RFP / RFI Checklist

Created by Chris Sandu, Modified on Tue, 18 Feb, 2025 at 11:02 AM by Chris Sandu


MIS Department Policy & Procedure 


Document Name:

RFP/RFI Checklist

Document Type:

Procedure

Written by:

Sarah Olson

Date/Revision Date:

4/15/2024


RFP/RFI Checklist

Questions for Vendor

  • unchecked

    Do you use current SSL/TLS protocols (TLS 1.2 or 1.3) and secure cipher suites (256-bit AES encryption or stronger)?

  • unchecked

    Which strong user authentication mechanisms, (2FA) does your company use for backend admin? 

  • unchecked

    Provide options for secure sign-in to the system - Single sign-on systems such as SAML to integrate with common authentication systems such as Active Directory or Azure AD.

  • unchecked

    Provide protection against data loss and a comprehensive data backup and restoration plan

  • unchecked

    Is all sensitive data encrypted both in transit and at rest, using industry standard encryption algorithms and protocols?

  • unchecked

    Does your software provide mechanisms to protect against SQL injection and other injection attacks.

  • unchecked

    How do you ensure that personal identifiable information (PII) and other sensitive data are handled according to relevant data protection laws and regulations?

  • unchecked

    Do you follow industry standard best practices for virus protection/malware?

  • unchecked

    Do you perform background checks on staff?

  • unchecked

    Does your software require admin rights for utilization/updates?

  • unchecked

    What is your guaranteed system availability/up-time?

  • unchecked

    What is your process to comply with litigation requests, FOIA and records retention?

  • unchecked

    Do you support desktop and mobile access?

  • unchecked

    Is your system compatible with Google Workspace?

  • unchecked

    Are you compatible with modern Internet browsers Chrome (preferred) and Edge?

  • unchecked

    Is your system SOC2 certified?

  • unchecked

    Are you FedRAMP or StateRAMP certified?

Question for Team


  • unchecked

    What are the hardware/software requirements for this project now?

_____________________________________________________________________________

_____________________________________________________________________________

_____________________________________________________________________________

_____________________________________________________________________________


  • unchecked

    In the next 3-5 years?

_____________________________________________________________________________

_____________________________________________________________________________

_____________________________________________________________________________


  • unchecked

    When the review process shows either no hardware or minimal hardware will be involved, push and ask questions such as:

  • unchecked

    What circumstance would change this minimal requirement?

______________________________________________________________________

  • unchecked

    What hardware/software have other customers had to purchase to implement your solution?

______________________________________________________________________

  • unchecked

    What should we plan for 3-5 years down the road?

______________________________________________________________________


Overview


  • unchecked

    Creep by the end of the onboarding process?

_____________________________________________________________________________

_____________________________________________________________________________

_____________________________________________________________________________

  • unchecked

    Creep expected from MIS staff by the end of the onboarding process?

_____________________________________________________________________________

_____________________________________________________________________________

_____________________________________________________________________________

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons

Feedback sent

We appreciate your effort and will try to fix the article