Secure Data Environment (SDE) for NCRI
Value
€650k
Deadline
16 Feb
16 Feb 2026
Value
€650k
Deadline
16 Feb
Development of a Secure Data Environment for the National Cancer Registry.
Development of a Secure Data Environment for the National Cancer Registry.
Bidder profile
Ideal for mid-sized to large firms with experience in public sector IT projects and compliance.
Risks & flags
- High turnover requirement
- Complex compliance standards
- Public sector procurement process
Briefing
AI-generated analysis of the documents. Check the official notice and any amendments for current submission details.
1. At a glance
| Field | Detail |
|---|---|
| Buyer | National Cancer Registry |
| Title | Secure Data Environment (SDE) for NCRI |
| CPV / category | services |
| Estimated value | 650000.00 |
| Per-year (if multi-year) | not stated |
| Procedure type | not stated |
| Lots | not stated |
| Location | Ireland |
| Contract length | 36 months |
| Submission deadline | 2026-02-16T13:00:00+00:00 |
| Go-live / start | not stated |
2. Scope of Work
National Cancer Registry ran this procurement for “Secure Data Environment (SDE) for NCRI” as an operational contract requiring implementation and sustained service execution. The extracted pack showed qualification-stage material with references to later ITT technical depth; practical activity therefore centred on building, integrating, and operating the specified service stack with compliant reporting and handover obligations where stated. Constituent activities and named work elements in the supplied extracts:
- The successful Tenderer shall be required to hold for the term of the Services Contract the following insurances: Type of Insurance Indemnity Employer’s Liability €12.7 million limit for any one claim or series of cl
- the proposed Services Contract may amount to some €650,000 (excl
- rer shall be required to supply its Tax Clearance Access Number and Tax Reference
- o ISO 27017 (Cloud-specific security controls for protecting cloud services)
- ISO 27001 standards and recovery service when required
- (c) ISO 27017 (Cloud-specific security controls for protecting cloud services)
- tion (the “Services Contract”) will be issued for a term of 36 months (“the Term”)
- o Meets every 4-6 weeks during implementation
- ets every 4-6 weeks during implementation
- provision of the services as described in Appendix 1 to this CfT (the “Services”).
- and collaborators. The environment will support analysis of both anonymised and
- may result from this Competition (the “Services Contract”) will be issued for a term of 36 Non-binding monetary references in the source were treated as context only and were not used as qualification thresholds.
3. Background & buyer context
The buyer context reflected a formal Irish public-procurement route, with pre-qualification used to control entry into the tender stage.
- Policy to be on a “claims occurring” basis Public Liability €6.5 million limit for any one claim or series of cl
- Policy to be on a “claims made” basis Cyber Insurance €2 million limit in the aggregate per insurance ye
- The objective of this project is to develop the NCRI Secure Data Environment (SDE) to
- Contracting Authority policy seeks to encourage participation on a fair and equal basis by
4. Eligibility & selection criteria
- Turnover requirement — — use these verbatim for insurance / turnover. If a category (insurance, turnover) has no entry here, treat it as 'not specified' for THIS tender.
- Insurance — — use these verbatim for insurance / turnover. If a category (insurance, turnover) has no entry here, treat it as 'not specified' for THIS tender.; The successful Tenderer shall be required to hold for the term of the Services Contract the following insurances: Type of Insurance Indemnity Employer’s Liability €12.7 million limit for any one claim or series of cl; Policy to be on a “claims occurring” basis Public Liability €6.5 million limit for any one claim or series of cl
- Certifications — not specified for this tender
- Past experience — not specified for this tender
- Personnel — not specified for this tender
- Geographic / facility constraints — not specified for this tender Additional binding lines surfaced in the deterministic extract:
- — use these verbatim for insurance / turnover. If a category (insurance, turnover) has no entry here, treat it as 'not specified' for THIS tender.
- The successful Tenderer shall be required to hold for the term of the Services Contract the following insurances: Type of Insurance Indemnity Employer’s Liability €12.7 million limit for any one claim or series of cl
- Policy to be on a “claims occurring” basis Public Liability €6.5 million limit for any one claim or series of cl
- Product Liability Not applicable Professional Indemnity €2.5 million limit in the aggregate per insurance ye
- Policy to be on a “claims made” basis Cyber Insurance €2 million limit in the aggregate per insurance ye
- Tenderers must have achieved a minimum annual turnover of at least €1.3m for each of the past three financial y
5. Award criteria & scoring
| Criterion | Weight (%) | Sub-criteria | Pass/fail threshold |
|---|---|---|---|
| 3 of the CFT, Tenderers must achieve a minimum of 60% of the marks **availab | 60% | not stated | not stated |
| The documents indicated a staged process (qualification, then tender). Any explicit MEAT split is captured above where a numeric line was visible; otherwise it remained not specified in the provided text extract. |
6. Submission requirements
- Method statement / response document (template/page limits) — Appendix 1 questionnaire/PQQ response was required.
- CVs (page count, named roles) — not specified in extract.
- Pricing schedule (format/template) — expected at ITT stage.
- Case studies (number/value range) — client references/comparable project evidence was referenced.
- Declarations (ESPD/Bona Fides/Tax/COI) — ESPD/declaration/statement-of-confirmation language was present.
- Mandatory site visit — not specified in extract.
- Submission portal and formatting — eTenders portal and PDF electronic copies were referenced. Submission-related source lines:
- [NCRI SDE CFT final.pdf] NCRI: Secure Data Environment
- Declaration as to Personal Circumstances of Tenderer
- provision of the services as described in Appendix 1 to this CfT (the “Services”).
- [NCRI SDE CFT final.pdf] identifiers, clinical data, and genomic data, in
- [NCRI SDE CFT final.pdf] and therefore increase their social and economic benefits.
- [NCRI SDE CFT final.pdf] the successful Tenderer.
7. Key dates & process
| Milestone | Date |
|---|---|
| RFT issued | not specified |
| Clarification deadline | not specified |
| Mandatory site visit | not specified |
| Tender deadline (date + time) | 2026-02-16T13:00:00+00:00 |
| Expected award | not specified |
| Contract start | not specified |
| Go-live / mobilisation | not stated |
| Date surfaced in documents | 2026-02-16T13:00:00+00:00 |
| Date surfaced in documents | 16 February 2026 |
| Date surfaced in documents | 12 March 2001 |
| Date surfaced in documents | 31 July 2014 |
8. Contract terms that matter
Contract duration in the extract: 36 months. Payment cycle, SLA/KPI schedule, and penalty regime were not fully disclosed in the snippets unless listed below.
- VERIFIED PHRASES (deterministic regex extract from the documents — treat as authoritative for numerical claims)
- The successful Tenderer shall be required to hold for the term of the Services Contract the following insurances: Type of Insurance Indemnity Employer’s Liability €12.7 million limit for any one claim or series of cl
- NOW IT IS HEREBY AGREED in consideration of the sum of €2.00 (the receipt of which is hereby
- tion (the “Services Contract”) will be issued for a term of 36 months (“the Term”)
- reserves the right to extend the Term for periods of up to 12 months with a maximum of THREE such extensions
- ontinues for 14 calendar days either Party may terminate at 14 days notice
- of remedy) within 30 days after receipt of a request in writing f
- For the Term and for a period of 12 months thereafter (and save in respect of publ
9. Risks, red flags & unusuals
- Qualification gate: the deterministic extract included a turnover threshold line (— use these verbatim for insurance / turnover. If a category (insurance, turnover) has no entry here, treat it as 'not specified' for THIS tender.), which can materially narrow bidder pool composition.
- The two-step process (PQQ then ITT) shifted effort to compliance evidence early, with competitive scoring detail potentially deferred.
- Technical and contractual granularity appeared ITT-dependent, increasing ambiguity at qualification stage for non-incumbent bidders.
10. SME fit assessment
This competition looked most accessible to firms with established public-sector tender capability, documented financial capacity, and direct operational experience in the relevant service category.
- Credible bidder profile — mid-sized to large specialist with formal QA/compliance process.
- Consortium / sub-contracting — allowed or addressed in the extracts (Appendix references and reliance provisions).
- Indicative bid-prep effort — 6 to 12 working days for evidence collation, form completion, and review cycles at PQQ level.
- Pwin signal — strongest for bidders with reusable qualification artefacts, comparable references, and low-friction mobilisation capability.
11. Where to dig deeper
- Source RFT/PQQ filenames: NCRI SDE CFT final.pdf, Appendix 1:, Appendix 2:.
- eTenders CFT / notice reference: not specified in extract.
- Clarification contact / portal: eTenders message portal (email not surfaced in extract).
- Key attachments to prioritise: Schedule, Appendix 3:, Appendix 4:.
Can you bid?
Required certifications
- ISO 27001
- ISO 27017
Minimum turnover
€1,300,000
Public liability insurance
€6,500,000
Professional indemnity insurance
€2,500,000
Named standards / methodologies
Scoring
Most Economically Advantageous Tender
Lots (1)
Provision of ongoing operation, support, and maintenance of a Secure Data Environment for the National Cancer Registry of Ireland.
Documents (7)
NCRI SDE App 1 Req Spec final.pdf
397.9 KB · Specification
NCRI SDE CFT final.pdf
529.6 KB · RFT / Invitation to Tender
NCRI SDE App 5 Contract final.pdf
380.8 KB · Contract / Agreement / Terms
espdRequest-7128634.pdf
78.6 KB · ESPD (European Single Procurement Document)
NCRI SDE Annex 1 Pricing Schedule rev.xlsx
40.4 KB
NCRI SDE Clarifications 10-02-2026.docx
56.3 KB · Clarification / Addendum
NCRI SDE TRD final.docx
142.1 KB · Tender Response Template
Original notice text
The National Cancer Registry seeks a contractor to implement and sustain a Secure Data Environment (SDE) for data analysis, ensuring compliance with relevant standards and reporting obligations over a 36-month period.
AI analysis updated 4 months, 1 week ago
Value
€650k
Deadline
16 Feb
Buyer
National Cancer RegistryLocation
Services will be provided across Ireland as part of the National Cancer Registry's operations.
Procedure
Open
Clarification
06 Feb 2026
eTenders ID
7128634
Ask AI
Knows this tender's documents
Example only — sign up to ask about this tender