Specialist advice
If you work in the Scottish Government, and are buying goods or services from an external supplier, you must complete a protected procurement assurance questionnaire.
This information applies to core Scottish Government staff only, not other organisations, such as agencies of the Scottish Government.
This questionnaire will put you in touch with the correct teams to ensure that your project meets regulations for:
-
data protection and General Data Protection Regulation (GDPR)
-
cyber and IT security
-
physical security, passes and personnel vetting
To complete the questionnaire, you must include:
-
a brief description of the goods or services being procured
-
examples of any personal data you will be processing
-
whether non-Scottish Government (SG) staff will need access to SG buildings
-
what classification of information the contract will give access to
-
a brief description of any IT equipment required
Your completed questionnaire will be sent to the relevant teams who will then contact you. You can also contact the teams directly.
-
Data Protection and GDPR - dpa@gov.scot
-
Cyber and IT security SIRA team - sira@gov.scot
-
Physical security, passes and personnel vetting - opsec@gov.scot
There is a problem
Thanks for your feedback