Maytas by Tribal
Maytas is a Learner Management Information System addressing back-office management of apprenticeships, training-providers and employers; MaytasHub is a web-based e-portfolio solution. These are used by colleges, training-providers, employers and others to track progress of clients/students/learners. Tribal provides Data Management Services, including ILR submission, reporting-and-funding helpdesk, compliance, audit support and report-writing.
Features
- Improved data quality with single-entry, validation and error checking
- Improved efficiency of student transactions through integrated automated processes
- Integrated process from curriculum to funding returns eliminates hassle
- Fully integrated system with once-only data input
- Greater efficiencies with Learner Portal and Agent staff portal
- Comprehensive reporting facilities allow for improved management reporting
- Simple automatic interfacing with third-party systems
- Easy to use applications designed using familiar Microsoft technology
- UK based Support, support portal and Dynamic user community
- On-demand access to funding, compliance and Maytas product expertise
Benefits
- Improved data quality with single-entry, validation and error checking
- Improved efficiency of student transactions through integrated automated processes
- Integrated process from curriculum to funding returns eliminates hassle
- Fully integrated system with once-only data input
- Greater efficiencies with Learner Portal and Agent staff portal
- Comprehensive reporting facilities allow for improved management reporting
- Simple automatic interfacing with third-party systems
- Easy to use applications designed using familiar Microsoft technology
- UK based Support, support portal and Dynamic user community
- Brings additional capacity without extra headcount and reduces turnover risks
Pricing
£17,500.00 an instance a year
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
4 8 0 6 5 4 9 3 1 0 3 0 4 4 9
Contact
Tribal Education Limited
Fleur Brennan
Telephone: 0330 016 4000
Email: technology.bids@tribalgroup.com
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Public cloud
- Service constraints
- Maytas features a Windows client accessible via the internet, this can only be accessed by user devices running a Windows OS.
- System requirements
- N/a
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Our response times to queries and incidents is based upon the severity of the incident in question. Critical faults (P1) are responded to within an hour. Major faults (P2) are responded to within two working hours. Important faults (P3) are responded to within four working hours. Minor faults (P4) are responded to within eight working hours. Our working hours are Monday-Friday 0830 to 1700 - therefore there would not be a response on weekends. Customers can provide us with an impact and urgency rating for any issues they raise which we use to help triage and assign priority.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
- All services offered will be supported by a Service Level Agreement suitable to the customer and the service ordered. There are three levels of service available; Essential, Enhanced and Enterprise and depending on the level of service required this will include a Service Delivery manager, Technical Project Coordinator and assigned Cloud Consultant. If additional out of hours or onsite support is required then this option is available at additional cost.
- Support available to third parties
- No
Onboarding and offboarding
- Getting started
- The system is provided with a full suite of user documentation. During initiation of the project a full training plan will be scheduled and delivered according to the project timescales. Training if predominantly carried out on site. However, there are online training manuals and recorded training materials available as well.
- Service documentation
- Yes
- Documentation formats
- End-of-contract data extraction
- The underlying database containing all customer data would be provided to a customer-accessible destination prior to the contract ending.
- End-of-contract process
- We would work with the customer to define an exit plan which would involve extraction of data and completion of any outstanding services. The exact nature and cost of this exit plan will vary from customer to customer depending on their requirements.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Internet Explorer 11
- Microsoft Edge
- Chrome
- Safari
- Application to install
- Yes
- Compatible operating systems
- Windows
- Designed for use on mobile devices
- No
- Service interface
- No
- User support accessibility
- WCAG 2.1 AA or EN 301 549
- API
- Yes
- What users can and can't do using the API
-
The API uses a JWT token for authentication, which is passed in the standard way via a Bearer token in the Authorization header.
The Maytas API is deployed & managed by Tribal. An API user (with the relevant access) is able to create API client credentials within our Edge Platform specifying the client id, relevant scopes and secret expiry date for access/validity, this in turn can be used to obtain an access token from the identity server. The access tokens have a lifetime of 3600 seconds or one hour from when the token was generated.
Maytas API users are able to make changes through the API via their chosen middleware. The API supports read/write functions across POST, PATCH & GET. Users are limited to the Maytas tables exposed to the API. - API documentation
- Yes
- API documentation formats
- Open API (also known as Swagger)
- API sandbox or test environment
- No
- Customisation available
- Yes
- Description of customisation
- The system is fully configurable, including fields, customer-specific screens and reports.
Scaling
- Independence of resources
-
Tribal offers Maytas via a public cloud provision through Microsoft Azure.
Our public cloud is a multi-tenanted solution, Tribal use a multi tier design and prevent 'noisy neighbour' performance issues through the use of auto-scaling to cope with user demand. As customer use grows dedicated resources can be assigned in order to maintain optimal performance.
We also offer an "essential" option which is on shared infrastructure.
Analytics
- Service usage metrics
- Yes
- Metrics types
-
Tribal Cloud incorporates an application to provide alerts to relevant teams when issues arise or thresholds are exceeded. It is a SaaS-based automated IT performance platform. As it is SaaS-based no processing is done on the monitored node, consequently, it has a minimal performance overhead.
It can monitor any Tribal Cloud service as part of our managed service - Reporting types
-
- API access
- Real-time dashboards
- Regular reports
- Reports on request
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Up to Security Clearance (SC)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- Less than once a year
- Penetration testing approach
- In-house
- Protecting data at rest
-
- Encryption of all physical media
- Other
- Other data at rest protection approach
- Database instances will be encrypted including snapshots at rest using the industry standard AES-256 (SQL TDE). Once the data is encrypted, authentication of access and decryption of the data is handled transparently with a minimal impact on performance. Physical access is managed by Microsoft as appropriate as it is a public cloud offering.
- Data sanitisation process
- Yes
- Data sanitisation type
- Deleted data can’t be directly accessed
- Equipment disposal approach
- A third-party destruction service
Data importing and exporting
- Data export approach
- Data can be exported via reports to various formats, including csv
- Data export formats
- CSV
- Data import formats
- CSV
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
- We offer a minimum 99.5% availability, assured by contractual commitments. Exact SLAs will vary from client to client and their desired uptime.
- Approach to resilience
- Our service offers the cost and efficiency advantages that virtualisation brings along with centralised management and control, built in redundancy features like clustering, and a unified set of orchestration tools. The environment is backed by both our 100% Network Uptime Guarantee and our One-Hour Hardware Replacement Guarantee, supported by hundreds of Microsoft Certified experts to create a customised Virtualisation environment base.
- Outage reporting
- Service outages are reported through both our support portal and direct contact from the appropriate service delivery manager who is assigned to the client. The method of communication will be agreed with the specific client, but could include email alerts, direct phone calls etc.
Identity and authentication
- User authentication needed
- Yes
- User authentication
- Username or password
- Access restrictions in management interfaces and support channels
- Access in management interface and support channels is managed on a Role based Access Control system (RBAC) as with the rest of the system. In this way you can control which areas of the system and support users have access to.
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
- Username or password
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- Lloyd's Register LRQA
- ISO/IEC 27001 accreditation date
- 02/05/2017
- What the ISO/IEC 27001 doesn’t cover
- N/A - our ISO accreditation covers all of our business activities.
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
-
Tribal has been an ISO27001 certified organisation since 2009 and all of our development and delivery services will be delivered from locations which are specifically ISO27001 certified. The accreditation process included a review of Tribal’s Information Security Management System (ISMS) and our overall policy for handling data including how it is collected, held and maintained.
We have local security forums for all of our offices, which feed into our central Information Security Governance forum which reports to the board. We have permanent Quality and Security Managers who form part of this board.
As well as our regular certification revalidation process (carried out by external evaluators) we regularly test our systems and processes with a series of internal audits to ensure that policies and processes are being followed.
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- For our software solutions, Tribal has a structured Change Control process for managing requests for change and enhancements. All Requests for Changes (RFCs) are raised via the Service Desk and go through internal vetting by the respective support team before gaining authorisation from Tribal. Regular Change Advisory Boards meet to review Emergency and non-standard changes. Details of all changes are provided to the Service Manager to review and will obtain final approval from the Contracting Body before proceeding. The Contracting Body will be involved in the change Process at each stage and included in any post implementation review as required.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
As part of our ISO27001 processes we have a risk/vulnerability assessment procedure which will be undertaken on any new customer site and service.
Patches will be deployed depending on the severity of the problem and the level of testing required.
Information about potential threats is found based upon initial and recurring risks assessments, internal procedures and known threats highlighted by both the industry and users. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
-
Our managed service includes the proactive monitoring of all services to identify potential compromises.
Based upon the nature of the compromise we would then respond to the agreed SLA.
The speed of the response will be determined by the severity of the incident. - Incident management type
- Supplier-defined controls
- Incident management approach
-
Our ISO27001 processes include a defined Incident Management process. All personnel are responsible for reporting incidents to the Information Governance Committee (IGC) or Security Forum representatives as quickly as possible. We have a formal Incident Report Form which staff use for recording the details of the incidents.
Security weaknesses will be recorded on a spreadsheet for tracking purposes. Any person can identify weaknesses, which will be managed by the Quality team in conjunction with the Security Forums and IGC as appropriate.
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)
Public sector networks
- Connection to public sector networks
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Covid-19 recovery
- Equal opportunity
- Wellbeing
Fighting climate change
Tribal has a corporate carbon reduction plan and is committed to achieving Net Zero emissions by 2050. Our full Action Plan is on our Website at www.tribalgroup.com. Energy Consumption Our electricity supplier, Opus Energy, are OFGEM-accredited providers of green electricity. Our carbon footprint is below the threshold required by the Carbon Reduction Commitment scheme. All equipment used in Tribal offices is Energy Star compliant; the printers / copiers / scanners will automatically shift into a low power sleep mode when not in use for a prolonged period, thereby consuming up to 50% less energy. Waste and Recycling • All redundant devices are disposed of in line with the Waste Electrical and Electronic Equipment (WEEE) directives. Our preferred supplier provides Tribal with the relevant documentation on disposal to support our environmental sustainability standards. • We recycle paper, cardboard, glass and plastic at all our offices. • Our waste supplier recycles 100% of the waste they collect, and their official statistics prove that they sent 0% to landfill. This supplier provides Tribal with annual environmental reports that shows a total recycling / recovery figure, up to date certificates and other related data. • We actively discourage our staff members from printing documents unnecessarily. • Printers are set to the duplex mode by default to minimise waste. • We recycle printer cartridges and use remanufactured ink cartridges where possible. Printing • We actively discourage our staff members from printing documents unnecessarily • Printers are set to the duplex mode by default to minimise waste • We recycle printer cartridges and use remanufactured ink cartridges where possible Furniture and Office Supplies • Where possible, redundant furniture is donated to charity or recycled • We review the products used and where we can switch to environmental alternatives. Recycled paper is already used in all officesCovid-19 recovery
During the Covid 19 Pandemic, Tribal moved all of it's project delivery to remote working and we have continued this practice since the pandemic. This has had a positive impact in several ways including: - significantly reduced travel, reducing air pollution - reduced costs to customers due to no onsite consultant expenses - increased productivity due to no travel/commuting taking up time during the working day - improved wellbeing - happier workforce due to more flexible working - reduced office costsEqual opportunity
Tribal is committed to embedding equality, diversity and inclusion in all employment policies, procedures and practices. Tribal’s Diversity and Inclusion Policy sets out our commitments to our employees, customers and supply chain, which include: • Ensuring that all individuals are treated with dignity and respect • Making opportunities available on a non-discriminatory basis • Providing a safe, supportive and welcoming environment for all • Encouraging a diverse workforce. To implement our policy effectively, we: • Train those who deliver continual personal development training (CPD) to our employees are trained in equal opportunities and diversity issues • Make training opportunities equally accessible to all • Monitor who takes part in training in terms of age, gender, ethnic origin and disability, and across departments to ensure staff are not excluded • Provide online training to all staff members that covers Diversity and Equality, finished with a post-course examination that must be passed • Are flexible to accommodate the diverse range of needs of our employees, such as: · flexible working patterns · religious requirements, including worship and diet · special arrangements, including wheelchair access and signing communication Please see ‘Tribal Group - Equality, Diversity and Inclusion Policy’ on our websiteWellbeing
We recognise that maintaining both physical and mental wellbeing is essential to effective work performance to enable us to achieve our strategic aims. We have a duty of care to our staff members, which extends to the active promotion of their health and wellbeing. We invest in services and support which are designed to encourage and promote wellbeing. We aim to ensure that all employees are able to work in a positive, safe and supportive working environment, by seeking at an organisational level to: • Promote a culture of consultation, participation and open communication throughout Tribal; • Provide a safe and healthy working environment and implement appropriate control measures to minimise risks to health and wellbeing; • Ensure that there are appropriately trained individuals available within the organisation to identify risk, implement controls and provide support (or refer to relevant services) at any times of crisis or accident • Encourage a workplace culture where mental health and physical health are regarded as equally important and can be openly discussed; • Promote equality of opportunity, and provide a workplace free from harassment and bullying, as set out in the globally applicable Dignity at Work policy; • Ensure that all employees are effectively onboarded, receive a local induction, ongoing training and development for their role; • Provide a framework encouraging frequent and high-quality discussion about performance and meaningful opportunity for employees to discuss wellbeing • Identify lifestyle and workplace factors that may negatively affect the health and wellbeing of our employees; • Offer proactive support to those with underlying medical conditions, including use of specialist services as appropriate to offer advice, guidance and solutions; • Engage with employees to support them in facilitating a healthy working environment with regards to both physical and mental health, and provide more targeted support where necessary
Pricing
- Price
- £17,500.00 an instance a year
- Discount for educational organisations
- No
- Free trial available
- No