Cyber Security

Tom made this Freedom of Information request to Caerphilly County Borough Council

This request has been closed to new correspondence from the public body. Contact us if you think it ought be re-opened.

The request was partially successful.

Dear Caerphilly County Borough Council,

Under the freedom of information act 2000. I write to obtain the following details:
1) ICT Team structure including name, email and any contact details from CIO, IT Director IT Manager, IT Infrastructure Manager,
2) Name of all cyber security providers do you work with and buy from.
3) Which cyber security vendor(s) do you currently use?
3b) When is the renewal date for the above vendor(s)?
3c) What is the cost and duration for the above contract(s)/license(s)?
4) How many websites does the council provide cyber security testing for?

Yours faithfully,

Tom

Dear Caerphilly County Borough Council,

Full name; Tom Collins

Yours faithfully,

Tom

WWW: FOI, Caerphilly County Borough Council

1 Attachment

Dear Tom Collins

 

INFORMATION REQUEST

 

Thank you for your request for information, which we received on 23^rd
August 2017. This e-mail is intended to acknowledge your request, and we
will respond to your request in a separate e-mail.

 

Most information requests are dealt with under the Freedom of Information
Act 2000.  However environmental information is considered for disclosure
under the Environmental Information Regulations 2004.  If the information
you have requested is personal information about yourself, we must
consider disclosure under the Data Protection Act 1998.  If this is the
case we will provide you with a subject access request form for completion
and notify you of relevant timescales and fees.

 

We will transfer the request to the correct legislation automatically, as
required by the Freedom of Information Act.  For further information on
how we will deal with your request, please see the table below.

 

If you have any queries or concerns then please contact us.

 

Yours sincerely  

 

CORPORATE INFORMATION GOVERNANCE UNIT

 

 

 

 

[1]cid:image001.png@01D2BE82.EE151270 Freedom of Information Act 2000 &

  Environmental Information
Regulations 2004

 

We will consider the following points in dealing with your request for
information.

 

Timescales for We will consider your request and you should
responding to you receive the information within the statutory
timescale of 20 working days, unless the
information is not held or is exempt from
disclosure. Both the Freedom of Information Act
and the Environmental Information Regulations
allow this timescale to be extended in certain
circumstances.  If your request is affected by a
timescale extension we will explain this to you.
Third Party Information If the information you request contains reference
to a third party they may be consulted prior to a
decision being taken on whether we disclose the
information to you.  We will tell you if this is
the case.
Format of Information We will try to respond in the format that you have
provided requested.  If this is not possible we will let
you know.  If you require alternative formats,
e.g. language, audio, braille, large print, etc.
then please let us know.
Exemptions The Freedom of Information Act and the
Environmental Information Regulations 2004 define
a number of exemptions, which may prevent release
of the information you have requested.  Before we
provide the information we will consider whether
it is proper to release it.  If any of the
exemption categories do apply then the information
will not be released.  We will tell you if this is
the case, and you will have a right of appeal.
Fees You may have to pay a fee for this information
under the Freedom of Information and Data
Protection (Appropriate Limits and Fees
Regulations) 2004.  We will consider this and let
you know.  If so you will have to pay the fee
before we process and release the information. 
The 20 working day time limit for responding will
not resume until we receive your payment.
You have the right to If you wish to appeal If you are unhappy with that
appeal against our please set out in decision you have the right
decision. writing your grounds to appeal to:
of appeal and send
  to: Information Commissioner's
Office - Wales,
Freedom of Information Corporate Information
Act 2000 / Governance Unit 2nd Floor,
Environmental Caerphilly county
Information Regulations borough council, Churchill House,
2004 Penallta House,
Tredomen Park, Churchill Way,
Ystrad Mynach,
Hengoed. CF82 7PG Cardiff. CF10 2HH

Appeals will be  
determined by an
appropriate Senior Website: [2]www.ico.org.uk
Officer.
Telephone: 029 2067 8400

Email: [3][email address]

 

 

 

 

 

 

    

 

WWW: FOI, Caerphilly County Borough Council

2 Attachments

Dear Sir

 

FREEDOM OF INFORMATION ACT 2000 - INFORMATION REQUEST

 

Thank you for your request for information received on 23^rd August.

 

We enclose the following information to partially answer your request:

 

1)ICT Team structure including name, email and any contact details from
CIO, IT Director IT Manager, IT Infrastructure Manager

 

See attached IT structure –

 

Note that we do not have corresponding roles to the job title you stated,
but those that best match are -

 

Paul Lewis

Acting Head of IT & Central Services

[1][email address]

01443 863267

 

Gwyn Williams

Acting IT Operations Manager

[2][email address]

01443 863136

 

3b) When is the renewal date for the above vendor(s)?

 

i) external firewall – June 2017, out to tender

ii) internal firewall – June 2017, out to tender

iii) email gateway – February 2020, option for 1 year extension

iv) anti-virus and endpoint encryption – December 2017

v) USB endpoint protection – March 2018, option for 2 year extension

 

3c) What is the cost and duration for the above contract(s)/license(s)?

 

i) external firewall – £71k, 3 years

ii) internal firewall – £25.8k, 3 years

iii) email gateway – £38k, 3 years

iv) anti-virus and endpoint encryption – £93k, 1 year

v) USB endpoint protection – £90k, 3 years

 

4)How many websites does the council provide cyber security testing for?

 

The council website and associated linked sub-websites. These are tendered
via the National Procurement Services framework.

 

However on this occasion we cannot supply all the information you have
asked for. In respect of the remainder of your request, and in accordance
with Section 17 of the Freedom of Information Act 2000 this letter acts as
a Refusal Notice.  We consider that the public interest in withholding the
information outweighs the public interest in disclosing it.

 

The exemption applied is S31(1)(a) – Law Enforcement. For further details
on why this exemption applies please see the attached document.

 

We supply this information based on your original request.  If this is not
what you wanted or if you feel we have not fully understood your request
please do not hesitate to contact me to clarify your exact requirements.

 

Although we cannot meet all of your request this time, if you have any
further information needs in the future then please contact
[3][Caerphilly County Borough Council request email].

 

Yours sincerely

 

PAUL LEWIS

Acting Head of IT

 

 

+------------------------------------------------------------------------+
|Freedom of Information Act 2000 / Environmental Information Regulations |
|2004 |
| |
|  |
| |
|You have the right to appeal against our decision. |
|------------------------------------------------------------------------|
|If you wish to appeal please |If you are unhappy with that decision you|
|set out in writing your |have the right to appeal to: |
|grounds of appeal and send to:| |
| |  |
|  | |
| |Information Commissioner’s Office – Wales|
|Corporate Information |2nd Floor |
|Governance Unit |Churchill House |
|Caerphilly county borough |Churchill Way |
|council, |Cardiff |
|Penallta House |CF10 2HH |
|Tredomen Park | |
|Hengoed. CF82 7PG |  |
| | |
|  |Tel: 029 2067 8400 |
| |Fax: 029 2067 8399 |
|Appeals will be determined by |Email: [4][email address] |
|an appropriate senior officer.| |
| |Website: [5]www.ico.org.uk |
| | |
| |  |
+------------------------------------------------------------------------+

 

Re-use of information without permission may infringe the Copyright,
Designs and Patents Act 1988. Re-use can include, but is not limited to,
making multiple copies, publishing and issuing copies of the information
to a wider audience. If you would like to re-use copyright material owned
by Caerphilly County Borough Council, please contact us. Authorisation to
re-use copyright material not owned by this Authority should be sought
directly from the copyright owner.

 

Looking for an EU Authority?

You can request documents directly from EU Institutions at our sister site AskTheEU.org . Find out more .

AskTheEU.org