Posit Enterprise Analytical Platform
Provision of Posit Enterprise products (Posit Team, Posit Workbench, Posit Connect, Posit Package Manager) and support with deployment. An analytical platform for analysis, reporting and predictive analytics, hosted securely and integrated with enterprise data systems.
Features
- Develop using RStudio IDE, Jupyter Notebooks and VS Code
- Develop in R and/or Python
- Secure control over packages and libraries your developers can use
- Integrate with GitHub, Tableau, Power BI and other tools
- Create automated reports with scheduled updates and distribution
- Create interactive web apps linked to databases or APIs
- Create and publish your own APIs
- Control which users have access to which published content
- Ongoing support and training to help you maximise value
Benefits
- Fast set-up and early return on investment
- Establish and maintain best practice in analytical development
- Continuous support and training
- Server-hosted, no client-side software to install or maintain
- Dedicated hosting (SaaS)
- Integrates with your existing network resources
- Support open-source software without the downsides
- Functionality and support tailored to your scale, need and budget
Pricing
£250 to £750 a user a month
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
4 2 1 5 5 8 0 0 1 6 4 8 9 2 5
Contact
Hartley McMaster Ltd
Tom Dewar
Telephone: 020 4583 4513
Email: consultancy@hmcm.co.uk
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Community cloud
- Hybrid cloud
- Service constraints
- Upgrades to Posit products as part of the hosted Analytical Platform SaaS will require a short period of scheduled downtime, usually no more than 10-15 minutes. Timing will be agreed in advance with the work usually conducted outside of normal working hours.
- System requirements
-
- Server(s) running Linux OS
- Posit Workbench: 4+ CPUs, 8+GB RAM, 100GB+ storage
- Posit Connect: 4+ CPUs, 8+GB RAM, 100GB+ storage
- Posit Package Manager: 2+GB RAM, 100GB+ storage
- Web browser: Microsoft Edge, Chrome, Safari or Firefox
User support
- Email or online ticketing support
- Yes, at extra cost
- Support response times
- SLA negotiable, but next working day typical.
- User can manage status and priority of support tickets
- No
- Phone support
- No
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
Basic: email support, next working day response;
Pro: email + callback support, basic training (inc. onboarding for new staff);
Enterprise: email + telephone support, dedicated technical account manager, access to full range of training included.
Pricing based on organisation size/number of users, subject to a minimum commitment: Basic from £12k pa; Pro from £30k pa; Enterprise POA. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- Onsite and/or online 'how-to' training, including induction for new starters. Guidance/training on effective workflows, e.g. how to automate reporting. Co-development of exemplar content, e.g. migrating a legacy analytical model or dashboard onto the new platform.
- Service documentation
- Yes
- Documentation formats
- HTML
- End-of-contract data extraction
- Customers are advised not to store data itself on the analytical platform, e.g. keeping it in separate customer controlled databases, not part of this service. Similarly, source code for developed content should be separately backed up in a customer controlled version control system (e.g. GitHub) not part of this service. This being the case, no extraction should be necessary, only secure deletion. If bespoke assistance is required to migrate content to another system, support will be offered on a time and materials basis.
- End-of-contract process
- Unless otherwise agreed, VMs hosting the service for the client will be maintained in a 'spun down' state for three months. This allows the service to be restarted if the client changes their mind or needs urgent access to something they had not backed up elsewhere. (Access to content during these three months will only be available at addtional cost.) After three months, the VMs will be deleted. Confirmation of deletion will provided at that time.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- Content produced on the Posit Enterprise platform can be consumed on a mobile device (e.g. reports, dashboards), but content is designed, developed and published using a web browser on a laptop or desktop machine.
- Service interface
- Yes
- User support accessibility
- None or don’t know
- Description of service interface
- Users can browse published reports, analyses, dashboards, web apps and APIs through a single web interface. Content can be organised for ease of access and is searchable through this same interface.
- Accessibility standards
- None or don’t know
- Description of accessibility
- The RStudio IDE (Posit Workbench) gives users the ability to control/use: zoom levels, reduced motion, simplified layout, screen reader support.
- Accessibility testing
- Not tested
- API
- No
- Customisation available
- Yes
- Description of customisation
- Posit Team consists of three discrete products for development (Posit Workbench), publishing/hosting (Posit Connect) and package management (Posit Package Manager). Customers may elect not to take all three, e.g. if they have an existing alternative way of publishing/hosting they would rather leverage. Independently, three different levels of ongoing support are available (basic, pro, enterprise).
Scaling
- Independence of resources
- Customers are provisioned dedicated virtual machines (VMs) hosting their instances of Posit's Enterprise software. Resources available are therefore completely independant from other customers.
Analytics
- Service usage metrics
- Yes
- Metrics types
- RStudio Connect provides basic usage metrics for content published (e.g. last updated, viewer counts). Optionally, a custom dashboard or report of service metrics can be created, hosted on the same platform, using the RStudio Connect API. This can be configured to run in real time, on request, or on a user-determined schedule.
- Reporting types
-
- API access
- Real-time dashboards
- Regular reports
- Reports on request
Resellers
- Supplier type
- Reseller providing extra support
- Organisation whose services are being resold
- Posit (formally RStudio)
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a Tigerscheme qualified provider or a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with another standard
- Encryption of all physical media
- Data sanitisation process
- Yes
- Data sanitisation type
- Deleted data can’t be directly accessed
- Equipment disposal approach
- A third-party destruction service
Data importing and exporting
- Data export approach
- Data is not held on the platform itself, but applications can be created on the platform to provide a route for users to export or upload data.
- Data export formats
-
- CSV
- ODF
- Data import formats
- CSV
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
- We provide a 99.5% uptime guarentee as part of our standard SLA. A part rebate or benefit in kind (e.g. free consultancy days) will be offered in any year where this standard is not met.
- Approach to resilience
- Available on request.
- Outage reporting
- Email alerts to nominated customer account(s).
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Limited access network (for example PSN)
- Username or password
- Other
- Other user authentication
- External authentication options: Active Directory, SAML, OAuth 2.0, PAM, Proxied Authentication
- Access restrictions in management interfaces and support channels
- Management interfaces and support channels are restricted to named individuals (email addresses) or groups as agreed in SLA. Requests to modify these can be made via an account manager.
- Access restriction testing frequency
- At least once a year
- Management access authentication
- 2-factor authentication
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- Between 6 months and 12 months
- Access to supplier activity audit information
- You control when users can access audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- Between 6 months and 12 months
Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- No
- Security governance approach
- We are working toward ISO/IEC 27001 compliance.
- Information security policies and processes
- We have policies and protocols consistent with the ISO 27001 standard and are working toward certification. We are also Cyber Essentials Plus certified. Our Information Security Lead is part of the senior management team and reports directly to the CEO who holds board level responsibility for information security.
Operational security
- Configuration and change management standard
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Configuration and change management approach
- We resell Posit Enterprise products with a service wrapper. We proactively inform customers of any security risks Posit become aware of. New product releases are first installed and tested on our own systems before being rolled out for customers. The timing and timeliness of updates is agreed as part of our SLA. Critical security fixes will be implemented ASAP irrespective of SLA level.
- Vulnerability management type
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Vulnerability management approach
- Software patches from third party vendors, including Posit whom we resell, are deployed within 14 days of vendor release. Critical patches are prioritised and are typically deployed within 5 days. We take threat intelligence and advice from Posit, Microsoft and a third party cyber security firm.
- Protective monitoring type
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Protective monitoring approach
- We leverage Microsoft's Azure-based products and options for monitoring and identifying potential compromises. Any suspicious activity is investigated and reported to the customer. Automated monitoring is 24/7. Serious potential incidents will be acted on same-day / within 12 hours.
- Incident management type
- Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
- Incident management approach
- Customers can report suspected incidents to us via their IT department / designated contact(s). These will be logged as priority support tickets. Following our investigation, an incident report will be delivered back to the customer's IT department / desigated contact(s).
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Covid-19 recovery
- Tackling economic inequality
- Equal opportunity
- Wellbeing
Fighting climate change
Our support for Posit’s analytical products enables analysts in public services to provides better information and analyses to decision makers. These make for better decisions, directly helping public sector organisations deliver on their objectives which can align with any of the social value themes outlined in PPN 06/20.Covid-19 recovery
Our support for Posit’s analytical products enables analysts in public services to provides better information and analyses to decision makers. These make for better decisions, directly helping public sector organisations deliver on their objectives which can align with any of the social value themes outlined in PPN 06/20.Tackling economic inequality
Our support for Posit’s analytical products enables analysts in public services to provides better information and analyses to decision makers. These make for better decisions, directly helping public sector organisations deliver on their objectives which can align with any of the social value themes outlined in PPN 06/20.Equal opportunity
Our support for Posit’s analytical products enables analysts in public services to provides better information and analyses to decision makers. These make for better decisions, directly helping public sector organisations deliver on their objectives which can align with any of the social value themes outlined in PPN 06/20.Wellbeing
Our support for Posit’s analytical products enables analysts in public services to provides better information and analyses to decision makers. These make for better decisions, directly helping public sector organisations deliver on their objectives which can align with any of the social value themes outlined in PPN 06/20.
Pricing
- Price
- £250 to £750 a user a month
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- A free trial version for a limited set of users can be arranged for up to one month. Provides full product features with the exception that it will not be integrated with the customers' own data systems.