Define the decision before the scorecard
Document the outcome, scope, users, constraints, budget range, timeline and risk appetite. Convert requirements into mandatory gates, scored criteria and contract conditions. Avoid writing criteria around a preferred bidder or using weights that cannot be explained.
Prequalify proportionately
Verify legal identity, authority and conflicts for every candidate. Add financial, technical, cyber, privacy, HSE, sanctions and continuity checks when the exposure warrants them. A supplier that fails a mandatory gate should not be rescued by a high average score.
Run a controlled evaluation
Publish criteria and weights before responses are opened. Require evaluator conflict declarations, score independently before moderation, link scores to response evidence and record clarification consistently. Separate technical evaluation from commercial opening where policy requires it.
Approve and retain the rationale
Record shortlist decisions, moderation changes, exceptions, due diligence, negotiation outcomes and award authority. Notify bidders consistently and retain the decision package under the organisation's records policy. Feed delivery performance back into future qualification without allowing unsupported reputation scores.
Related resources
Sources and research basis
- Open Contracting Data Standard
- OECD Principles for Integrity in Public Procurement
- ISO 31000 risk management
This guide distinguishes general control recommendations from legal requirements. It is general information, not legal advice; applicability varies by entity, sector, jurisdiction and contract.