Network Operations Security Software
Location:
Michigan, United States
Posted on:
Deadline:
Summary:
Michigan seeks a one-year contract for comprehensive network operations and security software, including EDR and SIEM solutions, supporting 24/7 managed detection, response, and threat intelligence integration.
Get full access to this RFP
Download the full RFP document and use Settle's AI to analyze requirements, estimate budget, and draft winning responses in minutes.
The client seeks a vendor to provide comprehensive network operations and security operations center (NOC/SOC) software solutions, such as CrowdStrike or an approved equivalent, focused on enterprise End Point Detection and Response (EDR) and Security Information and Event Management (SIEM) licensing. The software must enable real-time detection, prevention, and automated remediation of endpoint threats; correlate network, user, and endpoint events to identify advanced persistent threats; and maintain 24/7/365 monitoring, alerting, and incident response within a hybrid IT environment.
The selected solution must support rapid deployment through a proof-of-concept and phased rollout, deploy cloud-native endpoint protection agents across both Windows and Linux environments, and provide scalable, cloud-hosted SIEM to handle millions of events per day. The system should enrich logs with threat intelligence feeds and incorporate behavior-based detection, machine learning, and rollback remediation features, with an API-first design for telemetry export, policy automation, and vulnerability scanning.
Additional requirements include real-time host isolation, scripted remediation, integration with ticketing systems, managed threat hunting with custom query capabilities, ingestion of logs from various sources, and support for compliance reporting (e.g., PCI DSS, FTA). The platform should integrate seamlessly with the endpoint protection system, support automation of containment actions, and enable dashboarding, scheduled, and ad-hoc API reporting. The contract period is one year.
Best-fit vendors:
• Proven expertise in delivering enterprise-level EDR and SIEM software solutions
• Experience supporting 24/7/365 NOC/SOC environments in hybrid IT infrastructures
• Certified vendors for recognized security platforms such as CrowdStrike
• Ability to support rapid, phased rollouts, and proof-of-concept demonstrations
• Strong track record with managed threat hunting and cloud-native security implementations
