Secure Schools Online Cyber Security Policy, Training and Phishing Simulation Platform
Secure Schools Online is a cloud-based cyber security platform for schools and education providers, delivering policy management, staff cyber awareness training and simulated phishing exercises. The service helps organisations improve security culture, meet compliance requirements and reduce cyber risk through structured training, testing and reporting.
Features
- Centralised cyber security policy creation and management
- Education-focused cyber awareness training modules
- Automated simulated phishing campaigns
- Realistic phishing templates aligned to education sector threats
- User enrolment and role-based access control
- Training progress and completion tracking
- Phishing simulation reporting and analytics
- Customisable campaign scheduling
- Secure cloud-based platform
- Audit-ready compliance reporting
Benefits
- Improves staff cyber security awareness
- Reduces risk of successful phishing attacks
- Supports compliance with education security standards
- Demonstrates proactive cyber risk management
- Identifies high-risk behaviours and training gaps
- Saves administrative time for school leaders
- Encourages positive security culture
- Provides measurable security improvement evidence
- Scales across single or multi-school organisations
- Simple, intuitive platform for non-technical users
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
2 5 9 8 3 0 8 3 4 3 3 6 0 8 1
Contact
SECURE SCHOOLS LTD
Neil Roach
Telephone: 01638438186
Email: tenders@secureschools.com
About your service
- Service categories
-
Applications
Production and operations
Service industry and public sector operations
- Education
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Public cloud
- Service constraints
- No specific constraints at this time.
- System requirements
-
- Access to the internet
- Supported web browser
- Supported Operating system
User support
- Email or online ticketing support
- Yes
- Support response times
- Secure Schools provides email and online ticketing support from 08:30 to 17:30, Monday to Friday. Support queries are acknowledged within one working day, with initial responses typically provided within 24 hours. Response times may be longer at weekends and on UK public holidays, with queries received outside business hours handled on the next working day.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Yes
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- WCAG 2.2 AA
- Web chat accessibility testing
- Secure Schools has tested its web chat and online support interfaces with commonly used assistive technologies, including screen readers and keyboard-only navigation tools. Testing has focused on ensuring compatibility with WCAG 2.2 AA requirements, clear focus order, readable labels, and accessible error handling. Feedback from testing has been used to improve usability and accessibility for users with visual or motor impairments.
- Onsite support
- No
- Support levels
- Secure Schools provides a single standard support level for all customers, included within the service price. Support is delivered via email and online ticketing during UK business hours, Monday to Friday. The standard support level includes: Access to the Secure Schools support team for technical and service-related queries - Issue investigation and resolution - Guidance on using the platform and interpreting outputs - Assistance with access, user management, and general configuration. There are no additional chargeable support tiers. All customers receive the same level of support as part of their subscription, and there are no optional paid upgrades. Secure Schools does not provide a dedicated technical account manager or named cloud support engineer. Support is provided by the Secure Schools technical and customer support team, ensuring continuity, resilience, and appropriate handling of enquiries based on priority and impact. This approach provides consistent, predictable support costs for buyers while meeting the needs of schools and multi-academy trusts.
- Support available to third parties
- Yes
- AI chatbot
- Yes
Onboarding and offboarding
- Getting started
- Secure Schools Limited supports users to start using the service through a structured onboarding and enablement process designed to minimise disruption and ensure effective adoption. Support includes: - Guided onboarding, delivered remotely, to configure the service, set up user roles and confirm access requirements - Online training sessions for administrators and users, covering key functionality, security considerations and best practice use - User documentation, including step-by-step guides and reference materials, provided in digital format and kept up to date as the service evolves - Ongoing support access, allowing users to raise questions or issues during early use and beyond. Training is typically delivered remotely to reduce cost and environmental impact. Where required and agreed in advance, onsite training can be provided as an additional service. Secure Schools ensures that administrators are confident in managing the service before wider rollout. Training and documentation are designed to be accessible and proportionate to user needs. Support arrangements, including response times and escalation routes, are clearly defined as part of onboarding to ensure users know how to obtain assistance from day one.
- Service documentation
- Yes
- Documentation formats
-
- HTML
- End-of-contract data extraction
-
At the end of the contract, Secure Schools Limited supports customers to extract their data in a structured and secure manner.
Users can request a data export of their organisation’s data, including user records, configuration data and service-related usage information, subject to contractual scope and data protection requirements. Data is provided in commonly used, machine-readable formats (such as CSV or equivalent) to support onward use or migration to another system.
Data extraction is coordinated by Secure Schools to ensure accuracy, completeness and security. Exports are delivered securely using agreed transfer methods.
Where required, Secure Schools provides reasonable assistance during the off-boarding period to support data extraction and transition, in line with contract terms. This may include clarification of data structures and confirmation of export contents.
Following confirmation that data has been successfully extracted and the contract has ended, Secure Schools will securely delete or anonymise customer data in accordance with contractual obligations, retention schedules and UK GDPR requirements.
No proprietary formats are used that would prevent customers from accessing or reusing their data at the end of the contract. - End-of-contract process
- At the end of the contract, Secure Schools Limited follows a structured off-boarding process to ensure an orderly and secure service exit. As part of the standard contract price, Secure Schools will: - Confirm contract end dates and access arrangements - Support data extraction for customer-owned data in agreed, commonly used formats - Disable user access to the service at contract end - Securely delete or anonymise customer data in line with contractual terms, retention schedules and UK GDPR requirements. These activities are managed remotely and do not require additional charges. Where customers require additional exit support beyond the standard process, this may be provided as an optional, chargeable service, subject to prior agreement. This can include: - Extended access beyond the contract end date - Additional or bespoke data exports - Technical support to assist with data migration to another system - Additional support or consultancy during transition. Any additional costs are agreed in advance and charged at published or contractually agreed rates. Secure Schools aims to make exit straightforward and transparent, with no dependency on proprietary formats or systems that would prevent customers from transitioning to an alternative service.
- Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- Core user functionality available on mobile; administrative functions optimised for desktop.
- Service interface
- Yes
- User support accessibility
- WCAG 2.2 AA
- Description of service interface
- Secure Schools Online is accessed through a secure, web-based user interface designed for schools and education providers. The interface allows authorised users to manage cyber security policies, assign and track staff training, and configure simulated phishing campaigns. Dashboards provide clear visibility of training completion, phishing outcomes and user engagement, supporting risk awareness and reporting. Access to features and data is controlled through role-based permissions, ensuring users only see information relevant to their role. The platform is responsive and can be accessed on desktop and mobile devices, with core functionality optimised for ease of use by non-technical staff.
- Accessibility standards
- WCAG 2.2 AA
- Accessibility testing
-
Secure Schools Limited has undertaken accessibility and assistive technology testing as part of the design and delivery of its cloud-based services for schools and public sector organisations.
This includes testing with screen readers (such as NVDA and VoiceOver) to ensure key user journeys - including login, access to training content and navigation of dashboards - are usable with non-visual interfaces. Keyboard-only navigation testing is carried out to confirm that core functionality can be accessed without a mouse, with logical focus order and no keyboard traps.
Secure Schools also reviews forms, content and interactions to ensure appropriate semantic structure, clear labelling, accessible error messaging and use of ARIA attributes where required. Visual accessibility checks are performed to verify colour contrast, text scalability and layout responsiveness.
Accessibility testing is embedded within Secure Schools’ development and quality assurance processes and is carried out during development and prior to release of updates. Issues identified are logged and remediated as part of ongoing improvement.
Feedback from education sector users is considered as part of service reviews, and any accessibility concerns raised are assessed and addressed to maintain alignment with WCAG 2.2 AA standards. - API
- Yes
- What users can and can't do using the API
-
Secure Schools Online provides API access to support controlled integration with customer systems where required. The API is designed to enable secure data exchange and limited automation, rather than full self-service configuration of the platform.
Using the API, customers can integrate user data from external systems to support onboarding, role assignment and ongoing account management, subject to agreed data fields and permissions. Where enabled, the API can also be used to synchronise user status and training enrolment information, supporting integration with identity management or learning platforms.
Initial service setup, including tenant creation, core security settings and phishing simulation configuration, is performed by Secure Schools as part of onboarding. This ensures the service is configured securely and in line with safeguarding and contractual requirements.
Customers cannot use the API to change core platform configuration, security controls, authentication methods or global phishing and policy settings. These changes must be requested through Secure Schools’ support team and are subject to change management processes.
API access is authenticated, authorised and rate-limited. Available endpoints and capabilities are documented and may vary depending on the customer’s implementation scope. All API activity is logged and monitored to support security, audit and incident management. - API documentation
- Yes
- API documentation formats
-
- HTML
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
- Secure Schools Limited allows buyers to customise aspects of the service to meet their organisational needs, within defined and supported parameters. Buyers can customise: - User roles and permissions, controlling access to features, reports and administrative functions - Content configuration, including selection and assignment of phishing simulation campaigns relevant to the organisation - Notifications and communications, such as system alerts and user reminders, where enabled - Reporting views and outputs, including filters and data presentation options. Customisation is carried out through the secure administrative interface provided as part of the service and does not require software development or changes to the underlying platform. Customisation actions can be performed by authorised administrators, subject to role-based access controls. Secure Schools provides onboarding guidance and documentation to support correct configuration. Changes that affect core platform functionality, security controls or hosting configuration cannot be made by buyers and are managed by Secure Schools. Where additional configuration is required within the supported feature set, this is agreed through onboarding or formal change management processes.
Scaling
- Independence of resources
-
Secure Schools Limited hosts its service on Microsoft Azure using a combination of Infrastructure-as-a-Service and Platform-as-a-Service components. The platform is designed to support multiple customers without shared performance risk.
Resources are logically separated and monitored to prevent one customer’s usage from affecting others. Azure’s automatic scaling and load-balancing capabilities are used to manage increases or temporary spikes in demand, ensuring consistent performance.
Capacity, performance and availability are continuously monitored, with thresholds in place to identify and address abnormal usage patterns.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Secure Schools Online provides service usage metrics to support oversight and assurance. Metrics include user activity and login information, training enrolment and completion rates, phishing simulation participation and outcomes, and administrative actions within the platform. Dashboards allow authorised users to view engagement and performance trends over time, helping identify training gaps and risk areas. Metrics can be filtered by user, group or time period and are accessible through the secure administrative interface. Where required, usage data can be exported in commonly used formats for reporting and audit purposes, subject to role-based access controls and data protection requirements.
- Reporting types
-
- Real-time dashboards
- Reports on request
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least every 6 months
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
- Physical access control, complying with SSAE-18 / ISAE 3402
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
- Deleted data can’t be directly accessed / Cryptographic Erasure
Data importing and exporting
- Data export approach
-
Users can export their data through a managed export process supported by Secure Schools Limited. Authorised administrators may request data exports, which are provided in commonly used, machine-readable formats such as CSV, covering customer-owned data within the scope of the service.
Exports are generated securely and delivered using agreed transfer methods. Where appropriate, limited self-service reporting exports are available during the contract term.
Data exports are subject to role-based access controls and data protection requirements to ensure security and accuracy. - Data export formats
-
- CSV
- Other
- Other data export formats
- JSON
- Data import formats
-
- CSV
- Other
- Other data import formats
- JSON
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
-
Secure Schools Limited aims to provide a highly available cloud service and designs its platform to operate reliably under normal and peak usage.
The service is hosted on Microsoft Azure, which provides resilient infrastructure, redundancy and automated failover. Secure Schools targets a minimum service availability of 99.5% per calendar month, excluding planned maintenance.
Availability is measured at the application level and monitored continuously. Planned maintenance is scheduled outside of core working hours wherever possible and notified to customers in advance.
Where availability falls below the agreed level, customers may be entitled to service credits in line with the terms set out in the contract or service agreement. Service credits are applied as a proportionate reduction to future charges and are the customer’s sole remedy for availability failures.
Refunds or credits do not apply where service unavailability is caused by factors outside Secure Schools’ reasonable control, including customer-side configuration issues, third-party network failures or force majeure events.
Full details of availability targets, measurement methodology and service credit arrangements are set out in the contract documentation. - Approach to resilience
-
Secure Schools Limited designs its service for resilience at both the application and infrastructure layers.
The service is hosted on Microsoft Azure, using resilient cloud infrastructure with built-in redundancy. Azure data centres are designed to support high availability through physically secure facilities, resilient power and cooling, and multiple network paths. Data is stored on resilient storage services that protect against hardware failure.
At the application level, Secure Schools uses redundant components, health monitoring and automated recovery mechanisms to reduce the impact of component failure. The platform is monitored continuously, with alerts in place to identify and respond to service degradation or outages.
Azure’s scaling and load-balancing capabilities are used to manage increases or spikes in demand, reducing the risk of service disruption caused by unexpected usage patterns.
Backups are taken regularly and retained in line with documented retention policies, enabling recovery in the event of data loss or corruption.
Detailed architectural and resilience information, including regional deployment and recovery arrangements, is available to customers on request where required for assurance purposes. - Outage reporting
-
Secure Schools reports service availability and outages through a combination of proactive communications and online status updates. Any extended or major system outages are communicated to users via the Secure Schools online dashboard and email alerts.
The online dashboard provides visibility of current service status, including details of active incidents, affected services and progress updates. Where appropriate, updates are issued at regular intervals until the incident is resolved.
Email alerts are sent to registered users and administrators to notify them of significant service disruptions, planned maintenance or changes to service availability. Communications include information on impact, expected resolution times where known and confirmation once services are restored.
At present, Secure Schools does not provide a public status API. Outage reporting is managed through authenticated channels to ensure information is accurate, relevant and targeted to affected users.
Following major incidents, a summary of the outage and remedial actions taken can be provided to customers on request as part of the incident review process.
Identity and authentication
- User authentication needed
- Yes
- User authentication
- Multi-Factor Authentication (MFA)
- Access restrictions in management interfaces and support channels
-
We restrict access to management interfaces and support channels using role-based access controls aligned to the principle of least privilege. Access is granted only to authorised staff with a defined-business-need and approved through formal access management processes.
Administrative access to management interfaces is protected by multi-factor-authentication, strong-password-policies and restricted user roles. Access rights are reviewed regularly and removed promptly when no longer required.
Support channels are restricted to authenticated users, with permissions limiting visibility to relevant customer accounts and data only. All administrative and support activity is logged and monitored to support auditability, incident investigation and compliance with security policies. - Access restriction testing frequency
- At least every 6 months
- Management access authentication
- Multi-Factor Authentication (MFA)
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
-
Secure Schools operates a formal Information Security Management Framework aligned to ISO/IEC 27001 principles and the UK Government’s Cloud Security Principles. Our information security policies are approved by senior management, reviewed at least annually, and updated in response to regulatory, technical or organisational change.
Core policies include Information Security, Access Control, Data Protection and Privacy, Incident Management, Business Continuity, Acceptable Use, Supplier Security and Secure Development. These policies define mandatory controls for confidentiality, integrity and availability of information across all systems and services.
Overall accountability for information security sits with the Board. Day-to-day responsibility is assigned to a nominated senior manager, supported by operational leads across engineering, customer operations and compliance. Information security risks, incidents and audit findings are reported through a defined escalation process to senior management and, where appropriate, to customers and regulators.
Policy compliance is enforced through role-based access controls, mandatory multi-factor authentication, secure configuration standards, audit logging and regular access reviews. Staff receive information security and data protection training on induction and at regular intervals thereafter.
Adherence to policies is monitored through internal audits, vulnerability management, incident reporting and supplier assurance. Any non-conformities are formally recorded, risk-assessed and remediated within agreed timescales. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Configuration and change management approach
-
We follow a formal configuration/change management process aligned to ISO/IEC 27001 and ISO/IEC 20000 principles, the UK Government Cloud Security Principles and recognised operational security best practice. Controls are defined and operated through supplier-managed policies and procedures.
All changes to production systems are logged, risk-assessed and approved through a controlled change process, with higher-risk changes subject to additional review and testing. Emergency changes are expedited and retrospectively reviewed.
System configurations are managed against documented baselines, supported by version control, segregation of environments, role-based access control, multi-factor authentication and audit logging. Control effectiveness is monitored through internal reviews and incident management. - Vulnerability management type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Vulnerability management approach
-
We operate supplier-managed vulnerability management processes aligned to ISO:27001 and UK Government Cloud Security Principles. Potential threats are assessed using a risk-based approach considering severity, exploitability and impact on service availability and data security.
Vulnerabilities are identified through scanning, secure development practices, dependency monitoring and review of supplier and platform advisories. Information on emerging threats is sourced from trusted industry feeds, vendor security bulletins and government guidance.
Security patches: prioritised by risk, deployed in line with defined service levels; critical vulnerabilities addressed as a priority. Remediation activity is logged, tested where appropriate and reviewed to ensure effectiveness and prevent recurrence. - Protective monitoring type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Protective monitoring approach
-
We operate supplier-managed protective monitoring aligned to ISO:27001 and UK Government Cloud Security Principles. Potential compromises are identified through centralised logging, audit trails, access monitoring and automated alerts covering authentication activity, system changes and anomalous behaviour.
When a potential compromise is detected, incidents are triaged in-line with defined incident management processes, including containment, investigation and remediation. Access may be restricted or suspended where required to protect services and data.
Security incidents are prioritised by risk, with high-severity incidents responded to immediately and escalated to senior management. All incidents are logged, reviewed and used to improve monitoring controls and response processes. - Incident management type
- Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
- Incident management approach
-
We operate a defined incident management process aligned to ISO:27001 and UK Government Cloud Security Principles. Pre-defined procedures are in place for common security and service events, including access issues, suspected data and service availability events.
Incidents can be reported by users through established support channels, including email/ticketed requests. Incidents are logged, categorised and prioritised based on impact and urgency.
Incident response includes investigation, containment and resolution, with escalation to senior management where required. Incident reports are provided to customers for significant incidents, including details of impact, actions taken and preventative measures. All incidents are reviewed to support continuous improvement. - Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- Secure Schools can provide time-limited trial access to the platform on request. Trial access includes standard user functionality and configuration within a controlled environment. Live customer data, production integrations and sensitive operational features are excluded. Trial periods are agreed in advance and subject to access controls and usage restrictions.
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 0%
- Between £500,001 and £1,000,000
- 0%
- Between £1,000,001 and £2,500,000
- 0%
- Between £2,500,001 and £5,000,000
- 0%
- Over £5,000,001
- 0%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- BMTrada
- ISO/IEC 27001 accreditation date
- Thursday 11 September 2025
- What the ISO/IEC 27001 doesn’t cover
-
The Beyond Information Security Management System (ISMS) encompasses all
Beyond & associated company employees, listed Beyond associated company
office locations, Beyond & associated company owned technology and data
assets, and Beyond & associated company business processes that deliver
Beyond & associated company products and services.
Statement of Applicability v1.0 - ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- B959cc9b-ab7c-4849-81b3-4ce87d8039ae
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- C8a5290a-d875-42f9-9696-1f821b61d78c
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
- New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
- Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
- Volunteering opportunities for staff
- Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
- Measures to identify, mitigate and manage modern slavery risks relating to the contract and how these will be implemented
- Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
- Activities to support relevant sector related skills growth and sustainability in the contract workforce. Illustrative examples: careers talks, curriculum support, literacy support, safety talks and volunteering
- Delivery of apprenticeships, supported internships and T Level industry placement opportunities (Level 2, 3 and 4+) in relation to the contract
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
- Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion
- Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
- Actions to invest in the physical and mental health and wellbeing of the contract workforce
-