Cloud Security Management
A comprehensive, analysis, planning and execution service to deliver cost effective practical security solutions. Allows the full potential of cloud initiatives to be delivered.
Features
- Comprehensive security strategy development.
- Rationalisation of inefficient cyber security product suites.
- Vulnerability investigation and remediation planning.
- Comprehensive cyber laboratory to testing tools, techniques and procedures.
- Penetration testing tailored to accreditation and risk strategy.
- Security aligned with cloud technology and business strategy.
- Stakeholder planning and engagement to optimise delivery and support approval.
- Selection of security controls from CSA, ISOs and other standards.
- Design documentation and evidence development.
- Cloud Threat Modelling.
Benefits
- Deliver business value quickly through Client focused interactions.
- Strong integration of security and service delivery.
- Improve insight for more accurate and informed decision making.
- Experience from implementation of multiple compliance models.
- Security solutions focussed on business benefits
- Adaptive approach, recognising CSA Best Practice.
- Deep understanding of cloud architecture deployed into security analysis.
- Task based delivery model.
- Ensures cost effectiveness of security solutions in overall architecture.
Pricing
£425 to £1,750 a unit a day
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
5 1 3 5 1 9 7 0 5 5 2 8 1 4 4
Contact
Anson Resolution
Mike Dyer
Telephone: 07984 781614
Email: contact@ansonresolution.co.uk
Planning
- Planning service
- Yes
- How the planning service works
-
Our experienced project managers can support all elements of project delivery. Deeply grounded in Agile approaches, we also have considerable experience of: Managing Successful Programmes, Earned Value Management, Risk and Cost Estimating Maturity, Benefit Management and Change Management. An approach can be tailored to meet the specific needs of a customer and the project.
We can perform an end to end assessment to understand the current technology capability and the ability for this capability to change over time. This can include: Application profiling, cloud readiness assessment, network analysis and service management and cyber security maturity assessments. The outputs can be used to prioritise backlogs, to inform technology roadmaps.
We can conduct Discovery phases and Proof of concepts, to explore technical, integration and policy issues, as well as building understanding of overall risk.
Scaling issues can be examined, the potential to deploy common libraries and services, and decoupling the deployment of applications to allow parallel working.
A systematic process can be deployed to identify and analyse the interests of stakeholders. This can be used to define appropriate communication material to meet their needs. A well-executed stakeholder management process will ease approvals of both the business case, and regulatory milestones. - Planning service works with specific services
- No
Training
- Training service provided
- Yes
- How the training service works
- The service can include the assessment of training needs and the identification of the optimum methods for delivery for particular target audiences. Training material can be developed and delivered, either face to face, as e-learning or through mentoring by floor walkers.
- Training is tied to specific services
- No
Setup and migration
- Setup or migration service available
- Yes
- How the setup or migration service works
-
We offer a comprehensive migration management service to execute the project plans.
Readiness assessments can assess both the technical and organisational aspects of the current position and feed into transition planning, ensuring that the overall risk of acceptance is maintained low. Projects can be sequenced to maximize the business benefits, allowing the earliest switch off of legacy equipment.
Solutions can involve Data evaluation, introduce Data Lifecycle Management and conduct Data Cleansing or transformation.
We can provide Programme or Project Management Services. We set standards, wherever possible using automation techniques to ensure they are adhered to, to ensure that any new code or system is secure, performant and operable. Solutions are designed with security to the fore, to achieve he best balance between functionality and security and long-term supportability. - Setup or migration service is for specific cloud services
- Yes
- List of supported services
-
- Azure
- AWS
- Digital Ocean
- Linode
- Oracle
Quality assurance and performance testing
- Quality assurance and performance testing service
- Yes
- How the quality assurance and performance testing works
-
Follows the philosophy of Test Driven Development, we offer a suite of pre and post migration performance testing of applications, websites and networks, including:
• Testing Strategy and Planning. Identify scope, acceptance criteria and metrics.
• Requirement Analysis. Analyse functional and technical specification documents.
• Test Design. Prepare test plan, setup testing environment and tools, develop automatic test Scripts, develop additional test cases and scenarios.
• Test Implementation. Execute tests and record defects, triage results, retest and close defects.
• Test Improvement. Capture Lessons Learned and Best Practices.
Auditing can be provided at each stage of the lifecycle, including:
• Security audits.
• Privacy impact audits.
• Performance audits.
• Policy audits.
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security testing
- Security audit services
- Certified security testers
- No
Ongoing support
- Ongoing support service
- Yes
- Types of service supported
-
- Buyer hosting or software
- Hosting or software provided by your organisation
- How the support service works
-
ITIL Maturity assessment and action plans.
Service Delivery:
• Helpdesk and user portal.
• Monitoring.
• 1/2/3 line support.
Service Desk Integration with the broader business.
Service scope
- Service constraints
- Remote support normally.
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Initial response within one hour, Monday to Friday 0800 to 1800. No response at weekends.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- None or don’t know
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Web chat
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- None or don’t know
- How the web chat support is accessible
- Web chat is based around Slack which can be accessed by any web browser that supports HTML5 or its own desktop client, and can also accessible programmatically via its API.
- Web chat accessibility testing
- Nil.
- Support levels
-
There are two Service levels offered:
• Standard, which provides support during the working day, supported by 24/7 monitoring.
• Enhanced, which allows for long day or 24/7 support where required. Enhanced support incurs additional charges.
All Service Levels include a full ITIL v3 Service Management system including Incident, Problem and Change Management, Release and Deployment Management, Access,
Availability and Capacity Management, Service Measurement and Reporting.
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Developed Vetting (DV)
Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- No
- Other security certifications
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Tackling economic inequality
- Equal opportunity
- Wellbeing
Fighting climate change
We continually monitor the environmental impact of our activities. This monitoring shows that our primary sources of carbon production are cloud consumption and travel. We take account of reported emissions in the selection of our cloud providers and monitor their impact. We have a history of prioritising remote working and other means of minimising travel. When travel is essential, we endeavour to select the most sustainable means, which is generally the train, for UK and European travel.Tackling economic inequality
A core of our organisational development is to invest in the skills and training of our employees. Backed by the necessary resources, this includes achieving recognised qualification in areas of scarcity. We regularly partner with other SMEs to grow the value of the supply chain and provide greater depth of expertise to customers. In addition, we donate at least 1% of turnover to charity each year. Our donations, focus on promoting health and addressing disadvantage and hardship.Equal opportunity
We are fully committed to equality in our recruiting and working practices. Flexible working is fully supported, allowing greater access to employment opportunities. We are pro-active at taking opportunities to make progress for disadvantaged groups.Wellbeing
We closely monitor the wellbeing of our team and have evolved working practices to do so effectively while remote working. We offer flexible working and comprehensive training and development of our people. Our team contribute to the broader community through charity time, which is an individual entitlement.
Pricing
- Price
- £425 to £1,750 a unit a day
- Discount for educational organisations
- No