PROCUREMENT CONTROL / LOCAL-ONLY TOOL

Physical Security AI RFP Requirements Builder

Turn project scope and risk choices into requirements vendors must answer with evidence. The schedule covers AI governance, acceptance testing, privacy, cyber risk, interoperability, degraded operations, five-year cost, and exit rights.

STEP 1 / DEFINE THE BUY

Project and risk profile

Use generic or synthetic project names. Do not enter facility vulnerabilities, credentials, personal data, or protected operational details.

Systems in scope
AI use cases
Desired outcomes
Required interfaces and standards

STEP 2 / HUMAN REVIEW

Your requirements schedule

Generating requirements...

METHOD / PRIMARY SOURCES

Why the schedule asks for evidence

The builder translates risk-management and interoperability principles into procurement questions. It does not claim that selecting a checkbox creates compliance.

AI RISK

NIST AI Risk Management Framework

Supports context-specific measurement, human oversight, documented risk, and ongoing monitoring.

Open NIST AI RMF
SOFTWARE SECURITY

NIST Secure Software Development Framework

NIST describes the SSDF as a common language software producers and acquirers can use in procurement.

Open NIST SSDF
VIDEO INTEROPERABILITY

ONVIF conformant products

ONVIF says conformance is tied to the exact listed product and firmware/software version.

Check ONVIF conformance
ACCESS CONTROL

SIA OSDP

OSDP and Secure Channel create a stronger basis for access-control interoperability and supervised communications.

Review SIA OSDP