24
Page 1 of 24 Software Technology Parks of India Plot No. P-1, Rajiv Gandhi Infotech Park, M.I.D.C, Hinjawadi, Phase-1, Pune-411057 Tel. No. 91-20-2298 1000/ Fax No. 91-20-2298 1035/1010 website: www.mah.stpi.in Tender Document for Hiring of Consultant for Implementation of ISO 27001:2013 (ISMS) at STPI Pune and its sub-centers (Mumbai, Aurangabad, Nagpur, Nashik, Kolhapur and Goa) (Tender No: STPI/P/PUR/05/2019-20 dated 16.09.2019)

Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

  • Upload
    others

  • View
    2

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 1 of 24

Software Technology Parks of India Plot No. P-1, Rajiv Gandhi Infotech Park, M.I.D.C, Hinjawadi, Phase-1, Pune-411057

Tel. No. 91-20-2298 1000/ Fax No. 91-20-2298 1035/1010 website: www.mah.stpi.in

Tender Document

for

Hiring of Consultant for Implementation of ISO 27001:2013 (ISMS) at

STPI Pune and its sub-centers (Mumbai, Aurangabad, Nagpur, Nashik,

Kolhapur and Goa)

(Tender No: STPI/P/PUR/05/2019-20 dated 16.09.2019)

Page 2: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 2 of 24

SOFTWARE TECHNOLOGY PARKS OF INDIA PUNE (An Autonomous Society Under Ministry of Electronics & Information

Technology, Govt. of India) Plot No. P-1, Rajiv Gandhi Infotech Park, MIDC, Hinjawadi, Phase-1, Pune-

411057 Tel. No. 91-20-2298 1000/ Fax No. 91-20-2298 1035/ 1010.

Tender Ref. No.: STPI/P/PUR/05/2019-20 Date:16.09.2019

Software Technology Parks of India (STPI) Pune invites quotations under Two Bid system (Technical

Bid & Financial bid) for “Hiring of Consultant for Implementation of ISO 27001:2013 (ISMS) at

STPI Pune and its sub-centers (Mumbai, Aurangabad, Nagpur, Nashik, Kolhapur and Goa)”

from qualified consultants as per this bid document.

The important Bid Schedule & Venue are mentioned below in Table 1 and Table 2:

Table 1:

I Tender inviting officer Authority,

Designation and Address

The Director,

Software Technology Parks of India,

Plot no. 1, Rajiv Gandhi Infotech Park, Phase 1,

MIDC, Hinjawadi, Pune -411 057

Tel No. :- 020 2298 1000

II Name of the Work

Hiring of Consultant for Implementation of

ISO 27001:2013 (ISMS) at STPI Pune and its

sub-centers (Mumbai, Aurangabad, Nagpur,

Nashik, Kolhapur and Goa)

III Place of Execution Address Mentioned at S. No.- I above

IV Location of Pre-bid Meeting Address Mentioned at S. No.- I above

V Place of submission of Tender Address Mentioned at S. No.- I above

VI Place of Tender Opening Address Mentioned at S. No.- I above

VII Validity of Bids 120 Days from the last date of Bid Submission

VII Any other important criteria specified by

the tender inviting authority

Tender received after due date and time will be

summarily rejected

Table 2: Published on http://eprocure.gov.in 16.09.2019

Bid Document Download Start Date 16.09.2019 at 1300 Hrs.

State Date & Time of Bid Clarification 17.09.2019 at 0900 Hrs.

End Date & Time of Bid Clarification 26.09.2019 at 1600 Hrs.

Date & Time of Pre-bid meeting 27.09.2019 at 1100 Hrs

Bid Submission Start Date & Time 27.09.2019 at 1500 Hrs

Bid Submission End Date & Time 09.10.2019 at 1500 Hrs

Technical Bid Opening Date & Time 10.10.2019 at 1500 Hrs.

Commercial Bid Opening Date & Time Shall be intimated later

RFP document can be downloaded from the website http://www.mah.stpi.in &

www.eprocure.gov.in and the bidder shall submit an EMD through NEFT/ RTGS for an amount of

Page 3: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 3 of 24

Rs. 10,000/- (Rupees: Ten Thousand Only) in favour of M/s. Software Technology Parks of India,

Pune failing which the bid will liable to be rejected.

The details of NEFT / RTGS is as below: -

Beneficiary Name : Software Technology Parks of India Bank : Bank of India S/B Account No. : 013810110001793 Bank Branch : Sanpada, Navi Mumbai, 400705 IFSC Code : BKID0000138 MICR Code : 400013133

Director, STPI- Pune

Page 4: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 4 of 24

INDEX

S.

No.

TITLE Page No.

1 Section-I Introduction 1

2 Section-II Instruction to bidders 2

3 Section-III General Terms & Conditions 11

4 Section-IV Scope of Consultancy Work 16

5 Annexure-I Format of Technical Bid 17

6 Annexure-II Compliance Sheet 18

7 Annexure-III Format of BoQ/Commercial bid/ Price Schedule 19

8 Annexure-IV Non-Disclosure Agreement 20

9 Annexure-V Declaration 24

10 Annexure-VI List of Pune – Sub centers with addresses 25

Page 5: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 5 of 24

SECTION-I

INTRODUCTION

Software Technology Parks of India (STPI) is an Autonomous Society under Ministry of

Electronics and Information Technology, Government of India, established by the Government of

India in 1991 with the objective of boosting the Software Exports from India. STPI has been the

critical support agency for the Indian Information Technology Industry for the statutory services,

technology services, incubation services, industry promotional and government interfacing services.

Headquartered in New Delhi, STPI has 9 Jurisdictional Directorates with 59 centers across the

country. STPI-Pune is Jurisdictional Directorate of Maharashtra & Goa states and having sub

centers at Aurangabad, Mumbai, Nagpur, Nashik, Kolhapur & Goa. The details of services offered

by STPI Pune and sub-center along with number of employees at each center are tabulated below,

S.

No STPI Centre External Services Internal Services No. of

Users

1 STPI Pune Statutory Services, Datacom service,

Incubation service, Project

management & consultant service

Admin & Finance

services

82

2 STPI Mumbai Datacom service, Incubation service - 16

3 STPI Nagpur Datacom service, Incubation service - 9

4 STPI Aurangabad Datacom service, Incubation service - 7

5 STPI Nashik Datacom service, Incubation service - 7

6 STPI Kolhapur Datacom service, Incubation service - 6

7 STPI Goa Datacom service, Incubation service - 5

Page 6: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 6 of 24

SECTION-II

INSTRUCTION TO BIDDERS

1. Bidders should submit their proposal in the sealed Master envelope via speed post/ courier/ by

hand to

The Director,

Software Technology Parks of India.

Plot No. P-1, Rajiv Gandhi Infotech Park,

Phase 1, Hinjawadi, Pune, Maharashtra-411057

2. Please super scribe on the Master envelope as “Hiring of Consultant for Implementation of ISO

27001:2013 (ISMS) at STPI Pune and its sub-centers.”

3. If the bid is submitted without super scribing on the master envelop as mentioned above or the

bid is a cover/envelop without properly sealed condition, STPI Pune will not be responsible for

accidental misplacement of the bid document in partial or whole or accidental opening of the bid

prior to the scheduled date and time of bid opening.

4. The quote should reach us on or before 09th

October, 2019 at 1500 Hrs. The quotation

received after the due date will not be accepted.

5. Bid validity:

I. The bid submitted should be valid for 120 days from the last date of bid submission.

II. STPI Pune may ask for the bidder’s consent to extend the period of validity. Such request

and the response shall be made in writing only. The bidder is free not to accept such

request, without forfeiting the EMD. A bidder agreeing to the request for extension will

not be permitted to modify his bid.

6. Earnest Money Deposit (EMD)

I. Earnest Money of Rs 10,000/- (Rupees Ten Thousand Only) should be deposited

through NEFT/RTGS, on or before bid submission closing time failing which bid will be

liable for rejection. The account details of STPI Pune for EMD deposit is as follows:

Beneficiary Name : Software Technology Parks of India

Bank : Bank of India

S/B Account No. : 013810110001793

Bank Branch : Sanpada, Navi Mumbai, 400705

IFSC Code : BKID0000138

MICR Code : 400013133

II. Bidder is required to submit proof of payment of EMD along with technical bid.

III. EMD will not be accepted in the form of cash /cheque.

Page 7: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 7 of 24

7. The successful bidder, on award of contract / order, must send the contract/order acceptance in

writing along with signed copy of the Non-disclosure Agreement (NDA) as per Annexure-IV

and proof of payment of Performance Security, within 7 working days of award of

contract/order, failing which the EMD will be forfeited.

8. The EMD of unsuccessful bidders will be returned within 15 day from finalization of tender and

acceptance of award of contract by the successful bidder.

9. However, if the return of EMD is delayed for any reason, no interest/ penalty shall be payable to

the bidder.

10. The exemption of EMD shall be applicable to Micro and Small Enterprises (MSEs) as

defined in MSE Procurement Policy issued by Department of Micro, Small and Medium

Enterprises (MSME) or are registered with the Central Purchase Organization or the

concerned Ministry or Department. In terms of MSEs, the firms should be registered with

NSIC to avail the above exemptions. The exemption will not be applicable, if, the firms are

not registered with NSIC. Copy of the relevant exemption certificate/NSIC registration

shall be submitted along with the Bid Documents.

11. BIDDERS ELIGIBILITY CRITERIA:

The bidder consultant must meet the following minimum criteria and submit the documentary

proof for the same along with technical bid:

I. Bidder should be an Indian registered company under Companies Act, 1956 Proprietor/

Partnership /Pvt Ltd (Copy of PAN/TIN/GST registration/VAT/ROC etc.).

II. Bidder should have statuary registration with the following (Copy of PAN /GST Details)

i. PAN / TIN

ii. GST

III. Bidder should have valid adequate certification as Lead Auditor for ISO 27001:2013. The

certification must be valid till entire contract period.

IV. Bidder should have successfully executed minimum two similar consultancy work for

implementation of ISO 27001:2013 (ISMS), during 3 Financial Years (FY 2016-17,

2017-18 and 2018-19).

V. The bidders should not be Black listed by any State/Central Govt. /PSU/ Autonomous

Body (Self Declaration on Letter Head as per Annexure-V).

12. PREPARATION OF BIDS: Bidder should submit their proposal in sealed MASTER

envelope/Cover which contains following 2 sealed envelopes,

I. Technical Bid (Envelop 1)

II. Commercial Bid (Envelop 2)

Page 8: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 8 of 24

13. CONTENT OF TECHNICAL BID (ENVELOPE 1)

This envelop should be super scribed as “Technical bid”.

Documentary Evidence to be submitted/uploaded along with the bid to support eligibility:

a) Technical bid, duly filled-in and signed by authorized signatory with company seal,

in the format specified in Annexure-I

b) Copy of Registration/ Incorporation of the firm/ company/ proprietorship, etc.

c) Copy of PAN Card of bidder.

d) Copy of GST certificate of bidder.

e) Copy of Certification of Lead Auditor for ISO 27001:2013 standards.

f) Proof of payment of EMD amount before the due date and time of bid submission

or Copy of valid NSIC registration for MSEs to avail EMD exemption.

g) Copies of at least 2 Nos. of Contracts/work orders, indicating the details of similar

consultancy works assignment, details of client, value of assignment, date and year

of award during last 3 financial years (FY 2016-17, 2017-18, 2018-19).

h) Duly filled-in copy of the compliance sheet as per Annexure-II.

i) Duly signed (with Company seal) Copy of declaration (printed on Company

Letterhead) as per Annexure-V for self-declaration of understanding and accepting

all details mentioned in this RFP and that the bidder is not backlisted by any

agency.

14. CONTENT OF COMMERCIAL BID (ENVELOPE-2)

Bidder should submit financial proposal inside the sealed envelope labelled “Commercial

Bid”.

Commercial bid should be as specified in Annexure-III, printed on Company Letter head

and Duly signed and with Company seal.

15. OTHER TERMS & CONDITIONS:

I. No commercial information whatsoever shall be provided in the technical bid, Failure to

do so may disqualify the bid.

II. Both Technical as well as Commercial Bids shall bear the seal and sign of the authorized

signatory of the Bidder in every page along with company seal.

III. All entries in the Bid shall either be typed or be in ink. Erasures shall render such Bids

liable to summary rejection. The Bidder shall duly attest all cancellations and insertions.

Page 9: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 9 of 24

IV. The person(s) signing the Bid, with date, shall sign all changes, alterations and

corrections in the Bid in full along with date and stamp. No erasure and/or over writing

is/are permissible.

V. STPI Pune reserves the right to cancel/withdraw the bid without assigning any reasons for

such decision. STPI Pune also reserves the right to award to any bidder or cancel the

orders issued to any bidder without assigning any reason thereof. Such decision will not

incur any liability whatsoever on the part of STPI Pune consequently.

VI. Bidders shall adhere to the procedure and processes laid down in this document and shall

follow fair and ethical practices of trade.

VII. STPI Pune reserves the right to accept the offer in full or in parts or reject summarily.

VIII. Conditional bids will not be accepted.

IX. The bidders are requested to submit only the relevant documents as requested/mentioned

in the tender document.

X. Canvassing may result into disqualification of a bidder.

Note: All the documents submitted (whether original or photo copy) in the bid must be legible and

self-attested with office seal.

16. BID CLARIFICATION

The bidding process is stipulated in the tender document clearly. In case of any

clarifications about bidding process/eligibility criteria, the bidders may seek clarification

during the pre-bid meeting or through email to [email protected] and

[email protected] prior to pre-bid meeting. The clarifications sought after the pre-bid

meeting will not be entertained.

The date fixed for opening of bids, if subsequently declared as holiday by STPI, the revised date

of schedule will be notified. However, in absence of such notification, the bids will be opened on

next working day. The time and venue will remain unaltered.

Page 10: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 10 of 24

SECTION-III

GENERAL TERMS & CONDITIONS

I. GENERAL TERMS

1) The tender documents shall be treated as “confidential”.

2) Alterations, if any, in the quotation should be attested by the tenderer, failing which the

tender is liable to be rejected.

3) STPI Pune reserves the right to modify/relax any of the terms & conditions of the tender.

4) Disclaimer: This Tender / Request for Proposal (RFP) is not an offer by STPI, Pune, but an

invitation for bidder’s response. No contractual obligation whatsoever shall arise from the

RFP process.

5) Non-Disclosure agreement has to be submitted as per Annexure-IV by successful bidder

only along with acceptance letter of order/contract and proof of payment of Performance

Security, within 7 working days of award of contract.

6) Forfeiture of EMD:

a) If the successful bidder refuse/fails to accept purchase/work order within 7 working days.

b) If the Bidder withdraws tender before/after finalization of the tender.

c) If the successful bidder abandons the contract.

d) If the contract is terminated by STPI due to poor performance /variation of any clause of

agreement or any bad act of selected bidder.

7) Evaluation of the Bids

The evaluation process of the RFP will be as per this clause. The purpose of this clause is

only to provide the Bidders an idea of the evaluation process that STPI may adopt. However,

STPI reserves the right to modify the evaluation process at any time during the RFP process,

without assigning any reason, whatsoever and without any requirement of intimating the

Bidders of any such change.

A two-stage procedure will be adopted for evaluation of RFP proposals, pursuant to the

eligibility qualification criterion, bidders will be short-listed for opening of the Commercial

Bids. Commercials Bids will be opened only of the Bidders who succeed in the technical

qualification criteria. The commercial Bids of the disqualified Bidders will remain

unopened.

Page 11: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 11 of 24

(a) Evaluation of Technical Bid (stage 1)

i. Technical bid shall be opened first and will be evaluated for fulfilment of the Bidders

Eligibility Criteria stated as per clause 12 and 14 of Section II in this RFP.

ii. It is, however, clarified that, subject to other provisions of this Document, every

Bidder will have to comply the minimum Eligibility Criteria specifications laid down

in the RFP for being qualified technically.

iii. Bids that are not substantially responsive are liable to be disqualified.

iv. If the Bidder’s Eligibility Criteria is fulfilled, STPI may call the bidder for

presentation to understand the technical capability or skill set to deliver the required

service and then Commercial bid will be opened.

v. Commercial Bids will be opened only for those bidders who are technically qualified.

(b) Evaluation of Commercial Bid (stage 2)

The Commercial bids shall be opened by the Committee nominated by the competent

authority at the office of STPI, Plot P1, Rajiv Gandhi Infotech Park, Hinjawadi Phase-I,

Pune, Maharashtra-411057. The date and time of opening of the commercial bids will be

communicated to the qualified bidders.

I. Further to the identification of technically qualified bidders, their commercial

bids will be opened.

II. The Bidder, whose total commercial offer as per price schedule (Annexure-III)

is determined to be the lowest after evaluation, will be considered for the issue

of Work Order.

III. However, STPI-Pune reserves the right to reject any or all the bids without

assigning any reason, whatsoever.

NOTE:

Arithmetical errors, if any, in the Commercial bids shall be rectified on the following

basis:

I. If there is a discrepancy between net payable amount mentioned in words and

figures, the lowest price reflected in the Commercial Bid/price schedule shall

prevail.

II. If the Contractor does not accept the correction of the errors, his/ her bid shall

be rejected and the EMD will be forfeited.

8) SEEKING CLARIFICATION ON SUBMITTED BIDS BY STPI:

Page 12: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 12 of 24

To assist in the examination, evaluation and comparison of bids STPI may, at its discretion

ask the bidder for the clarification of its bid. The request for clarification and the response

shall be in writing. However, no post bid clarification at the initiative of the bidder shall be

entertained after opening of the tender.

If a bidder does not provide clarifications of its bid by the date and time set by STPI for

clarification, their bid may be rejected.

9) In respect of interpretation/clarification of this bid document and in respect of any matter

relating to this bid document, the decision of Director STPI-Pune will be final.

10) Rejection of the bid: The bidder is expected to examine all instructions, formats, terms &

Conditions & scope of work in the bid document. Failure to furnish all information required

as per bid document or submission of bid which is not substantially responsive to the bid

document in every respect may result in rejection of bid.

11) Blacklisting: Company/Firm blacklisted by Govt./PSU/Corporate organization are not

eligible to Bid. If at any stage of bidding process or during the currency of contract period,

such information comes to knowledge of STPI, STPI shall have right to reject the bid, will

be forfeited and performance security or terminate the contract, as the case may be, without

any compensation to the bidder.

12) Force Majeure: If at any time during contract period, either party is subject to force

majeure, which can be termed as civil disturbance, riots, strikes, tempest, acts of God etc.

which may prevent either party to discharge the obligation, the affected party shall promptly

notify the other party about the happening of such an event. Neither party shall by reason of

such event be entitled to terminate the contract in respect of such performance of their

obligations. The obligations under the contract shall be resumed as soon as practicable after

the event has come to an end or ceased to exist. The performance of any obligations under

the contract shall be resumed as soon as practicable after the event has come to an end or

ceased to exist ( If the performance of any obligation under the contract is prevented or

delayed by reason of the event beyond a period mutually agreed to, if any, or seven days,

whichever is more; either party may at its option terminate the contract).

13) Jurisdiction of Court: The courts at Pune shall have the exclusive jurisdiction to try all

disputes, if any, arising out of this agreement between the parties.

14) Dispute Resolution:

Page 13: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 13 of 24

a. Any dispute and/or difference arising out of or relating to this contract will be

resolved through joint discussion of the authorities’ representatives of the concerned

parties.

However, if the disputes are not resolved by joint discussions, then the matter will be

referred for adjudication to a sole Arbitrator appointed by the STPI, PUNE.

b. The award of the sole Arbitrator shall be final and binding on all the parties. The

arbitration proceedings shall be governed by Indian Arbitration and Conciliation Act

1996 as amended from time to time.

c. The cost of Arbitration shall be borne by the respective parties in equal proportions.

During the pendency of the arbitration proceeding and currency of contract, neither

party shall be entitled to suspend the work/service to which the dispute relates on

account of the arbitration and payment to the contractor shall continue to be made in

terms of the contract. Arbitration proceedings will be held at Pune only.

II. AWARD OF CONTRACT

Contract will be awarded to L1 bidder among all technically qualified bidder. The award of

contract shall be hosted on website www.mah.stpi.in/ and http://eprocure.gov.in/eprocure/app/.

However, STPI Pune reserves the right to award the contract partly or wholly to one or more

bidders.

III. PERFORMANCE SECURITY

The successful bidder needs to furnish 10% of total contract value as Performance Security in the

form of Online Payment to STPI.

The 10% of Performance Security to be submitted by the bidder after adjusting the EMD amount

and Balance amount, if any, to be transferred to STPI within 7 working days from the date of

order, along with written acceptance of order and signed copy (with company seal) of Non-

Disclosure Agreement (NDA) as per Annexure-IV.

In case, the Performance Security is less than the EMD amount, the excess EMD amount after

adjusting with Performance Security shall be refunded to the bidders without any interest. This

performance security shall be valid till the contract period plus 60 days.

Performance security will be refunded interest free to successful bidder along with release of

payment after the successfully completion of consultancy work and cortication.

IV. PAYMENT TERMS

No advance payment will be made. Payment will be released against the bill/invoice raised,

within 15 working days from successfully receiving invoice, after the completion of Certification

Process for ISO 27001:2013.

Page 14: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 14 of 24

V. RIGHT TO CANCEL THE CONTRACT

Director, STPI-PUNE reserves the right to cancel the contract at any stage without any Prior

notice without assigning any reason thereof.

VI. CANCELLATION OF CONTRACT ORDER

STPI Pune reserves the right for cancellation of contract order at any time if the services are

found unsatisfactory.

VII. SETTELEMENT OF DISPUTES CLAUSE

Any dispute or difference whatsoever arising between the tenderer and STPI shall be settled by

arbitration in accordance with the provisions of the Arbitration and Conciliation Act, 1996. In

such case the same shall be referred to the sole arbitration of Director, STPI Pune. The award of

the arbitrator shall be final and binding on both the parties. The venue of the arbitration shall be

at Pune. The language of arbitration shall be in English. Legal issues, if any, will strictly be

under jurisdiction courts in Pune only.

VIII. TRAVEL & BOARDING

No travel & boarding or logistical charges will be reimbursed by STPI Pune.

Page 15: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 15 of 24

SECTION-IV

SCOPE OF CONSULTANCY WORK In order to acquire certification in ISO 27001:2013 Information Security Management System for STPI

Pune and sub-centers, the details of services to be provided by the consultant is tabulated below,

S.

No. Activity

1 Review of ISMS Policy, manual & procedures relevant to managing risk and improving

information security in accordance with the organizations over all policies and objectives.

2 Implementation of ISO 27001:2013 (ISMS) Certification Process for STPI Pune and its Sub-

Centres i.e. Aurangabad, Mumbai, Nagpur, Nashik, Kolhapur & Goa.

3 Assist in complete Certification-process for ISO 27001:2013. Any issues till the

certification is received should be rectified by the consultant

4 Assist in preparation of Tender document for selection of certification body

5 Prepare the ISMS documents as per ISO 27001:2013 guidelines. Implement an Information

Security Management System based on the requirements of ISO 27001:2013.

6

Training of all core personnel involved with Quality management system, training of

internal auditors, emphasizing auditing concepts, audit question development, audit report

development, audit report preparation and other required topics for training staff.

7 Perform an internal audit before the commencement of external certification audit for ISO

27001:2013.

8 Establish suitable methods to evaluate Processed data for continual Improvement of

Information Security and Quality Management system.

9 Any other requirement/task to ensure ISO 27001:2013 compliance.

Page 16: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 16 of 24

Annexure I

Format of Technical Bid

To be Printed on Company Letterhead

Tender Inviting Authority : The Director, Software Technology Parks of India, Pune

Name of Work : Hiring of Consultant for Implementation of ISO

27001:2013 at STPI Pune and sub-centers (Mumbai,

Aurangabad, Nagpur, Nashik, Kolhapur and Goa).

Tender No. : Tender Ref. No.: STPI/P/PUR/05/2019-20 Date:16.09.2019

1 Name of Bidder

2 Registered Address

3 Company’s Nature of Business

(in max. 30 words)

4 No. of years of experience as in

providing consultancy for

implementation of ISO

27001:2013.

5 Total Estimated time of

implementation of ISO

27001:2013.

6 Week wise/ Monthly breakup of

work plan for implementation of

ISO 27001:2013 and certification

Time Period Task Planned

10 Estimated Team size

Contact Information of person:

12 Contact Name*

13 Correspondence email*

14 Mobile/ Phone No.*

Name: Signature of Authorized Person

Designation:

Date:

Place: Company Seal

Page 17: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 17 of 24

Annexure-II COMPLIANCE SHEET

S.

No. Activity

Compliance

YES/NO

1 Review of current ISMS related documents including manuals, procedures, work

instructions, checklist and formats in line with STPI by-laws & Others norms.

2 Implementation of ISO 27001:2013 (ISMS) Certification Process for STPI Pune

and its Sub-Centres i.e. Aurangabad, Mumbai, Nagpur, Nashik, Kolhapur & Goa.

3 Assist in complete Certification-process for ISO 27001:2013. Any issues till the

certification is received should be rectified by the consultant

4 Assist in preparation of Tender document for selection of certification body

5

Prepare the ISMS documents as per ISO 27001:2013 guidelines. Implement an

Information Security Management System based on the requirements of ISO

27001:2013.

6

Training of all core personnel involved with Quality management system,

training of internal auditors, emphasizing auditing concepts, audit question

development, audit report development, audit report preparation and other

required topics for training staff.

7 Perform an internal audit before the commencement of external certification audit

for ISO 27001:2013.

8 Establish suitable methods to evaluate Processed data for continual Improvement

of Information Security and Quality Management system.

9 Any other requirement/task to ensure ISO 27001:2013 compliance.

Name: Signature of Authorized Person

Designation:

Date:

Place: Company Seal

Page 18: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 18 of 24

ANNEXURE III

FORMAT FOR COMMERCIAL BID/BoQ/Price Schedule

To be Printed on Company Letterhead

Tender Inviting Authority : The Director, Software Technology Parks of India, Pune

Name of Work : Hiring of Consultant for Implementation of ISO

27001:2013 at STPI Pune and sub-centers (Mumbai,

Aurangabad, Nagpur, Nashik, Kolhapur and Goa).

Tender No. : Tender Ref. No.: STPI/P/PUR/05/2019-20 Date:16.09.2019

Name of Bidder Company : ………………………………………………………………….

………………………………………………………………….

S.

No

.

Description of Consultancy Work Total Price Incld. All taxes &

charges

(in Rs.)

1 Consultancy work for Implementation of ISO 27001:2013 at STPI Pune and

sub-centers (Mumbai, Aurangabad, Nagpur, Nashik, Kolhapur & Goa)

NET PAYABLE AMOUNT (in Words): Rupees

…………………………………………………………

I/We hereby certify that

1. I/we have read the bid document and agree with all the mentioned terms and conditions

mentioned therein.

2. “Net Payable Amount” mentioned above (In Indian Rupees) is the lump sum and complete

amount inclusive of all charges and taxes for the entire Scope of Services.

3. The validity of the quote is at least 120 days from the last date of submission of bids.

Name: Signature of Authorized Person

Designation:

Date:

Place: Company Seal

Page 19: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 19 of 24

ANNEXURE - IV

Non-Disclosure Agreement

THIS AGREEMENT is valid till one year from the date of work order, and is made by and between

SOFTWARE TECHNOLOGY PARKS OF INDIA, an autonomous body under Ministry of Electronics

& Information Technology, Govt. of India herein referred to as ‘DISCLOSING PARTY’ whose address

is ………………………………………………………………………………………………………. and

M/s.…………………………………………………………………………………………………………

Both the parties shall mean and include their successors at Office from time to time, legal

representatives, administrators, executors and assigns, etc.

This agreement shall govern the conditions of disclosure by disclosing party to Recipient of certain

confidential and proprietary information that is oral, written, or in computer file format. Examples of

Confidential Information include the identities of companies, consultants and other service providers

used by disclosing party, both foreign and domestic, in connection with disclosing party’s business,

supplier lists, supplier information, computer databases containing customer, product and vendor

information, designs, drawings, specifications, techniques, models, documentation, diagrams, flow

charts, research and development process and procedures, ‘know-how’, new product or new technology

information, financial, marketing and sales information and projections, product pricing, profitability,

marketing techniques and materials, marketing timetables, strategies and development plans, trade

names and trademarks not yet disclosed to the public, business methods and trade secrets, and personnel

information.

1. Purpose of Disclosure: Disclosing party is disclosing the Confidential Information to Recipient

in order for Recipient to evaluate the possibility of using disclosing party’s services like Call

Centers/Contact Centers Projects, Business Process Outsourcing covering all different kind of

Verticals, Information Technology Services, Back and Transaction Processing Services,

Business Analysis, Business Process Re-engineering, Data Analysis, Quality Analysis and the

Statutory & Datacom services etc.

2. Confidentiality Obligations of Recipient. Recipient hereby agrees:

(a) Recipient will hold the Confidential Information in complete confidence and not to disclose

the Confidential Information to any other person or entity, or otherwise transfer, publish,

reveal, or permit access to the Confidential Information without the express prior written

consent of Disclosing Party.

(b) Recipient will not copy, photograph, modify, dissemble, reverse engineer, decompile, or in

any other manner reproduce the Confidential Information without the express prior written

consent of disclosing party.

If any Confidential Information is delivered to Recipient in physical form, such as data files

or hard copies, recipient will return the Confidential Information, together with any copies

Page 20: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 20 of 24

thereof, promptly after the purpose for which they were furnished has been accomplished, or

upon the request of disclosing party. In addition, upon request off disclosing party in

writing/email Recipient will destroy materials prepared by Recipient that contain

Confidential Information.

(c) Recipient shall use Confidential Information only for the purpose of evaluating Recipient’s

interest in using disclosing party’s services, and for no other purpose. Without limiting the

generality of the previous sentence, Recipient specifically agrees not to sell, rent, or

otherwise disclose any of disclosing party’s Confidential Information either in full or part to

any competitor of disclosing party, nor will Recipient use the Confidential Information to

directly or indirectly contact or contract with any of disclosing party’s employees, vendors,

contractors and agents who carry out or otherwise fulfill the services on behalf of disclosing

party (its ‘Affiliates’). Recipient shall promptly notify disclosing party of any disclosure or

use of Confidential Information in violation of this Agreement for which disclosing party

shall indemnify the Recipient for that part.

3. Exclusions. None of the following shall be considered to be ‘Confidential Information’:

(a) Information which was in the lawful and unrestricted possession of Recipient prior to its

disclosure by disclosing party;

(b) Information which is readily ascertainable from sources of information freely/easily available

in the general public;

(c) Information which is obtained by Recipient from a third party who did not derive such

information from disclosing party.

4. Remedies. Recipient acknowledges that disclosing party’s Confidential Information has been

developed or obtained by the investment of significant time, effort and expense and provides

disclosing party with a significant competitive advantage in its business, and that if Recipient

breaches its obligations hereunder, disclosing party will suffer immediate, irreparable harm for

which monetary damages will provide inadequate compensation. Accordingly, the disclosing

party will be entitled, in addition to any other remedies available at law in equity, to injunctive

relief to specifically enforce the terms of this Agreement. Recipient agrees to indemnify

disclosing party against any losses sustained by disclosing party, including reasonable attorney’s

fees, by reason of the breach of any provision of this Agreement by Recipient. Recipient further

acknowledges that disclosing party’s business would be severely hurt if Recipient were to

directly contract with its Affiliates without the participation of disclosing party. Therefore, if

Recipient directly or indirectly contracts with any of disclosing party’s Affiliates whose identity

and/or particulars are disclosed to Recipient pursuant to this Agreement (Except Affiliates with

whom Recipient had a demonstrable prior existing business relationship). In the event of

circumvention, by the Recipient whether directly or indirectly, the disclosing party shall be

entitled to a legal monetary penalty award, equal to the maximum consulting service/consulting

fee, commission/profit originally expected or contemplated to be realized from such

transaction(s). This payment levied against and paid immediately by the party engaged in

circumvention and also in addition includes all legal expenses in the recovery of these funds if

Page 21: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 21 of 24

collected through legal action by either party. This penalty shall not apply when the alleged

Circumventure does not result in a transaction being concluded. The parties acknowledge it

would be extremely difficult or impossible to accurately it would be extremely difficult or

impossible to accurately fix the actual damages that disclosing party would suffer in the event of

a breach of the aforementioned obligations, and that the liquidated damages provided for herein

are a reasonable estimate of disclosing party’s actual damages, which shall be fixed by the

arbitrator who shall also be in the same business.

5. No Rights Granted to Recipient. Recipient further acknowledges and agrees that the furnishing

of Confidential Information to Recipient by disclosing party shall not constitute any grant or

license to Recipient under any legal rights now or hereinafter held by disclosing party.

6. Miscellaneous Provisions:

(a) This Agreement sets forth the entire understanding and Agreement between the parties with

respect to the subject matter hereof and supersedes all other oral or written representations

and understanding. This Agreement may only be amended or modified by a writing signed

by both parties.

(b) If any provision of the Agreement is held to be illegal, invalid or unenforceable, the legality,

validity and enforceability of the remaining provisions will not be affected or impaired.

(c) This Agreement is binding upon the successors, assigns and legal representatives the parties

hereto, and is intended to protect Confidential Information of any successors or assign of

disclosing party.

(d) Each Provision of this Agreement is intended to be valid and enforceable to the fullest extent

permitted by law. If any provision of this Agreement is determined by any court of

competent jurisdiction or arbitrator to be invalid, illegal, or enforceable to any extent, that

provision shall, if possible, be construed as though more narrowly drawn, if a narrower

construction would avoid such invalidity, illegality, or unenforceability, be served, and the

remaining provisions of this Agreement shall remain in effect/force.

(e) The terms and conditions governing the provision of the agreement shall be governed by and

construed in accordance with laws of the union of India and shall be subject to the exclusive

Jurisdiction of the courts of Pune.

(f) Any or all disputes arising out or in connection with this agreement shall so far as may be

possible to settled amicably between the parties within a period of thirty days from such

dispute(s) arising.

(g) In the event of any queries, dispute or difference arising out of the agreement or in

connection there-with (except as to the matters, the decision to which is specifically provided

under this agreement), the same shall be referred to arbitration of a sole arbitrator to be

appointed by the Director General, STPI.

(h) The provisions of the Arbitration and Conciliation Act, 1996 shall be applicable and the

award made there under shall be final and binding upon the parties hereto, subject to legal

Page 22: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Page 22 of 24

remedies available under the law. Such differences shall be deemed to be a submission to

arbitration under the Indian Arbitration and Conciliation Act, 1996, or of any modifications,

Rules or re-enactments thereof.

(i) The parties shall mutually ensure and co-operate with each other in the arbitral proceedings,

so that the same can be concluded and awarded within a period of six months from the date

of commencement of the arbitral proceedings.

(j) The arbitral proceedings shall be conducted in English, both parties shall be bound by the

award passed and delivered by the arbitral tribunal and shall not attempt to challenge the

authenticity of the award, before any authority or courts or any other statutory body.

(k) The venue of arbitration shall be Pune, India.

(l) If any litigation is brought by either party regarding the interpretation or enforcement of this

Agreement, the prevailing party will recover from the other all costs, attorney’s fees and

other expenses incurred by the prevailing party from the other party.

Signed on behalf of

M/s Software Technology Parks of India

Signature:

Name:

Designation with seal:

Date:

M/s. ………………..................

Signature:

Name:

Designation with seal:

Date:

Page 23: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

Annexure –V DECLARATION

To be Printed on Company Letterhead

I/We hereby certify that the information furnished above is full and correct to the best of

my/our knowledge. I/We further certify that I/we/our company/firm/organization has not

been barred/ blacklisted by any Government/ Public Sector/ Private Company.

I/We understand that in case any deviation is found in the above statement at any stage, the

supplier will be blacklisted and will not be permitted to have any dealing with the STPI Pune

in future.

Further I/we have read and understood the bid document and all the subsequent corrigendum(s), (if

any), and understood the scope of work, terms and conditions, etc. thoroughly. I/We certify that all

the terms and conditions mentioned are acceptable to us.

Seal and Sign of Bidder

Name & Address: Company Seal

Page 24: Software Technology Parks of India · 2019-09-16 · h) Duly filled-in copy of the compliance sheet as per Annexure-II. i) Duly signed (with Company seal) Copy of declaration (printed

ANNEXURE VI

STPI – Pune & Sub-centers address

STPI- Pune (Directorate)

Software Technology Parks of India,

Plot No. P1 , Phase 1,

Rajiv Gandhi Infotech Park,

MIDC, Hinjawadi, Pune, Pincode- 411 057 (Maharashtra)

Tel. : +91-20-2298 1000

Fax : +91-20-2298 1010

URL : www.mah.stpi.in

Sub Centers

STPI, Aurangabad.

Mr. Praful Patinge, Officer- In - Charge

Officer- In - Charge,

Designation : Member Technical Staff - E-III

(Scientist 'D') , Software Technology Parks of India,

Plot No. T-25, MIDC Chikalhana ,

Near Garware Stadium,

Aurangabad , Pincode -431 210 (Maharashtra)

Tel. : +91-240- 247 3859, 020-22981005

Fax : +91-240- 247 3860

Email : [email protected]

URL : www.mah.stpi.in

STPI, Mumbai

Dr. Manas Ray, Officer- In - Charge,

Designation : Member Technical Staff- E-III (Scientist 'D')

Software Technology Parks of India,

4th Floor, Samruddhi Venture Park, Gala No.4 , MIDC, Central

Road, Andheri (East),

Mumbai, Pincode - 400093 (Maharashtra)

Tel : +91-22- 2838 4907/2834 3742

Fax : +91-22- 2839 5384

Email : [email protected]

URL : www.mah.stpi.in

STPI, Nagpur

Mr. Sanjay D. Darne, Officer- In -Charge,

Designation : Member Technical Staff - E-III (Scientist ‘D’)

(Scientist 'C') , Software Technology Parks of India,

Plot No. 3, IT Park,

Parsodi, Near VRCE Telephone Exchange,

Nagpur, Pincode - 440 022 (Maharashtra)

Tel. : +91-712- 2227774, 020-22981031

Fax : +91-712- 2234960

Email : [email protected]

URL : www.mah.stpi.in

STPI, Nasik

Mr. Sachin Purnale, Officer- In - Charge,

Designation : Member Technical Staff - E-III (Scientist 'D') , Software Technology Parks of India,

Plot No. IT-1, IT Park,

Opp. E-2 Block, MIDC,

Ambad, Nasik, Pincode - 422 010 (Maharashtra)

Tel. : +91-253- 2382 835, 020-22981008

Fax : +91-253- 2384 609

Email : [email protected]

URL : www.mah.stpi.in

STPI, Kolhapur

Mr. Sachin S. Narule, Officer- In - Charge,

Designation : Member Technical Staff - E-II (Scientist ‘C’) Software Technology Parks of India,

Behind Yalama Temple,

Opp. Jai Prabha Studio, IT Park,

Kolhapur, Pincode - 416 012 (Maharashtra)

Tel. : +91-231- 2644429, 020-22981015

Fax : +91-231- 2644429

Email : [email protected]

URL : www.mah.stpi.in

STPI- Goa.

Mr. Dinesh Kumar Bhagat, Officer- In - Charge,

Designation: Member Technical Staff - E-III (Scientist 'D') Software Technology Parks of India, 2nd Floor, Udyog Bhavan,

Panaji-Goa Pin -403001.

Tel: +91-832 –222-6828

Email : [email protected]

URL : www.mah.stpi.in