EVIDEN TECHNOLOGY SERVICES LIMITED

AMOS - Managed OpenShift

AMOS is a fully managed OpenShift service. OpenShift is a container platform primarily based on Docker and Kubernetes; delivering auto scaling, self-healing and DevOps enablement. Eviden takes care of the configuration, maintenance, upgrades and monitoring, enabling organisations to rapidly develop cloud native applications and modernise-modernize their existing applications workloads.

Features

  • Automated installation delivers rapid access to an OpenShift instance
  • Automated evergreening of the cluster and preconfigured networking and security
  • Fully managed container orchestration platform with support/monitoring from Eviden experts
  • Developed in partnership with Red Hat
  • Premium Red Hat subscriptions included with the service
  • Integrated Jenkins pipeline tooling for Continuous Integration and Continuous delivery
  • Integration with customer identity and access management
  • Configuration of logging and monitoring with customer systems
  • Configure your project teams and spaces and monitor usage quotas

Benefits

  • Highly available, secure, self-healing, auto scaling application delivery platform
  • Frictionless movement of applications between clusters enabling multi-cloud estates
  • Enables rapid innovation, prototyping and collaboration
  • Catalyses the adoption of DevOps practices
  • Automated the build and release process, enabling short release cycle
  • Reduced risk, wastage and faster time to market
  • Reduced infrastructure costs through higher/ more efficient work load densities
  • Faster responses times and capability for serverless deployments
  • Integrates with existing code repositories

Pricing

£546 a unit a day

  • Free trial available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at opportunities@eviden.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 13

Service ID

2 8 1 9 1 7 8 8 6 5 5 1 0 4 3

Contact

EVIDEN TECHNOLOGY SERVICES LIMITED Lisa Fitzgerald
Telephone: +447815611447
Email: opportunities@eviden.com

Service scope

Service constraints
Not Applicable
System requirements
  • Red Hat Openshift subscriptions are required to install the service
  • Available footprints for both Public and Private Clouds

User support

Email or online ticketing support
Email or online ticketing
Support response times
Our standard SLAs are:
Service Desk Availability Window - 24x7x365

Incident handling window
Priority 1 & 2 / Severity 1 - 7x24 hours: All days, 24 hours a day
Severity 2, 3, or 4 - 5x10 hours: Business Days, 08.00 – 18.00 h *
Change handling window: for manual changes - 5x10 hours: Business Days, 08.00 – 18.00 h *
Support Language English
* confirmed at time of contract and can be adjusted to suit the needs of the buyer.
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
WCAG 2.1 AA or EN 301 549
Phone support
No
Web chat support
No
Onsite support
Yes, at extra cost
Support levels
Measurement Availability / Details
Service Availability - 99.9% (Determined by selected underlying Infra and design options)
Service Desk Availability Window - 24x7x365
Standard Maintenance & upgrade window - Every three months, Saturday 08:00- Sunday 23:59
Emergency Patch maintenance window 03:00 – 07:00 (CET) Monday to Friday
Service access point – measuring platform

Availability is measured via Atos API Endpoint and extracted to Status Page

Incident handling window
Priority 1 & 2 / Severity 1 7x24 hours: All days, 24 hours a day
Severity 2, 3, or 4 5x10 hours: Business Days, 08.00 – 18.00 h *
Change handling window: for manual
changes 5x10 hours: Business Days, 08.00 – 18.00 h *
Support Language English

Priority 1 (Urgent/Major) - The OpenShift cluster is completely unavailable as signified by the status page or access to all running applications is seriously impacted
Priority 2 (High) - Some components of the OpenShift cluster are seriously impacted or access to some running applications is impacted
Priority 3 (Minor) - Some impact (mostly user specific) on the OpenShift cluster but no problems identified on the status page
Priority 4 (None) - No impact given or expected
Support available to third parties
Yes

Onboarding and offboarding

Getting started
Through our partnership with Red Hat we offer training on the OpenShift platform. Training can be delivered through a variety of channels - flexible e-Learning, on demand tutorials and webinars, instructor led tutorials and webinars or classroom-based training. Support is also offered through the AMOS DevOps team and award-winning Red Hat support.
Service documentation
Yes
Documentation formats
PDF
End-of-contract data extraction
Users can request data backup before contract ends. Users can store the backup on suitable media of their choice.
After data backup and after customer confirmation, data will be expunged from AMOS Platform.
End-of-contract process
Users are off-boarded, data is deleted, and the environment is decommissioned.

Using the service

Web browser interface
Yes
Using the web interface
The OpenShift web console is a user interface accessible from a web browser. Developers can use the web console to visualize, browse, and manage the contents of projects. Users can deploy their application or upgrade the application to next version using web console. The tasks user can do, depend upon the roles of the user.
Web interface accessibility standard
WCAG 2.1 AA or EN 301 549
Web interface accessibility testing
Not Applicable. Web interface is integral part of Red Hat Openshift. Therefore, no separate testing is required.
API
Yes
What users can and can't do using the API
Red Hat Openshift Platform includes the Kubernetes v1 REST API and the OpenShift v1 REST API. These are RESTful APIs accessible via HTTP(s) on the OpenShift Container Platform master servers.
These REST APIs can be used to manage end-user applications, the cluster, and the users of the cluster. The tasks user can do, depend upon the roles of the user.
API automation tools
  • Ansible
  • Chef
  • OpenStack
  • SaltStack
  • Terraform
  • Puppet
API documentation
Yes
API documentation formats
HTML
Command line interface
Yes
Command line interface compatibility
  • Linux or Unix
  • Windows
  • MacOS
Using the command line interface
Red Hat Openshift CLI exposes commands for managing your applications, as well as lower level tools to interact with each component of your system. User can perform all the operations, based on role, that can be performed from web UI.

Scaling

Scaling available
No
Independence of resources
Using quotas and limit ranges, cluster administrators from supplier can set constraints to limit the number of objects or amount of compute resources that are used in user’s project. This helps cluster administrators better manage and allocate resources across all projects, and ensure that no projects are using more than is appropriate for the cluster size.
Usage notifications
Yes
Usage reporting
Email

Analytics

Infrastructure or application metrics
Yes
Metrics types
  • CPU
  • Disk
  • HTTP request and response status
  • Memory
  • Network
  • Number of active instances
Reporting types
  • API access
  • Real-time dashboards

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Conforms to BS7858:2019
Government security clearance
Up to Security Clearance (SC)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
United Kingdom
User control over data storage and processing locations
Yes
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 3.0)
Penetration testing frequency
At least once a year
Penetration testing approach
‘IT Health Check’ performed by a CHECK service provider
Protecting data at rest
Physical access control, complying with CSA CCM v3.0
Data sanitisation process
Yes
Data sanitisation type
Deleted data can’t be directly accessed
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Backup and recovery

Backup and recovery
Yes
What’s backed up
  • Virtual Machines
  • ETCD
  • OpenShift Configuration file (master and worker node)
  • Application
  • Persistent database
Backup controls
User should contact support team with details of required backups are to be performed.
Datacentre setup
Multiple datacentres with disaster recovery
Scheduling backups
Supplier controls the whole backup schedule
Backup recovery
Users contact the support team

Data-in-transit protection

Data protection between buyer and supplier networks
  • Private network or public sector network
  • TLS (version 1.2 or above)
  • IPsec or TLS VPN gateway
  • Legacy SSL and TLS (under version 1.2)
Data protection within supplier network
  • TLS (version 1.2 or above)
  • IPsec or TLS VPN gateway
  • Legacy SSL and TLS (under version 1.2)

Availability and resilience

Guaranteed availability
Service Availability SLA of 99.5% subject to Infrastructure availability SLA
Approach to resilience
Deployed across UK data centers using network, storage and compute virtualisation technologies to deliver active/active services across data centers and zero data loss DR. All physical building blocks are N+1 resilient.
Outage reporting
Outage can be reported by triggering Emails using API. Outage can also be displayed on dashboards.

Identity and authentication

User authentication
  • 2-factor authentication
  • Identity federation with existing provider (for example Google apps)
  • Username or password
Access restrictions in management interfaces and support channels
Management is via dedicated virtual management LAN. Access to these LANs is controlled via 2FA. Only selected ports are permitted for management traffic
Access restriction testing frequency
At least once a year
Management access authentication
  • 2-factor authentication
  • Identity federation with existing provider (for example Google Apps)
  • Username or password
Devices users manage the service through
Dedicated device on a segregated network (providers own provision)

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
Between 6 months and 12 months
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
Between 6 months and 12 months
How long system logs are stored for
Between 6 months and 12 months

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
EY CertifyPoint
ISO/IEC 27001 accreditation date
10/12/2021
What the ISO/IEC 27001 doesn’t cover
Scope may be provided upon request.
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
Yes
Who accredited the PCI DSS certification
Blackfoot UK Ltd
PCI DSS accreditation date
11/12/2021
What the PCI DSS doesn’t cover
No non-covered scope. Scope may be provided upon request.
Cyber essentials
Yes
Cyber essentials plus
Yes
Other security certifications
No

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
CSA CCM version 3.0
Information security policies and processes
Atos has in place a full set of security policies and procedures. Atos staffs are required to follow the procedures, this requirement is covered in the Security Operating Procedures (SyOps) that administrators are required to sign

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
Atos utilise-utilize the ITIL methodologies for the management of change and configuration management, supported by our Service Now tooling. This allows for the controlled assessment, execution and testing of changes to the service, whilst upholding a full audit trail of changes.
Vulnerability management type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach
Atos has processes and procedures in place covering operational security. Changes that impact security are covered at the Security Working Group. Atos processes are ITIL compliant. All assets are recorded automatically in a Configuration Management Database (CMDB), this allows the assets to be track through their lifespan.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
24x7 Security Operations Center monitors the platform for threats using Intrusion Detection, Intrusion Protection and Security Information and Event Management technologies.
Incident management type
Supplier-defined controls
Incident management approach
Atos has pre-defined incident management process to cover common security events and a generic security incident management process to cover the remaining types of incidents

Secure development

Approach to secure software development best practice
Supplier-defined process

Separation between users

Virtualisation technology used to keep applications and users sharing the same infrastructure apart
Yes
Who implements virtualisation
Supplier
Virtualisation technologies used
VMware
How shared infrastructure is kept separate
Dedicated Network Zones with segregated firewalls. Separation is achieved at a number of different layers depending of the services consumed. Within the cloud separation is achieved using different SDNs per customer at the network layer, ESXi hosts provide separation at the compute layer and separate VMDKs at the storage layer (or LUNs if separate physical hosts). Ingress and egress to the cloud SDN can be via shared networks (e.g. PSN) or via dedicated networks, e.g. customer WAN with a firewall context providing separation.

Energy efficiency

Energy-efficient datacentres
Yes
Description of energy efficient datacentres
Atos uses its data centres in Longbridge and Birmingham Business Park (BBP), these have the following attributes:

Longbridge: PUE value 1,16 - Indirect air cooling
BBP: • PUE value 1,58 - Free cooling available

Atos adheres to the COP 21 resolutions and is supporting the world effort to keep the global rise in temperature under 2°C in this century. Atos has committed to four new climate change initiatives. In 2017, the Science Based Targets initiative (SBTi) formally approved Atos’carbon emission targets.

Atos has committed to adopt a science-based emissions reduction target.

The Science Based Targets initiative (SBTi) has approved Atos’ targets here disclosed.

Positioned by The Carbon Disclosure Project (CDP) in the Climate A group of climate leaders

Atos is ranked as the most sustainable company in its industry group by the Dow Jones Sustainability Indices (DJSI) World and Europe.

Recognized by the Global Reporting Initiative (GRI) standards Comprehensive option for its Corporate Responsibility integrated report

In 2009, Atos was one of the first companies to join the Global Reporting Initiative (GRI) as organizational stakeholders.

Since 2014, Atos is member of the <IR> Business Network and active participant on the <IR> Technology Initiative since its foundation in 2015.

Social Value

Fighting climate change

Fighting climate change

Atos commits to net-zero carbon emissions by 2028, setting one of the highest decarbonization standards for its industry. Global climate change is something for which we are all responsible. Conscious of the role we can play, Atos initiated a pioneering and ambitious environmental program 12 years ago. We remain committed to working to manage the challenges which climate change brings, now and in the future. As stated in our “raison d’être”, the ambition of Atos is to enable its customers, employees and members of society to live, work and develop sustainably, in a safe and secure information space.” Atos, has now committed to achieve net-zero carbon emissions by 2028, a date which is 22 years ahead of the ambitious aim of the UN Paris Agreement on Climate Change to limit the global warming of the planet to 1.5°C compared to pre-industrial levels (net-zero by 2050). This decision expands Atos’ ambitions on decarbonization even further, positioning decarbonization as a core element of its growth strategy and the Company as the decarbonization leader in its industry. The Atos Environmental Program will support these new climate change-related targets and goals through a variety of initiatives: to achieve ISO 140001 certification at our major offices and datacenters, improve the average power usage efficiency of our datacenters, decrease energy intensity, reduce business travel impacts as well as offer sustainable fully carbon-compensated services and new solutions to help Atos clients in improving decarbonization practices Progress on achieving the targets is publicly available. Not only are Atos’s Group Management Committee and the Board of Directors regularly informed of the progress made towards these targets, but Atos also operates incentive schemes for top managers to work to achieve these carbon targets, including the set-up of an internal carbon pricing impacting business results.
Equal opportunity

Equal opportunity

The Company is committed to advancing Equality, Diversity & Inclusion as a key feature in all its activities and is fully committed to the elimination of unlawful and unfair discrimination. To this end, Atos has adopted an Equality, Diversity & Inclusion Policy. Atos proactively seeks to drive an inclusive culture which promotes diversity of thought. We have a number of diversity & inclusion initiatives as part of our strategy. The Company aims to provide a working environment and culture which recognises and values differences between employees and to build a culture that values openness, fairness, and transparency. This Policy will be implemented across the Company, in all policies and procedures. This will include, but is not limited to: conditions of service, benefits and facilities and pay, recruitment, training and development, promotions, performance management process including appraisal systems etc. We say that our strategy is built around 8 pillars: 1. Inclusive leadership (e.g. embed Diversity & Inclusion in all development and talent programmes focused on our future leaders), 2. Employee lifecycle (e.g. ensure hiring managers undertake Diversity & Inclusion training), 3. Diversity networks, 4. Role models & supporters, 5. Monitoring & analytics, 6. Inclusive policies & benefits (e.g. removal of non-essential gendered language), 7. Clients & suppliers (e.g. encourage client facing staff to regularly update clients on the Diversity & Inclusion activity happening within Atos) and 8. Community engagement. Our commitment to Diversity & Inclusion has led us to be recognised in several high-profile awards including; 1. UK Best Employer for Race – Business in the Community 2018. 2. Gold accredited for Armed Forces Covenant. 3. Times Top 50 Employer for Women 2020 and 2021. 4. Shortlisted for HRD award in Diversity & Inclusion at HRD Summit 2019. 5. Ranked #40 in the Stonewall UK Top 100 Employers list for 2020.

Pricing

Price
£546 a unit a day
Discount for educational organisations
No
Free trial available
Yes
Description of free trial
Free trial consists of AMOS single cluster deployment on Atos AWS to enable trial to be conducted for 30 days

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at opportunities@eviden.com. Tell them what format you need. It will help if you say what assistive technology you use.