AI Healthcare Triage Platform – TriageIQ, NHS Integration
TriageIQ is an Ambient AI-powered healthcare triage platform that intelligently analyses patient symptoms in real-time, helping medical professionals efficiently prioritise patient care. With integration into NHS electronic health records and multi-language support, TriageIQ leverages AI to improve patient safety, reduce clinician burnout, and deliver rapid, evidence-based triage for high-volume environments.
Features
- Ambient AI triage and symptom analysis for clinicians
- Integrates with NHS health records and workflows
- Multi-language support for patient accessibility
- UK-clinical guideline-based machine learning algorithms
- Scalable cloud-native infrastructure for high throughput
- GDPR-compliant, NHS-aligned secure data handling
- Automated audit trails and clinical documentation
- User-friendly browser interface, desktop and mobile compatible
Benefits
- Accelerates triage and reduces patient wait times
- Consistent real-time risk assessment improves safety
- Automates routine tasks, easing clinician workload
- Rapid, data-driven prioritisation for high volume settings
- Equitable, high-quality triage for all languages
- Regulatory compliance with audit log traceability
- Actionable resource insights for efficiency
- Fast integration with NHS, streamlining adoption
Pricing
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
5 5 3 4 4 8 7 3 8 3 3 6 2 9 4
Contact
DATASUMI LTD
Datasumi Team
Telephone: +442045770319
Email: accounts@datasumi.com
About your service
- Service categories
-
Application Development and Deployment
AI platforms
AI life cycle
- Trustworthy AI Software
AI software services
- Conversational AI Software Services
- Computer Vision AI Software Services
- Generative AI Software Services
- Document AI Software Services
- Anomaly Detection AI Software Services
- Personalize AI Software Services
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Public cloud
- Service constraints
- Planned maintenance windows occur monthly, scheduled outside peak hours with 48 hours advance notice. The service requires internet connectivity and modern web browser. Users require appropriate clinical training and NHS email addresses for access. Service operates within UK data residency requirements. Support available during standard UK business hours with emergency contacts for critical issues.
- System requirements
-
- Modern web browser supporting HTML5 and JavaScript enabled
- Stable internet connection with minimum 2 Mbps bandwidth
- Screen resolution minimum 1024x768 pixels for optimal display
User support
- Email or online ticketing support
- Yes
- Support response times
- Standard response times: 4 hours during UK business hours (Monday-Friday, 9am-5pm GMT). Non-urgent queries responded to within 24 hours. Critical issues receive immediate attention with initial response within 1 hour. Weekend support available for urgent issues with 8-hour response time.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 AA
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- No
- Support levels
-
TriageIQ offers three support tiers:
Standard Support (included): Email and ticketing support with 4-hour response during UK business hours. Phone support Monday-Friday 9am-5pm GMT. Access to online knowledge base and documentation. Suitable for most healthcare organisations.
Premium Support: All Standard features plus 1-hour response time for critical issues, weekend support with 8-hour response, quarterly service reviews, priority bug fixes, and early access to new features.
Enterprise Support: All Premium features plus dedicated technical account manager, 24/7 emergency hotline, custom SLA agreements, onsite implementation assistance, and bespoke training sessions.
All tiers include:
- Regular platform updates and patches
- Security incident support
- Clinical workflow consultation
- Integration technical assistance
Enterprise tier includes a designated technical account manager and cloud support engineer for direct escalation and proactive system monitoring. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- Users are provided with guided onboarding, including live remote training, onboarding documentation, and access to an online knowledge base. New users receive a step-by-step setup guide and video walkthroughs. Dedicated support is available for seamless adoption and integration.
- Service documentation
- Yes
- Documentation formats
-
- HTML
- ODF
- End-of-contract data extraction
- Buyers can extract their data at any time using built-in export features. Supported formats include CSV, JSON, and PDF. Assistance is provided for large-volume exports and data migrations.
- End-of-contract process
- Your data will be securely deleted or archived following written confirmation and in line with UK data protection laws. Buyers may request full data export prior to termination.
- Documentation accessibility standard
- WCAG 2.2 AAA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Other
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- Fully compatible with mobile devices. The user interface is responsive, optimised for touch and smaller screens, with the same features as desktop. There are no feature limitations for mobile access.
- Service interface
- Yes
- User support accessibility
- WCAG 2.2 AAA
- Description of service interface
- All user interaction is via a browser-based interface, designed for accessibility and ease-of-use. No separate service interface required; compatible with desktop and mobile platforms.
- Accessibility standards
- WCAG 2.2 AAA
- Accessibility testing
- All user interaction is via a browser-based interface, designed for accessibility and ease-of-use. No separate service interface required; compatible with desktop and mobile platforms.
- API
- No
- Customisation available
- Yes
- Description of customisation
- Comprehensive options: interface visual preferences, accessibility features (WCAG 2.1 AA or EN 301 549), reporting and analytics customisation, integration settings with other education/healthcare platforms, user roles, parental engagement preferences, and data privacy controls.
Scaling
- Independence of resources
- TriageIQ runs on scalable cloud resources, ensuring buyer data and workloads are logically isolated. Dedicated instances are available for sensitive deployments.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Users have access to real-time performance metrics, including case throughput, response times, triage accuracy, usage volumes, and audit logs. Custom dashboards and automated reports are included.
- Resource tagging
- Yes
- FOCUS resource tagging
- Yes
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- At least every 6 months
- Penetration testing approach
- NCSC approved service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Physical access control, complying with SSAE-18 / ISAE 3402
- Physical access control, complying with another standard
- Encryption of all physical media
- Scale, obfuscating techniques, or data storage sharding
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Data Erasure
Data importing and exporting
- Data export approach
- Data may be exported via the built-in dashboard and API as CSV, JSON, or PDF. Export processes are user-initiated, encrypted in transit, and completed within two working days.
- Data export formats
-
- CSV
- ODF
- Other
- Other data export formats
- Data import formats
-
- CSV
- ODF
- Other
- Other data import formats
- API endpoints available for EHR integrations
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
- There is no formal service level agreement (SLA) for guaranteed availability. However, our service is architected using highly resilient cloud providers (AWS, Azure, GCP) with automatic failover and robust redundancy systems to maximise uptime.
- Approach to resilience
- Resilience is ensured through the use of leading cloud platforms, which offer multiple, geographically separated datacentres, backup power supplies, disaster recovery, and automatic failover. Regular data backups and proactive system health monitoring ensure operational continuity and swift recovery from disruptions.
- Outage reporting
- Outage incidents are reported to users via email notifications. There is no public outage dashboard or API; downtime alerts and major incident updates are communicated to all affected users with status and estimated timelines. The process follows the reporting standards of the underlying cloud platform.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Other
- Other user authentication
- User authentication is required for all users. Supported authentication methods include username and password, two-factor authentication, and identity federation with existing providers (e.g., Microsoft 365, Google). Access controls are enforced via IAM where available.
- Access restrictions in management interfaces and support channels
- Management interfaces and support channels are protected by role-based access controls and require authentication (username/password, IAM, or SSO). Sensitive functions are restricted to authorised staff only. Access is logged and regularly reviewed.
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Other
- Description of management access authentication
- Management access requires multi-factor authentication, password complexity, and access only from pre-approved networks or devices. Elevated privileges are granted only to authorised personnel, with all management activity centrally logged and monitored.
Audit information for users
- Access to user activity audit information
- Users receive audit information on a regular basis
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users receive audit information on a regular basis
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- CSA CSM version 4.0
- ISO/IEC 27001
- Information security policies and processes
- The company implements a robust information security framework leveraging leading cloud provider policies and procedures. Controls include regular security training, comprehensive monitoring, and continuous policy review to meet regulatory and contractual obligations.
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Changes undergo impact assessments, risk evaluation, and security review before implementation. Change history is documented, and approval workflows are established to ensure integrity and traceability.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- Continuous vulnerability assessment and risk analysis using external sources (e.g., MITRE, NVD). Patches and mitigations are promptly applied to address identified risks.
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- Continuous system log monitoring and automated anomaly detection enable early identification of threats. Incident response processes are in place for prompt mitigation.
- Incident management type
- Supplier-defined controls
- Incident management approach
- Incidents are promptly triaged and escalated based on severity, with forensic investigation undertaken and full incident reports provided post-resolution. Preventative actions are taken to reduce future risk.
- Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- Yes
- Connected networks
- Other
- Other public sector networks
-
- Fully compatible with all major UK government connectivity standards.
- Data residency within UK/EU as per public sector requirements.
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- No
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 0%
- Between £500,001 and £1,000,000
- 0%
- Between £1,000,001 and £2,500,000
- 0%
- Between £2,500,001 and £5,000,000
- 0%
- Over £5,000,001
- 0%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- E68c70aa-02cf-45a9-ab6f-2218c02dfe62
- Cyber essentials plus
- No
- Cyber Essentials Alternative
- In relation to the services you do not have a current and valid Cyber Essentials Plus certificate which has been awarded by one of the government approved Cyber Essentials accreditation bodies but you are working towards gaining it, and will be in a position to confirm that you have been awarded a current and valid Cyber Essentials Plus certificate by one of the government approved accreditation bodies within 12 months of the date of award.
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Understanding of the types of businesses in the market and the level of participation by new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Activities to identify opportunities to open up sub-contracts under the prime contract to a diverse range of businesses, including new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Plans for engaging a diverse range of businesses in engagement activities prior to appointing subcontractors (including activities prior to award of the main contract and during the contract term)
- Activities that demonstrate a collaborative way to work with a diverse range of businesses as part of the supply chain
- Advertising of supply chain opportunities openly and to ensure they are accessible to a diverse range of businesses, including advertising all subcontracting opportunities on Contracts Finder
- Ensuring accessibility to contracting and subcontracting opportunities for disabled business owners and employees
- Structuring of the supply chain selection process to ensure fairness (e.g. anti-corruption) and encourages participation by a diverse range of businesses, including with regard to new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutual
-