The State of New Hampshire, specifically the Department of Health and Human Services for New Hampshire Hospital located in Merrimack County, is seeking a comprehensive Patient Identification Software System through a Request for Proposal (RFP) issued on September 9, 2025. The procurement requires a web-based software solution capable of producing patient identification wristbands in at least six colors with tamper-proof clasps, serving approximately 800 patients annually. The system must integrate with existing electronic health records, be compatible with handheld scanning devices, and include staff training, software installation, and ongoing support services. Proposals will be evaluated using a 1,000-point scoring system, with 700 points allocated to technical capabilities and 300 points to pricing, focusing on software solution design, identification bracelet specifications, vendor technical experience, project management approach, and implementation methodology. The RFP mandates extensive security requirements, including compliance with HIPAA regulations, data protection standards, and comprehensive security protocols. Vendor proposals are due by October 21, 2025, at 12:00 PM Noon, with vendor inquiries accepted until September 16, 2025. The anticipated contract will be effective July 1, 2026, with an initial five-year term ending July 1, 2031, and potential extension options for up to five additional years. The RFP documents do not explicitly specify set-aside designations or restrictions on respondent types. The procurement requires vendors to demonstrate robust cybersecurity capabilities, including compliance with NIST Special Publication 800-171 and 800-53 security standards, and provide detailed vendor risk assessment documentation. While a specific contract value is not directly stated, the comprehensive pricing worksheet includes 41 distinct deliverables across project management, software installation, testing, system deployment, and operational categories. The state emphasizes vendor accountability through specific performance metrics, including response times for deficiency classes, hosting uptime requirements, and mandatory quarterly reporting. Vendors must provide comprehensive security documentation, such as a Data Protection Impact Assessment, Systems Security Plan, and Disaster Recovery Plan. The procurement requires vendors to demonstrate capabilities across various cloud service models, including Software as a Service (SaaS), Infrastructure as a Service (IaaS), and Platform as a Service (PaaS), with a strong focus on protecting citizen data and ensuring comprehensive security across vendor systems and services.
Name | Description | Size | Type (Click to sort descending) | Posted (Click to sort descending) |
|---|---|---|---|---|
attachment_3_RFP-2027-NHH-03-PATIE.xlsx | 84KB | Spreadsheet | 9/10/25 | |
attachment_2_RFP-2027-NHH-02-PATIE.pdf | 587KB | 9/10/25 | ||
RFP-2027-NHH-02-PATIE.pdf | 898KB | 9/10/25 | ||
attachment_1_RFP-2027-NHH-02-PATIE.xlsx | 46KB | Spreadsheet | 9/10/25 |