PRECISELY SOFTWARE LIMITED

Precisely Spectrum OnDemand

Spectrum OnDemand is a SaaS service based around core Location Intelligence and Customer Information Management web services which can be joined together into customised composite services specific to your needs. Capabilities include AddressBase geocoding, drivetime routing, address validation, deduplication, normalisation, and geographic and demographic data enrichment.

Features

  • Global address validation.
  • Matching and de-duplication.
  • Geocoding and routing.
  • Tax jurisdiction assignment.
  • Phone appends.
  • Master data hub to address GDPR compliance
  • Watch list screening.
  • Programmable APIs and web services.

Benefits

  • SaaS ready format.
  • High quality, enterprise solutions online.
  • Easy to embed in your existing applications.
  • Combine Spectrum services with other spatial or territory data.
  • Create custom work flows.
  • Extra processing overhead remains on our servers.
  • We take charge of keeping your additional data up-to-date.
  • Provides ability to address GDPR compliance

Pricing

£0.01 a transaction

  • Free trial available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at raoul.kumar@precisely.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 13

Service ID

1 4 7 3 7 0 9 3 3 8 5 8 8 1 3

Contact

PRECISELY SOFTWARE LIMITED Raoul Kumar
Telephone: +44(0)7367540505
Email: raoul.kumar@precisely.com

Service scope

Software add-on or extension
No
Cloud deployment model
Public cloud
Service constraints
Planned maintenance is 6am-10am each Sunday.
System requirements
None Required

User support

Email or online ticketing support
Email or online ticketing
Support response times
https://support.precisely.com
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
WCAG 2.1 AAA
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
Onsite support
Support levels
Maintenance is included in all Precisely software agreements and entitles you to the services, based on four maintenance levels, outlined in the Maintenance Service Matrix in the Software Support & Maintenance Handbook.
Support available to third parties
No

Onboarding and offboarding

Getting started
On site training and user documentation is provided by Precisely.
Service documentation
Yes
Documentation formats
  • HTML
  • PDF
End-of-contract data extraction
No data is stored in the service platform
End-of-contract process
Contract can be extended or augmented to address business processes and needs

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
No difference
Service interface
No
User support accessibility
None or don’t know
API
Yes
What users can and can't do using the API
The API allows users to build a request and response message in different flavours of C, Java, .NET, XML
API documentation
Yes
API documentation formats
  • HTML
  • PDF
API sandbox or test environment
Yes
Customisation available
No

Scaling

Independence of resources
It's not a multi tenanted platform, however, it can spawn multiple process threads and micro batches to process jobs efficiently and prevent bottlenecks

Analytics

Service usage metrics
Yes
Metrics types
Percentage availability
Outages
Scheduled Maintenance
Reporting types
Regular reports

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Staff screening not performed
Government security clearance
None

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
  • European Economic Area (EEA)
  • Other locations
User control over data storage and processing locations
Yes
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 3.0)
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
Physical access control, complying with another standard
Data sanitisation process
No
Equipment disposal approach
A third-party destruction service

Data importing and exporting

Data export approach
As it's and on demand web service, the export of the data is part of the web based standards protocol service
Data export formats
  • CSV
  • Other
Other data export formats
  • XML
  • JSON
Data import formats
  • CSV
  • Other

Data-in-transit protection

Data protection between buyer and supplier networks
Legacy SSL and TLS (under version 1.2)
Data protection within supplier network
Legacy SSL and TLS (under version 1.2)

Availability and resilience

Guaranteed availability
99.9% system availability
Approach to resilience
Available on request
Outage reporting
Email alerts.

Identity and authentication

User authentication needed
Yes
User authentication
Username or password
Access restrictions in management interfaces and support channels
Role based security allows restrictions to management interfaces
Access restriction testing frequency
At least once a year
Management access authentication
Username or password

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
User-defined
Access to supplier activity audit information
Users have access to real-time audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
Between 1 month and 6 months

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
BSI
ISO/IEC 27001 accreditation date
16/11/2915
What the ISO/IEC 27001 doesn’t cover
This is accreditation for the data centre services provided by Telstra.
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
No
Cyber essentials plus
No
Other security certifications
No

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
PRECISELY corporate policies and control framework are aligned with the ISO 27001 Information Security Program Management Standards. This includes pragmatic policies, procedures, standards and guidelines to support the information security requirements, with a focus on the most critical assets. This enables us to maximise efficiency and effectiveness by leveraging a common set of controls and policies to comply with many regulations.
Precisely information security policy framework includes documented policies, procedures, standards and guidelines to support our relevant information security requirements.
There are 2 separate teams one for privacy and one for Information Security

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
The servers are monitored through SSCM and all assets are maintained through a central inventory. The servers are scanned and patched for vulnerabilities periodically.
A committee reviews the changes to the server and the configuration. The committee decides based on the test results and the risk involved. The changes are not performed without prior approval from the committee and the stakeholders. The normal change requests go through complete phase of stakeholder approvals, testing and UAT.
Vulnerability management type
Supplier-defined controls
Vulnerability management approach
Scan is run on servers, once every month using Vulnerability Assessment tool The vulnerabilities are identified, remediation for the identified vulnerabilities are completed within 30 days All stakeholders are informed and the same change management process applies to the remediation process. There are various ways including the VA update and emails where we get inputs on potential threats.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
At the desktop Level, AVs are installed and updated which does real time monitoring on potential threats. At the network level, the traffic are regulated through firewall. We also have IDS which analysis traffic and whenever a potential attack is identified an automatic ticket is raised under security incident queue and get resolved based on the severity. The responses are provided based on the severity level.
Incident management type
Supplier-defined controls
Incident management approach
Multiple IDS devices are situated in the perimeter of the network which continuously monitor the inbound and outbound traffic. A 24x7 team monitors these incidents and provide real time solution. Timely escalations make sure all incidents are worked on priority and necessary patching or fixes are done following the change management process.

Secure development

Approach to secure software development best practice
Conforms to a recognised standard, but self-assessed

Public sector networks

Connection to public sector networks
No

Social Value

Fighting climate change

Fighting climate change

As a software manufacturer, Precisely Software Incorporated (parent of Precisely Software Limited) (“PSI”) has a largely remote workforce and does not own any of the worldwide office locations where it operates. As such, there are no dedicated programs or training for employees to improve the environment since employees work from home. PSI does, as a matter of company policy regarding the working environment of employees, follow environment, health and safety standards and procedures customary in the industry and/or local jurisdictions of its office locations. PSI only leases with property managers / landlords who comply with local laws, including environmental laws with recycling capacity and such terms are contracted in the various leases. In addition, PSI products and services are designed to be safe and to minimize their environmental impact by implementing industry standard protocols for same, e.g. click wrap agreements, paperless retention policies, downloadable software delivery (instead of tapes, diskettes or CD’s).
Covid-19 recovery

Covid-19 recovery

Precisely has taken great precautions throughout the COVID-19 global pandemic to keep our employees and partners at low risk for contagion. Our global offices were closed and employees were transitioned to work remotely from the safety of their homes from March 2020 until very recently, with very limited access permitted to essential personnel following strict masking and sanitary protocols. Now that Precisely is re-opening offices again, we have taken into account increased employee preferences for remote and hybrid working arrangements. We encourage all employees to be fully vaccinated.
Tackling economic inequality

Tackling economic inequality

Precisely participates in several salary surveys globally to ensure we understand the market for talent and the compensation market trends. We continually look at our own compensation data to ensure competitiveness and fair treatment, and set salaries based on the value of the job, not the applicant’s salary history. This combined with the continued efforts of Precisely’s Diversity and Inclusion Council work to create opportunities for those who may face barriers to employment or are located in deprived areas.
Equal opportunity

Equal opportunity

While not a classified as a diverse owned company, PSI maintains a robust diversity program lead by its Chief Human Resource Officer (CHRO) who is charged with driving diversity in the organization. PSI maintains an internal Diversity and Inclusion Council and also launched the Precisely Women in Technology program (PWIT) in 2020 in concert with the Women in IT Awards events. We also partner with Women in Technology in the UK to increase the representation of women in Precisely. PSI’s Executive Leadership team includes women in the following posts: the CHRO, CTO (Chief Technology Officer) and CDIO (Chief Data and Information Officer) and fifty percent (50%) of the members of the Senior Leadership Team are women as well.

In the UK

PSI does not have a supplier diversity program due to the nature of its operations and business. The only relatively material expense PSI has (other than staffing and rent) is computer hardware and software and those purchases are made from large worldwide providers who lead the industry for such hardware and software technologies. To remain competitive and viable, PSI must choose the industry leaders products, however, most if not all, advocate adherence to current diversity philosophies. PSI’s lack of reliance on a traditional supply chain is the reason for not having a supply chain diversity program.
Wellbeing

Wellbeing

The PSI CHRO is responsible for ensuring compliance with local occupational health and safety laws and regulations. The health and well-being of every employee is of vital importance to PSI. It is the policy of PSI to provide safe working conditions for all employees and the success of such a program rests ultimately with the employees. General requirements related to health and safety protections for employees are addressed worldwide in the various Employee Handbooks drafted in the local languages. PSI is presently looking to implement a new employee program and training to improve safety performance that addresses its current remote workforce that will likely remain as such for the foreseeable future. Given the nature of PSI’s business, activities do not require employees to wear protective equipment. PSI does ensure that relative health and safety issues and concerns are addressed regularly, e.g. COVID19, annual flu season, travel alerts, etc. In the UK we provide private health care and an Employee Assistance Program to support employee physical and mental wellbeing. We also work with Health Partners, who provide occupational health support to assist us on making the appropriate adaptions as appropriate.

In addition we have a Volunteer Time Off (VTO) Program and Policy is designed to provide our employees the opportunity to give their time and expertise to support activities that enhance, serve communities and create positive change. around the world. As well as benefitting our local communities volunteering can bring great personal rewards enabling our employees to build connections, develop new skills, and gain a fresh perspective, outside of the workplace.

Pricing

Price
£0.01 a transaction
Discount for educational organisations
No
Free trial available
Yes
Description of free trial
Details provided upon request.

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at raoul.kumar@precisely.com. Tell them what format you need. It will help if you say what assistive technology you use.