Brandworkz

Brand Management Software

Brandworkz is the online cloud-based Brand Asset Management System where users access brand guidelines and download images, videos, and documents to their desktops or instantly into MS Office, your websites or other marketing systems. Create on-brand artwork through a templating tool and approve it all through a customisable approval workflow.

Features

  • Content Management System/CMS perfect for Brand Guidelines education
  • Digital Asset Management/DAM to store and distribute your content
  • Web to Publish/W2P dynamic templates to generate on-brand artwork
  • Workflow to control your content creation processes and approvals
  • Web based application accessible from anywhere in the world
  • Open API allowing 3rd party systems to access your content
  • Integrations into Adobe CC, MS Office, Getty Images, Google Docs
  • World Class customer service and support

Benefits

  • Educate all users to become brand ambassadors
  • Accelerate time to market on artwork creation
  • Mitigate risks around licensing with expiry dates
  • Capture consent forms accurately and efficiently
  • Self serve artworking to save design resource
  • Approval tool to accelerate artwork approval
  • Ongoing 24x5 support to grow your offering
  • Detailed reporting to deliver insights and valuable management information
  • Centralise and share content from one secure location
  • On-brand look and feel for an immersive brand experience

Pricing

£0.10 a user a month

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at neil.monhan@brandworkz.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 13

Service ID

5 9 0 0 2 2 6 6 9 6 8 1 7 5 1

Contact

Brandworkz Neil Monahan
Telephone: +44 (0)20 7288 9700
Email: neil.monhan@brandworkz.com

Service scope

Software add-on or extension
Yes, but can also be used as a standalone service
What software services is the service an extension to
Brandworkz is a stand-alone system however we have integrations that allow users to use plugins/Extensions in their MS Office and Adobe CC tools to utilise assets within Brandworkz in those applications instantly.
Cloud deployment model
Private cloud
Service constraints
Brandworkz requires at least a 2MB internet connection and is supported on the latest two releases of Chrome, Firefox and Safari - All current versions of Windows, Macintosh and iOS.
System requirements
  • Internet connection - at least 2MB
  • Chrome, Firefox, Safari browsers no older than five years

User support

Email or online ticketing support
Email or online ticketing
Support response times
Brandworkz offers 24x5 support via our support desk. Our support starts at 9 am Eastern Australia and finishes at 6 pm Los Angeles on Friday. There is no dedicated support on weekends outside of these hours; however, our SLAs are still effective.
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
WCAG 2.1 AA or EN 301 549
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
Yes, at extra cost
Support levels
All clients receive the same world-class 24x5 customer service from Brandworkz. This support covers all 2nd line queries, questions, help requests and general queries. In addition, every client will receive quarterly account meetings with their account manager and support manager. Here we discuss any outstanding issues or questions and address changes in either organisation, process or personnel-wise.

If the questions raised require additional support, the support team have a close relationship with sales, development and product to ensure that the best resolution for you is arrived at as efficiently as possible.
Support available to third parties
Yes

Onboarding and offboarding

Getting started
Brandworkz engages clients with a deep dive consultation to ensure that all requirements are captured and the business and the goals and ambitions of the client are understood. From this consultative discussion, Brandworkz will deliver documentation to fully outline what is to be delivered.

The system is then built based on these captured requirements and discussed in weekly meetings to ensure that system will achieve the stated business aims and objectives.

Once the system is built, Brandworkz will give the client admin's full training to ensure that they can operate and tweak the system as needed. Brandworkz is highly configurable, and this flexibility is provided to admin's to make the changes as needed when they want to make them. To support the admins, we offer 24x5 support and detailed help documentation, monthly training sessions and a dedicated Account Manager.
Service documentation
Yes
Documentation formats
HTML
End-of-contract data extraction
Admins can export all the data from the system themselves manually. Alternatively, we can run an export of all the assets and metadata for the client for a cost. This requires a scope of work as the volume of data may be very large.
End-of-contract process
At the end of the contract, once the client has confirmed that they have received any exported data they require, the system is deleted, and Brandworkz keeps no data. There is no additional cost to delete the system.

Using the service

Web browser interface
Yes
Supported browsers
  • Internet Explorer 11
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
  • Opera
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
Brandworkz is designed to be responsive, so it works well on all screen sizes. There is no functionality difference between screen sizes.
Service interface
No
User support accessibility
WCAG 2.1 AA or EN 301 549
API
Yes
What users can and can't do using the API
Brandworkz has a fully open API (REST/JSON). All actions executed within Brandworkz via a browser can also be executed via the API.

The API can be turned on by Brandworkz Support or the Brandworkz Account Manager for any client. There are call limitations on the API of 20,000 calls per day. If you need to be able to execute more calls than that, Brandworkz will work with you to ensure that the appropriate infrastructure is in place to support your requirements.
API documentation
Yes
API documentation formats
Open API (also known as Swagger)
API sandbox or test environment
Yes
Customisation available
Yes
Description of customisation
The systems administrators can customise numerous elements of the Brandworkz. These elements include:
- Folder structure
- User Interface (UI)
- Content metadata
- User permissions
- Workflows

As part of the onboarding process, admins are trained on how to edit and update the system. The Brandworkz team can also make necessary updates as required.

Scaling

Independence of resources
Brandworkz is a cloud-native, scalable SaaS application hosted on Amazon Web Services:
* All CPU-processing will auto-grow on-demand to effectively unlimited levels via AWS Lambda, and EC2 auto-scaling (web-hosting, image transcoding, video transcoding, etc.)
* Storage can grow unlimited through AWS S3 and EFS
* Networking resources fully virtualised and scalable via AWS ALB, VPC
* Security/intrusion fully virtualised and scalable via AWS Shield, WAS and GuardDuty

Analytics

Service usage metrics
Yes
Metrics types
Brandworkz reporting dashboard has the reports covering the following activities: Logins/users, Assets, Insights into embedded images, folders, CMS pages, albums, web to publish, searches, workflow, all by date, user groups etc...
Reporting types
  • API access
  • Real-time dashboards

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Other security clearance
Government security clearance
Up to Baseline Personnel Security Standard (BPSS)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
European Economic Area (EEA)
User control over data storage and processing locations
No
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 3.0)
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
  • Physical access control, complying with CSA CCM v3.0
  • Physical access control, complying with SSAE-16 / ISAE 3402
  • Physical access control, complying with another standard
  • Encryption of all physical media
Data sanitisation process
Yes
Data sanitisation type
  • Explicit overwriting of storage before reallocation
  • Deleted data can’t be directly accessed
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
Data is stored against assets and users within Brandworkz.

1 - Assets: All system admins can export all metadata from their assets whenever they need it. The export is a CSV file.
2 - Reporting Data: All reports can be exported as a CSV file if you have access to the reporting area.
3 - Users: If a user has permission to access the user management area of the system, then they can export all the users from the system as a CSV file.
Data export formats
CSV
Data import formats
  • CSV
  • Other
Other data import formats
  • XLSX
  • Xml

Data-in-transit protection

Data protection between buyer and supplier networks
TLS (version 1.2 or above)
Data protection within supplier network
TLS (version 1.2 or above)

Availability and resilience

Guaranteed availability
We offer 99.9% availability ("Guaranteed Availability") throughout any 12 months measured as HTTP response availability of the login page of your web application, including service credits.
Approach to resilience
Brandworkz is hosted on Amazon Web Services' highly resilient, available infrastructure.
All core Brandworkz services are clustered in an active cluster spanning at least two data centres.
All uploaded files/storage is replicated to a separate data centre in near-real-time.
All database data is clustered and synced between two different data centres.
We utilise Amazon Cloudfront CDN to accelerate download speeds across the globe and provide further redundancy.
Outage reporting
Outages are reported via email to all registered sysadmins if outages go past 15 minutes. There is also a hosting status web page available to existing customers.

Identity and authentication

User authentication needed
Yes
User authentication
  • 2-factor authentication
  • Public key authentication (including by TLS client certificate)
  • Identity federation with existing provider (for example Google Apps)
  • Username or password
Access restrictions in management interfaces and support channels
Access for all Brandworkz users is strictly and simply controllable by your admins managing the system.
Built-in support for SAML SSO, e.g. through Azure AD or OKTA.
Granular user permissions are easily created and managed by setting up appropriate groups with associated permissions.
A user's permission will be determined by the group they are added to. However, certain rights can be granted to individual users, e.g., allowing an administrator to manage workflows, users and metadata.
Second-line support is available/limited to nominated, named administrators.
Access restriction testing frequency
At least every 6 months
Management access authentication
  • 2-factor authentication
  • Public key authentication (including by TLS client certificate)

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
At least 12 months
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
Between 6 months and 12 months

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
Approachable Certification (UKAS accredited)
ISO/IEC 27001 accreditation date
21/01/2020 (for 3 years with annual surveillance audits)
What the ISO/IEC 27001 doesn’t cover
N/A.
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Cyber essentials plus
No
Other security certifications
No

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
Brandworkz is ISO27001 accredited with the following and more in place:

Clauses
BW-IS-DOC0 - ISMS Manual
BW-IS-R-4.3 - Schedule of Interested Parties, Legal and Contractual Requirements
BW-IS-5.2 - Information Security Policy
BW-IS-6 - Information Security Risk Management
BW-IS-R-6 - Information Security Risk Assessment and SoA
BW-IS-R-6.2 - Information Security Objectives
BW-IS-7.2 - Competence Procedure
BW-IS-R-7.4 - Communication Plan
BW-IS-R-9.2 - ISMS Scheduled Activities
BW-IS-R-9.2b - Internal Audit Report Template
BW-IS-R-9.3 - Management Review Template
BW-IS-R-10 - Management Action Log

Controls
BW-IS-C-6.2 - Mobile Device and Teleworking Policy
BW-IS-C-6.1.5 -Project Management Policy
BW-IS-C-7 - Human Resource - Security
BW-IS-C-R-7a - Induction and New Starter Checklist
BW-IS-C-R-7b - Employee Termination and Change of Employment Checklist
BW-IS-C-8 - Asset Management Policy
BW-IS-C-8.1.3 - Acceptable Use Policy
BW-IS-C-R-8.3.2 - External Media Record
BW-IS-C-R-8c - User Agreement
BW-IS-C-9 - Access Control Policy
BW-IS-C-10 - Cryptographic Policy
BW-IS-C-R-11.2 - Disposals Record
BW-IS-C-12 - Operating procedures for IT Management
BW-IS-C-13 - Network and Information Transfer Policy
BW-IS-C-14.1 - System Acquisition, Development and Maintenance Policy
BW-IS-C-14.2 - Secure System Engineering Principles
BW-IS-C-15 - Supplier Third Party Management Policy
BW-IS-C-R-15b - Supplier Due Diligence Assessment Form
BW-IS-C-16 - Information Security Incident Management Policy
BW-IS-C-17 - Business Continuity Plan

Operational security

Configuration and change management standard
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Configuration and change management approach
Part of our ISO-27001 certification/policies.
Included processes:
* Software features/changes
* Infrastructure changes
* Internal projects
* Employee computer configs
* HR (joiners, leavers, vetting)

All of the above are risk-assessed for Confidentiality, Integrity, Availability
Vulnerability management type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach
Daily external web-app vulnerability scanning through external service (tenable).
Daily internal vulnerability scanning at the server/OS level via AWS Inspector.
Internal source code scanning on every commit (Sonar Cube).

Speed of patching depends on severity and risk of adverse impact.
Protective monitoring type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Protective monitoring approach
Ongoing, near-real-time Threat Detection at network and server level through AWS GuardDuty (including threat feeds from Crowdstrike and Proofpoint). Also prevention through AWS WAS.
Anti-malware at server level through Bitdefender GravityZone

Response time depends on severity. If critical then immediate initiation of mitigation and fix assessment/timescales.
Incident management type
Supplier-defined controls
Incident management approach
Part of our ISO 27001 ISMS.
For more information please request: BW-IS-C-16 - Information Security Incident Management Policy

Secure development

Approach to secure software development best practice
Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)

Public sector networks

Connection to public sector networks
No

Social Value

Fighting climate change

Fighting climate change

We have various internal policies for our staff to minimise our environmental impact, e.g. Repair, Reuse, Recycle. Don't print to paper unless absolutely necessary. Configure IT equipment to minimise power use when not used.

Our office is installed with motion sensors on all lighting to switch off within 15 mins if no motion is detected.

In terms of our web-app hosting, which is currently our most significant carbon/environmental footprint, we are continually optimising our software to use AWS services that are on a "use as you go" basis - e.g. AWS Lambda, as opposed to having servers running permanently but which are also mainly idling outside of peak traffic hours.
Covid-19 recovery

Covid-19 recovery

We have several measures on this front:
* Encourage a part-time return to office policy to increase teamwork and assist the local economy around our office location.
* Flexible home working including efficient IT setups for all staff that either contract Covid themselves but can still work or have been in close contact with somebody that has had covid.
Equal opportunity

Equal opportunity

The Company is an equal opportunity employer and is fully committed to a policy of treating all its employees and job applicants equally.

The Company will take all reasonable steps to employ, train and promote employees based on their experience, abilities and qualifications without regard to race, colour, ethnic origin, nationality, national origin, religion or belief, sex, sexual orientation, marital status, age or disability.

The recruitment process will be conducted in such a way as to result in the selection of the most suitable person for the job in terms of experience, abilities and qualifications. The Company is committed to applying its equal opportunities policy statement at all stages of recruitment and selection.

Advertisements will encourage applications from all suitably qualified and experienced people. When advertising job vacancies, to attract applications from all sections of the community, the Company will, as far as reasonably practicable.

The Company is committed to equal pay in employment. It believes male and female employees should receive equal compensation for work rated as equivalent or work of equal value. To achieve this, the Company will endeavour to maintain a pay system that is transparent, free from bias and based on objective criteria.

Pricing

Price
£0.10 a user a month
Discount for educational organisations
No
Free trial available
Yes
Description of free trial
A trial/demo site can be set up if needed for a pre-agreed defined period of time as well as our Free option of Essentials.
Link to free trial
https://checkout.brandworkz.com/your-account

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at neil.monhan@brandworkz.com. Tell them what format you need. It will help if you say what assistive technology you use.