See More RFPs

Network Operations Security Software

Overview


IT Support, Hardware & Networking
Ann Arbor, Michigan, United StatesPosted about 2 months agoDeadline: April 17th, 2026

Fit Score


Settle Intelligence

Settle helps teams find, evaluate, and respond to public RFPs. We continuously surface new opportunities, score them against your company strengths, and draft proposal responses so you can focus on the work that wins business.

SUMMARY


Michigan seeks a one-year contract for comprehensive network operations and security software, including EDR and SIEM solutions, supporting 24/7 managed detection, response, and threat intelligence integration.

KEY REQUIREMENTS


BUDGET

Estimate

$500,000 – $2,000,000

CONTRACT DURATION


72 months

TIMELINE


Request for Proposals Issued: March 18th, 2025

Questions and Requests for Clarifications due: March 27th, 2026, at 11:00 a.m. ET

AAATA Responds to Requests for Clarification and Questions: April 3rd, 2026

Proposal Due Date: April 17th, 2026, at 11:00 a.m. ET

Evaluation Period with Interviews and Negotiations, if conducted: April-May 2026

Anticipated Award: April-May 2026

Anticipated Start Date of All Services: May 21st, 2026, 12:00 am ET

QUESTION DEADLINE


March 27th, 2026

Issuing Agency


Ann Arbor Area Transportation Authority

Organization overview and procurement intelligence available on paid plans.

DESCRIPTION


The client seeks a vendor to provide comprehensive network operations and security operations center (NOC/SOC) software solutions, such as CrowdStrike or an approved equivalent, focused on enterprise End Point Detection and Response (EDR) and Security Information and Event Management (SIEM) licensing. The software must enable real-time detection, prevention, and automated remediation of endpoint threats; correlate network, user, and endpoint events to identify advanced persistent threats; and maintain 24/7/365 monitoring, alerting, and incident response within a hybrid IT environment.

The selected solution must support rapid deployment through a proof-of-concept and phased rollout, deploy cloud-native endpoint protection agents across both Windows and Linux environments, and provide scalable, cloud-hosted SIEM to handle millions of events per day. The system should enrich logs with threat intelligence feeds and incorporate behavior-based detection, machine learning, and rollback remediation features, with an API-first design for telemetry export, policy automation, and vulnerability scanning.

Additional requirements include real-time host isolation, scripted remediation, integration with ticketing systems, managed threat hunting with custom query capabilities, ingestion of logs from various sources, and support for compliance reporting (e.g., PCI DSS, FTA). The platform should integrate seamlessly with the endpoint protection system, support automation of containment actions, and enable dashboarding, scheduled, and ad-hoc API reporting. The contract period is one year.

Source attribution

This Settle analysis is based on the issuing organization’s public RFP listing.

Similar RFPs


    Network Operations Security Software | Settle RFP Hunter