Skip to main content

Help us improve the Digital Marketplace - send your feedback

Insight

Insight - Quest erwin Mart On Cloud

A pure SaaS solution. https://blog.erwin.com/blog/erwin-data-modeler-12-1-by-quest-introducing-mart-on-cloud-a-pure-saas-solution/

Features

  • Define individual identifying / non-identifying relationships between Entities.
  • Define entity super/sub-types with their associated attributes.
  • Compare and synchronise models and databases from variety of sources.
  • Data dictionary functions pull seamlessly through to data model design.
  • Automatically generate model views from conceptual through to logical/physical.
  • Plan, design and manage through to NoSQL solutions.
  • DBMS data design environment calling on governed data artefacts.

Benefits

  • Data centric innovation through master data architecture design management
  • Increase data quality and consistency reducing development and maintenance costs
  • Identifies data integrations, implications and impacts across the enterprise
  • Enables enterprise data fluency to optimise stakeholder collaboration
  • •Breaks down business and IT silos for visibility across domains

Pricing

£8,993.84 a unit a year

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at pstenderteam@insight.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 14

Service ID

4 1 1 4 9 6 8 0 4 2 1 1 0 7 0

Contact

Insight Public Sector Tender Team
Telephone: 0344 846 3333
Email: pstenderteam@insight.com

Service scope

Software add-on or extension
No
Cloud deployment model
Private cloud
Service constraints
1. The SaaS platform for repository can only be accessible from a pre-defined IP ranges.
2. The supported version of Mart repository may not be always the latest version (as on-prem).
3. The erwin DM should be installed on end users windows laptops.
System requirements
N/A

User support

Email or online ticketing support
Email or online ticketing
Support response times
For more information please visit our website: https://support.quest.com/essentials/support-offerings
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
WCAG 2.1 AA or EN 301 549
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
Web chat
Web chat support availability
9 to 5 (UK time), Monday to Friday
Web chat support accessibility standard
WCAG 2.1 AA or EN 301 549
Web chat accessibility testing
https://support.quest.com/essentials/support-offerings
Onsite support
Onsite support
Support levels
"Quest’s Global Support Guide is available online at the following link, including:
• Managing Service Request
• Manage Account
• Product Support Policies
https://support.quest.com/essentials/support-guide

The SLAs are established and defined in our Erwin FAQ:
https://support.quest.com/essentials/erwin-faq "
Support available to third parties
No

Onboarding and offboarding

Getting started
Yes, we offer required services and user documentation for our customers based on their needs and project.
Service documentation
Yes
Documentation formats
  • HTML
  • PDF
End-of-contract data extraction
User can request DB backup.
End-of-contract process
1. Customer can receive their DB backup upon request
2. Customer environment access will be revoked
3. After 30 days of the termination of the contract, customer environment and database backup will be permanently deleted.

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
Application to install
Yes
Compatible operating systems
Windows
Designed for use on mobile devices
No
Service interface
No
User support accessibility
WCAG 2.1 AA or EN 301 549
API
No
Customisation available
No

Scaling

Independence of resources
Its single tenancy environment on Microsoft Azure platform.

Analytics

Service usage metrics
No

Resellers

Supplier type
Reseller (no extras)
Organisation whose services are being resold
Quest

Staff security

Staff security clearance
Other security clearance
Government security clearance
Up to Security Clearance (SC)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
  • United Kingdom
  • European Economic Area (EEA)
User control over data storage and processing locations
Yes
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 3.0)
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
Other
Other data at rest protection approach
Data at rest: Azure PostgreSQL uses Azure Storage encryption to encrypt data at-rest by default using Microsoft-managed keys.
Data sanitisation process
No
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
The data or models from erwin DM can be saved as .erwin files on local drive or Mart.
The model information can also be exported to csv, excel files via the user interface or through API.
Data export formats
  • CSV
  • Other
Other data export formats
CSV/DDLs and via reverse engineering to databases
Data import formats
  • CSV
  • Other
Other data import formats
CSV, DDLs and via reverse engineering to databases

Data-in-transit protection

Data protection between buyer and supplier networks
Other
Other protection between networks
"Encryption:
In transit HTTPS TLS 1.2
In data rest: Azure PostgreSQL uses Azure Storage encryption to encrypt data at-rest by default using Microsoft-managed keys.
Password security configurations standard: Following AES/CBC/PKCS5Padding 256
Data protection within supplier network
Other
Other protection within supplier network
"Encryption:
In transit HTTPS TLS 1.2
In data rest: Azure PostgreSQL uses Azure Storage encryption to encrypt data at-rest by default using Microsoft-managed keys.
Password security configurations standard: Following AES/CBC/PKCS5Padding 256

Availability and resilience

Guaranteed availability
"""Microsoft SLAs:
Postgres SLA: https://azure.microsoft.com/en-us/support/legal/sla/postgresql/v1_3/
App Gateway SLA: https://azure.microsoft.com/en-us/support/legal/sla/application-gateway/v1_2/
AKS SLA: https://azure.microsoft.com/en-us/support/legal/sla/kubernetes-service/v1_1/
"""
Approach to resilience
N/A
Outage reporting
If there are any outages we send an alert via email

Identity and authentication

User authentication needed
Yes
User authentication
Other
Other user authentication
Authentication to the application is provided via SSO authentication that includes SAML, OKTA, Azure AD options
Access restrictions in management interfaces and support channels
Privileged access is controlled through the access process and monitoring/review of activities
Access restriction testing frequency
At least every 6 months
Management access authentication
Other
Description of management access authentication
Multi-factor authentication is employed to ensure secure access to business sensitive data. Quest employs a least privileged model where employees are only granted the permissions that are necessary to perform their work tasks. Elevated privileges are granted temporarily through a privileged access group model, where the access must first be approved, and its use is audited until it is automatically revoked. Multi-factor authentication is employed to ensure secure access to business sensitive data.

Audit information for users

Access to user activity audit information
Users receive audit information on a regular basis
How long user audit data is stored for
At least 12 months
Access to supplier activity audit information
You control when users can access audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
At least 12 months

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
NQA
ISO/IEC 27001 accreditation date
8/26/2022
What the ISO/IEC 27001 doesn’t cover
Scope of certification is the provision of SaaS and Hosting Services
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
No
Cyber essentials plus
No
Other security certifications
Yes
Any other security certifications
  • SOC 2 Type 2 for will be made available
  • Customers can obtain the SOC 2 Type 2
  • ERWIN BY QUEST:

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
https://www.quest.com/docs/information-security-policy-legal-131273.pdf

ISO 27001 Standards and Procedures. Reporting structure is Senior Vice President of Products of erwin managed through the Cloud Services teams.

Operational security

Configuration and change management standard
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Configuration and change management approach
Formal, secure Software Development Life-Cycle (SDLC) processes are in place that have been approved by management, communicated to appropriate constituents. These processes include change management and are reviewed and maintained regularly. Dev and Ops Teams are trained to properly configure an Approved Configuration for the Cloud environment (Virtual Networks, NSG, WAF). Benchmarks published by the CIS are followed as baselines and non-compliance is detected by leveraging built-in Azure or AWS tools as well as custom scripts. The deployment process follows a strict Change Management process where all changes are identified, reviewed and approved by the Dev and Ops teams
Vulnerability management type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach
Monthly Vulnerability scans are performed internally. During the yearly Third-Party penetration testing exercise outsourced scans are also performed.
Protective monitoring type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Protective monitoring approach
Alerts are monitored and reviewed by our 24x7 SOC team
Incident management type
Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
Incident management approach
Quest has established a formal process of preparation, detection, analysis, containment, eradication, recovery, and post-incident activities. As well, in accordance with international privacy laws, Quest has established a Security Breach Notice process.

Secure development

Approach to secure software development best practice
Conforms to a recognised standard, but self-assessed

Public sector networks

Connection to public sector networks
No

Social Value

Social Value

Social Value

  • Covid-19 recovery
  • Tackling economic inequality
  • Equal opportunity
  • Wellbeing

Covid-19 recovery

For more information please visit Quest website: https://www.quest.com/quest-ensures-business-continuity-for-a-remote-workforce/

please see the link above for further details on COVID19 RECOVERY.

Tackling economic inequality

See our 'Diversity, Equality and Inclusion' statement attached and the link below:

https://www.quest.com/legal/promoting-human-rights.aspx

Equal opportunity

Quest is compliant for Equal Opportunity, please see the following link: https://www.quest.com/combined-t-and-c/

Wellbeing

Quest has a wellbeing program for all employees

https://www.quest.com/legal/promoting-human-rights.aspx

again please refer to the above link.

Pricing

Price
£8,993.84 a unit a year
Discount for educational organisations
Yes
Free trial available
Yes
Description of free trial
Free trial is provided based on the scope

https://www.erwin.com/register/129426
Link to free trial
https://www.erwin.com/register/129426

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at pstenderteam@insight.com. Tell them what format you need. It will help if you say what assistive technology you use.