DXC Technology - Cornerstone Human Capital Management (HCM) SaaS
Unified Human-Capital-Management leveraging core platform solutions, Recruiting and Onboarding, Learning and Performance Management with Cornerstone’s core HR Management platform. One platform that delivers Recruitment, Onboarding, Learning, Skills Development, Goal Setting, Performance, Career Growth, Succession Planning, HR and Workforce Planning. Each HCM component can also be deployed as an independent module.
Features
- Applicant Tracking, Recruiting Management, Onboarding, Candidate Relation Management, Assessment.
- Learning Management LMS, Compliance, Curriculums, ILT & Virtual Classrooms, Mobile.
- Digital Content, Off-the-Shelf, Video, eLearning, Micro-learning, SCORM, AICC, TinCan. Offline
- Performance Management, Goals, Reviews, 360, Appraisals, Skills, Competencies, Development Plans.
- Succession Planning, Talent Pools, Mapping, Talent 9-box, Careers, Internal
- Career Planning, Coaching, Development, Feedback, Check-ins, Objectives, Machine Learning, AI
- HR Planning, Organisation Chart, Headcount Plans, Forecasting, Costing, Talent Gaps
- HCM, HR Administration, HR/Talent data, Skills Analysis, Compensation, Benchmarking
- Analytics, Dashboards, Insights, Reports, Benchmarking, Data Visualisation
- Prebuilt integrations, intuitive import tools, and flexible APIs
Benefits
- Connect HR, Learning, Skills Development, Performance, Talent Acquisition/Management processes
- Leverage Predictive HR analytics for workforce data support business decisions
- Quickly, cost-effectively centralise employee data, improve workforce reporting, gain insights
- Improve employee experience; realise employee potential; support continuous learning
- Provide an intuitive, personalised hub for employee learning and development
- Build a high-performance organisation: align your people to organisation priorities
- Improve internal talent mobility, identify and retain top talent
- Empower employees with skills development needed to grow their careers
- Secure SaaS, supports GDPR Compliance, comprehensive security, privacy, compliance program
- Cost-effective, scalable, market-leading solution for the Public Sector
Pricing
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
4 6 6 5 7 5 6 2 8 7 4 5 1 5 6
Contact
ENTSERV UK LIMITED
Richard Eckersley
Telephone: +447825113627
Email: richard.eckersley2@dxc.com
About your service
- Service categories
-
Application Development and Deployment
Analytics and business intelligence
- Business Intelligence
- Advanced and predictive analytics
- Location and geospatial data management and analytics
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Community cloud
- Service constraints
- Recommendation is to always leverage out-of-the-box to ensure technical debt does not arise due to extensive customisation.
- System requirements
-
- For SaaS Service - there are no hardware requirements.
- For end users, current Windows, Mac, Android and IOS supported.
- On-premise system requirements available upon request.
User support
- Email or online ticketing support
- Yes
- Support response times
- Cornerstone provides an SLA for all customers that guarantees initial response and resolution in regards to defined priority and severity levels. SupportCentral enables named client administrators to access Global Care knowledge assets, solutions, and self-service support tools online at any time. SupportCentral is powered by a case management system and interface that provides the ability to submit, update, track and manage questions, issues, and other requests. Customers can download a support performance scorecard at any time.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 A
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
As standard, Cornerstone provides the following support.
- OnDemand self-service resources, available 24/7 through the web interface within the Cornerstone application.
- Case Management Tools: Available 24/7 via self-service portal.
- Live Emergency Phone Support: 24/7 S1/S2 Emergency Support.
Included Support - provided as standard.
- 2 Named Admins
- Phone Support (M-F): Available Monday through Friday, 24 hours.
Additional Support options include:
Choice Support Includes:
- 5 Named Admins
- Live Emergency Phone Support:24/7 S1/S2 Emergency Support
- Access to shared Customer Service Manager (CSM).
Preferred Support Includes:
- 5 Named Admins
- Phone Support 24/7/365
Shared GPS Guru: Dedicated GPS Subject Matter Expert
Elite Support Includes:
- 10 Named Admins
- Phone Support 24/7/365
- Prioritized Case Handling: Enhanced case review and resolution.
- Elite Support Performance Scorecard
- Named GPS Guru: Dedicated Global Product Support Subject Matter Expert.
- Weekly Guru Call: A scheduled time to discuss upcoming business projects and/or needs.
- Release Weekend Support: Live support during release weekend.
DXC also provides tailored levels of service depending upon the specific needs of the customer, and therefore costs depend upon the customer's specific needs. Please contact DXC to discuss specific requirements and costs. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
-
Once the contract has been executed, Cornerstone will assign the client a dedicated Implementation Consultant. The Implementation Consultant will be the primary point of contact during implementation. In addition, they will be supported by a project team that includes a Program Sponsor, Engagement Manager, Integration Consultant, and Training Consultant.
We deploy our solution in significantly less time than required for similar deployments of legacy software. Our SaaS model eliminates the need for complex technical requirements such as code customisation, equipment deployment, and unique delivery models.
A typical implementation takes approximately 6-8 weeks for an initial module based on scope and complexity.
With years of experience and hundreds of deliveries across various industries, we’ve learned what it takes to ensure our clients can make a successful leap to impact.
Our Cornerstone University Services team provides consulting, training, and performance support tools to enable clients to learn and use our talent management solutions successfully. We offer a blended training approach to accommodate different learning styles.
This approach is designed to meet individual learning needs, whether the trainee has five minutes or five days. The self-regulated learning approach supports heavy interaction or independent learning. - Service documentation
- Yes
- Documentation formats
-
- HTML
- End-of-contract data extraction
- In the event that a client does not renew their contract, Cornerstone will return the client’s data via their secure FTP site in the same format in which the data was originally inputted into the software. Alternatively, the client’s data can be returned in a mutually agreed format at a scope and price to be agreed. Cornerstone will maintain a copy of the client data for no more than six months following termination of the agreement, after which time any client data not retrieved will be destroyed.
- End-of-contract process
- Our agreements are for a term lease period, and software fees are paid in annual installments over that period, during which time Cornerstone recovers costs. Accordingly, during that lease period (as with, say, a rental or car lease), there can be no termination for convenience. Effect of Termination. Immediately following termination of this Agreement, Client shall cease using all Products. Client may retrieve Client Data any time prior to termination or expiration of the Agreement. If requested, Cornerstone will assist with such data retrieval at a scope and price to be agreed.
- Documentation accessibility standard
- None or don’t know
- How the documentation is accessible
-
DXC will provide onboarding and offboarding documentation to the client via an agreed format (e.g. PDF) and will share it with the client.
Cornerstone also over 1,500 online courses and certifications for change makers around the world to build their skills and develop their careers. Cornerstone University Services team provides consulting, training, and performance support tools to enable clients to learn and use their talent management solutions successfully. They offer a blended training approach to accommodate different learning styles.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- Desktop service only requires a Web browser for access. Mobile can also access the same service as desktop users via a URL, or alternatively they can download the servicenow mobile App(s) for a mobile 'App' experience.
- Service interface
- Yes
- User support accessibility
- WCAG 2.2 AA
- Description of service interface
-
ServiceNow provides a number of interfaces to be able to directly integrate with the platform. Administrators will leverage the 'Next Experience' UI or a mobile App to perform their administrative tasks. End users leverage a portal or mobile app.
The Agent and User experiences are intuitive offering a comprehensive positive experience. - Accessibility standards
- WCAG 2.2 AA
- Accessibility testing
-
Servicenow assesses its Platform against the latest WCAG 2.2 standards. They are continuing to uphold WCAG 2.1 AA standards in our testing practices and Product Development Lifecycle (PDLC). This means they are rigorously evaluating and building accessible solutions that work better for everyone, including our users with different abilities.
Please refer to the following link relating to servicenow Accessibility standards adherence, https://www.servicenow.com/uk/accessibility-statement.html#:~:text=We%20are%20assessing%20our%20Platform,and%20Product%20Development%20Lifecycle%20(PDLC). - API
- Yes
- What users can and can't do using the API
- Servicenow has extensive API documentation which can be found here, https://www.servicenow.com/docs/csh?topicname=api-implementation-reference.html&version=latest
- API documentation
- Yes
- API documentation formats
-
- HTML
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
The servicenow platform is extremely flexible and built to embrace customisation and configuration to fulfill a wide range of business requirements. Best practice is configuration rather than customisation to avoid any future technical debt. Should a customisation be required, only authorised users (with the correct role) can work on it.
Please refer to the following relating to servicenow customisation, https://www.servicenow.com/docs/bundle/zurich-servicenow-platform/page/reuse/digital-content-and-design/customization-vs-configuration-concepts.html
Scaling
- Independence of resources
-
The Cornerstone application, as per the Software as a Service model, is designed to scale horizontally. It is multi-tenant-efficient, offering a load balanced farm of identical instances known as swim lanes. When additional server equipment is added, the application capacity scales to fill the available hardware.
This allows virtually unlimited growth capacity.
As opposed to a classical behind the firewall or hosted architecture, our application and our hardware platforms are designed to:
• Efficiently support a high number of users and customers
• Redistribute load easily
• Add additional capacity easily and quickly
Analytics
- Service usage metrics
- Yes
- Metrics types
-
Clients can leverage the Cornerstone’s Trust Site, a client-facing dashboard that provides system status by swim lane. It contains both live and historical information on server operations and system availability. The site is accessible to clients via the Cornerstone Success Center.
Cornerstone provides an SLA for all clients that guarantees initial response and resolution in regards to defined priority and severity levels.
Cornerstone’s SLA also guarantees 99.5% uptime (excluding reasonable and scheduled maintenance periods) per month. - Reporting types
- Real-time dashboards
- Resource tagging
- Yes
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Reseller providing extra features and support
- Organisation whose services are being resold
- Cornerstone
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- Other locations
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- At least every 6 months
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Other
- Other data at rest protection approach
-
Data-at-rest protection, Optional TDE Encryption at rest
Physical access control, complying with CSA CCM v3.0 and ISO27002 Standards. - Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Explicit overwriting of storage before reallocation / Secure Erase
Data importing and exporting
- Data export approach
-
Customers can export their data from the Cornerstone application through a variety of methods:
· The reporting & analytics tool lets customers easily export reports at any time.
· The Reporting API (REST-based) allows customers to make OData-based queries against our Real Time Data Warehouse.
· The Data Exporter enables customers to schedule batch exports of defined data sets - Data export formats
-
- CSV
- ODF
- Data import formats
-
- CSV
- Other
- Other data import formats
-
- REST API
- FTP Feed
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- Other
- Other protection within supplier network
- TLS (Version 1.2 or above), VPN, restricted access (SSO) and dedicated lines.
Availability and resilience
- Guaranteed availability
-
Cornerstone provides an SLA for all clients that guarantees initial response and resolution in regards to defined priority and severity levels.
Cornerstone’s SLA also guarantees 99.5% uptime (excluding reasonable and scheduled maintenance periods) per month.
In the event that Cornerstone has not complied with its "Resolution" obligations set forth above, then, for each calendar day (or portion thereof) that Cornerstone has not so complied, Client shall be entitled, as its sole and exclusive remedy therefor, to a credit against Client's next invoice equal to 1/365th of the annual fees for Software set forth in the Agreement. - Approach to resilience
-
Cornerstone’s Disaster Recovery/Business Continuity Plan defines plans, procedures, and guidelines for the Company in the event of disaster. Specifically, this document establishes procedures for recovering business operations, internal data; systems, and critical internal functions to maintain Cornerstone as an on-going concern in the face of unexpected events.
The plan has the following primary objectives:
•Identify critical systems, services, and staff necessary to maintain and/or restore Cornerstone business operations and internal functions.
•Provide guidelines for the communication of activities and status to both Cornerstone staff and client personnel during the recovery period.
•Present an orderly course of action for restoring critical computing capability to Cornerstone and for maintaining and/or restoring client service and support.
Cornerstone performs site-to-site replication of data to protect client data in the event of a disaster. There are two dedicated disaster recovery sites distant from each of the production data centers. Disaster recovery testing is performed semi-annually at each DR site. - Outage reporting
-
Outages occur during scheduled maintenance/releases. Otherwise, the system is not likely to experience any outages, however in the unlikely event of an unexpected outage, clients will receive email alerts.
Downtime is scheduled for planned quarterly releases at least 4 months in advance and deployed during off-peak hours, typically 8:30PM EST Fridays to 1AM EST Saturday (4.5 hours). Patch fixes typically occur every two weeks between 8:30PM EST and 12:00AM EST. The typical downtime for a patch deployment is approximately 10 minutes.
Client administrators can access a calendar of upcoming release and patch dates at any time through our client portal, Success Center. In addition, multiple email reminders are sent in advance.
There is also a status page, https://status.csod.com/
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Username or password
- Other
- Other user authentication
- Best practice with regards to Multi-Factor Authentication is to use our SSO integration which allows clients to use their own two-factor authentication mechanism. Cornerstone is able to integrate with SAML-based SSO or Identity Providers used by the client already. This way, customers provide to their users the same authentication procedure that their users already use several times per day
- Access restrictions in management interfaces and support channels
-
Users need a unique username, password to access the application. Alternatively, clients can be authenticated using security tokens, utilising a symmetric algorithm, passed by the client’s local authenticator for Single Sign-On functionality.
Passwords represent a fundamental and significant security mechanism at Cornerstone. Passwords are required to access the production network (via Active Directory) and applications (SQL Server). User accounts are created that employ individual user ID and passwords to identify and authenticate a given user. Users cannot access any Cornerstone system without a valid user ID and password. The SQL server logon groups are each configured to use Windows authentication. - Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Dedicated link (for example VPN)
- Username or password
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users have access to real-time audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- CSA CSM version 4.0
- ISO/IEC 27001
- Other
- Other security governance standards
-
SAE 3402 Type II
ISO/IEC 27018:2014
ISO/IEC 27701:2019
FedRAMP Moderate (Level 2)
PCI-DSS Level 4 SAQ D Compliant
CSA Security, Trust & Assurance Registry (STAR)
Data Privacy Framework Program (EU-U.S. DPF, UK Extension to the EU-U.S. DPF, and Swiss-U.S. DPF) - Information security policies and processes
-
Cornerstone policies and procedures cover the breadth and depth of IT operations, and infusing security by design through these processes. The information security policy and procedures apply to all Cornerstone employees, consultants, and contractors; and is intended to safeguard data and information technology for Cornerstone. Cornerstone does not publish these documents. However we can provide a secure online account, where you can access and view.Upon joining Cornerstone, applicable security policies and procedures are assigned to personnel to complete within a period of time. In addition, personnel complete updated training every year to ensure they understand and review the policies.
Dedicated IT Security & Compliance department, overseen by the CISO, that drive security oversight and initiatives across the organisations. Security responsibilities are also shared with the IT operations team that perform the day-to-day processes, and overseen by the CISO, working in concert with AVP of Technology Operations and Chief Technology Officer. CISO is responsible for securing information in accordance with industry best practices and implementing the recommendations of the various 3rd party audits.
DXC information security policies and processes are accredited to ISO 27001 and comply with National Laws and Industry Policies where applicable. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Configuration and change management approach
- Cornerstone follows a defined SDLC that contains a number of important quality steps. The change management/application development process at Cornerstone is designed to ensure that standardized methods and procedures are used for handling all system changes and application development ("changes"). Changes are applied to production environment as either part of a "release", "patch", or “hot fix”. Formal quarterly release cycles are used for major enhancements: patches (bi-weekly) are utilised for mid-release updates. Unanticipated changes, “hot fixes”, follow the standard change control process. Using a planned release and patch schedule, minimizes impact of change-related incidents on service quality and day-to-day operations.
- Vulnerability management type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Vulnerability management approach
- Cornerstone contracts independent CREST-certified third parties to run external penetration tests on a quarterly basis. Additionally, monthly external vulnerability scans validate both the patch level and protection from known attacks. Results are provided to Cornerstone IT personnel for review and remediation. There are also various RSS feeds that Cornerstone is subscribed to, including US-CERT, the National Vulnerability Database (NVD), and vendor specific feeds for major software / hardware that Cornerstone uses within the environment. Clients can access the patch schedule at any time through our client portal, the Client Success Center. Clients can request copies of penetration reports as needed.
- Protective monitoring type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Protective monitoring approach
-
Quarterly application penetration tests are performed by independent third-party companies upon Cornerstone’s application. Cornerstone performs internal vulnerability scanning on a monthly basis. Internal and external penetration test is performed yearly by an independent third-party company.
Cornerstone has implemented a specific Data Breach Incident Management SOP which details the procedures to be followed in the event of a data breach.
Cornerstone has never had a security breach. - Incident management type
- Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
- Incident management approach
- Cornerstone maintains a Security Incident Response Plan in order to organize resources to respond in an effective and efficient manner to an adverse event related to the safety and security of a computer resource under Cornerstone’s management. An adverse event may be malicious code attack, unauthorized access to Cornerstone managed networks or systems, unauthorized utilization of Cornerstone services, denial of service attack, or general misuse of systems. The plan clearly defines the appropriate steps and processes in communication. Clients will be notified within 24 hours of security incidents impacting their data.
- Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- No
- Free trial available
- No
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 0%
- Between £500,001 and £1,000,000
- 0%
- Between £1,000,001 and £2,500,000
- 0%
- Between £2,500,001 and £5,000,000
- 0%
- Over £5,000,001
- 0%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- LRQA Ltd.
- ISO/IEC 27001 accreditation date
- Tuesday 10 June 2025
- What the ISO/IEC 27001 doesn’t cover
- None. All services Entserv UK offers under G-Cloud 15 are in scope of our ISO 27001 certification.
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- LRQA Ltd.
- ISO 9001 accreditation date
- Wednesday 11 June 2025
- What the ISO 9001 doesn’t cover
- None. All services Entserv UK offers under G-Cloud 15 are in scope of our ISO 9001 certification.
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- C884eddb-e45b-47cf-a7cf-dc3da4af1435
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 71a0fb97-216d-4781-914b-3aaf2455c8f2
- Other security certifications
- Yes
- Any other security certifications
-
- ISO 22301 Business Continuity Management System
- ISO 27701 Privacy Information Management System
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
- New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Plans to engage the contract workforce in deciding the most important workplace issues to address
- Ensuring new workers are informed of their right to join a trade union
- Monitoring of employee engagement rates (by protected characteristic) and, where necessary, the development of actions to ensure all voices are heard across the diversity of the workforce
- Employment contracts that reflect actual hours worked; steps taken to ensure employees understand their contracts and have the ability to review and adjust them if actual hours regularly exceed contracted hours
- Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Activities to cascade good practice on fair working conditions throughout the supply chain
- Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
- Monitoring and reporting of gender and ethnicity pay gaps and plans to address them where necessary
- Entitlement to sick pay for the contract workforce, with provision in place for any staff who do not meet the earnings threshold for statutory sick pay, payment of sick pay from day one of absence and payment of staff on the contract workforce who are off sick a replacement income of 100% of their usual earnings for as long as possible
- Plans for an appropriate income replacement policy for staff who are required to spend time away from work to care for a sick dependent or close relative
- Understanding of in-work progression issues affecting the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
- Support for the contract workforce by providing career advice, and providing opportunities for staff working on the contract with in-work progression career development into known skills shortages or high growth areas
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
- Volunteering opportunities for staff
- Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
- Measures to identify, mitigate and manage modern slavery risks relating to the contract and how these will be implemented
- Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
- How these flow down the supply chain and are monitored Illustrative examples include reporting, site visits, audits, etc.
- How to ensure business decisions re: price/cost, short lead times, payment timescales do not create modern slavery risks in the supply chain
- How the supplier will work with NGOs, trade unions or other businesses to address modern slavery risk
- Means of influencing staff, suppliers, customers, communities and/or any other appropriate stakeholders with respect to modern slavery risks relating to the contract
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
- Activities to support relevant sector related skills growth and sustainability in the contract workforce. Illustrative examples: careers talks, curriculum support, literacy support, safety talks and volunteering
- Delivery of apprenticeships, supported internships and T Level industry placement opportunities (Level 2, 3 and 4+) in relation to the contract
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Understanding of the types of businesses in the market and the level of participation by new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Activities to identify opportunities to open up sub-contracts under the prime contract to a diverse range of businesses, including new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Plans for engaging a diverse range of businesses in engagement activities prior to appointing subcontractors (including activities prior to award of the main contract and during the contract term)
- Activities that demonstrate a collaborative way to work with a diverse range of businesses as part of the supply chain
- Advertising of supply chain opportunities openly and to ensure they are accessible to a diverse range of businesses, including advertising all subcontracting opportunities on Contracts Finder
- Ensuring accessibility to contracting and subcontracting opportunities for disabled business owners and employees
- Structuring of the supply chain selection process to ensure fairness (e.g. anti-corruption) and encourages participation by a diverse range of businesses, including with regard to new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutual
- Understanding of local demographics, needs and opportunities for the co-design of the goods, services and works to be delivered under the contract
- Methods for engaging with different parts of the community (including the education system and charities representing the community) and how communities come together to inform decisions, strategy and projects to leave a positive legacy for future generations
- Measures to involve local stakeholders and/or users in design (e.g. in the design of services, systems, products or buildings)
- Plans for positive actions with community groups.
- Measures for making facilities used in the delivery of the contract available for community groups, education or training
- Measures to engage users and communities and build relationships to increase community integration build trust and influence how the contract is delivered
- Plans to respond flexibly and adapt approaches to community engagement and initiatives
- Support for community-led initiatives relevant to the contract. Illustrative examples: improving transport links; reducing loneliness; helping with English language proficiency; and facilitating social mixing among people with different backgrounds
- Collaborating with anchor institutions and community groups to make facilities available for education, training or community events
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 6: Employment and training: For those who face barriers to employment
- Understanding of employment and skills issues, and of the skills and employment shortages of high growth sectors relating to the contract
- Creation of employment opportunities particularly for those who face barriers to employment, such as prison leavers, care leavers and/or who are located in deprived areas, and for people in industries with known skills shortages or in high growth sectors
- Delivery of training schemes and programmes to address any identified skills gaps and under-representation in the workforce for the contract (e.g. prison leavers, care leavers, kinship carers, disabled people)
- Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
- Understanding of the issues affecting the representation of disabled people in the workforce in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Collection of the views and expertise of disabled people and their representative organisations on successfully supporting disabled employees or applicants
- Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
- Introducing transparency to pay and reward processes
- Offering a range of quality opportunities with routes of progression if appropriate, e.g. T Level industry placements, students supported into higher level apprenticeships.
- Working conditions which promote an inclusive working environment and promote retention and progression
- Other measures to provide equality of opportunity for disabled people and those with health conditions into employment, including becoming a Disability Confident employer and inclusion of supported businesses in the contract supply chain
- Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
- Inclusive and accessible development practices, including guidance for line managers on recruiting, managing and developing people with a disability or health condition
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.
- Understanding of the issues affecting the development of new skills by target cohort
- Understanding of the underlying factors affecting improvements to reduce barriers to entry and training schemes for the target cohort(s) related to the contract workforce
- Other measures to offer development opportunities for the target cohort(s) in the contract workforce
- Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
- Understanding of issues relating to entering the contract workforce
- Creation of outreach activities to create a pipeline of employees for the future contract delivery
- Content of the outreach activity is designed to suit the target cohort
- Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
- Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion
- Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
- Actions to invest in the physical and mental health and wellbeing of the contract workforce
-