The University of Iowaâs Administrative Information Systems (AIS) seeks a qualified consulting firm to conduct a comprehensive, maturityâbased assessment of its software development, security, deployment, and AIâreadiness practices across three distinct groups (Enterprise Student Systems, Research Information Systems, and Identity & Access Management). The engagement is an external, practitionerâoriented reviewânot an auditâand will result in a detailed report with actionable recommendations, phased roadmaps, and optional followâon readout sessions. The work is expected to span 6â8 weeks, be delivered in a fixedâprice format, and may be extended up to five years if both parties agree.
⢠Scope covers SDLC, source control, testing, documentation, release practices, security controls, vulnerability management, CI/CD, monitoring, incident response, and AI integration readiness.
⢠Deliverables: executive summary, methodology, crossâgroup themes, prioritized recommendations (shortâ, mediumâ, longâterm), effort estimates, and optional presentation sessions.
⢠Required artifacts: org charts, architecture overviews, process docs, runbooks, security policies, deployment procedures, and sample project artifacts.
⢠Supplier must sign Universityâs Professional Services Agreement, NDA, and possibly a Business Associate Agreement; data must remain within the United States.
⢠Evaluation based on qualifications, methodology, team experience, references, and price; oral presentations may be requested.