Skip to main content

Help us improve the Digital Marketplace - send your feedback

Technology One UK Ltd

OnePublicSector

TechnologyOne OnePublicSector; an ERP SaaS solution incorporating best practice business processes. Available on any device anywhere, any time. Financial Management: General Ledger, Accounts Payable, Accounts Receivable, Budgeting, Forecasting, Supply Chain, Procurement Management (Inventory, Contracts, Sourcing), Performance Planning, Human Resources, Payroll, Asset Management, Document Management, Request Management, Reporting, Business Analytics.

Features

  • Fully integrated ERP Software-as-a-Service (SaaS) solution for public sector
  • Developed, delivered, supported and maintained by TechnologyOne
  • Commercial off-the-shelf solution incorporating configurable workflow, forms, documents
  • Browser-based self-service access on any smart device, anywhere, anytime
  • Single sign-on, single code line, consistent look and feel
  • Business process driven with flexible unlimited subsidiary ledgers
  • Full employee life-cycle management and payroll
  • Single version of truth - One Solution, Data Schema, Interface
  • Intuitive Reporting, Business Intelligence, Analytics with transactional drill-downs

Benefits

  • Scalable, secure Enterprise SaaS, fully managed by TechnologyOne
  • Implementation accelerators for faster benefits realisation with reduced risk
  • Twice-yearly upgrades delivering continuous improvement by unlocking new features
  • Purpose built functionality designed to meet Public sector needs
  • Single solution providing user security, business processes, reporting, analytics
  • Consistent and intuitive user experience accelerates user adoption
  • Promotes agile, mobile working practices on any device, anywhere, anytime
  • Streamline business processes through automation and workflow, mitigating process bottlenecks
  • Integrated electronic document storage to support compliance with GDPR
  • Streamline business processes through automation and workflow, mitigating process bottlenecks

Pricing

£85,000 a unit a year

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at T1UKPortals@Technology1.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 14

Service ID

3 6 0 9 0 5 3 4 6 0 8 6 9 5 4

Contact

Technology One UK Ltd India Coleing
Telephone: 01628591160
Email: T1UKPortals@Technology1.com

Service scope

Software add-on or extension
No
Cloud deployment model
Public cloud
Service constraints
Any planned maintenance will be as agreed between TechnologyOne and the Customer and performed in non-business hours.
System requirements
  • Supported web browsers: Internet Explorer 10+, Edge, Firefox, Chrome, Safari
  • Supported devices: PC, Mac, Smartphone, Tablet

User support

Email or online ticketing support
Email or online ticketing
Support response times
TechnologyOne Support is available 24x7 online and by telephone from 07:00 to 19:00 (local time) on Business Days. Target response and resolution times are based on agreed priority classifications; for Priority 1 (Critical) issues the target response time is 30 minutes.
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
WCAG 2.1 AA or EN 301 549
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
Yes, at extra cost
Support levels
TechnologyOne’s standard ASM, included in the SaaS fee, includes the following features:
Access to the TechnologyOne Customer Community which includes a range of helpful online support resource tabs, including: Cases - create and manage your cases online; Groups - ask questions, share news and collaborate with other customers and TechnologyOne; Knowledge -access to extensive knowledge articles for helpful software information;
Ideas - suggest product enhancement requests or ideas; Profile - manage your individual profile.
Access to our dedicated Customer Support team.
New SaaS software releases, software updates, and Apps.
Fault / Issue reporting on shipped products.
Direct access to Customer Account Managers.
TechnologyOne University, which connects users with powerful and timely training resources that can be accessed when they are needed – on any device, anywhere, any time.
TechnologyOne can provide other options for support and service availability, based on the payment of a premium above the standard TechnologyOne SaaS fee.
Support available to third parties
No

Onboarding and offboarding

Getting started
TechnologyOne provides onsite training, Key User workshops, and Train-the-Trainer cabability. The TechnologyOne training method involves participants engaging in a combination of formal instruction and demonstrations followed by Trainer directed “hands on” activities.
Service documentation
Yes
Documentation formats
  • HTML
  • PDF
End-of-contract data extraction
On exit, TechnologyOne will provide the Customer with a standard SQL backup of their database and a current file-based snapshot of their files (attachments etc.). At such a time, all data belonging to the Customer will be deleted, the database instance destroyed, and any dedicated virtual servers terminated.
The steps taken to return data to the Customer upon termination or expiry of the contract/service are:
1. Restrict access to the Customer solution, to ensure that no further updates take place.
2. Take a final full backup of the production database and place the backup in the Customer’s download area.
3. Take a final backup of all associated metadata files and place the backup in the Customer’s download area.
4. Notify the Customer that the backups are on the download area, and that they have 30 days to download the backup files.
5. Verify with the Customer that they have completed the download.
6. After 30 days, remove the backup files from the Customer’s download area.
7. Then delete the Customers’s TechnologyOne Cloud environment, including all backups.
Verification of the disposal is part of TechnologyOne’s ISO27001 Information Security Policy.
End-of-contract process
An exit strategy plan will be prepared and maintained and the services to implement the exit strategy plan will be charged to the Customer on a time and materials basis at the then current daily consulting rates unless otherwise agreed between the parties.
As TechnologyOne is proposing Software as a Service, termination of the contract terminates the right to use the Software. Where the Customer wishes to continue to use the software after termination, the Customer will need to purchase a further license for the software. As TechnologyOne provides commercial off the shelf software, if the Customer requires support and maintenance services after termination, TechnologyOne will continue to provide these to the Customer on TechnologyOne standard terms and fees.

Using the service

Web browser interface
Yes
Supported browsers
  • Internet Explorer 11
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
  • Opera
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
OnePublicSector is a Software as a Service (SaaS) solution delivered from the TechnologyOne SaaS Platform, a platform designed for a “cloud-first, mobile-first” world. OnePublicSector has a pure HTML5 user interface that only requires a web browser to run, is designed for touch operation, and adapts to the device it is being viewed on – e.g., tablet, smartphone, Apple or Windows laptop or PC.
Service interface
Yes
User support accessibility
WCAG 2.1 AA or EN 301 549
Description of service interface
TechnologyOne's solution is designed to be used anywhere, anytime from any device. It is a pure browser-based solution and has been optimised for performance across low-bandwidth connections and on mobile devices. OnePublicSector communicates using the HTTP protocol, and all communications are encrypted using TLS. Access requirements are simply an HTML5 enabled Device and Internet connection.
TechnologyOne offers a good user experience via a standard web browser, with no requirement for RDS or Citrix client software.
Accessibility standards
WCAG 2.1 AA or EN 301 549
Accessibility testing
Our software engineers are trained by Vision Australia in Web Accessibility Guidelines, so the software is designed to meet the general requirements of accessibility as follows:
1. Sequence in source code order is meaningful
2. Text resizes when size (e.g. using zoom) is changed in the browser
3. Text is implemented as HTML text 4. Colour alone is not used to convey information or indicate an action
5. A visual focus indicator is provided
6. The tab order for controls, input fields and other objects is logical
A user is able to select "Accessibility" mode, which will enhance the current presentation functionality, as well as providing text tool tips that allow screen readers to read the page aloud and interpret the interface for the user. Our development team has focused on the screen reader technology built in to Mac OSX alongside JAWS and the open source NVDA readers for Windows.
API
Yes
What users can and can't do using the API
The TechnologyOne solution offers a number of Web Services APIs to provide a real-time interface to various functions that can read and update information delivered through:
- A library of REST (REpresentational State Transfer) web services that form an integral part of our Service-Oriented Architecture. TechnologyOne’s strategy is to expose a generic web service endpoint to external systems and to allow the customer to configure the data requirements within the application itself. Customers can access the entire data set using this method, which effectively future-proofs the interface. REST services are self documenting and fully testable in the application as they are created.
- A library of SOAP (Simple Object Access Protocol) web services that implement specific business processes as part of the TechnologyOne product suite. The available web services are pre-defined and a user can configure and update a call as required from any tool that can make SOAP calls. Each web service has a specific defined input and output syntax defined in the application.
Web Services offer a standardised way of validating and updating external data into the TechnologyOne solution. All Web Service activities are subject to the same authentication, authorisation and audit controls as an interactive user.
API documentation
Yes
API documentation formats
Other
API sandbox or test environment
Yes
Customisation available
Yes
Description of customisation
TechnologyOne’s enterprise software operates from a standard code base and is specifically designed to enable organisations to configure their customer experience and business process requirements without the need for costly customised software development that requires highly technical resources. TechnologyOne has invested heavily in providing a very mature best practice configuration based approach not only for customer configurations, but also as the core architectural approach for the entire range of TechnologyOne market solutions.
Configuration tools are provided as follows:

- Business Intelligence – to provide customer configured reporting and dashboards.
- Workflow - ability to define and configure workflow for approvals as per business needs.
- BPM Forms provides a modern, intuitive web form interface for the end user, with a configurable forms designer. BPM Forms is connected to BPM Workflow to provide the flexibility to implement a myriad of business processes. A process can be initiated with a form, then automated and managed with workflow.

Users of the solution can configure the above following training, dependent on role based access levels; users are assigned a role or profile which determines what modules and functions a user can access.

Scaling

Independence of resources
At the processing layer, TechnologyOne Cloud is a production line of servers with the same operating system, the same OS configuration and the same TechnologyOne code. All Cloud customers share this common "codeset" - there is no custom code in this layer. The business layer is truly elastic and scales dynamically to meet demands. This is only possible because all the servers are identical and do not host customer specific code or configuration. The TechnologyOne Cloud platform is based on an Active-Active-Active architecture which is underpinned by elastic provisioning of stateless, dynamic load balanced server processes.

Analytics

Service usage metrics
Yes
Metrics types
The TechnologyOne SaaS Platform gathers a wide range of metrics including things like response time, error messages and SQL performance measurements. These metrics are being expanded upon regularly to help build a wider picture of a customers experience within the SaaS Platform. As part of this process, we are able to present to our customers a snapshot view of their users experience on demand as required.
Reporting types
  • Regular reports
  • Reports on request

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Other security clearance
Government security clearance
Up to Baseline Personnel Security Standard (BPSS)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
United Kingdom
User control over data storage and processing locations
No
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 3.0)
Penetration testing frequency
At least every 6 months
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
  • Physical access control, complying with SSAE-16 / ISAE 3402
  • Encryption of all physical media
  • Other
Other data at rest protection approach
All data volumes within the TechnologyOne SaaS Platform are encrypted at rest to ensure that in the event of any physical intrusion to the service, data would be unreadable.
Data sanitisation process
Yes
Data sanitisation type
Explicit overwriting of storage before reallocation
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
Users can export retrieved data directly from Data Enquiry Grids in csv or pdf format. Additionally, authorised users have access to a suite of standard export (and import) processes which are run via an easy to use graphical interface designed for use by Business Users.
Furthermore, through Business ETL (Extract, Transform and Load), the solution offers a sophisticated toolset for organising, manipulating and collating data. BETL provides the mechanism for bringing data together from disparate sources, organising and calculating the data to create simple, easy to access information for reporting, exporting or use by other processes.
Data export formats
  • CSV
  • Other
Other data export formats
  • XML
  • PDF
Data import formats
  • CSV
  • Other
Other data import formats
XML

Data-in-transit protection

Data protection between buyer and supplier networks
  • TLS (version 1.2 or above)
  • Other
Other protection between networks
All services delivered by the TechnologyOne SaaS Platform are delivered via HTTP/S with the latest modern secure cyphers.
Data protection within supplier network
  • TLS (version 1.2 or above)
  • Other
Other protection within supplier network
All services delivered by the TechnologyOne SaaS Platform are delivered via HTTP/S with the latest modern secure cyphers.

Availability and resilience

Guaranteed availability
TechnologyOne provides the Customer with 99.5% availability of the software each month of the cloud services term during business hours. Business hours are deemed 7am-7pm Monday to Friday unless otherwise agreed.
Any Service Credits are an "at risk" amount based on a percentage of the total Annual Hosting Services Fee (VAT exclusive) available to the Customer from Supplier that will be allocated and applied annually by the Customer in accordance with the contracted Hosting Service Level Commitment for failure to meet the Availability Service Level.
Approach to resilience
The TechnologyOne Cloud provides a highly resilient environment and architecture to promote the highest possible levels of availability and is summarised as follows:
• Highly resilient site design including dual power and communications services, power systems and strict security;
• Dual site redundancy between no less than two data centres located within the UK;
• Highly available architecture that replicates all transactions in real time providing immediate continuity of the solution in the event of a catastrophic site failure.
• A robust backup regime with incremental backups of all solution data.
• Internet availability: users can log into the solution from any Internet-connected device.
Further information is available on request.
Outage reporting
TechnologyOne notifies all customers of any service degredation or outage via a service portal https://status.t1cloud.com. This provides details of the affected service, regular status updates and, where required, Post Incident Review information

Identity and authentication

User authentication needed
Yes
User authentication
  • 2-factor authentication
  • Identity federation with existing provider (for example Google Apps)
  • Username or password
Access restrictions in management interfaces and support channels
Only the nominated key contact(s) can register incidents or cases in our TechnologyOne Customer Community, cases would need to be logged in order to provision new service elements or manage user accounts.
User security is divided into Authentication (the login process) and Authorisation (access to functions and data within the solution once a user has logged on). Once a user is authenticated, access control is implemented using a security matrix made up of a number of different configurable objects; only those with the appropriate access can perform management activities.
Access restriction testing frequency
At least every 6 months
Management access authentication
  • 2-factor authentication
  • Identity federation with existing provider (for example Google Apps)
  • Username or password

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
User-defined
Access to supplier activity audit information
Users have access to real-time audit information
How long supplier audit data is stored for
User-defined
How long system logs are stored for
User-defined

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
DAS Certification
ISO/IEC 27001 accreditation date
13/12/2021
What the ISO/IEC 27001 doesn’t cover
The certification is limited to the provision of software solutions within a cloud architecture.
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Cyber essentials plus
Yes
Other security certifications
Yes
Any other security certifications
  • ISO/IEC 27017
  • ISO/IEC 27018
  • ISAE 3402 SOC 1 Type 2
  • SSAE 18 SOC 1
  • AT-C 205 SOC 2
  • SOC 3

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
  • ISO/IEC 27001
  • Other
Other security governance standards
ISAE 3402 SOC 1
SSAE 18 SOC 1
AT-C 205 SOC 2, SOC 3
ISO/IEC 27017
ISO/IEC 27018
Information security policies and processes
TechnologyOne has a policy in place with regards to Information Security Management. TechnologyOne currently holds certification for the following standards with regards to Information Security Management:
• ISO/IEC 27001:2015
• ISO/IEC 27017
• ISO/IEC 27018
• ISAE 3402 SOC 1
• SSAE 18 SOC 1
• AT-C 205 SOC 2
• SOC 3
• Cyber Essentials and Cyber Essentials Plus.
The assurance services examine internal controls related to Information Security (e.g. Network Security, Operating System and Database Configuration), Change and System Maintenance, Data Centre and Network Operations and Disaster Recovery for activities undertaken by the TechnologyOne Cloud Business Unit.
TechnologyOne undertakes annual awareness and training programs covering technology, security, policies, processes, incident management and DR, alongside regular audits of policies and processes. Information Security Training is incorporated as part of an induction process, it is integrated as a module into our organisations overarching training programme and bespoke training is delivered to those performing specific roles.

Operational security

Configuration and change management standard
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Configuration and change management approach
All changes are initiated, authorised, developed, tested and approved with appropriate segregation of duties between development, test (ITQA) and production environments.
Vulnerability management type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach
TechnologyOne is subject to independent penetration testing as part of maintaining ISO 27001 certification. All infrastructure and platforms have been configured to ensure our software is protected against vulnerabilities such as SQL injection, cross site scripting, buffer overruns and man-in-the-middle attacks. It also extends to the Cloud platform, with a defence-in-depth architecture: each layer of infrastructure is segregated at multiple levels, including network, firewall and application. Industry standard perimeter security is supplied by Amazon Web Services (AWS), to protect against unauthorised access and Denial-of-Service (DOS) attacks.
Protective monitoring type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Protective monitoring approach
TechnologyOne is subject to independent penetration testing as part of maintaining ISO 27001 certification. All infrastructure and platforms have been configured to ensure our software is protected against vulnerabilities such as SQL injection, cross site scripting, buffer overruns and man-in-the-middleattacks. It also extends to the Cloud platform, with a defence-in-deptharchitecture: each layer of infrastructure is segregated at multiple levels, including network, firewall and application. Industry standard perimeter security is supplied by Amazon Web Services (AWS), to protect against unauthorised access and Denial-of-Service (DOS) attacks.
Incident management type
Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
Incident management approach
TechnologyOne uses a governance model defined under the ITIL Service Management Framework that pre­defines the steps that are taken to handle an incident impacting a customer’s environment. TechnologyOne uses an incident management tool to manage the incident process ensuring incidents are handled via a pre­defined path and within pre­defined timescales. The Incident model includes the steps that TechnologyOne takes to handle the Incident including the chronological order of the incident including any dependences. Responsibilities are outlined and detail the tasks required to resolve the incident including the associated escalation procedures and who should be contacted and at what stage.

Secure development

Approach to secure software development best practice
Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)

Public sector networks

Connection to public sector networks
No

Social Value

Social Value

Social Value

  • Fighting climate change
  • Equal opportunity
  • Wellbeing

Fighting climate change

We are committed to managing our business operations in an environmentally responsible manner. Our commitments are articulated in our Environment Policy, which is communicated to our employees.
While our day-to-day operations don’t have a material impact on the environment, we’re committed to continually lifting the bar to reduce our carbon emissions to the lowest amount possible and offsetting remaining amounts to maintain carbon neutrality. During the year, we strengthened this commitment by setting targets to reduce our Scope 1 and 2 emissions by 80 per cent by 2025 and 100 per cent by 2030 from a FY22 baseline.
For every tonne of carbon attributable to TechnologyOne, a tonne of carbon credits is purchased by TechnologyOne and retired. Our carbon offset credits are sourced from projects related to solar and wind power initiatives in India.
In FY23, TechnologyOne offset 8,466 tonnes of greenhouse gas emissions with the purchase and retirement of certified carbon credits.
TechnologyOne is developing actions and procedures that seek to prevent and reduce climate-related risks. Notably, our strategy aims to reduce our greenhouse gas emissions and decarbonise our activities.
Our greenhouse gas (GHG) decarbonisation strategy involves three phases:
Phase 1 - Measure (understand key emission sources), Phase 2 - Manage and minimise (reduce energy consumption and associated carbon emissions where practical), Phase 3 - Offset (all or a proportion of our carbon emissions).
Through undertaking a comprehensive carbon assessment,
TechnologyOne has made progress towards achieving some of the United Nations Sustainable Development Goals (SDGs). Investing in carbon offset projects, particularly those with a range of co-benefits will broaden the scope of goals TechnologyOne is on track to contribute towards.
We aim to use any arising opportunities to reduce our emissions.

Equal opportunity

We have policies in place in relation to anti-discrimination and workplace gender equality, diversity, sexual harassment, flexible working arrangements and purchased leave. Our remuneration policy includes a commitment to equal pay for men and women. We conduct a gender pay gap analysis annually, following which we investigate any potential gender bias in performance pay, and correct like-for-like gaps. TechnologyOne ensures we pay all of our employees above the Living Wage.
Participation of women at TechnologyOne is at 35.8 per cent, with more than 29 percent participation in technical roles. We promote women to study STEAM and see the technology industry as a career through our partnership with the Tech Girls Movement. The Tech Girls Movement is a non-profit organisation, established to support the development of a more diverse IT workforce, ultimately resulting in better technology for society.
TechnologyOne UK are a signatory to the Tech Talent Charter (TTC), who drive diversity and inclusion through data: https://www.techtalentcharter.co.uk.
TechnologyOne believes that a diverse workforce performs better, and we see this as key to our commercial success. We aim to provide our people with an environment that respects the dignity of every individual, fosters trust, and allows every person the opportunity to realise their full potential. Our commitment to diversity and inclusion also extends to our interactions with customers and suppliers.

Wellbeing

We have a high-performance culture in a fast-moving sector: we recognise that it is important to support the health and wellbeing of our staff and guard against stress and burnout.
TechnologyOne has a wellness program aimed at encouraging our team members to look after their wellbeing. We have evolved this program to provide team members working remotely with creative alternative options, such as a Wellness app, online yoga and strength building sessions so they can keep active in the comfort of their own home.
Our wellness resource hub provides weekly wellness tips, support, videos and material aligned to our overall wellness model – Healthy Minds, Healthy Bodies, Healthy Spaces and Healthy Culture.
We provide an independent employee assistance program for employees and members of their household; the availability of this has been heavily communicated to staff.
The Community Sports program sponsors employees who wish to participate in sporting events and charitable fundraising. TechnologyOne employees have participated in
- Cycle for Smart Works, annually since 2020, where teams of five collectively cover 500 miles over one week, cycling their local communities or using static bikes
- The Prince’s Trust Palace to Palace bike ride, annually since 2019
- The Prince’s Trust Royal Parks half Marathon annually since 2019
- and Future Steps, a 10,000 steps a day challenge during February annually since 2019.
We promote a safe workplace culture for our employees with a work health and safety program that includes formal induction and training programs and an internal WHS portal that provides current and relevant safety information to all team members, including relevant policies and procedures.
We use the services of International SOS to provide additional support when needed for the health and security of our people when travelling.

Pricing

Price
£85,000 a unit a year
Discount for educational organisations
No
Free trial available
No

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at T1UKPortals@Technology1.com. Tell them what format you need. It will help if you say what assistive technology you use.