FOI request detail

Further information regarding procurement

Request ID: FOI-1657-2021
Date published: 14 December 2020

You asked

i have in the contracts awarded below, http://content.tfl.gov.uk/contracts-awarded-tfl.pdf, The item 'Project to contract an interim CISO for a 9-12 month period' which was in the range of £250,000-£500,000. Please could you confirm. 1. Whether this role went through Tfl'S official tender process 2. number of bidders for this piece of work 3. Why the winning bidder was chosen. i.e, which criteria did they succeed in the tender process vs the other candidates 4. Why this piece of work was essential, as you had a CISO previously from April 2018- November 2019 who is now longer in the post

We answered

Our ref: FOI-1657-2021

Thank you for your request received by Transport for London (TfL) on 9 November 2020 asking for information about procurement.

Your request has been considered in accordance with the requirements of the Freedom of Information Act (FOIA) and our Information Access Policy. I can confirm we do hold the information you requested. You asked:

The item 'Project to contract an interim Chief Information Security Officer (CISO) for a 9-12 month period' which was in the range of  £250,000-£500,000. Please could you confirm:

  1. Whether this role went through TfL's official tender process

Yes - this role was procured via the Crown Commercial Services Cyber Security Services 2 Framework.

  1. Number of bidders for this piece of work

There were 2 bidders in total, however 23 were provided the opportunity to bid.

  1. Why the winning bidder was chosen. i.e, which criteria did they succeed in the tender process vs the other candidates

The winning bidder was chosen on relevant experience, vision for the Cyber Security function, attitude to leadership, and value for money.

  1. Why this piece of work was essential, as you had a CISO previously from April 2018- November 2019 who is now longer in the post

TfL wanted to ensure a CISO was in place to create a long term strategy for the sustainable delivery of Computer Security Incident Response Team (CSIRT) and to commence the recruitment of a new permanent CISO to implement this strategy.

If you are considering submitting a further FOI request please think carefully about whether the request is essential at this current time, as answering FOI requests will require the use of limited resources and the attention of staff who could be supporting other essential activity. Where requests are made, please note that our response time may be impacted by the current situation.

If this is not the information you are looking for, please do not hesitate to contact me.

Please see the attached information sheet for details of your right to appeal.

Yours sincerely,

Melissa Nichols

FOI Case Officer

General Counsel

Transport for London

Back to top

Want to make a request?

We'll email you the response within 20 working days.


We'll publish the response online without disclosing any personal information.