There has been a Vulnerability discovered in Apache web servers,. The vulnerability is of an RCE type and may allow threat actors to compromise the servers and gain ROOT access. It has been a while since they last performed any security assessments on the environment hence they need a 3rd party as soon as possible.
They would need to go to RFP to find the best vendor for this project.
What are some of the parameters you would need to consider in order to write the RFP and choose the best vendor for the job? Points to consider are: