Laserfiche WebLink
W A T E R E N E R G Y L I F E <br />RIVERSIDE PUBLIC UTILITIES <br />Board Memorandum <br />P U B L I C U T I L I T I E S <br />BOARD OF PUBLIC UTILITIES DATE: MAY 11, 2020 <br />ITEM NO: 6 <br />SUBJECT: PROFESSIONAL CONSULTANT SERVICES AGREEMENT WITH AESI, INC. FOR RFP <br />1966 FOR CYBER SECURITY IN THE AMOUNT OF $270,960 FOR A TERM OF THREE <br />YEARS <br />ISSUE: <br />Approve a Professional Consultant Services Agreement for RFP 1966 with AESI, Inc., for cyber security <br />consulting services for a three-year term in the amount of $270,960, to include items such as a cyber <br />program assessment, cyber posture assessment, vulnerability assessment services, penetration testing <br />services, remediation services, incident response services, training services, mentoring services, and <br />exercise services. <br />RECOMMENDATIONS: <br />That the Board of Public Utilities: <br />1. Approve a Professional Consultant Services Agreement with AESI, Inc. for RFP 1966 for cyber <br />security consulting services as set forth in Exhibit A of the agreement, in an amount not -to -exceed <br />$270,960 for a three-year term. <br />2. Authorize the City Manager, or designee, to execute the agreements, including making minor non - <br />substantive changes, and to sign all documents and instruments necessary to complete the <br />transactions. <br />BACKGROUND: <br />The ability to provide and support comprehensive cyber security protection across Riverside Public Utilities <br />(RPU) is essential for maintaining a secure and robust cyber environment. The rapid and ever-changing <br />threat landscape in the utility sector can only be mitigated if RPU utilizes every resource available in order <br />to keep its Operational Technology systems and environments at a maximum protection level. <br />In 2019, based on discussions and needs between the City of Riverside Innovation and Technology (IT) <br />Department and Riverside Public Utilities, Cyber Security Professional Consulting Services Request for <br />Proposal (RFP) 1966 was developed. RFP 1966 sought a qualified vendor to perform a comprehensive <br />review of RPU's Operational Technology network architecture, security controls, policies, facilities, and <br />systems to identify gaps in and mitigation solutions for Critical Infrastructure Protection. <br />The cyber security services requested in RFP 1966 requires an approach that is both modular and capable <br />of maintenance by City of Riverside (City) personnel. This effort is to ensure that the City maintains a <br />strong and consistent cyber security posture. This project will include: <br />