Skip to main content

Help us improve the Digital Marketplace - send your feedback

IT Auxilium / GP IT Services / Health IT Services

Advanced Email Security and Anti-Phishing Platform (Cloud Based)

This service provides a cloud-based email security platform that protects organisations against phishing, impersonation and malware. It analyses inbound and internal emails in real time, helps users make safer decisions and reduces the risk of data breaches through advanced threat detection and domain protection.

Features

  • Inbound email phishing and impersonation detection
  • Internal email account takeover detection
  • Computer vision based brand impersonation detection
  • QR code threat detection in emails
  • Advanced attachment and zero-day malware analysis (Advanced+Pro)
  • Behavioural anomaly detection using sender profiling (Advanced+Pro)
  • Graymail detection and user-managed filtering (Advanced+Pro)
  • GenAI intent and conversation analysis (Advanced+Pro)
  • Outbound data loss prevention scanning (Pro)
  • Email encryption and DMARC domain monitoring (Pro)

Benefits

  • Reduces phishing and impersonation attacks across all email users
  • Detects threats missed by traditional signature-based security tools
  • Helps users make safer email decisions in real time
  • Protects against account takeover and internal email abuse
  • Blocks malicious links, attachments and QR code attacks
  • Minimises distraction from unwanted but legitimate bulk email
  • Prevents accidental data leakage through outbound email scanning
  • Improves email domain reputation and delivery trust
  • Strengthens compliance with security and data protection standards
  • Lowers operational risk without increasing administrative overhead

Pricing

  • Education pricing available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at sales@healthitservices.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

8 7 3 1 1 9 1 6 0 9 4 3 1 5 7

Contact

IT Auxilium / GP IT Services / Health IT Services Sales - Health IT Services
Telephone: 01223 827 410
Email: sales@healthitservices.co.uk

About your service

Service categories

Systems Infrastructure Software

Security

  • Cloud native application protection platform
  • Endpoint security
  • Security analytics
  • Governance, risk and compliance

Identity and access management

  • Access
  • Privilege

Network security

  • Trusted network access and protection
  • Active application security

Data security

  • Information protection
  • Digital trust
Multi cloud support
No

Service scope

Software add-on or extension
Yes, but can also be used as a standalone service
What software services is the service an extension to
This is included in Kaseya365 User, but can be taken standalone.
Cloud deployment model
Public cloud
Service constraints
The service requires a supported cloud email platform, such as Microsoft 365, Exchange Online and/or Google Workspace, and a reliable internet connection. No on-premises infrastructure or specialist hardware is required. Planned maintenance is performed by the service provider and may occasionally result in brief service interruptions, which are communicated in advance. Feature availability varies by service tier and some advanced capabilities require additional configuration during on-boarding. Feature availability varies by service tier, and some advanced capabilities require initial configuration by GP IT Services during onboarding.
System requirements
  • Supported email platform (Microsoft 365, Exchange Online or Google Workspace)
  • Valid user or mailbox licences for email service
  • Ability to route email through security service
  • Internet connectivity for cloud service access
  • Standard web browser for administration portal
  • No on premises servers or appliances required
  • No additional antivirus or endpoint agents required
  • DNS access for domain and policy configuration
  • Administrative access to email tenant required
  • Compatible with desktop and mobile email clients

User support

Email or online ticketing support
Yes
Support response times
08:00 to 18:00 Monday to Friday, excluding Bank and Public Holidays. 24x7 cover if the client has OOH support add-on.

30 min to 4 hour response dependent on priority call:
P1 - 30 mins,
P2 - 2 hours,
P3 - 4 hours
P4 - 4 hours
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
None or don’t know
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
Yes
Web chat support availability
24 hours, 7 days a week
Web chat support accessibility standard
None or don’t know
How the web chat support is accessible
Web chat is available once logged into our Support Portal. Users can ask questions and the bot will either signpost to the necessary support article or suggestion a resolution based on it's learning from tickets logged/resolution notes/ongoing learning the bot undertakes. The bot will not provide data or information from other customers, but may use learning from others to help support an answer.
Web chat accessibility testing
Users can use speech to text in order to detail their issues and respond.
Onsite support
Yes, at extra cost
Support levels
The service is provided with a single, consistent support level for all customers.

Support is delivered by GP IT Services during UK business hours. It includes platform administration, initial configuration, ongoing policy management, monitoring of alerts, incident response and fault resolution. GP IT Services acts as the primary point of contact, ensuring the service is correctly configured, maintained and aligned to the customer’s operational and security requirements.

Support also covers guidance on service use, assistance with reporting and advice on responding to detected threats. Where issues relate to the underlying email platform, GP IT Services will provide reasonable assistance and coordination.

Support is included within the service price at no additional cost. A named Technical Account Manager is not provided as standard, however support is delivered by experienced cloud support engineers with expertise in email security platforms. Additional service reviews or enhanced engagement can be agreed separately where required.
Support available to third parties
Yes
AI chatbot
Yes

Onboarding and offboarding

Getting started
GP IT Services supports customers through a structured onboarding process designed to minimise disruption and ensure effective use of the service. This includes an initial remote onboarding session to confirm requirements, configure domains and integrate with the existing email platform. Setup and configuration are completed on the customer’s behalf.

Guidance is provided through remote walkthroughs, vendor documentation and clear operational explanations for administrators. End users do not require formal training, as the service operates transparently within existing email clients and provides intuitive, in-context guidance when risks are detected. Ongoing support is available to assist with questions as the service is adopted.
Service documentation
Yes
Documentation formats
  • HTML
  • PDF
End-of-contract data extraction
At the end of the contract, users can request extraction of their service data, such as reports, alert histories and configuration information, in commonly used electronic formats. GP IT Services supports the data export process and coordinates with the platform provider where required. Once data extraction is completed, access to the service is removed and customer data is securely deleted in line with contractual and data protection requirements.
End-of-contract process
At the end of the contract, the service is terminated in an orderly manner. GP IT Services will support offboarding activities, including disabling the service, coordinating data export where requested and confirming secure deletion of customer data in line with contractual and data protection requirements. Access to the management interface and service features is removed once the contract has ended.

The contract price includes the software licence, hosting, platform maintenance, security updates, standard support, service administration by GP IT Services and onboarding activities. There are no additional charges for routine support, maintenance or service operation during the contract term.
Documentation accessibility standard
None or don’t know
How the documentation is accessible
Our onboarding and offboarding documentation is delivered through a secure, browser-based knowledge portal accessible on any modern device. Content is structured with clear headings, readable layouts and screen-reader compatibility. Users can navigate using keyboard controls and adjust display settings for visibility needs. Documents are available in standard web formats to support assistive technologies, and key guides can be downloaded for offline use. This ensures administrators with a range of accessibility requirements can follow setup and offboarding steps without barriers.

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
  • Opera
  • Other
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
There are no functional differences between the mobile and desktop service. Email security controls are applied at the email platform level, ensuring consistent protection across all devices. Users receive the same threat detection, warning banners and guidance whether accessing email on desktop, web or mobile clients. Administrative management is performed through a web-based portal, which is optimised for desktop use but remains accessible from mobile browsers if required.
Service interface
Yes
User support accessibility
None or don’t know
Description of service interface
The service provides a secure, web-based management interface. GP IT Services administers the platform on behalf of the customer, including policy configuration, monitoring and reporting. Customers retain visibility of service outcomes, alerts and reporting, without needing to directly manage the platform.
Accessibility standards
None or don’t know
Description of accessibility
The service is accessed through existing email clients, such as desktop, web and mobile email applications, with no user-installed software required. End users can view email normally and receive clear warnings and guidance on potentially malicious messages, but cannot change security policies. GP IT Services administers the platform through a secure, web-based management interface, configuring policies, monitoring alerts and managing domains and users on behalf of the customer.
Accessibility testing
The service interface is web-based and accessed via standard browsers, which support common assistive technologies. The underlying platform has been tested for compatibility with screen readers, keyboard navigation and browser-based accessibility features, in line with modern web accessibility standards. End users do not interact directly with an administrative interface, reducing accessibility barriers. GP IT Services administers the service on behalf of customers and can provide alternative formats or assisted support where required to ensure equitable access for all users.
API
Yes
What users can and can't do using the API
The API allows authorised administrators to integrate the service with existing systems and retrieve selected service information. Through the API, users can access reporting data, security alerts and status information, and automate certain administrative tasks where supported. Initial service setup and core security policy configuration are not performed through the API and are managed by GP IT Services to ensure secure and consistent deployment.

Changes made via the API are limited to supported functions and cannot override core security controls, detection engines or platform-wide policies. End users do not have API access. API usage is subject to authentication, role-based permissions and vendor-imposed limits.
API documentation
Yes
API documentation formats
  • HTML
  • PDF
API sandbox or test environment
No
Customisation available
Yes
Description of customisation
The service can be customised through configuration of security policies, alerting behaviour, reporting preferences and domain-specific controls. Customisation includes adjusting threat sensitivity, enabling or disabling specific detection features by tier, configuring warning banners, defining data loss prevention rules and setting domain and user scope.

Customisation is performed through the secure, web-based management interface and, where supported, via administrative API functions. GP IT Services (alongside nominated IT leads where necessary) carry out all configuration and ongoing adjustments on behalf of the customer to ensure consistent and secure operation. End users cannot customise the service and cannot modify security controls or policies.

Scaling

Independence of resources
The service is delivered using a multi-tenant cloud architecture designed for scale and resilience. Capacity management, load balancing and performance monitoring are handled by the platform provider to ensure consistent service levels as demand fluctuates. Resources are dynamically allocated to prevent individual tenants from affecting others. GP IT Services monitors service health and escalates any performance concerns, ensuring customer service quality is not impacted by usage from other organisations.

Analytics

Service usage metrics
Yes
Metrics types
The service provides operational and security metrics through reporting dashboards and scheduled reports. Metrics include volumes of emails analysed, numbers of phishing, impersonation and malware threats detected and blocked, internal account takeover attempts identified and user interactions with security warnings. Additional metrics include attachment and link analysis outcomes, QR code detections, data loss prevention events where applicable and domain protection status. These metrics support ongoing oversight, trend analysis and assurance reporting.
Reporting types
  • API access
  • Real-time dashboards
  • Regular reports
  • Reports on request
Resource tagging
No
FOCUS resource tagging
No

Resellers

Supplier type
Reseller providing extra features and support
Organisation whose services are being resold
Kaseya/Datto

Staff security

Staff security clearance
Other security clearance
Government security clearance
Developed Vetting (DV)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
  • United Kingdom
  • European Economic Area (EEA)
User control over data storage and processing locations
Yes
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 4.0)
Penetration testing frequency
At least every 6 months
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
Physical access control, complying with CSA CCM v4.0
Data sanitisation process
Yes
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
Data sanitisation type
  • Data Erasure
  • Explicit overwriting of storage before reallocation / Secure Erase

Data importing and exporting

Data export approach
Users can export their data by requesting a data extract through GP IT Services. Where supported by the platform, reporting and alert data can be exported via the management interface or API in standard electronic formats. GP IT Services coordinates and performs the export on the customer’s behalf to ensure data is provided securely and in a usable format.
Data export formats
CSV
Data import formats
CSV

Data-in-transit protection

Data protection between buyer and supplier networks
TLS (version 1.2 or above)
Data protection within supplier network
TLS (version 1.2 or above)

Availability and resilience

Guaranteed availability
Datto does not provide a cloud uptime SLA.
Approach to resilience
This is available on request (subject to an NDA)
Outage reporting
Datto Infrastructure status may be monitored at https://status.inkyphishfence.com/

Identity and authentication

User authentication needed
Yes
User authentication
  • Multi-Factor Authentication (MFA)
  • Public key authentication (including by TLS client certificate)
  • Identity federation with existing provider (for example Google Apps)
  • Username or password
Access restrictions in management interfaces and support channels
Access to management interfaces and support channels is restricted using role-based access controls and strong authentication mechanisms. Only authorised GP IT Services personnel are granted administrative access to the management interface, with permissions limited to the minimum required for service administration. Access is protected through secure credentials and multi-factor authentication where supported by the platform.

Support channels are restricted to named customer contacts and authenticated GP IT Services staff. Requests are logged and validated through controlled ticketing systems to prevent unauthorised access to customer information. All access is monitored and logged for audit and security purposes.
Access restriction testing frequency
At least once a year
Management access authentication
  • Multi-Factor Authentication (MFA)
  • Public key authentication (including by TLS client certificate)
  • Identity federation with existing provider (for example Google Apps)
  • Username or password

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
User-defined
Access to supplier activity audit information
Users have access to real-time audit information
How long supplier audit data is stored for
User-defined
How long system logs are stored for
User-defined

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
Other
Other security governance standards
ITAuxilium is Cyber Essentials accredited. We also follow the UK GDPR and the Data Protection Act 2018, NCSC Cloud Security Principles and follow the service management practices of ITIL.
Information security policies and processes
ITAuxilium is Cyber Essentials accredited. We also follow the UK GDPR and the Data Protection Act 2018, NCSC Cloud Security Principles and follow the service management practices of ITIL.
Software Security Code of Practice
Yes

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
We operate a structured configuration and change management process that tracks all service components through their full lifecycle using controlled configuration records and documented versioning. Proposed changes are logged, reviewed and risk assessed before approval. Each change undergoes a security impact assessment to evaluate effects on data protection, access controls and service stability. Approved changes follow a scheduled deployment process with testing, rollback planning and post-implementation review. This ensures components remain current, secure and fully traceable while minimising disruption to users.
Vulnerability management type
Supplier-defined controls
Vulnerability management approach
We operate a continuous vulnerability management process that monitors, assesses and mitigates threats to the service. Potential vulnerabilities are evaluated using recognised risk frameworks, considering severity, exploitability and potential impact on confidentiality, integrity and availability. Security patches and updates are prioritised based on criticality, with high-risk vulnerabilities addressed as quickly as possible, typically within vendor-recommended timeframes. Threat intelligence is sourced from trusted industry feeds, vendor advisories, NCSC alerts and recognised security communities. Regular scanning and ongoing monitoring ensure new risks are identified promptly, and remediation actions are tracked through to completion.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
We use continuous protective monitoring to detect unusual activity or indicators of compromise across the service. Automated alerts highlight anomalies such as failed backups, unexpected access attempts or abnormal system behaviour. When a potential compromise is identified, it is immediately escalated to the security team for investigation, containment and verification. Confirmed incidents follow a defined response process that includes isolation, remediation and communication with affected users. Response to high-severity incidents begins immediately, with lower-level events handled within standard operational timeframes. This approach ensures timely detection, rapid assessment and effective mitigation of security threats.
Incident management type
Supplier-defined controls
Incident management approach
We operate a structured incident management process with predefined procedures for common events such as failed backups, access issues and suspected security incidents. Users can report incidents through the service desk by email or via the support portal, where tickets are logged and prioritised. Each incident is handled using a standard workflow covering triage, investigation, resolution and communication. For higher-severity events, we provide formal incident reports that outline the cause, actions taken and any recommended improvements. Reports are shared with authorised administrators once the incident is closed, ensuring transparency and clear auditability.
Post-quantum cryptography secure
Yes

Secure development

Approach to secure software development best practice
Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)

Public sector networks

Connection to public sector networks
No

Pricing

Discount for educational organisations
Yes
Free trial available
No

Discount percentage by annual call-off contract value (excluding VAT)

Less than £250,000
5%
Between £250,000 and £500,000
5%
Between £500,001 and £1,000,000
5%
Between £1,000,001 and £2,500,000
10%
Between £2,500,001 and £5,000,000
10%
Over £5,000,001
10%

Non-mandatory Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2022 certification
No
ISO 9001 certification
No
Quality management systems (QMS)
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Please provide your Cyber Essentials Certificate Number
De0ed732-62b1-4b95-bbe5-a7039e7eb424
Cyber essentials plus
No
Cyber Essentials Alternative
In relation to the services you do not have a current and valid Cyber Essentials Plus certificate which has been awarded by one of the government approved Cyber Essentials accreditation bodies but you are working towards gaining it, and will be in a position to confirm that you have been awarded a current and valid Cyber Essentials Plus certificate by one of the government approved accreditation bodies within 12 months of the date of award.
Other security certifications
No

Social value

Section B - Commitment for Future: Delivery
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority

    • New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
    • Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
    • Plans to engage the contract workforce in deciding the most important workplace issues to address
    • Employment contracts that reflect actual hours worked; steps taken to ensure employees understand their contracts and have the ability to review and adjust them if actual hours regularly exceed contracted hours
    • Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
    • Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
    • Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
    • Monitoring and reporting of gender and ethnicity pay gaps and plans to address them where necessary
    • Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
    • Support for the contract workforce by providing career advice, and providing opportunities for staff working on the contract with in-work progression career development into known skills shortages or high growth areas
    • Volunteering opportunities for staff
    • Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
    • Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
    • How to ensure business decisions re: price/cost, short lead times, payment timescales do not create modern slavery risks in the supply chain
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.

    • Delivery of apprenticeships, supported internships and T Level industry placement opportunities (Level 2, 3 and 4+) in relation to the contract
  • Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.

    Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.

    • Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
    • Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at sales@healthitservices.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.