GIS Cloud
GIS Cloud is a secure, cloud-based geospatial platform that enables organisations to collect, manage, analyse and share spatial data in real time. It supports web and mobile mapping, field data capture, collaboration and decision-making for public sector and infrastructure use cases.
Features
- Cloud-based web mapping and geospatial data visualisation
- Real-time field data capture via mobile applications
- Centralised spatial data management with access controls
- Secure data sharing and collaboration across organisations
- Interactive dashboards and map-based analytics
- API access for system integration and automation
- Offline data collection with automatic synchronisation
- Role-based permissions and user management
- Versioned datasets supporting historical data comparison
- Scalable SaaS platform with multi-cloud deployment support
Benefits
- Quickly collect and update data directly from the field
- Reduce manual data entry through automated synchronisation
- Share accurate spatial information across teams in real time
- Improve decision-making using map-based insights and analytics
- Streamline workflows with centralised, cloud-hosted data
- Enable remote working without specialist GIS infrastructure
- Increase data quality through standardised forms and validation
- Support collaboration between office and field-based staff
- Scale usage easily as organisational needs grow
- Maintain data security and control with role-based access
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
4 1 4 5 2 0 0 3 6 0 8 8 2 4 5
Contact
GIS Cloud
Dino Ravnic
Telephone: 01895 691263
Email: dino@giscloud.com
About your service
- Service categories
-
Applications
Enterprise resource management
- Asset life-cycle management
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- Yes, but can also be used as a standalone service
- What software services is the service an extension to
- GIS Cloud can integrate with and extend existing GIS environments (including desktop and client/server GIS), plus enterprise systems such as asset management, work order, CRM, ERP, document management and business intelligence platforms via standard APIs. It requires no specific third-party software and can be used as a standalone service.
- Cloud deployment model
-
- Public cloud
- Private cloud
- Hybrid cloud
- Service constraints
- GIS Cloud is delivered as a SaaS platform and requires internet connectivity and a modern web browser. Mobile data collection requires supported iOS or Android devices. Offline use is limited to supported mobile features. Service performance and functionality may depend on network connectivity, device capabilities and data volumes.
- System requirements
-
- Modern web browser supporting HTML5 and JavaScript
- Stable internet connection for web-based access
- Supported iOS or Android devices for mobile data collection
- GPS-enabled device for location-based field data capture
- Email access for user account setup and notifications
User support
- Email or online ticketing support
- Yes
- Support response times
- GIS Cloud responds to support queries within 24 hours during UK working days (Monday to Friday). Response times may be longer at weekends and public holidays. Support requests are handled via standard support channels and prioritised according to impact and urgency.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 AA
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Yes
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- WCAG 2.2 AA
- Web chat accessibility testing
- GIS Cloud provides web chat support using Intercom. Formal usability testing of web chat with assistive technology users has not yet been conducted. However, the service is delivered through a web-based interface designed to work with standard browser accessibility features, including screen readers and keyboard navigation. Accessibility considerations are reviewed as part of ongoing product development, and feedback from users is monitored to identify and address accessibility issues.
- Onsite support
- Yes, at extra cost
- Support levels
-
GIS Cloud provides a standard support service included in the subscription cost. Support is provided via web chat and email during UK working days, with responses within 24 hours. Support covers platform usage, configuration guidance and issue investigation.
Premium support options, including faster response times and enhanced support coverage, may be available by agreement and are priced separately. A dedicated technical account manager or named cloud support engineer is not included as standard but can be provided as part of an enhanced support arrangement if required. - Support available to third parties
- Yes
- AI chatbot
- No
Onboarding and offboarding
- Getting started
-
GIS Cloud supports users in getting started through structured onboarding delivered primarily online. This includes guided setup sessions, platform walkthroughs and best-practice advice provided by a dedicated customer success team.
Users have access to online training resources, documentation and tutorials to support self-service learning. Instructor-led online training sessions, courses and user certification programmes are available to help users build capability and confidence using the service.
Onsite training can be provided where required and is agreed separately. Ongoing support and adoption guidance are available through the customer success team to help users successfully deploy and use the service over time. - Service documentation
- Yes
- Documentation formats
- HTML
- End-of-contract data extraction
- When the contract ends, users can export their data using built-in export tools or APIs. Data can be extracted in common, open formats for use in other GIS or data management systems. Users can perform exports directly or retrieve data programmatically prior to contract termination, with guidance available if required.
- End-of-contract process
-
At the end of the contract, users retain access to the service for the agreed contract term and can export their data using standard export tools or APIs. Guidance is available to support data extraction if required. No additional charges apply for data export at contract end.
The contract price includes access to the service and standard support for the duration of the contract. There are no mandatory exit fees. Optional services, such as extended support or additional training, if requested during the contract, are priced separately by agreement. - Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- GIS Cloud is designed for use on mobile devices through responsive web applications and dedicated native mobile apps. The desktop web service provides full data management, configuration and analysis capabilities. Mobile apps focus on field data capture, offline use, GPS-based location recording and synchronisation, with a streamlined interface optimised for use on mobile devices.
- Service interface
- Yes
- User support accessibility
- WCAG 2.2 AA
- Description of service interface
- GIS Cloud provides a web-based user interface accessed through a modern browser, offering interactive maps, dashboards and data management tools. Dedicated mobile applications provide a streamlined interface for field data collection, offline use and synchronisation. The service also exposes APIs for integration with other systems.
- Accessibility standards
- WCAG 2.2 AA
- Accessibility testing
- Interface accessibility has been reviewed using automated and online testing tools, including Google Lighthouse and other standard accessibility testing products. Formal user testing with assistive technology users has not yet been conducted. Accessibility considerations are reviewed during development, and issues identified through testing tools or user feedback are addressed as part of ongoing improvements.
- API
- Yes
- What users can and can't do using the API
-
GIS Cloud provides APIs that allow users to integrate the service with other systems and automate workflows. Through the APIs, users can authenticate, access spatial data, create, read, update and delete supported datasets, manage features and attributes, and submit or retrieve field-collected data.
The APIs can be used to support initial configuration tasks such as creating projects, importing data and synchronising users or records from external systems. Ongoing changes, including updating datasets, triggering data synchronisation and retrieving analytics, can also be performed through the APIs.
Some administrative and advanced configuration tasks, such as platform-level settings, billing, user role design and complex visual configuration, are managed through the web interface rather than the API. API usage is subject to authentication, authorisation and rate limits to ensure service security and performance. - API documentation
- Yes
- API documentation formats
- HTML
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
GIS Cloud can be customised to meet organisational and project requirements. Users can customise data models, forms, maps, dashboards, workflows and user permissions. Mobile data collection apps and web applications can be configured to support specific use cases without writing code.
Customisation can be carried out using built-in no-code configuration tools, including form builders, app builders and visual configuration interfaces. For more advanced requirements, low-code and full-code customisation is supported through APIs and integrations, enabling automation and connection with external systems.
Customisation is performed by authorised users based on role. Administrators and power users can configure forms, applications, data structures and permissions through the user interface. Developers can use APIs to implement advanced integrations and custom logic. End users access the customised applications and workflows according to assigned permissions.
Scaling
- Independence of resources
- GIS Cloud is delivered using a scalable, multi-tenant cloud architecture designed to isolate customers logically and manage resources dynamically. Capacity is monitored and scaled to maintain consistent performance as demand changes. Resource controls and monitoring ensure that one customer’s usage does not adversely affect the availability or performance experienced by other users.
Analytics
- Service usage metrics
- Yes
- Metrics types
- GIS Cloud provides transparent service metrics focused on user licensing and data volume. Metrics include the number of active users and the volume of data stored within the service. These metrics are visible to customers and used solely for subscription management. GIS Cloud does not track or charge based on user activity, transactions or usage patterns, and there are no hidden usage-based costs.
- Reporting types
-
- API access
- Real-time dashboards
- Regular reports
- Reports on request
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- None
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- European Economic Area (EEA)
- Other locations
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with SSAE-18 / ISAE 3402
- Other
- Other data at rest protection approach
- User data is protected using encryption at rest for storage media that contain customer data. Encryption is applied to protect stored datasets and backups, with encryption keys managed securely. This ensures that customer data remains protected if physical storage media is accessed or compromised, while avoiding encryption of non-customer or system-only data where not required.
- Data sanitisation process
- No
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
Data importing and exporting
- Data export approach
- Users export their data using built-in export tools within the web interface or programmatically through APIs. Data can be exported in common, open formats suitable for use in other GIS and data management systems. Exports can be initiated by authorised users at any time during the contract.
- Data export formats
-
- CSV
- ODF
- Other
- Other data export formats
-
- GeoJSON
- Shapefile
- KML
- DFX
- MIF
- TIF
- JPG
- GeoPackage
- Data import formats
-
- CSV
- Other
- Other data import formats
-
- Shapefile
- GeoJSON
- KML
- DFX
- GeoPackage
- TIFF
- MrSID
- ECW
- JPG
- MIF
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
-
GIS Cloud is designed to be highly available and resilient, operating as a global SaaS platform. While no formal availability SLA is guaranteed as part of the standard service, the platform is continuously monitored and operated to minimise service disruption.
The standard service does not include service credits or financial refunds linked to availability. Any enhanced availability commitments or SLAs, including service credits, can be agreed separately as part of a bespoke commercial agreement where required. - Approach to resilience
-
GIS Cloud is designed as a resilient, cloud-native SaaS platform hosted on Amazon Web Services (AWS). The service is deployed in multiple geographically separate regions. Each region operates independently, reducing the risk of a single regional incident impacting the overall service.
Data and services are designed for high availability within each deployed region, with controlled data replication between regions where required for resilience and recovery purposes. Datacentre infrastructure is managed by AWS and benefits from physically secure facilities, redundant power, cooling and network connectivity.
The platform is continuously monitored, and capacity is managed to handle changes in demand. Backup and recovery processes are in place to support data protection and service restoration. Additional technical details can be provided to buyers on request where appropriate. - Outage reporting
- GIS Cloud reports service status and outages through a public status dashboard. The dashboard provides real-time availability information and incident updates. Users can subscribe to email notifications to receive alerts and updates during incidents and planned service events.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Access restrictions in management interfaces and support channels
-
Access to management interfaces and support channels in GIS Cloud is restricted using role-based access controls and the principle of least privilege. Administrative access is limited to authorised personnel based on job role and responsibility.
Authentication controls are applied to management interfaces, and access is logged and monitored. Support channels are restricted to authenticated users, and sensitive actions are performed only after appropriate verification. Access rights are reviewed regularly and adjusted promptly when roles change or staff leave the organisation. - Access restriction testing frequency
- At least once a year
- Management access authentication
-
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- Between 1 month and 6 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- Between 6 months and 12 months
- How long system logs are stored for
- Between 1 month and 6 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
-
GIS Cloud operates an Information Security Management System (ISMS) aligned with ISO/IEC 27001. Information security policies and processes cover access control, data protection, secure software development, incident management, vulnerability management and business continuity.
Senior management has overall responsibility for information security governance, with defined roles for implementation and oversight. Policies are communicated to staff through onboarding and ongoing awareness activities and are embedded into operational processes.
Compliance with information security policies is supported through role-based access controls, logging and monitoring, change management, and periodic internal reviews. Security incidents are reported through defined escalation routes and managed in line with documented incident response procedures. Policies and controls are reviewed and updated regularly to ensure ongoing effectiveness and alignment with risk and regulatory requirements. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
-
GIS Cloud operates documented configuration and change management processes within its ISO/IEC 27001-aligned ISMS. Service components, configurations and code are version-controlled and tracked throughout their lifecycle. Changes are logged, reviewed, tested and approved prior to release.
Each change is assessed for potential security impact, including effects on confidentiality, integrity, availability and access controls. Approved changes are deployed through controlled release processes with monitoring and rollback procedures in place. - Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
GIS Cloud operates a documented vulnerability management process as part of its ISO/IEC 27001-aligned ISMS. Potential threats are identified through regular security reviews, automated vulnerability scanning, dependency monitoring and review of system logs.
Security patches are prioritised based on risk and deployed as soon as practicable, with critical vulnerabilities addressed urgently. Information about potential threats is sourced from cloud provider security advisories, software vendor notifications, open vulnerability databases and internal monitoring. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
-
GIS Cloud operates protective monitoring as part of its ISO/IEC 27001-aligned ISMS. Potential compromises are identified through logging, monitoring and alerting of system activity, access events and service behaviour.
Alerts are reviewed by authorised personnel and investigated to determine impact and risk. Where a potential compromise is identified, incident response procedures are followed, including containment, remediation and escalation as required. Security incidents are prioritised based on severity, with investigation and response initiated promptly. Monitoring and response processes are regularly reviewed to ensure effectiveness. - Incident management type
- Supplier-defined controls
- Incident management approach
-
GIS Cloud operates documented incident management processes as part of its ISO/IEC 27001-aligned ISMS. Pre-defined procedures exist for common security and service events to support consistent identification, escalation and resolution.
Users can report incidents through standard support channels, including web chat and email. Incidents are logged, prioritised and managed according to impact and severity.
Where appropriate, incident updates and summaries are provided to affected users, and post-incident reports can be shared on request, outlining the cause, impact and remedial actions taken. - Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- GIS Cloud provides a free 14-day trial with full access to core platform features, including data management, mapping and mobile data collection. The trial excludes extended support, bespoke services and contractual commitments. Continued use after 14 days requires a paid subscription.
- Link to free trial
- https://www.giscloud.com/sign-up/
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 3%
- Between £500,001 and £1,000,000
- 6%
- Between £1,000,001 and £2,500,000
- 10%
- Between £2,500,001 and £5,000,000
- 15%
- Over £5,000,001
- 20%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- DNV
- ISO/IEC 27001 accreditation date
- Friday 14 November 2025
- What the ISO/IEC 27001 doesn’t cover
- The ISO/IEC 27001 certification applies to the Information Security Management System (ISMS) of GIS Cloud d.o.o. within the defined scope. It does not directly certify third-party infrastructure providers, such as cloud hosting services, or customer-managed environments. Physical security of data centres and underlying cloud infrastructure is covered by the certifications of the respective cloud service providers.
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- No
- Cyber Essentials Alternative
- In relation to the services you do not have a current and valid Cyber Essentials certificate which has been awarded by one of the government approved Cyber Essentials accreditation bodies but you are working towards gaining it, and will be in a position to confirm that you have been awarded a current and valid Cyber Essentials certificate by one of the government approved accreditation bodies within 12 months of the date of award.
- Cyber essentials plus
- No
- Cyber Essentials Alternative
- In relation to the services you do not have a current and valid Cyber Essentials Plus certificate which has been awarded by one of the government approved Cyber Essentials accreditation bodies but you are working towards gaining it, and will be in a position to confirm that you have been awarded a current and valid Cyber Essentials Plus certificate by one of the government approved accreditation bodies within 12 months of the date of award.
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
-