerability evaluations, and guides the implementation of
appropriate control measures to mitigate risks.
iii. Policy Creation and Enforcement: The DISO is responsible for developing,
maintaining, and enforcing comprehensive departmental information security
policies and standards, ensuring they reflect changes in threats, technology,
and organizational missions.
iv. Regulatory and Legal Compliance: The role involves ensuring the
department complies with all legal, regulatory, and internal policy requirements,
tracking these obligations, resolving non-compliance issues, and supporting
security-related audits.
v. Cultivating Security Awareness and Training: To mitigate human-factor
risks, the DISO oversees a continuous security awareness, education, and
training program designed to help all employees recognize cyberattacks and
handle sensitive data correctly.
vi. Operational and Technical Control Assurance: While day-to-day technical
execution is managed by the ICT team, the DISO oversees the effectiveness of
these controls, specifically governing privileged access, identity management,
and emergency access protocols.
vii. Third-Party and Supply Chain Oversight: The DISO guides the risk
assessment process for outsourced contracts, mitigates supply chain risks, and
regularly reviews external party access to ensure ongoing business
justification.
of 24
Restricted
viii. Resource Justification: The DISO develops business cases and determines
financial priorities to justify security investments, ensuring that the necessary
resources are available and utilised efficiently.
The appointed provider shall develop (using the below design checklist) specialised
learning content for the DISO programme. The programme will be hosted by the
National School of Government.
The scope includes training on emerging security trends, best practices, and the
technologies essential to information security, including network, application, and
cloud security. The course must integrate real-world case studies, hands-on practical
exercises, and provide practical insights into information security best practices.
The course must:
Framework, Information Security and ICT Service Continuity directives and
other relevant directives.
The content must include:
Adult Learning Principles
of 24
Restricted
memorising content)
Online Learning Materials
content section
Media
Formative Assessment Activities
o Present as an online quiz
o Base questions on course content
o Question types: Multiple choice – single answer, Multiple choice –
multiple answers, Match columns A and B, Fill in the blank (select
missing words), Drag and drop onto text, Drag and drop onto image,
True/False.
o Develop computer-graded questions to ensure learners know and
understand key content related to the course outcomes
of 24
Restricted
o Quizzes typically consist of 10 – 20 questions, depending on the
complexity of the module.
o Provide general feedback for each question to support learning
o Present as an online quiz or hand-in activity
o Base questions/activities on real-life scenarios
o Develop activities to ensure that learners will be able to apply new
knowledge and skills to solve real-life challenges, related to the course
outcomes, in the workplace
o One activity per unit is typically required
o Learners should be able to complete hand-in activities in approximately
an hour
o Provide a suggested answer for all hand-in activities
relevant
o Provide guidance on the key learning points that should be included in
the reflection (this is distributed after the activity has been completed)
and students get their results immediately. They must achieve a minimum
score of 75% on a quiz, but they have unlimited attempts to complete it.
activities and resources will be delivered on this platform.
learning materials; however, service providers may use any available
development tool that is fully compatible with deployment on the Moodle e-
learning platform to develop the learning materials. This will allow the DPSA to
edit learning objects once the service provider hands over the source files.
allow the DPSA to modify, maintain, and republish the training without requiring
redevelopment.
format.
of 24
Restricted
The programme is intended for Departmental Information Security Officers (DISOs)
and must be delivered as an online, self-paced learning programme, supported by
practical exercises and assessments. The appointed service provider will not be
required to host the training course as such will be hosted by NSG.
7.1. Learning Materials
Learning materials that meet the specified requirements and enable the achievement
of identified learning objectives. The types of materials must include:
the identified modules.
are used throughout the course to contextualise key concepts and assess their
application.
learner engagement and understanding of the materials and
learners' analytical and application skills.
7.2. Quality Assurance
The provider will hold formal meetings with the project team, provide evidence of
project progress, ensure the relevance and quality of all learning materials, and
implement all project team inputs, recommendations, and decisions within the scope
of the project.
The DISO training programme is intentionally non-technical in its core delivery,
designed specifically to align with the strategic and governance mandate of the DISO
role. The DISO primarily functions as a governance authority, serving as an
independent assurer, risk advisor, and strategic advisor, while the day-to-day technical
execution of security controls remains the responsibility of the ICT team.
Consequently, the required curriculum must equip candidates for high-level oversight,
of 24
Restricted
risk management, policy compliance, and resource justification rather than technical
administration. The successful service provider must develop content that empowers
DISOs to function effectively as strategic advisors to departmental leadership,
enabling them to seamlessly integrate information security into the department's
broader business strategy and corporate governance.
The learning journey map for the Departmental Information Security Officer (DISO)
Training Programme shall be structured as follows:
8.1. Module 1: introduction to information security in government
Upon completion of this module, participants should have a sound understanding of
the fundamental principles of information security, including confidentiality, integrity
and availability, and the role of governance and risk management within the South
African Public Service. Participants should understand the evolving threat landscape,
the importance of protecting government information assets, and the strategic role of
the Departmental Information Security Officer (DISO) in supporting secure service
delivery and organisational resilience.
8.2. Module 2: public service information security legislative and
Policy framework
Participants will develop a comprehensive understanding of the legislative, regulatory
and policy framework governing information security within the South African Public
Service. The module will enable participants to interpret applicable legal and policy
requirements, understand departmental compliance obligations, and appreciate the
organisational, legal, and governance implications of non-compliance.
8.3. Module 3: directive on public service information security
Participants will gain a comprehensive understanding of the Directive on Public
Service Information Security, including its objectives, governance requirements and
implementation expectations. The module will equip participants with the knowledge
and practical skills required to implement, coordinate and monitor compliance with the
Directive within their respective departments while promoting consistent and effective
information security management practices.
8.4. Module 4: minimum information security standards (miss) and
Government security prescripts
of 24
Restricted
Participants will understand the purpose, structure and application of the Minimum
Information Security Standards (MISS) and other government security prescripts
relevant to departmental information security programmes. The module will enable
participants to align departmental security initiatives with government requirements,
integrate prescribed controls into governance processes, and support consistent
implementation of national security standards across the Public Service.
8.5. Module 5: information security governance
Upon completion of this module, participants will understand the principles of
information security governance and how governance supports organisational
objectives, accountability and risk management. The module will equip participants to
establish, implement and continuously improve governance structures, policies, roles
and oversight mechanisms that enable effective management of departmental
information security programmes.
8.6. Module 6: directive on the public corporate governance of ICT
Participants will understand how information security integrates with the Directive on
the Public Corporate Governance of ICT and contributes to effective ICT governance
within government institutions. The module will enable participants to align information
security initiatives with organisational strategy, governance structures and ICT
decision-making processes while supporting enterprise-wide accountability and
performance.
8.7. Module 7: information security risk management
Participants will acquire the knowledge and practical skills required to establish,
implement and maintain departmental information security risk management
processes. The module will enable participants to identify, assess, evaluate, treat and
monitor information security risks using a risk-based approach that supports informed
decision-making, regulatory compliance and organisational resilience.
8.8. Module 8: security architecture, technology and controls
Participants will develop an executive-level understanding of security architecture,
technology and information security controls required to protect departmental
information assets. Rather than focusing on technical administration, the module will
prepare DISOs to provide governance oversight, evaluate the effectiveness of security
of 24
Restricted
controls, support secure technology decisions, and ensure that technical safeguards
align with organisational risk management and government security requirements.
8.9. Module 9: information security incident management and cyber
Resilience
Participants will understand the principles of incident management, cyber resilience
and organisational preparedness. The module will equip participants to coordinate
departmental responses to information security incidents, support investigation and
recovery activities, facilitate stakeholder communication, and contribute to continuous
improvement through lessons learned and resilience planning.
8.10. Module 10: security awareness, culture and human factors
Participants will understand the critical role of people in maintaining information
security and the importance of fostering a security-conscious organisational culture.
The module will equip participants to design, implement and evaluate departmental
security awareness and education programmes that promote responsible user
behaviour, reduce human-related security risks and strengthen organisational
resilience.
8.11. Module 11: security monitoring, metrics and reporting
Participants will develop the capability to monitor, measure and report on departmental
information security performance using meaningful metrics and key performance
indicators. The module will enable participants to evaluate the effectiveness of security
controls, communicate risk and performance information to management, and support
evidence-based decision-making and continual improvement of information security
programmes.
8.12. Module 12: business continuity, disaster recovery and
Resilience
Participants will understand the relationship between information security, business
continuity and organisational resilience. The module will equip participants to
contribute to the development, implementation and continual improvement of business
continuity and disaster recovery capabilities that enable departments to maintain
critical services and recover effectively from disruptive events.
8.13. Module 13: strategic leadership and stakeholder management
FOR DISOs
of 24
Restricted
Upon completion of this module, participants will be prepared to perform the strategic
leadership responsibilities of a Departmental Information Security Officer. The module
will strengthen participants' ability to provide executive advice, influence organisational
decision-making, communicate information security risks effectively, manage
stakeholder relationships, promote a culture of governance and accountability, and
align departmental information security programmes with organisational objectives
and government priorities.
The final product shall consist of the complete DISO Training Programme, an online
self-paced course, learner materials, videos and multimedia content, assessments
and quizzes and public sector case studies and reference materials.
The development of the training programme shall be completed within three (3)
months of the project commencement date. During this period, the appointed service
provider shall undertake all activities required for the design, development, review,
quality assurance and finalisation of the training programme and its associated
learning materials.
The service provider must demonstrate:
12.1. Company Profile: Outlining background, history, and areas of business. Must explicitly
demonstrate advanced information security expertise, cybersecurity governance
experience, curriculum development expertise, and experience in developing online
learning programmes. Identify existing clients for whom the development of similar
government or corporate security training has been developed.
of 24
Restricted
12.2. Technical Proposal & Abridged CVs: Proposal responding to all sections of the DISO
Training RFP. Attach abridged CVs of key personnel to be deployed, clearly indicating
qualifications and relevant experience in information security frameworks (ISO 27001,
NIST) and online learning development.
12.3. Required Qualifications for Key Personnel: Submit copies of qualifications for each
proposed resource as outlined below
Resource Role Minimum Qualification / Experience
Lead Information Security Certified Information Systems Security Professional
Expert / Subject Matter Expert (CISSP) or CISM or equivalent. Minimum 8 years’
(SME) experience in information security governance and
risk management.
Instructional Designer / Relevant qualification in instructional design or
eLearning Developer educational technology (NQF level 6 or higher).
Proven experience developing online courses.
Minimum of 5 years’ experience.
12.4. References: Provide at least three (3) reference sites that DPSA can contact to assist
in the evaluation of performance under paragraph 13 under Detailed Functionality
Criteria. The service provider is required to provide at least three (3) reference letters
on the referee’s letterhead, which are duly signed and complete and submit Annexure
A for each reference site. DPSA reserves the right to contact these references directly
and without prior consultation with the Service Provider.
12.5. Demonstration of Online Learning Platform: Screen shots or a link to a demo of a
previously developed online course showing: unit structure, quizzes (multiple choice,
drag-and-drop, match columns), video integration, and learner progress tracking.
12.6. Proof of CSD Registration: Proof of registration on the Central Supplier Database
(CSD) with National Treasury. No bid will be awarded to a supplier not registered on
Csd.
12.7. Project Plan: A Plan detailing how the service provider will engage with DPSA to
develop the DISO training programme, including stakeholder consultation and quality
assurance checkpoints, to deliver the requirements in terms of the duration of the
appointment as to reach the final objective of a fully-fledged training program within a
3 month period.
12.8. Detailed Cost Breakdown: A detailed cost breakdown that includes all costs associated
with: curriculum development, video production, quiz creation, stakeholder workshops,
of 24
Restricted
quality assurance, and project management. The cost structure must be all-inclusive
(no hidden costs).
Important Dates
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Closing date and time: 27 August 2026 at 11:00. Offer validity: 90 days from closing date. The training programme must be developed within three (3) months of project commencement.
Contact Information
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)SCM enquiries: Lorraine Masenya / Mmapula Kotsokoane, tel 012 336 1126 / 012 336 1389. Technical enquiries: Alfred Mohlala, tel 012 336 1220. Email for bid enquiries: [email protected]. Submission address: Batho Pele House, 546 Edmond Street (corner Hamilton Street), Arcadia – deposit in the bid box.
Submission Guidelines
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Submit the completed bid (SBD 1, SBD 3.3, SBD 4, SBD 6.1) with all mandatory documents into the bid box at Batho Pele House, 546 Edmond Street (corner Hamilton Street), Arcadia, by 11:00 on 27 August 2026. The offer must remain valid for 90 days from the closing date. Bidders must provide proof of CSD registration; consortium/joint venture parties must each submit a valid Tax Clearance Certificate. The SBD 6.1 form must be fully completed and signed by a duly authorised person. Failure to submit any required form or document will invalidate the bid.
Returnable Documents
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Mandatory documents to submit: 1) Company Profile demonstrating relevant expertise and experience; 2) Technical Proposal with abridged CVs of key personnel; 3) Copies of qualifications for key personnel; 4) At least three reference letters on referee letterhead; 5) Demonstration of online learning platform (screenshots or link to a demo course); 6) Proof of CSD registration; 7) Project Plan for developing the programme within a 3-month period; 8) Detailed cost breakdown covering curriculum development, video production, quiz creation, stakeholder workshops, quality assurance, and project management (all-inclusive).
Evaluation Criteria
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Proposals are evaluated on functionality and price using the 80/20 preference point system. Functionality criteria: (1) Company Proficiency & Experience in Information Security Training – 15 points (more than 6 years' experience: 5; 4–5 years: 4; 3 years: 3; 2 years: 2; 1 year: 1); (2) Demonstration of Online Learning Platform – 30 points (comprehensive demonstration with all requested features: 5; most features: 4; basic with some interactivity: 3; static design: 2; incomplete: 1); (3) Key Personnel Qualifications and Expertise – 15 points (detailed criteria for CISSP/CISM certification, ISO27001 expertise, and dedicated Instructional Designer). Price is allocated 80 points; specific goals (Black, Women, Disability, Youth equity ownership) are allocated 20 points. Bidders must achieve a minimum functionality score of 75% to be considered.
Technical Specifications
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Develop and deliver a comprehensive DISO Training Programme for the public service, hosted by the National School of Government. The programme must be an online, self-paced course with 13 modules covering: introduction to information security, legislative and policy framework, the Directive, MISS, governance, risk management, security architecture, incident management, security awareness, monitoring and reporting, business continuity, and strategic leadership. Content must include video presentations, learner guides and handbooks, interactive assessments and quizzes, practical exercises, and case studies. Design must follow the provided checklist: adult learning principles, structured online learning materials, media aligned with NSG look and feel (usable in low-bandwidth areas), formative assessments (knowledge checks per unit as online quizzes of 10–20 questions; application checks per unit as quizzes or hand-in activities), and reflection activities. The course must be developed on the Moodle 4.5 eLearning platform and in a format that allows DPSA to modify and republish without redevelopment. The programme is intentionally non-technical, focusing on strategic and governance aspects of the DISO role.
Methodology
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdfThe DISO training programme is intentionally non-technical, focusing on strategic and governance aspects of the DISO role. Content must be developed using a design checklist including adult learning principles, online learning materials, media aligned with NSG look and feel, formative assessment activities, and use of the Moodle 4.5 eLearning platform. The programme consists of 13 modules covering: introduction to information security, legislative and policy framework, the Directive, MISS, governance, risk management, security architecture, incident management, security awareness, monitoring and reporting, business continuity, and strategic leadership. Deliverables include learning materials, case studies, quizzes, and video content. The content must be developed in a format that allows the DPSA to modify and republish without redevelopment.
Experience & Qualifications
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdfThe service provider must demonstrate advanced information security expertise, cybersecurity governance experience, curriculum development expertise, and experience developing online learning programmes. Key personnel must include a Lead Information Security Expert/SME with CISSP/CISM or equivalent and 8+ years' experience, and an Instructional Designer with NQF level 6+ qualification and 5+ years' experience. Provide at least 3 references with signed letters on referee letterhead.
Quality Management
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdfThe training programme must be developed within three (3) months of project commencement. The service provider must undertake all activities for design, development, review, quality assurance, and finalisation of the programme and associated learning materials. Deliverables include learning materials explaining key concepts, fictional case studies for each level of participation, an example of a successful public service project to anchor each module, objective tests (flashcards, crossword puzzles, quizzes), and questions based on case studies to assess analytical and application skills. The cost structure must be all-inclusive with no hidden costs.
Pricing Schedule
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdfBid price must be quoted in South African Rand inclusive of VAT for the total cost of the assignment. The financial proposal must cover all assignment activities and outputs. Provide a total cost breakdown, indicate the period required for commencement after acceptance, and state whether rates are firm for the full period (if not, provide basis for adjustments). Offer must be valid for 90 days from closing date.
Financial Requirements
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Bid price must be quoted in South African Rand inclusive of VAT for the total cost of the assignment. Provide a total cost breakdown covering all assignment activities and outputs (curriculum development, video production, quiz creation, stakeholder workshops, quality assurance, project management). The cost structure must be all-inclusive with no hidden costs. Indicate the period required for commencement after acceptance and state whether rates are firm for the full period; if not, provide the basis for adjustments (e.g., CPI). Offer must be valid for 90 days from closing date.
Compliance Requirements
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Minimum functionality/qualifying score: 75%. Valid Tax Clearance Certificate (or TCS PIN via e-filing) – for each party of a consortium/joint venture. Proof of CSD registration (CSD number must be provided). B-BBEE minimum level: 6 (3 points allocated for B-BBEE status). Preference points for specific goals under the 80/20 system: Black Equity Ownership – 8 points; Women Equity Ownership – 6 points; Persons Living with Disabilities Equity Ownership – 3 points; Youth Equity Ownership – 3 points. Proof required includes company registration certificate (CIPC), shareholders certificate, certified ID documents of directors, detailed CSD report, B-BBEE certificate or sworn affidavit, consolidated B-BBEE certificate for consortium/JV/trust, agreement for consortium/JV/trust, and declaration from a registered medical practitioner for disability claims. Complete and sign SBD 6.1; failure to do so invalidates the bid.
B-BBEE Requirements
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdf (TENDER)Preference points for specific goals under the 80/20 system: Black Equity Ownership – 8 points; Women Equity Ownership – 6 points; Persons Living with Disabilities Equity Ownership – 3 points; Youth Equity Ownership – 3 points. Proof required includes company registration certificates, B-BBEE certificates, CSD reports, and other supporting documentation as per the Preference Point Matrix.
Contractual Terms
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdfThe contract will be governed by the Preferential Procurement Policy Framework Act, 2000. Definitions include: 'tender' (written offer), 'price' (amount including taxes less unconditional discounts), 'rand value' (total estimated value including taxes), 'tender for income-generating contracts' (leases, disposals, concessions), 'consortium or joint venture' (association of persons combining expertise and resources), 'trust' and 'trustee', 'youth' (persons aged 14–35 at the closing date, or original closing date if extended), 'disability' (permanent impairment of physical, intellectual, or sensory function), and 'local content and production' (locally produced goods within South Africa). Bidders must complete the declaration regarding company/firm details and certify that preference points claimed are true and correct. Fraudulent claims may lead to disqualification, recovery of costs, contract cancellation, restriction from doing business with the state for up to 10 years, and criminal prosecution.
Section
Source: COMPLETE BID TEMPLATE FOR SCM0032026 27 AUGUST 2026 DISO.pdfProposals will be evaluated on functionality and price using the 80/20 preference point system. Functionality criteria include: 1) Company Proficiency & Experience in Information Security Training (15 points) – more than 6 years' experience gets 5, 4-5 years gets 4, 3 years gets 3, 2 years gets 2, 1 year gets 1; 2) Demonstration of Online Learning Platform (30 points) – comprehensive demonstration with all requested features gets 5, most features gets 4, basic with some interactivity gets 3, static design gets 2, incomplete gets 1; 3) Key personnel qualifications and expertise (15 points) – detailed criteria for CISSP/CISM certification, ISO27001 expertise, and dedicated Instructional Designer. Price is allocated 80 points, specific goals 20 points.
Sets the constitutional standard for fair, equitable, transparent, competitive and cost-effective public procurement.
Relevant because this is a South African public-sector procurement opportunity.
Act 5 of 2000
Covers preferential procurement and preference-point systems used in public tenders.
Relevant because this is a South African public-sector procurement opportunity.
Act 12 of 2004
Supports anti-corruption controls and supplier integrity in procurement processes.
Relevant because this is a South African public-sector procurement opportunity.
Act 28 of 2024
Provides the national framework for public procurement across government.
Relevant because this is a South African public-sector procurement opportunity.
Act 2 of 2000
Supports access to tender records, award decisions and public-sector procurement information.
Relevant because this is a South African public-sector procurement opportunity.
Act 3 of 2000
Supports lawful, reasonable and procedurally fair administrative tender decisions.
Relevant because this is a South African public-sector procurement opportunity.
Address
546 EDMOND STREET - ARCADIA - PRETORIA - 0083
Source confidence
High source confidence
Official source
eTenders.gov.za
Documents found
1
Last checked
13 Aug 2026
AI status
Enhanced
Data conflicts
None detected
This tender has strong source evidence, including source metadata and supporting tender information synced from the government tender portal.
Tenders SA is not the issuing authority. All tenders are automatically synced from the official government tender portal. Always confirm final submission details, closing dates, briefing sessions, eligibility requirements, and documents on the official government portal before applying.
💡 Want more tendering tips and strategies?
Explore Our BlogMedian Estimate
R 250 349
Range
Based on 25 comparable awarded tenders. Companies with similar profiles typically bid near the median.
* Estimates are based on historical data and do not guarantee actual award values.
Get deep intelligence on Services: General. Unlock full pricing strategies, bid frequency, and historical win rates.