Workforce enablement including standard AI powered adapted learning
Apolitical is providing governments with the tools, technology and networks to transition to being effective and tech-enabled organisations.
AI-enabled assessments enable personalised learning at scale, powered by adaptive intelligence and dynamic data dashboards—turning workforce data into actionable, system-level insight for government leaders.
Features
- Personalised online workforce assessment capturing task, role, and capability data
- AI-enabled analysis generating insights from aggregated workforce information
- Adaptable learning pathways aligned to organisational priorities and user needs
- Role-based dashboards providing workforce-level and individual-level visibility
- Data aggregation and reporting across teams, departments, and organisations
- Integration with existing learning platforms and organisational systems
- Support for large-scale workforce participation and enterprise deployments
- Configurable access controls and permissions for different user groups
- Ongoing data refresh to reflect changing roles, skills, and priorities
- Secure and sovereign hosting options supporting organisational and regulatory requirements
Benefits
- Understand workforce AI readiness using evidence from real work patterns
- Identify tasks to be automated while protecting quality and judgement
- Reveal existing skills and capability gaps across teams and roles
- Prioritise AI investment based on organisational needs, not generic assumptions
- Support leaders to plan workforce change with confidence and clarity
- Enable targeted capability building aligned to real operational challenges
- Reduce wasted training by focusing learning where it delivers impact
- Improve adoption of AI tools through context-relevant learning experiences
- Track workforce progress as AI capabilities evolve over time
- Strengthen decision-making using transparent, explainable workforce insights
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
1 3 1 5 3 6 4 1 3 5 2 1 9 6 6
Contact
APOLITICAL GROUP LIMITED
Danielle Boyle
Telephone: 07908528519
Email: frameworks@apolitical.co
About your service
- Service categories
-
Application Development and Deployment
AI platforms
- Search and knowledge discovery
AI life cycle
- AI Build Software
- Trustworthy AI Software
AI software services
- Conversational AI Software Services
- Generative AI Software Services
- Personalize AI Software Services
- Multi cloud support
- No
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Public cloud
- Service constraints
- N/A
- System requirements
-
- Data is hosted in the UK/EU
- Requires a modern web browser with JavaScript enabled
- Internet connectivity required (no offline mode)
- We can assess specific requirements on a case-by-case basis
User support
- Email or online ticketing support
- Yes
- Support response times
-
We respond to urgent and high priority tickets within 8 working hours
We respond to normal and low priority tickets within 24 working hours.
Working hours are defined as Monday - Friday, 9am - 6pm (UK time) - User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 AA
- Phone support
- No
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
Our support tickets are received and triaged by our customer support team and the customer support software we use. Our software prioritises these based on the nature and urgency of the request using an algorithm.
Apolitical provides a standard level of support across all services. Subject to the terms of the relevant service agreement, enhanced support may be provided, including the assignment of a dedicated partnership manager to support specific cohorts or clients and ensure timely resolution of issues.
We also have an in-house team of engineers, who are available to resolve technical issues if they occur. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- We provide an FAQ page which outlines how users can access the platform and learning materials. We have also cultivated an email journey for onboarding to help users understand how to get the most out of Apolitical. Email journeys can be adapted for different programmes and user-groups, supporting programme communications, signposting and engagement prompts.
- Service documentation
- No
- End-of-contract data extraction
-
Users may export or delete their data at any time by contacting Data Protection Officer via dpo@apolitical.co
Data will be exported or deleted in line with contractual and legal requirements at the end of the contract. - End-of-contract process
-
At the end of the contract, any licences to access the services, content and tools that are not freely available on the Apolitical platform will expire.
In line with contractual requirements, users may choose to retain platform access, and may access any free content and tools available on the Apolitical platform.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- The mobile site has been designed to display on smaller, thinner screens. This means that content may be displayed in a more narrow format
- Service interface
- Yes
- User support accessibility
- WCAG 2.2 AA
- Description of service interface
- Users may access the service via the Apolitical platform available at apolitical.co
- Accessibility standards
- WCAG 2.2 AA
- Accessibility testing
- We test the accessibility of our platform for users who use assistive technology, including a variety of screen readers on different browsers. We conduct user testing, which may include users who use assistive technology
- API
- No
- Customisation available
- Yes
- Description of customisation
- We can provide white labelling of our service for larger-scale deliveries. We can also support customisation of learning pathways
Scaling
- Independence of resources
-
Independence of resources
The platform implements logical separation through Google Kubernetes Engine (GKE) with:
- Container isolation with defined CPU/memory resource limits per service
- Network segmentation via Kubernetes namespaces and network policies
- Horizontal Pod Autoscaling to handle demand spikes without impacting other users
- Load balancing via Traefik API gateway distributing requests across replicas
- Cloud SQL connection pooling preventing database resource exhaustion
All users share multi-tenant infrastructure with Kubernetes enforcing fair resource allocation and preventing any single workload from affecting others.
Analytics
- Service usage metrics
- Yes
- Metrics types
-
Engagement indicators, such as participation levels, frequency of interaction, and sustained involvement over time.
Learning and capability development, captured through a mix of formative and summative signals, which may include reflective inputs, applied tasks, or graded elements where appropriate.
Progress and outcomes, showing how learners move through content and how confidence or capability develops across the experience.
Qualitative insight, drawing on learner feedback, reflections, and narrative responses to understand perceived impact and relevance. - Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Security Clearance (SC)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- User control over data storage and processing locations
- No
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with another standard
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
- Data Erasure
Data importing and exporting
- Data export approach
-
Users may request a copy of their personal data by contacting the Data Protection Officer, via dpo@apolitical.co
Export requirements for large-scale deliveries can be discussed on a case-by-case basis - Data export formats
-
- CSV
- ODF
- Data import formats
-
- CSV
- ODF
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
-
The platform targets 99.9% availability, monitored through GCP Cloud Monitoring with defined Service Level Objectives (SLOs) for latency and traffic. Automated uptime checks trigger alerts on service degradation, with burn rate alerts for error budget consumption.
Availability is supported by horizontal pod autoscaling and load balancing across service replicas.
We do not currently offer contractual SLAs with financial remedies. - Approach to resilience
-
The platform is hosted on Google Cloud Platform (GCP) in the UK/EU with the following resilience measures:
- UK/EU hosting: Production infrastructure hosted in GCP europe-west regions
- Container orchestration: Google Kubernetes Engine (GKE) with automated pod rescheduling on node failure
- Database resilience: Cloud SQL with automated backups and point-in-time recovery
- Search engine: SolrCloud cluster with nightly backups to GCS
- Infrastructure as Code: Terraform ensures consistent, repeatable deployments
- CI/CD: Automated pipelines with staged rollouts (beta → RC → live)
GCP data centres maintain ISO 27001, SOC 2, and other certifications. Further details available on request. - Outage reporting
-
We continuously monitor outages of our service by integrating Incident.io with our platform infrastructure. Where an outage or issue is identified, our Engineering team is notified via Slack, and the on-call engineer is responsible for triaging and escalating the issue. Incidents are identified, managed and tracked in Incident.io
GCP Cloud Monitoring provides real-time alerting to engineering teams, enabling rapid response to service degradation.
We do not currently operate a public status dashboard or status API.
Identity and authentication
- User authentication needed
- Yes
- User authentication
- Username or password
- Access restrictions in management interfaces and support channels
- We apply an Access Management Policy, which means that staff are only granted access to the systems that they genuinely need for their work, and privileged account access is restricted to a select number of staff with additional approval requirements in line with ISO 27001 standards
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- Between 6 months and 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- Between 6 months and 12 months
- How long system logs are stored for
- Between 6 months and 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- Our organisation is ISO 27001 certified, and an independent auditor has assessed our policies and procedures and is satisfied that they are proportionate to the risk posed to our Information Security Management System. We have a comprehensive set of policies to manage information security, including Security, Access Management, End User Device and Acceptable Use, Vulnerability Monitoring, Logging, and Physical Security Policies.
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
-
We have a comprehensive Change and Configuration Management policy, which includes configuring hardware, software, services, and networks with hardened security settings to mitigate risks and ensure operational effectiveness. To ensure that hardware, software, services, and networks are configured securely and consistently to mitigate risks and maintain operational effectiveness, we have established a systematic process for documenting, implementing, monitoring, and reviewing configurations in accordance with the Configuration Management Policy.
Our policy has been independently audited to comply with ISO 27001 standards - Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
Apolitical uses Snyk, integrated into the development pipeline, to automatically identify vulnerabilities across our infrastructure. Apolitical conducts scans on Snyk on the following timelines:
Continuous Integration (CI) Pipeline: Every commit and pull request is scanned by Snyk.
Scheduled Scans: Weekly scans across all repositories to capture vulnerabilities outside the CI process.
Ad-hoc Scans: Performed after major dependency upgrades, new environment deployments, or security incidents.
Critical vulnerabilities must be remediated within 7 days, high risk vulnerabilities within 30 days, and medium and low in 90 days.
Our policy has been independently audited to comply with ISO 27001 standards - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
-
We have a comprehensive logging and monitoring policy, which ensures that we collect security and access logs to our systems. The Data Protection Officer and security team receive alerts when unusual activity is identified across our systems. Upon receiving an alert, our team reviews the alert within 1 working day. If required, we enact the incident management plan We also follow a regular audit log review process, which means we review the audit logs for our systems quarterly
Our policy has been independently audited to comply with ISO 27001 standards - Incident management type
- Supplier-defined controls
- Incident management approach
-
We have a defined incident management process, based on the NCSC’s guidance (and has been independently audited as compliant with ISO 27001), which follows the following stages: preparatory, analysis, containment and eradication, and close down. We also have plans in place to deal with common incidents, including draft communications techniques
Users can report incidents to concierge@apolitical.co. We create and retain incident reports as part of our incident reports. We provide these to partners and clients as required, and otherwise upon request as appropriate - Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
-
We consider free trials or demos on a case-by-case basis. Please contact our team via partnerships@apolitical.co for further information
We also offer a range of content and tool on the Apolitical platform which are free for members - Link to free trial
- Apolitical.co
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 5%
- Between £500,001 and £1,000,000
- 5%
- Between £1,000,001 and £2,500,000
- 10%
- Between £2,500,001 and £5,000,000
- 10%
- Over £5,000,001
- 15%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- UKAS
- ISO/IEC 27001 accreditation date
- Wednesday 1 October 2025
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- Abb71c2e-ab02-49fa-bd67-21428d4ca0d9
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 58b5b6e7-c184-4584-b9dd-18aab103d849
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
- Monitoring and reporting of gender and ethnicity pay gaps and plans to address them where necessary
- Understanding of in-work progression issues affecting the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
- Volunteering opportunities for staff
- Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Understanding of local demographics, needs and opportunities for the co-design of the goods, services and works to be delivered under the contract
- Measures to involve local stakeholders and/or users in design (e.g. in the design of services, systems, products or buildings)
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 6: Employment and training: For those who face barriers to employment
- Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
- Introducing transparency to pay and reward processes
- Working conditions which promote an inclusive working environment and promote retention and progression
- Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
- Inclusive and accessible development practices, including guidance for line managers on recruiting, managing and developing people with a disability or health condition
-