Denver Legistar banner



File #: 23-0212    Version: 1
Type: Resolution Status: Adopted
File created: 2/24/2023 In control: Finance & Governance Committee
On agenda: 3/20/2023 Final action: 3/20/2023
Title: A resolution approving a proposed Purchase Order between the City and County of Denver and Insight Public Sector, Inc. for licensing, support, and maintenance of the Elasticsearch log monitoring software used primarily by Technology Services to protect information and identify threats. Approves a purchase order with Insight Public Sector, Inc. for $687,028.97 and one year for licensing, support and maintenance of the Elasticsearch log monitoring software used primarily by Technology Services to protect information and identify threats, citywide (PO-00128328). The last regularly scheduled Council meeting within the 30-day review period is on 4-10-2023. The Committee approved filing this item at its meeting on 3-7-2023.
Indexes: Lucas Palmisano
Attachments: 1. RR23-0212_TS_Resolution Request Form - Insight Elastic Search 2023, 2. 23-0212 Filed Resolution_InsightPublicSectorInc_PO-00128328, 3. 23-0212 PO_InsightPublicSectorInc_PO-00128328, 4. 23-0212 Filed Resolution_InsightPublicSectorInc_PO-00128328, 5. 23-0212-Signed

Contract Request Template (Contracts; IGAs; Leases)

 

Date Submitted: 3-6-2023

 

Requesting Agency: Technology Services

                               Division:

 

Subject Matter Expert Name: Todd Deering
Email Address: Todd.Deering@denvergov.org
Phone Number:

 

Item Title & Description:

(Do not delete the following instructions)

These appear on the Council meeting agenda. Initially, the requesting agency will enter a 2-3 sentence description. Upon bill filling, the City Attorney’s Office should enter the title above the description (the title should be in bold font).

 

Both the title and description must be entered between the red “title” and “body” below.  Do not at any time delete the red “title” or “body” markers from this template.

title

A resolution approving a proposed Purchase Order between the City and County of Denver and Insight Public Sector, Inc. for licensing, support, and maintenance of the Elasticsearch log monitoring software used primarily by Technology Services to protect information and identify threats.

Approves a purchase order with Insight Public Sector, Inc. for $687,028.97 and one year for licensing, support and maintenance of the Elasticsearch log monitoring software used primarily by Technology Services to protect information and identify threats, citywide (PO-00128328). The last regularly scheduled Council meeting within the 30-day review period is on 4-10-2023. The Committee approved filing this item at its meeting on 3-7-2023.

body

 

Affected Council District(s) or citywide? Citywide

 

Contract Control Number: PO-00128328

 

Vendor/Contractor Name (including any “DBA”): Insight Public Sector, Inc.

 

Type and Scope of services to be performed:

This Purchase Order will be used to purchase the licensing and support of the Elasticsearch log monitoring tool. Elasticsearch is the primary log monitoring tool for the City and County of Denver. Technology Services centralizes logs to perform threat-hunting, incident alerting, error monitoring, and visualization using this tool. It is a critical piece to Technology Services’ security strategy to assist with protecting the information of the residents of Denver and City employees. Elasticsearch is a cloud service that allows Technology Services to collect and review events that happen on a computer or across the network and it provides best in class dashboarding capabilities and machine learning to help find abnormal activity. Storing this information outside of the City’s technology environment helps to protect that logging information in the case of breach by not having it in a location where an attacker can easily access it with the rest of the City’s on-premise systems. Additionally, if the City had an outage with its own on-premise systems, such as VMware, it will have minor impact to the logging of most systems.

 

What is logging? Most actions on a computer generate events that are stored in a log on that computer. This could be opening a browser and going to google, printing a document, or installing an application. These collections of events are called a log. The collection of these logs and sending to a centralized location for analysis is called logging.

 

How much and what type of data is analyzed / monitored? Everything that is available to Technology Services (i.e. User systems, servers, network devices, cloud services, etc.)

 

This is a software only used by Technology Services, primarily the Security Team. It is the keystone in helping the Security Team secure data. Through the use of this software, the Security Team collects all the data, writes rules to look for malicious activity and connects to the automation process to shutdown misbehaving systems and users.

 

Location (if applicable):

 

WBE/MBE/DBE goals that were applied, if applicable (construction, design, Airport concession contracts):

N/A

Are WBE/MBE/DBE goals met (if applicable)?

 

Is the contract new/a renewal/extension or amendment?

New

Was this contractor selected by competitive process or sole source?

Competitive                      

For New contracts

Term of initial contract:

3/1/2023 - 2/29/2024

Options for Renewal:

                     How many renewals (i.e. up to 2 renewals)?

                     Term of any renewals (i.e. 1 year each):

 

Cost of initial contract term:

$687,028.97

Cost of any renewals:

 

Total contract value council is approving if all renewals exercised:

 

For Amendments/Renewals Extensions:

Is this a change to cost/pricing; length of term; terms unrelated to time or price (List all that apply)?

 

If length changing

What was the length of the term of the original contract?

 

What is the length of the extension/renewal?

 

What is the revised total term of the contract?

 

If cost changing

What was the original value of the entire contract prior to this proposed change?

 

What is the value of the proposed change?

 

What is the new/revised total value including change?

 

If terms changing

Describe the change and the reason for it (i.e. compliance with state law, different way of doing business etc.)