EDGEALERT Panic Button and Business Intelligence Solution
EDGEALERT was developed to meet the needs of Primary Care and is the more affordable answer to GP practices' panic button needs. Our option helps deal with emergency situations, reduces the risk to personal safety and supports the NHS Zero Tolerance Policy. The Software also offers advanced Business intelligence features.
Features
- User friendly Panic Button displayed on the user’s desktop.
- Fully compliant with Windows 10 and 11.
- Supports all clinical systems including: EMIS, TPP/SystmOne/Vision.
- Works on any Wi-Fi.
- Developed in .NET8.
- Hosted in Microsoft Azure - UK South Data Centre.
- Compatible with Software Deployment Systems including MECEM, Intune, Datto, Cetero.
- Functionality supports both PCs/laptops onsite and offsite for remote users.
Benefits
- EDGEALERT is easily accessible through a Hover Desktop Button icon.
- Responder Feature means simultaneous raising and responding to multiple alerts.
- Real-Time User Location Visibility (who is logged in - room/location)
- Incident Reporting: supports CQC serious incident reporting.
- Digital Asset Audit: Real-Time Serial No, Make/Model & IP address.
- EDGEALERT can be preconfigured with all practice locations.
- Software available with on premise and Wi-Fi/remote/VPN Networks Services.
- Fire Drill Report: Provides a Realtime ‘attendance sheet’
- Staff/Patient Safety Risk Mitigation - updates their Realtime locations
- Time Logging, Upload/Manage Practice Policy's/Practice Site Checks
Pricing
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
6 8 9 9 7 7 7 1 6 7 5 6 3 4 3
Contact
EDGEBITS LIMITED
Ryan Edridge
Telephone: 07800609391
Email: ryan.edridge@edgebits.co.uk
About your service
- Service categories
-
Application Development and Deployment
Analytics and business intelligence
- Business Intelligence
- Advanced and predictive analytics
- Location and geospatial data management and analytics
- Multi cloud support
- No
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Private cloud
- Service constraints
- Not Applicable
- System requirements
-
- Windows 10 PCs or Laptops
- Windows 11 PCs or Laptops
- Internet Access
User support
- Email or online ticketing support
- Yes
- Support response times
- Response times are normally within 24hrs Monday to Friday, excluding Bank Holidays.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
- Our Contract/SLA includes the delivery of a 24 hour response time covering Monday-Friday (excluding bank holidays). Status updates are provided every 4, 8 and 16 hours depending on the severity of the incident i.e. Minor, Major or Critical. This is included as part of the core solution offering. Technical account management, and access to support engineers, are included within our standard support offering. 24/7 support is available at an additional cost.
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- We follow an installation process which includes a document framework that defines every customer's solution integration requirements. This framework outlines how our team will work with our customers to achieve a successful installation. Part of our approach to successful installation and usage includes training on the basic operations of the system so that all our customers can take full advantage of our technology. Training can be remote or face to face and can include personalised documentation. We also provide each customer with a troubleshooting guide with useful hints and tips for resolving the most common post installation queries.
- Service documentation
- Yes
- Documentation formats
-
- ODF
- Other
- Other documentation formats
-
- Microsoft Word
- Microsoft Excel
- End-of-contract data extraction
- Users are free to extract their data at any point via Excel or Word. Users can extract their data at contract end by exporting to Excel or Word.
- End-of-contract process
- Customers have the ability at the end of the contract to accept a contract extension. Should the extension period not be invoked, then the Service Termination Notice would be served inline with the terms included in the Contract/SLA. Data is the securely removed within 30 days.
- Documentation accessibility standard
- WCAG 2.2 A
Using the service
- Web browser interface
- No
- Application to install
- Yes
- Compatible operating systems
- Windows
- Designed for use on mobile devices
- No
- Service interface
- No
- User support accessibility
- WCAG 2.2 AA
- API
- No
- Customisation available
- No
Scaling
- Independence of resources
- Our Service is scalable thorough Microsoft Azure so resources can be scaled as required to meet customer demand. We have a core delivery team however, we have the capability and resources to flex the team numbers to increase the team's capacity to meet an increasing demand for the service. We regularly monitor and review our service demand and service offering and put in place the necessary plans and resources to meet additional customer requirements.
Analytics
- Service usage metrics
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- At least every 6 months
- Penetration testing approach
- ‘IT Health Check’ performed by a CHECK service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Encryption of all physical media
- Scale, obfuscating techniques, or data storage sharding
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
- Deleted data can’t be directly accessed / Cryptographic Erasure
Data importing and exporting
- Data export approach
- Users can export their data from within the application via Word or Excel.
- Data export formats
- Other
- Other data export formats
-
- Microsoft Excel
- Microsoft Word
- Data import formats
- CSV
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Other
- Other protection between networks
-
Transport Layer Security:
• TLS 1.2+ encryption for all HTTP communications
• Perfect Forward Secrecy (PFS) support
• Strong cipher suite configuration
• Certificate transparency monitoring - Data protection within supplier network
-
- TLS (version 1.2 or above)
- Other
- Other protection within supplier network
-
Transport Layer Security:
• TLS 1.2+ encryption for all HTTP communications
• Perfect Forward Secrecy (PFS) support
• Strong cipher suite configuration
• Certificate transparency monitoring
Availability and resilience
- Guaranteed availability
- We have an 99.9% uptime SLA through Azure services. There is no refund in the very unlikely event of the service not being available.
- Approach to resilience
-
Azure Service Redundancy:
• Multi-region deployment capabilities
• Automatic failover for Azure Functions
• Load balancing and traffic distribution
• 99.9% uptime SLA through Azure services.
Data Redundancy and Backup:
• Geo-redundant storage for all critical data
• Point-in-time recovery capabilities
• Automated backup procedures
• Regular backup validation and testing.
Soft Delete Implementation:
• Recoverable deletion for critical data
• Version control and change tracking
• Asset recovery procedures and workflows
• Data retention policy compliance. - Outage reporting
- We report any outages and updates via Email Alerts.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Public key authentication (including by TLS client certificate)
- Limited access network (for example PSN)
- Dedicated link (for example VPN)
- Username or password
- Access restrictions in management interfaces and support channels
-
Access to the infrastructure is through Microsoft Azure which includes a premium 2 Licenses. Which we enforce 2MFA and includes Identity Protection and Privileged Identity Management (PIM) enforcing conditional Access for Admins.
Automated Security Monitoring:
• Azure Security Centre integration for threat intelligence
• Real-time detection of suspicious access patterns
• Automated alerting for security events
• Integration with Microsoft threat intelligence feeds. - Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Other
- Description of management access authentication
-
Access to the infrastructure is through Microsoft Azure which includes a premium 2 Licenses. Which we enforce 2MFA and includes Identity Protection and Privileged Identity Management (PIM) enforcing conditional Access for Admins.
Automated Security Monitoring:
• Azure Security Centre integration for threat intelligence
• Real-time detection of suspicious access patterns
• Automated alerting for security events
• Integration with Microsoft threat intelligence feeds.
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users have access to real-time audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- No
- Security governance approach
-
EDGEBITS manages software security governance with a structured and risk-driven approach ensuring best practice is followed and implemented across the entire software lifecycle. This takes place continuously across our teams to ensure we are fully complaint and up to date with any vulnerabilities and threats. Our company best practice includes:
1. Allocation of ownership and accountability.
2. Implementation of correct Security Controls.
3. Embedding security into our Work flows and Risks Management.
4. Ensuring teams have up to date training.
5. Implementing a continuous improvement approach.
6. Robust Governance Framework with regular reviews of all Data Security polices and Proceedures. - Information security policies and processes
-
We recognise the importance of information security in protecting our data, our clients' data, and maintaining business continuity. Our information governance is built on industry best practices appropriate for an SME environment and is designed to be robust, adaptable, and comprehensive.
We have the following policies:
1. Data Information Security Policy
2. Data Protection Policy
3. Data Quality Policy
4. IG Security Training Policy
5. Record Keeping Policy
6. Data Protection by Design Default Policy.
7. Business Continuity & Disaster Recovery Plan.
IG is integrated into our operational management, ensuring visibility and accountability. Our Managing Director holds ultimate responsibility for information security. The IT Director is responsible for the day-to-day implementation, maintenance, and monitoring. The Team report any suspected security incidents, vulnerabilities, or policy violations immediately to their Line Managers and these are are escalated, responded to and communicated in line with documented our policies and procedures. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
-
Environment Configuration:
• Secure storage of all configuration settings
• Environment-specific configuration management
• Version control for configuration changes
• Regular configuration security reviews
Dependency Management:
• Automated dependency scanning and updates
• Security patch management procedures
• Version consistency across deployment environments
• Third-party component security assessment. - Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
We leverage both Azure Vulnerability Scanner and Microsoft Defender for Cloud within our infrastructure, along with regular Penetrations Tests with our Cyber Security experts, Densify, in order to ensure we are taking a continuous and proactive approach to our Cyber Security and Vulnerability.
All security updates and patches are installed within 14 days of release as part of the company security policy. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
-
Event logs are via Azure Application Insights; Used for diagnostics if/when required:
• Logging data is available up to the most recent rolling 30 days.
• All Incidents are responded to within 24 hours.
Azure Application Insights Integration:
• Centralised telemetry and logging for all system components
• Real-time performance monitoring and alerting
• Custom security event tracking and analysis
• Automated anomaly detection and notification.
Security Event Collection:
• Authentication and authorisation events logged
• API access patterns monitored and analysed
• System performance metrics tracked continuously. - Incident management type
- Undisclosed
- Incident management approach
- Our polices require users to log calls via our email support desk. Issues are then triaged/resolved either remotely or via telephone. Users are advised on updates/resolution formally through email,
- Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- Yes
- Connected networks
- Health and Social Care Network (HSCN)
Pricing
- Discount for educational organisations
- No
- Free trial available
- Yes
- Description of free trial
- Free Trails are available and discussed with customers and then tailored to the customers' requirements. For example a customer may want to try the product or service on a standalone machine or may want to trial it only at a particular time.
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 2%
- Between £250,000 and £500,000
- 4%
- Between £500,001 and £1,000,000
- 6%
- Between £1,000,001 and £2,500,000
- 8%
- Between £2,500,001 and £5,000,000
- 10%
- Over £5,000,001
- 12%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 67eb85e2-08e7-470f-8608-93abae287ea7
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 2115f271-ce10-43f6-ac44-976603361755
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
-