SearchIn Azure AI Search for Umbraco
Azure AI Search (formerly Azure Cognitive Search)
we have developed specific integration with the Umbraco CMS to allow for the configuration of your Azure AI Search service and your indexes to be carried out from within your Umbraco website’s back-office.
Features
- Rich indexing with multilingual text analysis
- Indexing from a variety of sources
- AI-empowered vector search and semantic ranking
- Natural language queries
- Great scalability options with replicas and partitions
- Handle load balanced sites. All frontends share the same index
- Skillsets and AI enrichment
Benefits
- Indexed content immediately visible in search results
- Analyse text fields in several languages
- Build your index from any number of different sources
- Typeahead search and suggestions
- Faceted searching
- AI enrichment. image identification, vector searching, semantic ranking natural language
- Scalable with replicas and partitions
- Data skillsets to expand and improve the data at index
Pricing
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
3 9 3 6 5 8 6 3 7 7 2 8 1 2 8
Contact
Aspire Systems
Procurement Team
Telephone: 02920 665947
Email: tenders-uk@aspiresys.com
About your service
- Service categories
-
Application Development and Deployment
Application development
- Development languages, environments and tools
- Multi cloud support
- No
Service scope
- Software add-on or extension
- Yes, but can also be used as a standalone service
- What software services is the service an extension to
- Extends the Search capabilities of the Umbraco Content Management System. Or can be integrated into bespoke systems providing a comprehensive AI enabled search function.
- Cloud deployment model
- Private cloud
- Service constraints
- No specific constraints.
- System requirements
- Appropriately configured and secured Azure Tenancy
User support
- Email or online ticketing support
- Yes
- Support response times
- Normal business hours support 9am to 5:30pm, 24/7 support is also available outside normal business hours. Standard response within 1 hour.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 AA
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
- We provide a tailored support service. Further details can be found in our service definition document.
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- Onsite training, online training and online documentation are all available.
- Service documentation
- Yes
- Documentation formats
- End-of-contract data extraction
- Data is not stored within the service and resides within the users own estate or standalone data stores within the tenancy.
- End-of-contract process
- Decommissioning of the standard service forms part of the cost. Custom installs may require additional effort and those costs will be identified and agreed during the contract.
- Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Other
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- They are equivalent. The mobile interface does differ to assist useability.
- Service interface
- No
- User support accessibility
- WCAG 2.2 AA
- API
- No
- Customisation available
- Yes
- Description of customisation
-
SearchIn allows developers and administrators to tailor almost every part of a search form:
- Build forms in the Umbraco back office
- Add preset filters, control the index used, configure pagination
- Toggle features like suggestions or typeahead
- Override the default styling with custom stylesheets
Developers can create fully bespoke front‑end search interfaces:
- Use SearchIn’s exposed API endpoints to define custom search logic
- Control behaviour, relevance, UX, and UI completely
SearchIn is engineered so teams can tune or extend indexing behaviour, including:
- Custom data types
- Mapping rules
- Query enrichment
- Handling multi‑source data (SQL, blob storage, RSS, APIs, crawlers)
For organisations with strict brand requirements:
- Override the form’s stylesheet
- Build branded front‑end experiences
- Integrate cleanly with Umbraco’s UI components
Scaling
- Independence of resources
- The service is either configured to run within the users own Azure Tenancy or a dedicated private tenancy managed by Aspire Systems is created. This allows dedicated resourcing.
Analytics
- Service usage metrics
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Physical access control, complying with SSAE-18 / ISAE 3402
- Physical access control, complying with another standard
- Encryption of all physical media
- Data sanitisation process
- No
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
Data importing and exporting
- Data export approach
- Not applicable.
- Data export formats
-
- CSV
- Other
- Other data export formats
- JSON
- Data import formats
-
- CSV
- Other
- Other data import formats
- JSON
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
-
Support SLAs
Priority1: 3 working hours
Priority2: 7 working hours
Priority3: 15 working hours
Should Aspire Systems fail to meet the agreed SLAs above Aspire will offer credits in the form of support hours added to the support logs. Those credits will then be used on subsequent calls before paid for support hours are used.
An SLA not met will be defined as: acknowledgments not sent from Aspire Systems within the response times regardless of priority level. A Resolution or an escalation activity not completed within the resolution time frame where the delay was caused by Aspire Systems. - Approach to resilience
- Available on request
- Outage reporting
- Direct alerts are configured to directly notify customer help desks of an issue. This is followed up by our own helpdesk which is notified at the same time.
Identity and authentication
- User authentication needed
- Yes
- User authentication
- Multi-Factor Authentication (MFA)
- Access restrictions in management interfaces and support channels
- We apply RBAC (role-based access controls) and the principle of least privilege across our web-estate. Our internal management and support systems are controlled by these principles and permissions are granted based on job role and operational need.
- Access restriction testing frequency
- At least once a year
- Management access authentication
- Multi-Factor Authentication (MFA)
Audit information for users
- Access to user activity audit information
- Users receive audit information on a regular basis
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users receive audit information on a regular basis
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- CSA CSM version 4.0
- ISO/IEC 27001
- Information security policies and processes
- Aspire Systems operates within an ISO27001 environment. This covers our physical working environment, virtual development environments as well as the systems we produce.
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- All configuration and change management is controlled through Git based repositories. Every change is peer reviewed, and releases follow our ISO 27001 and ISO 9001 certified quality management and information security management systems.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- We use a combination of internal automated testing tools and external vulnerability intelligence to identify risks early. Dependencies are monitored proactively, kept to a minimum, and updated promptly in response to validated security advisories.
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- Protective monitoring is primarily performed by the client, as the solution operates as an Umbraco plugin. However, we actively monitor our own installations, and any client systems covered by our support using log monitoring, alerting, and proactive review of suspicious activity.
- Incident management type
- Supplier-defined controls
- Incident management approach
- Incidents can be reported through our service desk. Issues are assessed for severity, assigned to the appropriate team, and managed through to resolution following our ISO aligned procedures.
- Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- No
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 5%
- Between £250,000 and £500,000
- 5%
- Between £500,001 and £1,000,000
- 5%
- Between £1,000,001 and £2,500,000
- 5%
- Between £2,500,001 and £5,000,000
- 5%
- Over £5,000,001
- 5%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- United Registrar of Systems (URS)
- ISO/IEC 27001 accreditation date
- Tuesday 10 June 2025
- What the ISO/IEC 27001 doesn’t cover
-
The scope of activities covered by this certificate is defined below
Development, Maintenance, and Support Services for our Clients’ Cloud-Based
and On-Premises Information Systems.
The hosting environment is not covered by our certificates. This is covered by our hosting partner Microsoft Azure. - ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- United Registrar of Systems (URS)
- ISO 9001 accreditation date
- Thursday 12 June 2025
- What the ISO 9001 doesn’t cover
-
The following is all in scope of the certification. Development, Maintenance, and Support Services for our Clients' Cloud-Based
and On-Premises Information Systems - Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 70345050-81ff-4a16-9d3f-d0b36738e339
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 81d9094d-8295-4820-962a-8c88bca174eb
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
- Volunteering opportunities for staff
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.
- Other measures to offer development opportunities for the target cohort(s) in the contract workforce
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Actions to invest in the physical and mental health and wellbeing of the contract workforce
-