OpenServicesEuropeanOpen

Data Platform 2026

Type
Services
72262000 · Development of softwar
Estimated value
€ 300K
estimated
To deadline
-36d
May 11, 2026 · 13:00
Knock-outs
n/a
exclusion grounds
Award basis
Best price-quality ratio
Assess manuallyconfidence moderate

This document is a general data processing agreement for the processing of personal data by a processor commissioned by an educational institution. It establishes the rights, duties, and responsibilities in accordance with the GDPR.

Services · Open · European procedure

European
Contract type
Services
Open
Estimated value
€300,000
estimated value
Submission deadline
May 11, 2026
13:00
Scope
European
European procedure
Lots
1
1 lots
Main CPV code
Development of software
Location
Netherlands
CharacteristicsCPV 72ServicesEU tenderdata platformprimary data

01What is being requested

The assignment concerns the delivery of products/services whereby the Processor, commissioned by the Educational Institution, Processes Personal Data in accordance with the General Data Processing Agreement 4.0.

We use study data to measure and improve the quality of our education. In addition, we support the primary process with optimal service delivery and decision-making through the use of data. In doing so, we aim to create an organizational culture in which data-driven thinking and acting are central.   To optimally guide students and ensure secondary processes run smoothly, we collect and use a lot of data within ROC van Twente. This data is dispersed within the organization and includes structured data within applications, but also separate csv, excel, or pdf files. Although we make good use

72262000€ 300KServices
1Data Platform 2026€300,000

02Strategic insight

Strategic insight · AI analysis
<ul Ensure strict compliance with the duty of confidentiality, as the penalty clause for violations is set very high. Ensure that the Sub-processor Agreements offer exactly the same level of protection as this general data processing agreement. Be extremely precise when completing Annex 1 and 2, as the instructions and security measures contained therein form the basis for execution.
Read automatically from the tender documents using AI. Always verify against the original documents.

03Points of attention

Important · 5
For every violation of the confidentiality obligation, an immediately due and payable fine of € 50,000.00 per violation is owed.Important
The Processor must impose at least the same obligations regarding data protection on engaged Sub-processors as in this agreement.Important
Transfer of Personal Data to a third country outside the European Economic Area (EEA) is only permitted with specific written permission from the Educational Institution, unless legally required.Important
The Processor must provide an understandable description of the services, the processing activities, and the categories of personal data in Annex 1.Important
The Educational Institution has the right to monitor compliance with the security measures and the GDPR by means of an audit.Important

04Exclusion grounds

Exclusion grounds — consult the ESPD
  • No specific exclusion grounds were extracted. In a European tender, the mandatory and discretionary grounds of art. 2.86/2.87 of the Dutch Procurement Act almost always apply — check the European Single Procurement Document (ESPD).

05Value in context

€300,000

06Likely competitors

#Likely bidderFitWins
1Afas Software B.V.SME9632×
2Centric Netherlands B.V.SME9456×
3Protinus IT B.V.SME9332×
4Bechtle direct B.V.SME9225×
5PinkRoccade Local Government B.V.SME9034×
6Conclusion B.V.SME8918×

07Tender documents

B-4 Sjabloon referentie(s) DP 2026pdfMar 5, 2026 · 131 KB
Aanbesteding Dataplatform 2026 - ROC van TwentepdfMar 5, 2026 · 808 KB
B-8 BPV DP 2026pdfMar 5, 2026 · 95 KB
B-1 Concept Overeenkomst DP 2026pdfMar 5, 2026 · 375 KB
B-2 Algemene Inkoopvoorwaarden ICT_ROCvT_2023 V2.1pdfMar 5, 2026 · 399 KB
B-5b Wensen DP 2026xlsxMar 5, 2026 · 24 KB
B-10 Geheimhoudingsverklaring DP 2026pdfMar 5, 2026 · 124 KB
B-3 Prijzenblad DP 2026xlsxMar 5, 2026 · 32 KB
B-11 Informatie huidige omgeving DP 2026pdfMar 5, 2026 · 81 KB
B-9 Veiligheidsvoorschriften en huisregels DP 2026pdfMar 5, 2026 · 262 KB
uea_574978_20260303141418pdfMar 5, 2026 · 556 KB
B-7 Alg.verwerkersovereenkomst-4.0---ROCvTpdfMar 5, 2026 · 332 KB

08Legal themes that may be relevant here

09Frequently asked questions

Which privacy and security requirements must the platform meet?
The platform must comply with the GDPR and offer the possibility to perform a DPIA. In addition, it must comply with the information security policy of ROC van Twente, including role-based access control (RBAC) via Azure AD for managing access to data and reports.
What requirements are imposed on the authorization structure?
The authorization structure of the information system must be designed based on roles, whereby access rights can be assigned per role and potentially per module. In this regard, both process roles and specific user functions must be supported.
Which legal agreements are mandatory for the supplier?
A data processing agreement will be concluded in accordance with the ROC van Twente model, based on the Covenant for Digital Educational Resources and Privacy 4.0. In addition, consent for the Non-Disclosure Agreement (B-10) and the GVO agreement is required.

Automatically compiled from the official tender data and documents.

10Estimated value versus the market

p25
€ 327K
median
€ 800K
p75
€ 2,5 mln
€ 300K

Gegunde waarden in CPV 72 · diensten n=1436