Skip to main content

Help us improve the Digital Marketplace - send your feedback

CYBER SECURITY DEFENCE CONSULTANTS LIMITED

Check Point Harmony Email and Collaboration Protection

Cloud-based email and collaboration security protecting Microsoft 365 and Google Workspace from phishing, malware, ransomware, and data loss. API-based deployment blocks sophisticated attacks, including business email compromise and account takeover. Protects file-sharing services and collaboration tools, including Teams, Slack, SharePoint, OneDrive, and Dropbox. Deploys in minutes.

Features

  • Anti-phishing blocking impersonation and business email compromise attacks
  • Malware and ransomware protection with SandBlast threat emulation
  • Data loss prevention with customisable policies for compliance
  • Account takeover prevention blocking suspicious login attempts
  • Microsoft 365 and Google Workspace native integration
  • File-sharing protection for OneDrive, SharePoint, Dropbox, Box
  • Collaboration security for Slack and Microsoft Teams
  • Threat extraction delivering sanitised files within seconds
  • API-based deployment requiring no MX record changes
  • Single dashboard with actionable insights and reporting

Benefits

  • Blocks 99.2% of phishing emails reaching user inboxes
  • Prevents ransomware with industry-leading 99.91% malware catch rate
  • Deploys in minutes with immediate retroactive threat scanning
  • Protects all collaboration channels from single platform
  • Reduces risk of business email compromise attacks
  • Maintains regulatory compliance with advanced DLP capabilities
  • Invisible to attackers with no MX record changes
  • Powered by ThreatCloud threat intelligence network
  • Single license covers email and all collaboration applications
  • Reduces management overhead with unified security dashboard

Pricing

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at andy.huffer@cybersecuritydefence.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

4 1 9 3 9 5 2 6 4 5 7 8 2 6 1

Contact

CYBER SECURITY DEFENCE CONSULTANTS LIMITED Andy Huffer
Telephone: 01223 421577
Email: andy.huffer@cybersecuritydefence.co.uk

About your service

Service categories

Applications

Collaborative

  • Email
Multi cloud support
No

Service scope

Software add-on or extension
No
Cloud deployment model
Public cloud
Service constraints
Requires Microsoft 365 or Google Workspace subscription with administrative access to configure API connectors. Internet connectivity required for cloud-based protection. Customer is responsible for maintaining valid Microsoft or Google licenses. The platform interface is available in English. Implementation support is available from CSDC at an additional cost. Annual subscription with a 12-month minimum term. No MX record changes required, but the customer is responsible for internal change management communications. Travel and subsistence for on-site support within the M25 is included; outside the M25, it is charged at departmental rates. CSDC provides first-line support; complex platform issues escalated to Check Point.
System requirements
  • Microsoft 365 or Google Workspace active subscription required
  • Administrative access to configure API-based integration
  • Modern web browser for management console access
  • Internet connectivity for cloud-based threat protection
  • No endpoint software installation required for protection
  • No MX record changes needed for deployment
  • Compatible with existing email security gateway configurations
  • Supports all Microsoft 365 and Google Workspace plans
  • Mobile email clients protected through cloud-based scanning
  • No additional hardware or infrastructure required

User support

Email or online ticketing support
Yes
Support response times
Initial response within 4 business hours during UK business hours (09:00-17:00 Monday to Friday, excluding UK public holidays). Critical platform issues affecting email delivery were escalated immediately to the senior consultant and Check Point support. Non-urgent queries receive a full response within 1 working day. No weekend support as standard; available by prior arrangement at an additional cost. During the implementation phase, a dedicated consultant contact provided same-day responses to configuration queries. Post-deployment support for policy adjustments and troubleshooting is included for 30 days following go-live. Extended support arrangements are available upon request for ongoing managed service requirements.
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
No
Support levels
Standard Support (included in subscription):
Email and phone support during UK business hours (09:00-17:00 Monday to Friday, excluding UK public holidays). Initial response within 4 business hours. Platform configuration guidance, technical troubleshooting, and policy management support. Online documentation and knowledge base access.

Enhanced Support (at additional cost):
Dedicated account manager for ongoing relationship management. Priority response with a 2-hour initial response target. Assistance with policy configuration and DLP rule development. Quarterly service reviews and threat reporting. Extended support hours, including weekend cover by arrangement. Available at SFIA day rates (£500-£1,150 depending on consultant level).

Professional Services (at additional cost):
Implementation and deployment assistance. Migration from existing email security solutions. Custom DLP policy development. Integration with existing security infrastructure. User awareness training on email threats. Available at SFIA day rates.

Named Account Lead:
Every customer is assigned a named CSDC consultant providing continuity across the subscription lifecycle, from deployment through renewals and service reviews.

Pricing:
Support is included within the subscription price. Standard support carries no additional charge. Enhanced support and professional services are charged at agreed day rates. Travel and subsistence within M25 included; outside M25 charged at departmental rates.
Support available to third parties
Yes

Onboarding and offboarding

Getting started
Check Point Harmony Email & Collaboration deploys rapidly via API-based integration requiring no MX record changes. Platform operational within minutes of connector configuration. Retroactive scanning identifies existing threats in mailboxes immediately upon deployment.

Included with license:
Check Point online documentation including administrator guides, deployment guides, policy templates, and best practice recommendations. Knowledge base searchable by topic with regularly updated content. Video tutorials covering common configuration tasks. Check Point community forums for peer support and guidance.

CSDC Services (at additional cost):
Discovery call to understand organisational environment and policy requirements. API connector configuration for Microsoft 365 or Google Workspace. Initial DLP policy setup aligned to compliance requirements. Administrator training delivered via video conference covering console navigation, policy configuration, threat investigation, and reporting. Training sessions recorded for future reference. On-site training available at SFIA day rates plus travel and subsistence outside M25.

Professional services available for complex deployments including migration from existing email security solutions, custom DLP policy development, SIEM integration, and user awareness training.

Deployment options:
Self-service deployment using Check Point documentation for organisations with technical capability. CSDC-assisted deployment for organisations requiring UK-based implementation support. Hybrid approach with CSDC guidance and customer execution available.

Ongoing retained support agreements available continued assistance.
Service documentation
Yes
Documentation formats
PDF
End-of-contract data extraction
Customers retain full access to management console reporting and logging functions throughout contract term. Threat detection logs, quarantine records, policy configurations, and audit trails available for export on-demand via self-service interface. Export formats include PDF for reports and CSV for raw data.

Ninety days prior to contract end, customers should initiate data extraction activities. Full platform access remains available until license expiry enabling report downloads and configuration backups.

Data available for extraction:
Threat detection history and quarantine logs. DLP policy violation records. Administrator audit trails. Policy configurations and exception lists. Compliance reports for regulatory retention. User activity logs.

Export process:
Self-service export via management console for standard reports and logs. Bulk data export available through Check Point support for large datasets. API available for automated extraction to customer systems prior to contract end.

Post-contract:
Customer configuration data and logs retained by Check Point per their standard data retention policy. Customers should confirm retention periods directly with Check Point. Data deletion requests submitted through Check Point support following contract termination.

CSDC Services (at additional cost):
Data extraction assistance and guidance. Migration support to alternative platforms. Compliance-focused extraction ensuring regulatory requirements met. Available at SFIA day rates.
End-of-contract process
Ninety days before contract end, customers should review renewal requirements. CSDC can provide renewal quotations upon request.

If renewing: Updated license terms and pricing provided by CSDC. Renewal processed ensuring no service interruption. All configurations, policies, and historical data retained. New subscription period commences seamlessly.

If not renewing: Customer responsible for data extraction prior to license expiry. Platform access terminates at contract end. API connectors deactivated. Email protection ceases upon expiry.

Included in license price:
Check Point Harmony Email & Collaboration subscription. Check Point standard vendor support via online portal. Access to knowledge base and documentation. Platform updates and threat intelligence throughout subscription term.

Additional costs:
CSDC implementation and deployment services. CSDC administrator training. CSDC enhanced support and retained support agreements. CSDC professional services including policy development, SIEM integration, and migration assistance. Travel and subsistence for on-site services outside M25. Renewal processing assistance if required.

Post-contract:
Customer data retained by Check Point per their standard retention policy. Data deletion requests submitted through Check Point support. Customers should export required data before license expiry. Configuration backups recommended prior to contract end for reference purposes.

CSDC available to assist with transition to alternative solutions at SFIA day rates if required.
Documentation accessibility standard
None or don’t know
How the documentation is accessible
Onboarding documentation:
Check Point provides comprehensive deployment documentation accessible via online customer portal following license activation. Documentation includes step-by-step API connector configuration guides for Microsoft 365 and Google Workspace, administrator quick-start guides, policy configuration tutorials, and best practice recommendations. Video tutorials available covering common deployment and configuration tasks. Knowledge base articles searchable by topic with regularly updated content. Documentation accessible 24/7 via web browser with no additional software required. PDF versions available for offline access. Documentation available in English.

Offboarding documentation:
Check Point provides guidance on service decommissioning including data export procedures, API connector removal steps, and configuration backup recommendations. Documentation covers audit log extraction for compliance retention, quarantine data retrieval, and policy export for reference purposes. Account closure procedures clearly documented.

Accessibility:
Documentation accessible via standard web browsers with keyboard navigation support. Text-based content compatible with screen readers. Search functionality enables quick location of relevant topics. Documentation formatted for readability with clear headings and step-by-step instructions.

CSDC Services (at additional cost):
Customised onboarding documentation tailored to organisational requirements. Bespoke administrator guides incorporating internal procedures. Offboarding checklists aligned to organisational compliance requirements. Available through professional services engagement at SFIA day rates.

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
Check Point Harmony Email & Collaboration protects mobile email clients automatically through cloud-based scanning. No mobile application installation required for email protection. Threat detection and DLP policies apply equally to emails accessed via mobile devices. Management console accessible via mobile browser for administrators requiring monitoring and alerting on the move. Dashboard optimised for mobile viewing with key metrics and threat notifications. Full administrative functions are available on the desktop for detailed policy configuration and investigation. Mobile users receive the same protection level as desktop users with no configuration required. Push notifications are available for critical security alerts.
Service interface
Yes
User support accessibility
None or don’t know
Description of service interface
Web-based management console accessible via modern browsers without software installation. Centralised dashboard displaying threat detection statistics, quarantined items, and security events. Policy management interface for configuring DLP rules, threat response actions, and user exceptions. Real-time visibility into email and collaboration security across Microsoft 365 and Google Workspace. Drill-down views for investigating individual phishing attempts and malware detections. Customisable alerting and notification settings. Role-based access controls for security administrators. Comprehensive reporting with exportable data for compliance documentation. Single pane of glass for all protected collaboration applications.
Accessibility standards
None or don’t know
Description of accessibility
Platform designed in accordance with web accessibility best practices. Keyboard navigation is supported for core administrative functions. Screen reader compatibility for standard interface elements. High contrast mode available for improved visibility. Text resizing is supported through browser controls. Form fields include descriptive labels. Error messages clearly identify issues and required actions. Accessibility features continuously improved based on user feedback. Full WCAG compliance not independently verified. Customers with specific accessibility requirements should contact support to discuss individual needs and available accommodations prior to procurement. Accessibility roadmap available upon request.
Accessibility testing
Check Point conducts internal accessibility reviews as part of standard quality assurance processes. Interface elements were tested against common assistive technology configurations throughout development. Testing includes verifying screen reader compatibility with NVDA and JAWS on Windows platforms and with VoiceOver on macOS. Keyboard-only navigation testing ensures that core platform functions are accessible without a mouse. Colour contrast analysis was performed using automated tools to verify text readability.

Formal user testing with assistive technology users has been limited to date. Accessibility improvements prioritised based on customer feedback and support requests. Customers with specific accessibility requirements are encouraged to request a demonstration to evaluate the platform's suitability with their preferred assistive technologies before commitment.

CSDC commits to working with customers who identify accessibility barriers. Feedback regarding accessibility issues is welcomed and escalated to the Check Point development team for assessment and remediation where feasible. Workarounds and alternative workflows are documented and provided where technical limitations exist.

Future development roadmap includes enhanced accessibility features and an expanded assistive technology testing programme. We welcome customer participation in accessibility user research initiatives to inform ongoing improvements. Detailed accessibility conformance information and current known limitations available upon request through CSDC account management team prior to procurement.
API
Yes
What users can and can't do using the API
RESTful API available for integration with existing security tools, SIEM platforms, and security orchestration systems. API enables automated threat data extraction, policy management, event streaming, and reporting integration. Comprehensive API documentation provided to authorised customers following license activation.

Core API capabilities include:
Threat event extraction for ingestion into SIEM platforms such as Splunk, Microsoft Sentinel, and QRadar. Real-time event streaming for security operations centre integration. Automated quarantine release and threat remediation actions. Policy configuration and rule management via programmatic interface. User and group management synchronisation with identity providers. Compliance reporting data extraction for governance platforms.

Authentication via API keys with role-based access controls determining permitted operations. Secure HTTPS connections mandatory for all API communications. Rate limiting applied to prevent service degradation.

Integration support available from CSDC professional services at additional cost including SIEM integration design, custom automation development, and security orchestration workflows. Implementation follows structured approach with requirements gathering, design, testing, and deployment phases.

API versioning ensures backward compatibility with advance notice of deprecation for older versions. Sandbox environment available for integration testing prior to production deployment.

Technical documentation includes endpoint references, authentication guides, code samples, and integration patterns. Check Point developer community provides additional resources and support forums.
API documentation
Yes
API documentation formats
PDF
API sandbox or test environment
Yes
Customisation available
Yes
Description of customisation
What can be customised:
DLP policies configured with over 700 predefined data types including credit card numbers, personal information, and regulated data. Custom data types created to match organisational requirements. Threat response actions configurable per policy including block, quarantine, alert, or encrypt options. Email filtering rules tailored to organisational needs. Trusted sender and domain exception lists. Notification templates with organisational branding. Reporting dashboards configured to display relevant metrics. Alert thresholds adjusted for operational requirements. User groups and policy assignments aligned to organisational structure. Sensitivity labels integrated with Microsoft Information Protection.

How users can customise:
Self-service customisation available through web-based management console. Administrators configure policies, exceptions, response actions, and reporting preferences directly. Changes applied immediately or scheduled for specific times. Policy templates available for common configurations. Bulk import available for exception lists via CSV upload.

Who can customise:
Customer administrators with appropriate management console permissions perform all standard configuration changes. Role-based access controls determine which administrators can modify specific policy areas. Multiple administrator roles supported for segregation of duties. CSDC professional services available at additional cost for complex custom configurations, policy development workshops, and integration requirements. Check Point professional services available for platform-level customisations.

Scaling

Independence of resources
Multi-tenant cloud architecture with logical separation ensures customer data and configurations remain isolated. Processing resources are dynamically allocated, preventing performance impact from other tenants' activities. Check Point's global infrastructure scales automatically to handle email volume spikes and threat scanning demand across the customer base. Load balancing distributes scanning workloads across multiple datacentres, ensuring consistent performance. Service level agreement guarantees 99.9% availability regardless of overall platform utilisation. Dedicated scanning capacity is allocated during peak periods, such as phishing campaigns. Customers experience consistent threat detection and email delivery performance independent of other organisations using the platform.

Analytics

Service usage metrics
Yes
Metrics types
Real-time threat detection dashboards displaying phishing attempts blocked, malware quarantined, and DLP policy violations. Trend analysis showing threat volumes over time by category. User risk scoring identifying high-risk individuals targeted by attacks. Detailed breakdown by threat type, sender domain, and targeted recipients. Policy effectiveness metrics showing detection rates by rule. Compliance reporting for audit and governance purposes. Executive summary reports for board-level communication. Exportable metrics in CSV format for integration with organisational reporting tools. Historical analytics available throughout subscription term. All metrics accessible via self-service management console without additional charge.
Reporting types
  • Real-time dashboards
  • Regular reports
  • Reports on request
Resource tagging
No
FOCUS resource tagging
No

Resellers

Supplier type
Reseller providing extra features and support
Organisation whose services are being resold
Check Point Software Technologies Ltd

Staff security

Staff security clearance
Conforms to BS7858:2019
Government security clearance
Security Clearance (SC)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
European Economic Area (EEA)
User control over data storage and processing locations
No
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 4.0)
Penetration testing frequency
At least once a year
Penetration testing approach
‘IT Health Check’ performed by a CHECK service provider
Protecting data at rest
Encryption of all physical media
Data sanitisation process
Yes
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
Data sanitisation type
  • Deleted data can’t be directly accessed / Cryptographic Erasure
  • Data Erasure

Data importing and exporting

Data export approach
Self-service data export available through Check Point management console. Administrators generate and download threat detection reports, quarantine logs, DLP policy violation records, and administrator audit trails on-demand. Individual reports downloadable immediately in standard formats. Bulk data export available through Check Point support portal for large datasets requiring extraction. API available for automated data extraction enabling integration with SIEM platforms, security orchestration tools, and organisational reporting systems. Scheduled automated exports configurable for regular compliance reporting requirements. Historical data available for export throughout subscription term. Data extraction assistance available from CSDC at additional cost through professional services engagement at SFIA day rates.
Data export formats
CSV
Data import formats
CSV

Data-in-transit protection

Data protection between buyer and supplier networks
TLS (version 1.2 or above)
Data protection within supplier network
TLS (version 1.2 or above)

Availability and resilience

Guaranteed availability
Check Point Harmony Email & Collaboration operates on globally distributed cloud infrastructure with 99.9% availability SLA. Availability measured monthly excluding scheduled maintenance windows and force majeure events.

Scheduled maintenance performed during low-usage periods with advance notification via status page and email alerts. Emergency maintenance for critical security updates communicated as early as practicable.

Service credits issued by Check Point when guaranteed availability not achieved per their standard service level agreement terms. Credit claims submitted through Check Point support portal. Specific credit percentages and claim procedures detailed in Check Point's service terms provided upon license purchase.

Email protection operates inline with minimal latency impact on mail delivery. Threat scanning completed in milliseconds for majority of messages. Sandboxing for suspicious attachments adds seconds, with clean file delivery via Threat Extraction while analysis continues.

Real-time platform status available via Check Point public status page. Customers subscribe to automated notifications for service disruptions affecting their region.

Check Point operates 24/7 security operations centre monitoring platform health globally. Incident response procedures ensure rapid resolution of service-affecting issues.

Customers should review Check Point's current SLA documentation for specific availability commitments, credit terms, and exclusions applicable to their subscription tier.
Approach to resilience
Check Point Harmony Email & Collaboration operates on globally distributed cloud infrastructure designed for maximum resilience. Multiple datacentres across geographic regions provide redundancy and automatic failover capability. Service continues uninterrupted during localised datacentre outages.

Architecture designed with no single points of failure. Email scanning distributed across multiple processing nodes with automatic load balancing. Database tier utilises synchronous replication with automatic failover to standby instances. API connections distributed across multiple endpoints.

Data protection through automated backup regime. Configuration and policy data backed up continuously with geographic redundancy. Threat intelligence databases replicated across regions ensuring consistent protection globally.

Disaster recovery procedures documented and tested regularly by Check Point. Simulated failover exercises validate recovery procedures. Recovery Point Objective and Recovery Time Objective details available in Check Point service documentation.

Infrastructure monitoring operates 24/7 with automated alerting for performance anomalies. Check Point security operations centre staffed continuously for incident response and service restoration.

Platform powered by ThreatCloud, Check Point's global threat intelligence network providing real-time protection updates. Threat intelligence continuously updated across all nodes ensuring consistent protection against emerging threats regardless of which datacentre processes traffic.

Detailed resilience architecture documentation available from Check Point under NDA upon request for customers with specific assurance requirements.
Outage reporting
Real-time public status page displaying current platform availability, active incidents, and historical uptime metrics. Status page accessible without authentication at status.checkpoint.com. Customers subscribe to status page updates for automatic notifications via email or RSS.

Automated email alerts sent to designated administrators when service degradation detected. Alerts include initial incident summary, estimated impact, and expected resolution timeframe. Follow-up notifications provided as incident progresses and upon service restoration confirmation.

Planned maintenance notifications distributed in advance via email to registered administrators and posted on status page. Notifications detail maintenance window, expected duration, and services affected.

Post-incident reports provided by Check Point following significant outages detailing root cause analysis, customer impact assessment, incident timeline, resolution actions, and preventive measures implemented.

Check Point operates 24/7 security operations centre monitoring platform health globally. Escalation procedures ensure rapid response to service-affecting issues regardless of time zone.

Customers access incident history and service health metrics through management console reporting functions. Historical availability data exportable for compliance and governance reporting.

Customers with CSDC retained support agreements receive additional communication during significant incidents including proactive notification and impact assessment from UK-based team. Available at additional cost through retained support arrangements.

Identity and authentication

User authentication needed
Yes
User authentication
  • Multi-Factor Authentication (MFA)
  • Public key authentication (including by TLS client certificate)
  • Identity federation with existing provider (for example Google Apps)
  • Username or password
Access restrictions in management interfaces and support channels
Management console access is restricted using role-based access controls. Multi-factor authentication is available for administrator accounts. Named individual accounts with unique credentials required; shared accounts prohibited. Administrative privileges are granted on the least-privilege principle. Multiple administrator roles are supported, enabling segregation of duties. Check Point support staff access customer environments only through authenticated support channels with customer authorisation. All administrative access is logged with a full audit trail. Session timeouts enforce re-authentication after inactivity. IP allowlisting can be used to restrict console access to approved networks. Access automatically revoked by customer administrators when personnel changes occur.
Access restriction testing frequency
At least once a year
Management access authentication
  • Multi-Factor Authentication (MFA)
  • Dedicated link (for example VPN)

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
At least 12 months
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
At least 12 months

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
Check Point maintains comprehensive information security management system certified to ISO 27001 and SOC 2 Type II audited annually. Security governance overseen by Chief Information Security Officer reporting to executive leadership. Security policies reviewed annually and updated in response to emerging threats and regulatory changes.

Core security policies include information classification and handling, access control and identity management, acceptable use, incident response, business continuity, supplier security, and data protection. All policies documented, version controlled, and accessible to relevant personnel.

Employee security responsibilities defined from onboarding through exit. Mandatory security awareness training completed annually by all staff. Background checks conducted for employees with access to customer data and production systems.

Policy compliance monitored through regular internal audits and management reviews. Non-compliance addressed through documented corrective action process. External audits conducted annually supporting ISO 27001 certification and SOC 2 attestation maintenance.

Security incidents reported through defined escalation procedures. Incident response team activated for security events with defined roles and responsibilities. Lessons learned incorporated into policy and process improvements.

Check Point security certifications and audit reports available to customers under NDA upon request for procurement assurance purposes. Contact Check Point or CSDC for access to compliance documentation.
Software Security Code of Practice
Yes

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
Check Point maintains formal change management processes for platform updates and configuration changes. All changes tracked through configuration management systems recording versions, dependencies, and deployment status. Changes follow structured process including impact assessment, security review, testing, and approval stages. Security impact assessment mandatory for all changes affecting customer environments. Emergency change procedures documented for critical security patches. All changes logged with full audit trail. Customer-facing changes communicated through release notes and status page notifications. Platform updates deployed automatically ensuring customers receive latest security protections without action required.
Vulnerability management type
Supplier-defined controls
Vulnerability management approach
Check Point maintains continuous vulnerability management programme. Automated scanning of infrastructure and applications identifies potential weaknesses. Threat intelligence from ThreatCloud network, vendor bulletins, CVE databases, and internal security research informs prioritisation. Critical vulnerabilities patched within 48 hours. High severity patches deployed within 7 days. Regular patching cycle for medium and low severity issues. Annual third-party penetration testing validates security posture. Bug bounty programme encourages responsible disclosure from security researchers. All patches tested in staging environment before production deployment. Customers receive protection updates automatically through platform without action required.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
Check Point operates 24/7 security operations centre monitoring infrastructure and security events globally. SIEM platform correlates security alerts for triage by dedicated team. Anomaly detection identifies unusual access patterns and potential compromises. Intrusion detection systems monitor network traffic for malicious activity. Potential compromises trigger immediate incident response with containment as priority. Critical security alerts investigated within 1 hour. Automated blocking of confirmed malicious activity. ThreatCloud network provides global visibility into emerging threats enabling proactive defence. Forensic analysis determines incident scope and root cause. Continuous improvement based on incident learnings.
Incident management type
Supplier-defined controls
Incident management approach
Check Point maintains documented incident management procedures with predefined runbooks for common events. Incidents logged, categorised by severity, and assigned to appropriate resolver teams. Critical incidents escalated immediately to senior management. Customer notification provided for incidents affecting their data per Check Point's standard notification procedures. Regular status updates during incident lifecycle. Incident reports available detailing timeline, root cause, impact, resolution actions, and preventive measures. Post-incident reviews conducted identifying process improvements. 24/7 security operations centre ensures incidents addressed regardless of time. Customers raise incidents via Check Point support portal.
Post-quantum cryptography secure
No

Secure development

Approach to secure software development best practice
Supplier-defined process

Public sector networks

Connection to public sector networks
No

Pricing

Discount for educational organisations
No
Free trial available
No

Discount percentage by annual call-off contract value (excluding VAT)

Less than £250,000
0%
Between £250,000 and £500,000
0%
Between £500,001 and £1,000,000
2%
Between £1,000,001 and £2,500,000
5%
Between £2,500,001 and £5,000,000
7%
Over £5,000,001
10%

Non-mandatory Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
IQC - Institute of Quality & Control
ISO/IEC 27001 accreditation date
Sunday 27 March 2022
What the ISO/IEC 27001 doesn’t cover
The Check Point ISO/IEC 27001 certification fully covers Harmony Email & Collaboration, which is the service being offered. The certification scope explicitly includes development, sales, marketing, support and operations of Harmony Email & Collaboration along with associated Infinity Portal and ThreatCloud AI threat intelligence infrastructure.

No aspects of the Harmony Email & Collaboration service delivered under this G-Cloud listing fall outside the ISO 27001 certification scope.

CSDC as the reseller does not hold independent ISO 27001 certification. CSDC maintains Cyber Essentials Plus certification and staff security vetting to BS7858:2019. CSDC professional services including implementation, training, and enhanced support are delivered by consultants holding professional certifications including CISSP, CISM, and ISO 27001 Lead Auditor qualifications.

Any CSDC-delivered professional services (available at additional cost) are outside the Check Point ISO 27001 certification scope but are delivered following information security best practices aligned to ISO 27001 controls. CSDC is committed to achieving ISO 27001 certification for its consultancy operations.

The Check Point certification is valid until March 2028 and covers the complete cloud service infrastructure, development lifecycle, and operational support for all Harmony product family services.
ISO 28000:2022 certification
No
ISO 9001 certification
No
Quality management systems (QMS)
Yes
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Please provide your Cyber Essentials Certificate Number
338d88d0-089d-4b8a-8186-fd29508892aa
Cyber essentials plus
No
Cyber Essentials Alternative
In relation to the services you do not have a current and valid Cyber Essentials Plus certificate which has been awarded by one of the government approved Cyber Essentials accreditation bodies but you are working towards gaining it, and will be in a position to confirm that you have been awarded a current and valid Cyber Essentials Plus certificate by one of the government approved accreditation bodies within 12 months of the date of award.
Other security certifications
Yes
Any other security certifications
  • CISSP
  • CISM
  • CREST

Social value

Section B - Commitment for Future: Delivery
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority

    • New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
    • New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
    • Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
    • Plans to engage the contract workforce in deciding the most important workplace issues to address
    • Ensuring new workers are informed of their right to join a trade union
    • Monitoring of employee engagement rates (by protected characteristic) and, where necessary, the development of actions to ensure all voices are heard across the diversity of the workforce
    • Employment contracts that reflect actual hours worked; steps taken to ensure employees understand their contracts and have the ability to review and adjust them if actual hours regularly exceed contracted hours
    • Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
    • Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
    • Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
    • Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
    • Monitoring and reporting of gender and ethnicity pay gaps and plans to address them where necessary
    • Entitlement to sick pay for the contract workforce, with provision in place for any staff who do not meet the earnings threshold for statutory sick pay, payment of sick pay from day one of absence and payment of staff on the contract workforce who are off sick a replacement income of 100% of their usual earnings for as long as possible
    • Plans for an appropriate income replacement policy for staff who are required to spend time away from work to care for a sick dependent or close relative
    • Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
    • Support for the contract workforce by providing career advice, and providing opportunities for staff working on the contract with in-work progression career development into known skills shortages or high growth areas
    • Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
    • Volunteering opportunities for staff
    • Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
    • Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.

    • Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
    • Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
    • Activities to support relevant sector related skills growth and sustainability in the contract workforce. Illustrative examples: careers talks, curriculum support, literacy support, safety talks and volunteering
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises

    • Understanding of the types of businesses in the market and the level of participation by new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
    • Activities to identify opportunities to open up sub-contracts under the prime contract to a diverse range of businesses, including new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
    • Advertising of supply chain opportunities openly and to ensure they are accessible to a diverse range of businesses, including advertising all subcontracting opportunities on Contracts Finder
    • Ensuring accessibility to contracting and subcontracting opportunities for disabled business owners and employees
    • Structuring of the supply chain selection process to ensure fairness (e.g. anti-corruption) and encourages participation by a diverse range of businesses, including with regard to new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutual
    • Understanding of local demographics, needs and opportunities for the co-design of the goods, services and works to be delivered under the contract
    • Methods for engaging with different parts of the community (including the education system and charities representing the community) and how communities come together to inform decisions, strategy and projects to leave a positive legacy for future generations
    • Support for community-led initiatives relevant to the contract. Illustrative examples: improving transport links; reducing loneliness; helping with English language proficiency; and facilitating social mixing among people with different backgrounds
  • Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero

    Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.

    • Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
  • Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain

    Policy Outcome 6: Employment and training: For those who face barriers to employment

    • Understanding of employment and skills issues, and of the skills and employment shortages of high growth sectors relating to the contract
    • Creation of employment opportunities particularly for those who face barriers to employment, such as prison leavers, care leavers and/or who are located in deprived areas, and for people in industries with known skills shortages or in high growth sectors
    • Delivery of training schemes and programmes to address any identified skills gaps and under-representation in the workforce for the contract (e.g. prison leavers, care leavers, kinship carers, disabled people)
    • Understanding of the issues affecting the representation of disabled people in the workforce in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
    • Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
    • Other measures to provide equality of opportunity for disabled people and those with health conditions into employment, including becoming a Disability Confident employer and inclusion of supported businesses in the contract supply chain
    • Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
    • Inclusive and accessible development practices, including guidance for line managers on recruiting, managing and developing people with a disability or health condition
  • Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain

    Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.

    • Understanding of the issues affecting the development of new skills by target cohort
    • Understanding of the underlying factors affecting improvements to reduce barriers to entry and training schemes for the target cohort(s) related to the contract workforce
    • Other measures to offer development opportunities for the target cohort(s) in the contract workforce
    • Understanding of issues relating to entering the contract workforce
    • Creation of outreach activities to create a pipeline of employees for the future contract delivery
    • Content of the outreach activity is designed to suit the target cohort
  • Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.

    Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.

    • Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
    • Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion
    • Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
    • Actions to invest in the physical and mental health and wellbeing of the contract workforce

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at andy.huffer@cybersecuritydefence.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.