ประกวดราคาจ้างประเมินห้องควบคุมระบบคอมพิวเตอร์ (Data Center) ให้เป็นไปตามมาตรฐาน ISO 27001

Project ID: 68069560698

฿931,200.00
ปีงบประมาณ 2568
วันที่ประกาศ 2025-06-30
รายละเอียดการจ้าง

Thai

โครงการนี้มีวัตถุประสงค์หลักเพื่อให้กรมบังคับคดีได้รับการรับรองมาตรฐาน ISO/IEC 27001:2022 โดยมุ่งเน้นการปรับปรุงระบบงานและเตรียมความพร้อมสำหรับการตรวจรับรองตามมาตรฐานสากลดังกล่าว ขอบเขตงานรวมถึงการให้คำปรึกษาและร่วมดำเนินงานกับกรมบังคับคดีในการปรับปรุงระบบบริหารจัดการความมั่นคงปลอดภัยสารสนเทศ (ISMS) ซึ่งครอบคลุมงานบริหารระบบโครงสร้างพื้นฐานและการบริหารจัดการศูนย์คอมพิวเตอร์หลัก ผู้รับจ้างจะต้องจัดทำแผนการดำเนินงาน จัดอบรมให้ความรู้แก่บุคลากรของกรมบังคับคดี ประเมินระบบเบื้องต้น (Gap Analysis) เพื่อระบุช่องว่างและปรับปรุงห้องควบคุมระบบคอมพิวเตอร์ (Data Center) ให้เป็นไปตามมาตรฐานความปลอดภัย ISO/IEC 27001:2022 นอกจากนี้ ยังต้องจัดเก็บและรวบรวมข้อมูลเพื่อจัดทำเอกสาร ISMS ที่เกี่ยวข้อง เช่น นโยบายรักษาความปลอดภัย คู่มือบริหารจัดการระบบความมั่นคงปลอดภัยสารสนเทศ คู่มือปฏิบัติงาน และแบบฟอร์มต่างๆ รวมถึงร่วมกันกำหนด Process & Asset และทบทวน Risk Assessment & Risk Treatment Plan

โครงการนี้มีเป้าหมายเพื่อเพิ่มประสิทธิภาพในการบริหารจัดการความมั่นคงปลอดภัยสารสนเทศ สร้างความมั่นใจแก่ประชาชน และสร้างภาพลักษณ์ที่ดีให้แก่หน่วยงานจากการได้รับการรับรองมาตรฐานสากล

English

The main objective of this project is to enable the Legal Execution Department to obtain ISO/IEC 27001:2022 certification. The project focuses on improving the work system and preparing for certification according to international standards. The scope of work includes providing consultation and collaborating with the Legal Execution Department in improving the Information Security Management System (ISMS), covering infrastructure system management and core computer center management. The contractor must develop an implementation plan, provide training to the Legal Execution Department’s personnel, conduct a preliminary system assessment (Gap Analysis) to identify gaps and improve the Data Center to comply with ISO/IEC 27001:2022 security standards. Additionally, they must collect and compile data to create relevant ISMS documents, such as security policies, Information Security Management System manuals, work instructions, and forms, as well as jointly define Process & Asset and review the Risk Assessment & Risk Treatment Plan.

This project aims to enhance the efficiency of information security management, build public confidence, and create a positive image for the organization by obtaining international standard certification.

รายละเอียดสถานที่

สถานที่

กรมบังคับคดี ถนนบางขุนนนท์ แขวงบางขุนนนท์ เขตบางกอกน้อย กรุงเทพมหานคร

คำสำคัญ
ISO 27001
Data Center
Information Security
ISMS
Security Audit
Compliance
Risk Management
IT Consulting
Cyber Security
Legal Execution Department