This public procurement record has 1 release in its history.

Award

17 Sep 2026 at 08:47

Summary of the contracting process

The Driver and Vehicle Standards Agency (DVSA) procured computer audit and testing services for cyber-security purposes, covering penetration testing and IT health checks. The requirement relates to assessing the security of DVSA’s information technology and identifying weaknesses that require attention. The work is associated with the agency’s operations in the United Kingdom, with the buyer based in Bristol. The procurement was structured as a single requirement rather than separate service categories. It was procured as a service and awarded to Driver and Vehicle Standards Angency, the supplier name recorded for the successful organisation. This is relevant to cyber-security consultancies and specialist testing providers able to assess public-sector systems and provide assurance on information-technology security.

The procurement has been awarded and the tender is complete. DVSA used a limited procedure without prior publication of a competition, as a call-off from the CCS Cyber Security 3 framework, RM3764iii. The award was made on 29 May 2026 to Driver and Vehicle Standards Angency for £533,333.33 including the recorded contract value; the contract is active. Price was the stated award criterion, and 18 bids were recorded for the requirement. The single lot is recorded as cancelled, while the associated award and contract are active. The procurement description states that the notice is for transparency purposes and that DVSA procured the requirement for cyber-security purposes. The contract title is Penetration Testing/IT Health Checks 2026.

This outcome demonstrates demand from a national public agency for specialist penetration testing and IT health-check capability at substantial programme scale. Suppliers seeking similar work with DVSA would need demonstrable expertise in testing information-technology environments, identifying vulnerabilities and reporting findings in a form that supports security assurance and remediation. Experience of delivering cyber-security services to a large, regulated or public-sector organisation would help establish credibility, particularly where work must be delivered consistently across an organisation rather than as a one-off assessment. The route also shows the importance of access to the CCS Cyber Security 3 framework, RM3764iii, and of competing effectively on price. Providers should therefore combine technical testing capability, clear assurance reporting, dependable delivery capacity and framework readiness.

How relevant is this notice?

Notice Information

Notice Title

Penetration Testing/IT Health Checks 2026

Notice Description

THIS NOTICE IS FOR TRANSPARANCY PURPOSES ONLY. THIS IS BEING PROCURED BY THE DVSA FOR CYBER SECURITY PURPOSES.

Lot Information

Lot 1

THIS NOTICE IS FOR TRANSPARANCY PURPOSES ONLY. THIS IS BEING PROCURED BY THE DVSA FOR CYBER SECURITY PURPOSES.

Procurement Information

THIS WAS A CALL - OFF FROM A CCS FRAMEWORK CYBER SECURITY 3 RM3764iii

Notice Details

Publication & Lifecycle

Open Contracting ID
ocds-h6vhtk-0773f8
Publication Source
Find A Tender Service
Latest Notice
https://www.find-tender.service.gov.uk/Notice/088005-2026
Current Stage
Award
All Stages
Award

Procurement Classification

Notice Type
Award Notice
Procurement Type
Standard
Procurement Category
Services
Procurement Method
Limited
Procurement Method Details
Award procedure without prior publication of a call for competition
Tender Suitability
Not specified
Awardee Scale
Large

Common Procurement Vocabulary (CPV)

CPV Divisions

72 - IT services: consulting, software development, Internet and support


CPV Codes

72800000 - Computer audit and testing services

Notice Value(s)

Tender Value
Not specified
Lots Value
Not specified
Awards Value
Not specified
Contracts Value
£533,333 £500K-£1M

Notice Dates

Publication Date
17 Sep 20262 weeks ago
Submission Deadline
Not specified
Future Notice Date
Not specified
Award Date
Not specified
Contract Period
Not specified - Not specified
Recurrence
Not specified

Notice Status

Tender Status
Complete
Lots Status
Cancelled
Awards Status
Active
Contracts Status
Active

Buyer & Supplier

Contracting Authority (Buyer)

Main Buyer
Driver and Vehicle Standards Agency
Contact Name
Available with D3 Tenders Premium →
Contact Email
Available with D3 Tenders Premium →
Contact Phone
Available with D3 Tenders Premium →

Buyer Location

Locality
BRISTOL
Postcode
Not specified
Postcode Area
Not specified
Country
Not specified

Major Region (ITL 1)
Not specified
Basic Region (ITL 2)
Not specified
Small Region (ITL 3)
Not specified
Delivery Location
Not specified

Local Authority
Not specified
Electoral Ward
Not specified
Westminster Constituency
Not specified

Supplier Information

Number of Suppliers
1
Supplier Name

Driver and Vehicle Standards Angency

Open Contracting Data Standard (OCDS)

View full OCDS Record for this contracting process

JSON Markdown

The Open Contracting Data Standard (OCDS) is a framework designed to increase transparency and access to public procurement data in the public sector. It is widely used by governments and organisations worldwide to report on procurement processes and contracts.

Loading OCDS record...