SharpCloud - OFFICIAL
SharpCloud is a top-down, data-driven, high-level strategic visualisation and communication tool, which allows users to arrange information into engaging visual stories and dynamic presentations. It enables users to bring together knowledge, content and stakeholders, and tell meaningful stories behind complex issues.
Features
- Quickly acquire, import and organise data
- Create interactive stories and views
- Display relationships between datasets - where no connection exists
- Identify patterns in data for further analysis.
- Display complex information in an engaging and consumable format.
- Run digital workshops, with real-time user/group participation.
- Automate story build from existing business systems using SDK/API
- Integrate data and automate data updates
- Enhance Portfolio, Programme and Project Management, and Enterprise Risk Management.
- Use-case templates for Project Portfolio reporting, Risk, Roadmapping & more
Benefits
- Fast and effective insight to Projects, Risks, Products & Roadmaps
- Stimulate true collaboration across teams and break down communication silos
- Collaboration across organisations/geographical locations
- Transform your organisation to become agile, dynamic and efficient
- Shared understanding of data and trends
- Operational improvement through real insight
- Clear strategic awareness of what’s important
- Eliminate inefficiencies of having to re-work slide decks and spreadsheets
- Identify, visualise and explore the important relationships across your business
- Create a shared understanding to support better business decisions
Pricing
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
7 5 9 5 8 4 5 6 3 5 5 7 2 5 1
Contact
DEVONPORT ROYAL DOCKYARD LIMITED
Andy Dunn
Telephone: 07983636092
Email: navalnuclearbids@babcockinternational.com
About the service
- Service categories
-
Applications
Collaborative
- Enterprise community
- Team collaboration
Conferencing and virtual event
- Virtual Event Applications
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Private cloud
- Service constraints
- Only certain web browsers (specified below) are supported, and the service may not function with other browsers. Various optional applications are limited to use on Microsoft Windows devices only.
- System requirements
-
- Access to a suitable network connection
- A compatible web browser
User support
- Email or online ticketing support
- Yes
- Support response times
-
P1 incidents raised with SharpCloud support will receive a response within 2hrs during UK working hours 9am-5.30pm Monday-Friday.
Extended Support is available on request and will be priced specifically to meet customer needs including out of hours and weekend options - User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
SharpCloud Public Cloud Multi-tenant instance is available on Microsoft Azure offering 99.95% availability.
P1 incidents raised with SharpCloud support will receive a response within 2hrs during UK working hours 9am-5.30pm Monday-Friday.
Extended Support is available on request and will be priced specifically to meet customer needs - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
-
Users have access to a range of resources to help them become competent in using SharpCloud. The in-product Help story includes detailed information and downloadable guides covering all SharpCloud’s capabilities and links to a range of videos hosted on our SharpCloudTV YouTube channel.
Users have access to our online Learning Management System (LMS), allowing them to work through appropriate courses for their needs, building from beginner to expert status. Additionally users can attend free online webinars (hosted weekly) and we offer the option to purchase on-site training and custom courses.
SharpCloud includes a selection of free samples stories and public examples to inspire ideas and to help users develop great content.
We host regular ‘discovery-days’ and other events at which users share their stories and knowledge. - Service documentation
- Yes
- Documentation formats
- HTML
- End-of-contract data extraction
- Data within the system can be copied to an excel file, or downloaded as a storyzip file. Data in storyzip files can be extracted into resource files and JSON objects.
- End-of-contract process
-
At the end of contract the users and content can be removed from the system.
Should you require your data to be extracted at the point of exit a discontinuation fee will be applied, this is subject to the amount of data and security level of data held on the system. - Documentation accessibility standard
- WCAG 2.2 AAA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Chrome
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- The mobile version is a fully functioning replica of the desktop site when in landscape mode and provides a reduced interface with less visual functionality when in portrait mode.
- Service interface
- No
- User support accessibility
- WCAG 2.2 AAA
- API
- Yes
- What users can and can't do using the API
-
SharpCloud offer two API's.
ODATA REST API
.NET SDK
ODATA REST API (public web)
Provides access to story data via RESTFUL services using ODATA syntax for batch and filter operations.
Full documentation of the service can be found here: https://my.sharpcloud.com/swagger
Most objects can be created/updated via the API but the service is intended to simplify data access for web developers. As such, the API is not used by the application per se and does not enable all functionality.
.NET SDK (requires .NET 4.7)
Provides full object model access to the story (items, relationships attributes etc) and can be used to interrogate and create stories. It uses the same private endpoint as the web clients so is functionality rich and can do everything the web client can.
It requires some basic knowledge of SharpCloud story structure and a .Net environment making it less suitable for simple integration with other web systems.
It is ideal for complex batch operations or desktop tools, and is used in a number of free add-on tools (e.g. Query connect which connects on-premise databases to the cloud service). - API documentation
- Yes
- API documentation formats
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
SharpCloud can be configured and customised to help accelerate adoption and exploitation via:
Configuration of attributes, tags and relationships (by the user)
Creation and application of bespoke SharpCloud story templates and widgets (provided through Consultancy Support)
Creation of visualisations based on a range of pre-built models (by the user)
Scaling
- Independence of resources
- The Public Cloud instance is a shared service. The API is throttled in order to limit the load that can be applied by anyone customer. Private Cloud deployments are also available on request to separate data and load for an additional fee.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Usage metrics are available through the Administration Portal, usage of shared content is available through the interface to the content creator.
- Reporting types
- Real-time dashboards
- Resource tagging
- Yes
- FOCUS resource tagging
- Yes
Supplier type
- Supplier type
- Reseller providing extra support
- Organisation whose services are being resold
- SharpCloud
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Security Clearance (SC)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CHECK service provider
- Protecting data at rest
- Physical access control, complying with another standard
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
- Explicit overwriting of storage before reallocation / Secure Erase
Data importing and exporting
- Data export approach
- Data within the system can be copied to an excel file, or downloaded as a storyzip file. Data in storyzip files can be extracted into resource files and JSON objects
- Data export formats
-
- CSV
- Other
- Other data export formats
- JSON
- Data import formats
-
- CSV
- Other
- Other data import formats
- JSON
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
-
SharpCloud Public Cloud Multi-tenant instance is available on Microsoft Azure offering 99.95% availability.
P1 incidents raised with SharpCloud support will receive a response within 2hrs during UK working hours 9am-5.30pm Monday-Friday - Approach to resilience
- Available on Request
- Outage reporting
- Email alerts/phone calls.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Access restrictions in management interfaces and support channels
-
• Username or password
Identity Federation
2 Factor Authentication - Access restriction testing frequency
- At least once a year
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Username or password
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
-
The Information Security Policy and Data Protection Policy are available on the internal SharpCloud SharePoint/Team site. Updates are communicated via email to all staff. They are both owned by the Chief Technology Officer.
All new staff receive induction that includes the Information Security Policy
The policies have been written based on ISO 27001 and ISO9001 standards.
There are no exceptions to the current security policies and procedures. Should an exception be raised it will be assessed and either accepted or rejected by the senior management team and the Policy updated accordingly.
SharpCloud maintains written roles and responsibilities for all IT personnel. These roles and responsibilities outline security access, reporting lines etc. for each role as documented in the Security Policy. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- The service utilises Azure DevOps for deployment which ensures that the build process, configuration and deployment is managed consistently via a change process.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
We follow best practice guidelines for software development using design patterns created or approved by MS. These include the multi-tier design pattern and application security layers (OWIN, MVC etc). We perform annual penetration tests using an external 3rd party. Any threat vulnerability we are made aware of will be treated appropriately via our incident management process.
Any changes are tracked using our release process.
The service is constantly being updated with new features and improvements which are released weekly. If a security issue is exposed, it would be patched within that timeframe. We conduct application penetration test at least annually. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
-
The underlying Azure PaaS has built in protection for DOS attacks etc. We recommend that you implement SSO via AAD which gives you further protection for authentication (e.g. enforce multi-factor auth, password policies, prevent login from multiple locations etc). In addition, each story has an audit displaying who has accessed, and when, allowing full auditability to identify any suspicious activity.
The service is actively monitored by SharpCloud support staff for application level issues and Microsoft for underlying hosting (Network, storage and compute) issue.
The support team are constantly monitoring the system and performance and will react appropriately to any issues - Incident management type
- Supplier-defined controls
- Incident management approach
-
All incidents are currently reported to 'support@sharpcloud.com' and escalated accordingly.
Common issues like password resets, account unlocks will be handled by your internal IT if SSO is configured (if not this is easily done by users themselves automatically via email).
Security incidents will be reported in accordance with our incident management policy. - Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Supplier-defined process
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- No
- Free trial available
- No
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 0%
- Between £500,001 and £1,000,000
- 0%
- Between £1,000,001 and £2,500,000
- 0%
- Between £2,500,001 and £5,000,000
- 0%
- Over £5,000,001
- 0%
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- ISO/IEC 27001 accredited by
- DNV Business Assurance UK Limited
- ISO/IEC 27001 accreditation date
- Wednesday 2 July 2025
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- ISO 9001 certification accredited by
- DNV Business Assurance UK Limited
- ISO 9001 accreditation date
- Wednesday 19 February 2025
- What the ISO 9001 doesn’t cover
- N/A
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber Essentials Certificate Number
- 2e821373-616d-47fa-91f8-552d9bed5cfb
- Cyber essentials plus
- Yes
- Cyber Essentials Plus Certificate Number
- 8a9c4bfb-8fd5-4b30-9463-d9a6378787f3
- Other security certifications
- No
Social value
- Mission: Kick start economic growth
-
To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
- Volunteering opportunities for staff
- Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Delivery of apprenticeships, supported internships and T Level industry placement opportunities (Level 2, 3 and 4+) in relation to the contract
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Activities to identify opportunities to open up sub-contracts under the prime contract to a diverse range of businesses, including new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Measures to engage users and communities and build relationships to increase community integration build trust and influence how the contract is delivered
- Mission: Make Britain a clean energy superpower
-
To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
- Mission: Break down barriers to opportunity
-
By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 6: Employment and training: For those who face barriers to employment
- Creation of employment opportunities particularly for those who face barriers to employment, such as prison leavers, care leavers and/or who are located in deprived areas, and for people in industries with known skills shortages or in high growth sectors
- Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
- Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.
- Other measures to offer development opportunities for the target cohort(s) in the contract workforce
- Understanding of issues relating to entering the contract workforce
- Mission: Build an NHS fit for the future
-
That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce