National Bank of Malawi plc
REQUEST FOR EXPRESSION OF INTEREST (EOL) TO SUBMIT PROPOSALS TO CONDUCT PENETRATION TESTING FOR THE BANK
National Bank of Malawi plc is inviting interested and eligible service providers to submit an Expression of Interest (Eol) to submit proposals to conduct penetration testing for the Bank. A detailed RFP document will be emailed to service providers that meet the requirements listed below.
Eligibility Criteria to Access the RFP
Only bidders that meet all the following minimum eligibility requirements shall be granted access to the Request for Proposals (RFP):
- Must be a legally registered company with valid proof of incorporation or
- Must have a minimum of five (5) years’ demonstrable experience in providing penetration testing or information security assessment services.
- Must demonstrate prior experience conducting penetration testing for regulated or large organizations, such as banks, financial institutions, telecommunications companies, or payment service providers.
- Must provide at least three (3) client references for similar penetration testing engagements completed within the last five (5) years.
- At least one (1) reference must be from a financial institution, and must include verifiable contact details (organization name, contact person, email address, and telephone number).
- Must have qualified penetration testing professionals, including at least one lead consultant holding recognized industry certifications (e.g. OSCP, OSCE, OSEP, CREST, GXPN, or equivalent).
- Must be independent of the Bank’s ICT and security service providers and must not have participated in the design, development, implementation, or operational support of systems that may fall within scope during the past twenty-four (24) months.
- Must be tax compliant in the bidder’s country of operation and able to provide evidence of compliance upon request.
- Must not be under liquidation, bankruptcy, receivership, or similar proceedings, and must not be subject to sanctions or restrictions that could affect delivery of the services.
- Must formally request access to the RFP and confirm willingness to comply with the Bank’s security, confidentiality, and governance requirements.
The interested bidders who meet the above requirements must formally request access to the RFP through an e-mail to procurement@natbankmw.com
The RFP will be released to the service providers who fully satisfy the above requirements
National Bank of Malawi ple reserves the right to accept or reject any proposal.