{"id":103536,"date":"2026-07-24T17:12:13","date_gmt":"2026-07-24T17:12:13","guid":{"rendered":"https:\/\/jobs.dataaxisnode.com\/kenya\/uncategorized\/rfq-procurement-and-implementation-of-a-next-generation-firewall-ngfw\/"},"modified":"2026-07-24T17:12:13","modified_gmt":"2026-07-24T17:12:13","slug":"rfq-procurement-and-implementation-of-a-next-generation-firewall-ngfw","status":"publish","type":"post","link":"https:\/\/jobs.dataaxisnode.com\/kenya\/jobs\/nairobi\/rfq-procurement-and-implementation-of-a-next-generation-firewall-ngfw\/","title":{"rendered":"RFQ: Procurement and Implementation of a Next-Generation Firewall (NGFW)"},"content":{"rendered":"<p><script type=\"application\/ld+json\">{\"@context\": \"https:\/\/schema.org\/\", \"@type\": \"JobPosting\", \"title\": \"RFQ: Procurement and Implementation of a Next-Generation Firewall (NGFW)\", \"description\": \"Objective\\nThe objective of this procurement is to secure Inkomoko's network perimeter and internal infrastructure through the implementation of a high-performance, identity-aware Next-Generation Firewall that supports:\\nZero Trust Network Access ZTNA\\nMulti-site orchestration\\nAdvanced threat protection\\nHigh availability\\nSecure remote connectivity\\nCentralized management and reporting\\nScope of Work\\nThe successful vendor shall provide the following:\\nSupply of enterprise-grade Next-Generation Firewall appliances.\\nInstallation and configuration at the Primary and Disaster Recovery sites.\\nHigh Availability deployment Active-Active or Active-Passive.\\nLayer 7 application inspection.\\nIdentity-aware access control.\\nSSL\/TLS inspection.\\nIntrusion Prevention System IPS.\\nAdvanced malware protection and sandboxing.\\nWeb and URL filtering.\\nZero Trust Architecture implementation.\\nDevice posture assessment.\\nEndpoint telemetry integration.\\nMicro-segmentation.\\nSD-WAN configuration.\\nCentralized cloud management.\\nPolicy synchronization between sites.\\nSecurity logging and compliance reporting.\\nMigration from the existing firewall environment.\\nKnowledge transfer and administrator training.\\n24\/7 support and maintenance.\\nFirmware and security signature updates.\\nDelivery shall be completed within 30 calendar days from issuance of the Purchase Order.\\nDeliverables\\nThe successful vendor shall provide:\\nNGFW deployment and implementation plan.\\nInstalled and configured firewall infrastructure.\\nSuccessful migration from existing firewall infrastructure.\\nSecurity policy documentation.\\nSD-WAN configuration documentation.\\nAdministrator training.\\nKnowledge transfer documentation.\\nAcceptance testing report.\\nWarranty documentation.\\nSupport and maintenance plan.\\nRequirements\\nVendor Qualifications\\nInterested vendors should demonstrate:\\nExperience implementing enterprise firewall solutions.\\nAt least three similar projects completed within the past five years.\\nAuthorization as a reseller or implementation partner for the proposed firewall solution.\\nCertified security engineers assigned to the project.\\nAvailability of local or regional support.\\nFinancial capacity to deliver the assignment.\\nAbility to provide 24\/7 technical support.\\nFinancial Proposal\\nThe quotation should clearly distinguish:\\nHardware costs\\nSoftware licenses\\nProfessional implementation services\\nTraining\\nSupport and maintenance\\nAnnual subscription costs\\nWarranty\\nCAPEX costs\\nRecurrent\/OPEX costs\\nEvaluation Criteria\\nThe evaluation will comprise both technical and financial assessments. Proposals will be evaluated using the following criteria:\\nTechnical Compliance 30%\\nAssessment of compliance with the required Next-Generation Firewall NGFW specifications, including Zero Trust Architecture, Intrusion Prevention System IPS, VPN capabilities, SSL inspection, SD-WAN functionality, reporting features, and overall security capabilities.\\nImplementation Methodology 15%\\nEvaluation of the proposed implementation approach, including the migration strategy, project management methodology, testing procedures, documentation, and rollout plan.\\nVendor Experience 10%\\nAssessment of the vendor's experience in delivering similar enterprise firewall implementation projects, supported by relevant client references and project history.\\nTechnical Team Qualifications 10%\\nEvaluation of the qualifications, certifications, and relevant experience of the proposed technical team responsible for the implementation and support of the solution.\\nSupport and Service Levels 10%\\nAssessment of the vendor's support capabilities, including availability of 24\/7 support, response and resolution times, escalation procedures, maintenance services, and local or regional support presence.\\nCybersecurity Standards 5%\\nEvaluation of compliance with recognized cybersecurity standards and best practices, such as ISO 27001, the NIST Cybersecurity Framework, and CIS Controls.\\nTraining and Knowledge Transfer 5%\\nAssessment of the proposed training program, administrator and user documentation, knowledge transfer approach, and operational manuals.\\nCompany Capacity and Financial Stability 5%\\nEvaluation of the vendor's organizational capacity, financial stability, corporate profile, and ability to successfully deliver and support the project.\\nWarranty and Maintenance 5%\\nAssessment of the warranty period, firmware and software updates, security signature updates, and ongoing maintenance services included in the proposal.\\nFinancial Proposal \u2013 Total Cost of Ownership 5%\\nEvaluation of the overall cost of ownership, including hardware acquisition, software licensing, implementation services, subscriptions, maintenance, support, and any other recurring or one-time costs.\\nBenefits\\nApplication Details\\nMandatory Requirements\\nVendors shall submit:\\nCertificate of Incorporation\/Registration\\nValid Tax Compliance Certificate\\nCompany Profile\\nAuthorization letter from the manufacturer where applicable\\nEvidence of similar assignments\\nReference letters or completion c\", \"datePosted\": \"2026-07-24\", \"hiringOrganization\": {\"@type\": \"Organization\", \"name\": \"Inkomoko\"}, \"jobLocation\": {\"@type\": \"Place\", \"address\": {\"@type\": \"PostalAddress\", \"addressLocality\": \"Nairobi\", \"addressCountry\": \"KE\"}}, \"directApply\": true, \"validThrough\": \"2026-07-31T23:59:59\", \"employmentType\": \"FULL_TIME\"}<\/script><\/p>\n<p><strong>Company:<\/strong> Inkomoko<\/p>\n<p><strong>Location:<\/strong> Nairobi<\/p>\n<p><strong>Job Type:<\/strong> Full Time<\/p>\n<p><strong>Apply Before:<\/strong> 2026-07-31<\/p>\n<h3>Job Description<\/h3>\n<p>Objective<br \/>The objective of this procurement is to secure Inkomoko&#8217;s network perimeter and internal infrastructure through the implementation of a high-performance, identity-aware Next-Generation Firewall that supports:<br \/>Zero Trust Network Access ZTNA<br \/>Multi-site orchestration<br \/>Advanced threat protection<br \/>High availability<br \/>Secure remote connectivity<br \/>Centralized management and reporting<br \/>Scope of Work<br \/>The successful vendor shall provide the following:<br \/>Supply of enterprise-grade Next-Generation Firewall appliances.<br \/>Installation and configuration at the Primary and Disaster Recovery sites.<br \/>High Availability deployment Active-Active or Active-Passive.<br \/>Layer 7 application inspection.<br \/>Identity-aware access control.<br \/>SSL\/TLS inspection.<br \/>Intrusion Prevention System IPS.<br \/>Advanced malware protection and sandboxing.<br \/>Web and URL filtering.<br \/>Zero Trust Architecture implementation.<br \/>Device posture assessment.<br \/>Endpoint telemetry integration.<br \/>Micro-segmentation.<br \/>SD-WAN configuration.<br \/>Centralized cloud management.<br \/>Policy synchronization between sites.<br \/>Security logging and compliance reporting.<br \/>Migration from the existing firewall environment.<br \/>Knowledge transfer and administrator training.<br \/>24\/7 support and maintenance.<br \/>Firmware and security signature updates.<br \/>Delivery shall be completed within 30 calendar days from issuance of the Purchase Order.<br \/>Deliverables<br \/>The successful vendor shall provide:<br \/>NGFW deployment and implementation plan.<br \/>Installed and configured firewall infrastructure.<br \/>Successful migration from existing firewall infrastructure.<br \/>Security policy documentation.<br \/>SD-WAN configuration documentation.<br \/>Administrator training.<br \/>Knowledge transfer documentation.<br \/>Acceptance testing report.<br \/>Warranty documentation.<br \/>Support and maintenance plan.<br \/>Requirements<br \/>Vendor Qualifications<br \/>Interested vendors should demonstrate:<br \/>Experience implementing enterprise firewall solutions.<br \/>At least three similar projects completed within the past five years.<br \/>Authorization as a reseller or implementation partner for the proposed firewall solution.<br \/>Certified security engineers assigned to the project.<br \/>Availability of local or regional support.<br \/>Financial capacity to deliver the assignment.<br \/>Ability to provide 24\/7 technical support.<br \/>Financial Proposal<br \/>The quotation should clearly distinguish:<br \/>Hardware costs<br \/>Software licenses<br \/>Professional implementation services<br \/>Training<br \/>Support and maintenance<br \/>Annual subscription costs<br \/>Warranty<br \/>CAPEX costs<br \/>Recurrent\/OPEX costs<br \/>Evaluation Criteria<br \/>The evaluation will comprise both technical and financial assessments. Proposals will be evaluated using the following criteria:<br \/>Technical Compliance 30%<br \/>Assessment of compliance with the required Next-Generation Firewall NGFW specifications, including Zero Trust Architecture, Intrusion Prevention System IPS, VPN capabilities, SSL inspection, SD-WAN functionality, reporting features, and overall security capabilities.<br \/>Implementation Methodology 15%<br \/>Evaluation of the proposed implementation approach, including the migration strategy, project management methodology, testing procedures, documentation, and rollout plan.<br \/>Vendor Experience 10%<br \/>Assessment of the vendor&#8217;s experience in delivering similar enterprise firewall implementation projects, supported by relevant client references and project history.<br \/>Technical Team Qualifications 10%<br \/>Evaluation of the qualifications, certifications, and relevant experience of the proposed technical team responsible for the implementation and support of the solution.<br \/>Support and Service Levels 10%<br \/>Assessment of the vendor&#8217;s support capabilities, including availability of 24\/7 support, response and resolution times, escalation procedures, maintenance services, and local or regional support presence.<br \/>Cybersecurity Standards 5%<br \/>Evaluation of compliance with recognized cybersecurity standards and best practices, such as ISO 27001, the NIST Cybersecurity Framework, and CIS Controls.<br \/>Training and Knowledge Transfer 5%<br \/>Assessment of the proposed training program, administrator and user documentation, knowledge transfer approach, and operational manuals.<br \/>Company Capacity and Financial Stability 5%<br \/>Evaluation of the vendor&#8217;s organizational capacity, financial stability, corporate profile, and ability to successfully deliver and support the project.<br \/>Warranty and Maintenance 5%<br \/>Assessment of the warranty period, firmware and software updates, security signature updates, and ongoing maintenance services included in the proposal.<br \/>Financial Proposal \u2013 Total Cost of Ownership 5%<br \/>Evaluation of the overall cost of ownership, including hardware acquisition, software licensing, implementation services, subscriptions, maintenance, support, and any other recurring or one-time costs.<br \/>Benefits<br \/>Application Details<br \/>Mandatory Requirements<br \/>Vendors shall submit:<br \/>Certificate of Incorporation\/Registration<br \/>Valid Tax Compliance Certificate<br \/>Company Profile<br \/>Authorization letter from the manufacturer where applicable<br \/>Evidence of similar assignments<br \/>Reference letters or completion certificates<br \/>CVs of proposed technical personnel<br \/>Technical Proposal<br \/>Financial Proposal<br \/>Proposed implementation schedule<\/p>\n<h3>How to Apply<\/h3>\n<p>Interested and qualified? Go to Inkomoko on jobs.workable.com to apply<br \/>Build your CV for free. Download in different templates.<\/p>\n<p><a href=\"https:\/\/www.myjobmag.co.ke\/apply-now\/1288205\" target=\"_blank\" rel=\"noopener\" style=\"display:inline-block;padding:10px 20px;background:#2271b1;color:#fff;text-decoration:none;border-radius:4px;\">Apply Now<\/a><\/p>\n<p><small>Source: MyJobMag<\/small><\/p>\n<p><!-- job-expiry: 2026-07-31 --><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Company: Inkomoko Location: Nairobi Job Type: Full Time Apply Before: 2026-07-31 Job Description ObjectiveThe objective of this procurement is to secure Inkomoko&#8217;s network perimeter and internal infrastructure through the implementation of a high-performance, identity-aware Next-Generation Firewall that supports:Zero Trust Network Access ZTNAMulti-site orchestrationAdvanced threat protectionHigh availabilitySecure remote connectivityCentralized management and reportingScope of WorkThe successful vendor [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1408,1409],"tags":[1425,1844,1413,1412],"class_list":["post-103536","post","type-post","status-publish","format-standard","hentry","category-jobs","category-nairobi","tag-full-time","tag-inkomoko","tag-job-listing","tag-myjobmag"],"_links":{"self":[{"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/posts\/103536","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/comments?post=103536"}],"version-history":[{"count":0,"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/posts\/103536\/revisions"}],"wp:attachment":[{"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/media?parent=103536"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/categories?post=103536"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/jobs.dataaxisnode.com\/kenya\/wp-json\/wp\/v2\/tags?post=103536"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}