The Vendor is required to provide the network modernization project will encompass both on-premises enterprise data centers and public cloud environments to deliver resilient, secure, and scalable network services across approximately 200 locations throughout the county geographically dispersed footprint.
- User and Device Authentication and Authorization:
• Solution will provide authentication and authorization with compliance checks for all devices connecting to the County network for both wired and wireless.
• Ability to have policy enforcement at the device connection point.
• Ability to deploy dynamic access enforcement based on user, device, and location, using platforms that integrate with Microsoft Entra ID and/or Cisco Identity Service Engine (ISE).
• Provide continuous monitoring of behavior of devices and users for compliance and take steps to remediate any undesired actions if needed.
• Remote users and devices will be under the same enforcement policies as on-premises users and devices.
- Network Segmentation and Security
• Solution will provide a framework that supports granular access controls, network micro segmentation, and continuous authentication using identity-aware security frameworks across datacenter and cloud workloads.
• Ability to enforce the least privileged framework across multiplatform environments.
• Ability to support edge workloads and Internet of Things (IoT) securely.
• Ability to restrict access to resources by using identity-based frameworks no matter location or application with continuous authentication and authorization based on the context of the request and sensitivity of the resource across hybrid environments.
- Network High Availability and Flexibility
• Solution will provide network agility, automation, and centralized policy control.
• Ability to decouple the control plane from the data plane.
• Ability to support policy-driven automation across Wide Area Network (WAN) and cloud.
• Ability to ensure high availability, security and scalability across all locations.
- Network Visibility and Security
• Solution will provide full visibility of internal traffic within County data centers, branch offices and cloud environments to detect lateral movement and policy violations.
• Ability to integrate with Secure Web Gateways (SWG), DNS filtering, and Cloud Access Security Broker (CASB).
• Ability for continuous verification of trust across users, devices, and applications.
• Ability to support edge workloads and IoT securely.
• Ability to provide end-to-end visibility into user experience, especially for remote users.
- Hybrid and Multi-cloud
• Solution will provide support for multi-cloud and on premise workloads, providing high availability and resiliency policies.
• Ability to have Cloud Security Posture Management and Cloud Workload Protection Frameworks.
• Ability for unified monitoring and centralized policy enforcement.
• Ability to provide migration planning, operational runbooks, business continuity, and disaster recovery procedures.
Set up free email alerts and get notified when new government bids, tenders and procurement opportunities match your industry and location. Choose daily or weekly delivery.