Skip to main content

Rydym wedi cadw rhai ffeiliau o'r enw cwcis ar eich dyfais. Y cwcis hyn yw:

  • Hanfodol ar gyfer y safle i weithio
  • Helpu i wella ein gwefan drwy gasglu ac adrodd gwybodaeth am sut rydych chi'n ei defnyddio

Hoffem hefyd arbed rhai cwcis i helpu i deilwra cyfathrebu.

BETA
Rydych yn edrych ar fersiwn wedi'i ddiweddaru o'r gwasanaeth hwn - bydd eich adborth yn ein helpu i'w wella.

Hysbysiad o Ddyfarnu Contract

Provision of an ISO27001 Internal Auditor - Readvertised

  • Cyhoeddwyd gyntaf: 08 Ionawr 2025
  • Wedi'i addasu ddiwethaf: 08 Ionawr 2025
  • Cofnodi Diddordeb

     

  • Efallai na fydd y ffeil hon yn gwbl hygyrch.

  •  

Nid yw'r prynwr yn defnyddio'r wefan hon i weinyddu'r hysbysiad.

I gofnodi eich diddordeb neu gael gwybodaeth neu ddogfennau ychwanegol, darllenwch y cyfarwyddiadau yn Nhestun Llawn yr Hysbysiad. (NODER: Nid oes angen ymateb i Hysbysiadau Dyfarnu Contractau a Hysbysiadau Gwybodaeth Ymlaen Llaw fel arfer)

Cynnwys

Crynodeb

OCID:
ocds-kuma6s-146365
Cyhoeddwyd gan:
Social Care Wales
ID Awudurdod:
AA0289
Dyddiad cyhoeddi:
08 Ionawr 2025
Dyddiad Cau:
-
Math o hysbysiad:
Hysbysiad o Ddyfarnu Contract
Mae ganddo ddogfennau:
Nac Ydi
Wedi SPD:
Nac Ydi
Mae ganddo gynllun lleihau carbon:
Nac Ydi

Crynodeb

Introduction ISO 27001 is an internationally recognised standard for managing and maintaining information security within businesses. It outlines the requirements for an information security management system (ISMS), and provides a framework for establishing, implementing, maintaining and continually improving business information security. Social Care Wales has held ISO 27001:2013 certification since 2008, achieving our most recent triennial recertification in April 2024. We are amid transitioning to the 27001:2022 standard and are due to transition in February 2025. What is required / ‘The Requirements’ We are seeking the provision of an ISO 27001 Internal Auditor to evaluate and ensure the continued effectiveness and compliance of our Information Security Management System (ISMS) in accordance with the ISO 27001 standard. The audit should be performed independently and aligned with the requirements of the ISO IEC 27001:2013 (ISO 27001) standard. The Internal Auditor will: - Prepare and agree an ISMS audit scope and engagement letter with Social Care Wales; - Review and assess the ISMS documentation, including policies, procedures, and controls in line with the standard; - Plan and execute internal audits, including the preparation of audit plans and schedules; - Interview relevant personnel and gather evidence to assess compliance and effectiveness; - Evaluate the implementation of risk assessments and treatment plans; - Analyse audit findings and prepare detailed reports outlining strengths, weaknesses, and recommendations for improvement; - Present findings to senior management and relevant stakeholders; - Follow up on previous audit findings to ensure corrective actions have been implemented; - Follow through any external certification audit findings and remedial actions received by Social Care Wales. Please see Specification for more detail

Testun llawn y rhybydd

HYSBYSIAD O DDYFARNU CONTRACT - CENEDLAETHOL

SERVICES

1 Manylion yr Awdurdod

1.1

Enw a Chyfeiriad yr Awdurdod


Social Care Wales

South Gate House, Wood Street,

Cardiff

CF10 1EW

UK

Procurement Team

+44 3003033444


http://www.socialcare.wales

2 Manylion y Contract

2.1

Teitl

Provision of an ISO27001 Internal Auditor - Readvertised

2.2

Disgrifiad o'r contract

Introduction

ISO 27001 is an internationally recognised standard for managing and maintaining

information security within businesses. It outlines the requirements for an information security management system (ISMS), and provides a framework for establishing, implementing, maintaining and continually improving business information security.

Social Care Wales has held ISO 27001:2013 certification since 2008, achieving our most recent triennial recertification in April 2024. We are amid transitioning to the 27001:2022 standard and are due to transition in February 2025.

What is required / ‘The Requirements’

We are seeking the provision of an ISO 27001 Internal Auditor to evaluate and ensure the continued effectiveness and compliance of our Information Security Management System (ISMS) in accordance with the ISO 27001 standard.

The audit should be performed independently and aligned with the requirements of the ISO IEC 27001:2013 (ISO 27001) standard.

The Internal Auditor will:

- Prepare and agree an ISMS audit scope and engagement letter with Social Care Wales;

- Review and assess the ISMS documentation, including policies, procedures, and controls in line with the standard;

- Plan and execute internal audits, including the preparation of audit plans and schedules;

- Interview relevant personnel and gather evidence to assess compliance and effectiveness;

- Evaluate the implementation of risk assessments and treatment plans;

- Analyse audit findings and prepare detailed reports outlining strengths, weaknesses, and recommendations for improvement;

- Present findings to senior management and relevant stakeholders;

- Follow up on previous audit findings to ensure corrective actions have been implemented;

- Follow through any external certification audit findings and remedial actions received by Social Care Wales.

Please see Specification for more detail

2.3

Cod a Dosbarthiad yr Hysbysiad

72810000 Computer audit services
79212000 Auditing services
79212200 Internal audit services
1000 WALES
1010 West Wales and The Valleys
1011 Isle of Anglesey
1012 Gwynedd
1013 Conwy and Denbighshire
1014 South West Wales (Carmarthenshire, Pembrokeshire, Ceredigion)
1015 Central Valleys (Merthyr Tydfil, Rhondda Cynon Taf)
1016 Gwent Valleys (Torfaen, Blaenau Gwent, Caerphilly)
1017 Bridgend and Neath Port Talbot
1018 Swansea
1020 East Wales
1021 Monmouthshire and Newport
1022 Cardiff and Vale of Glamorgan
1023 Flintshire and Wrexham
1024 Powys

2.4

Amcangyfrif o Gyfanswm Gwerth

3 Gweithdrefn

3.1

Math o Weithdrefn

Un cam

4 Dyfarnu Contract

4.1

Cynigwyr Llwyddiannus

4.1.1

Enw a Chyfeiriad y cyflenwr, contractwr neu ddarparwr gwasanaeth llwyddiannus





Tmc3 Limited

81-83A Allerton Road, Mossley Hill,

Liverpool

L182DA

AF




5 Gwybodaeth Arall

5.1

Rhif cyfeirnod a roddwyd i'r hysbysiad gan yr awdurdod contractio

N/a

5.2

Dyddiad Dyfarnu'r Contract

  08 - 01 - 2025

5.3

Nifer y tendrau a dderbyniwyd

7

5.4

Gwybodaeth Arall

(WA Ref:147136)

5.5

Dogfennaeth Ychwanegol

Dd/g

5.6

Dyddiad cyhoeddi'r hysbysiad hwn:

  08 - 01 - 2025

Codio

Categorïau nwyddau

ID Teitl Prif gategori
72810000 Gwasanaethau archwilio cyfrifiaduron Gwasanaethau archwilio a phrofi cyfrifiaduron
79212200 Gwasanaethau archwilio mewnol Gwasanaethau eiriolaeth
79212000 Gwasanaethau eiriolaeth Gwasanaethau cyfrifyddu ac archwilio

Lleoliadau Dosbarthu

ID Disgrifiad
1018 Abertawe
1022 Caerdydd a Bro Morgannwg
1013 Conwy a Sir Ddinbych
1015 Cymoedd Canalog (Merthyr Tudful, Rhondda Cynon Taf)
1016 Cymoedd Gwent (Torfaen, Blaenau Gwent, Caerffili)
1000 CYMRU
1014 De-orllewin Cymru (Sir Gaerfyrddin, Sir Benfro, Ceredigion)
1020 Dwyrain Cymru
1010 Gorllewin Cymru a'r Cymoedd
1012 Gwynedd
1017 Pen-y-bont ar Ogwr a Castell-Nedd Port Talbot
1024 Powys
1021 Sir Fynwy a Chasnewydd
1023 Sir y Fflint a Wrecsam
1011 Ynys Môn

Cyfyngiadau Rhanbarthol ar y Rhybuddion

Mae’r prynwr wedi cyfyngu’r rhybuddion ar gyfer yr hysbysiad hwn i gyflenwyr yn y rhanbarthau canlynol.

ID Disgrifiad
Nid oes cyfyngiadau ar y rhybuddion ar gyfer yr hysbysiad hwn.

Teulu dogfennau

Manylion hysbysiad
Dyddiad cyhoeddi:
28 Tachwedd 2024
Dyddiad Cau:
12 Rhagfyr 2024 00:00
Math o hysbysiad:
Hysbysiad o Gontract
Enw Awdurdod:
Social Care Wales
Dyddiad cyhoeddi:
08 Ionawr 2025
Math o hysbysiad:
Hysbysiad o Ddyfarnu Contract
Enw Awdurdod:
Social Care Wales

Ynglŷn â'r prynwr

Prif gyswllt:
N/a
Cyswllt gweinyddol:
N/a
Cyswllt technegol:
N/a
Cyswllt arall:
N/a

Gwybodaeth bellach

Dyddiad Manylion
Nid oes unrhyw wybodaeth bellach wedi'i lanlwytho.

0800 222 9004

Mae'r llinellau ar agor rhwng 8:30am a 5pm o ddydd Llun i ddydd Gwener.

Rydym yn croesawu galwadau'n Gymraeg.

We welcome calls in Welsh.