Enspirio
ICONI's Enspirio is a secure, cloud-based platform enabling organisations to easily deliver and manage structured support programmes. Configurable and modular, it allows providers to customise workflows, dashboards, and reporting without technical expertise - ensuring flexibility, compliance, and scalability across services including Employability, Health & Wellbeing, Skills & Learning, and Rehabilitation.
Features
- Configurable Journeys, design and adapt support pathways without coding
- Document Generation, create branded documents from live data with e-signature
- Secure Role-Based Access, granular permissions, SSO, and compliance audit trails
- Integrated Communication Tools, SMS, email, and calendar with automated reminders
- API-First Architecture, integrate seamlessly with external systems / BI tools
- Advanced Data Management, import, transform, validate data with configurable rules
- Organisation CRM, manage partner organisation profiles, vacancies, and interactions
- Supply Chain Management, manage organisations, locations, expenses, and performance reporting
- Participant Portal, secure self-service access to meetings, actions and documents.
- Real-Time Reporting, customisable dashboards with drill-down analytics and export options
Benefits
- Reduce administrative burden with automation and streamlined processes
- Improve compliance through secure workflows and audit-ready reporting
- Enable faster programme mobilisation with configurable, cloud-based setup
- Strengthen data security with ISO27001 compliance and Azure hosting
- Empower participants with self-service access to progress and documents
- Deliver real-time insights to optimise decision-making and resource allocation
- Support multiple programmes within one scalable, integrated platform
- Increase efficiency by eliminating paper-based processes and manual tasks
- Reduce risk with full audit trails and secure e-signatures
- Future-proof service delivery with continual platform updates and enhancements
Pricing
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
6 9 9 8 9 6 9 8 3 6 0 1 5 1 5
Contact
ICONI SOFTWARE LIMITED
Dan Hunt
Telephone: 028 90319300
Email: d.hunt@iconi.co.uk
About your service
- Service categories
-
Applications
Production and operations
- Other operations
Service industry and public sector operations
- Healthcare
- Education
- Public Order and Safety
- Social Security Administration
- Adult Social Care
- Children's Social Care
- Other
- Multi cloud support
- No
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Service constraints
-
Must require an internet connection, no offline functionality
Must be accessed from a UK IP Address (Let us know if you need access outside of the UK) - System requirements
- Modern web browser such as Chrome, Edge, or Firefox required.
User support
- Email or online ticketing support
- Yes
- Support response times
-
Standard support response times are:
- 1 hour: Critical faults rendering the Software inoperable e.g. service down.
- 4 Hours: Serious faults where any function/section of the application is inoperable or any major functionality is impaired.
- 8 Hours: Minor faults with updates to the application being required or minor functionality impaired
Support is Monday - Friday (9am-5pm). - User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
Enspirio provides comprehensive support for all customers as part of the licence cost. There are no additional charges for support.
All licence tiers include:
Standard helpdesk support via email and phone during business hours.
Access to our online knowledge base.
Incident management, troubleshooting, and guidance on platform usage.
Professional and Enterprise licence tiers additionally include:
Escalation Path with a dedicated Account Manager for critical issues.
Quarterly Service Reviews conducted by our Customer Success Team.
Basic licence tier does not include these additional services. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- ICONI will setup your Enspirio tenant and provide access to authorised administrative users. Our team will provide an overview of the Enspirio platform covering the user interface, main features, support journey and reporting, followed by ICONI’s support channels and main contacts.
- Service documentation
- Yes
- Documentation formats
- End-of-contract data extraction
-
At the end of the contract, customers retain full control over their data. Enspirio provides multiple options to ensure a smooth and secure extraction process:
Open APIs: Enspirio offers comprehensive Open APIs that allow customers to access and extract their data. This enables integration with external systems or migration to alternative solutions without restrictions.
Export Reporting Suite: Customers can use the built-in Export Reporting functionality to generate and download data in commonly used formats (CSV). - End-of-contract process
- At end of contract an exit plan will be agreed, customers extract their data and all customer data deleted in line with data security and data protection requirements.
- Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- No differences, as the solution is fully responsive.
- Service interface
- Yes
- User support accessibility
- WCAG 2.2 AA
- Description of service interface
- We have an expansive set of Rest APIs to mimic every action a GUI User can do. We also have File Based interfaces to support import and export requests.
- Accessibility standards
- WCAG 2.2 AA
- Accessibility testing
- Our platform has undergone testing from an external testing company for accessibility. Our interfaces have been used successfully with the use of screenreaders.
- API
- Yes
- What users can and can't do using the API
- The solution has a suite of APIs that can be utilised. Changes via API are restricted to basic activity logging. Some APIs are restricted to volume settings.
- API documentation
- Yes
- API documentation formats
- Open API (also known as Swagger)
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
Enspirio is highly configurable and customisable by design, enabling organisations to tailor the platform to their unique workflows without technical expertise or developer intervention.
What can be customised:
Almost every aspect of the platform can be configured, including engagement journeys, workflows, dashboards, reporting, user roles, document templates, assessments, communication settings, and programme-specific features.
How users can customise:
Through an intuitive, no-code configuration interface within the programme builder, allowing authorised users to enable, disable, and adapt features quickly.
Who can customise:
Administrators with appropriate role-based permissions can configure the platform to meet organisational and programme requirements.
Enspirio’s flexibility spans across most features, making it suitable for small-scale projects through to large, multi-contract implementations
Scaling
- Independence of resources
- A load balance service is in place.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Regular Customer Success APP insights. uptime
- Reporting types
-
- Regular reports
- Reports on request
- Resource tagging
- Yes
- FOCUS resource tagging
- Yes
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Physical access control, complying with SSAE-18 / ISAE 3402
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Explicit overwriting of storage before reallocation / Secure Erase
Data importing and exporting
- Data export approach
-
Enspirio provides flexible and user-friendly options for exporting data at any time during the contract:
Open APIs:
Enspirio offers comprehensive Open APIs that enable customers to access and extract their data. This allows seamless integration with external systems or migration to other platforms without restrictions.
Export Reporting Suite:
Customers can utilise the built-in Export Reporting functionality to generate and download complete datasets in commonly used formats such as CSV.
Direct Dashboard Export:
Users can export data directly from dashboards into CSV format, enabling quick and convenient access to key reports and insights without additional configuration - Data export formats
-
- CSV
- Other
- Other data export formats
- Json
- Data import formats
-
- CSV
- Other
- Other data import formats
- Json
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
- Outside of planned maintenance, ICONI shall use commercially reasonable endeavours to make Enspirio accessible 99.9% of the time in any single calendar month. In the event of service disruption, our customer support team is available to provide assistance and ensure issues are resolved promptly. Our customer support team will directly discuss and agree any service credits due on a month by month basis.
- Approach to resilience
- Available on request.
- Outage reporting
- Enspirio is monitored by our Cloud Support Team and any outages are immediately reported to our Customer Success Team who escalate to and inform key users of the service.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Dedicated link (for example VPN)
- Username or password
- Access restrictions in management interfaces and support channels
- Access controls are governed on a principle of least-privilage which is controlled via Role Based Access Control (RBAC) and Privilaged Identity Management (PIM)
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Dedicated link (for example VPN)
- Username or password
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users have access to real-time audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- Security is governed on a principle of least-privilage which is controlled via Role Based Access Control (RBAC) and Privilaged Identity Management (PIM)
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
-
ICONI adopts a robust configuration and change management approach to ensure the integrity and stability of our solutions and services:
1. Changes are raised to ICONI’s Change Management Team with rational and expected outcome.
2. Analysis of expected impact, initial design and estimated of cost of change.
3. Changes are reviewed and approved by Change Advisory Board (CAB).
4. Approved Changes are scheduled and then implemented with User Acceptance Testing.
5. Customers sign off the Change which is released to production with associated release notes.
ICONI ensure that all changes are managed in a controlled, secure, and efficient manner. - Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
ICONI’s vulnerability management approach is a core component of our ongoing cybersecurity strategy:
1. Continuous scan of systems using automated tools to identify/detect vulnerabilities including independent penetration testing.
2. If identified vulnerabilities are assessed for their severity and impact
3. Vulnerabilities are prioritised based on their severity, impact and current threat as this ensures that we urgently address the most critical vulnerabilities.
4. Actions to remediate identified vulnerabilities are implemented according to their priority (patch management, configuration changes etc.).
5. On completion of remediation, we verify the measures taken and monitor the systems for any recurrence or new vulnerabilities. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
-
ICONI provides a proactive protective, real time monitoring approach to detect, analyse/respond to potential security threats and issues:
1. We utilise Azure monitoring tools to scan the cloud infrastructure and applications for unusual activities/threats.
2. Activity logs are generated including user activity, system events and network traffic. Logs are analysed to report on anomalies/security issues.
3. If a threat is detected, ICONI’s Cloud Team is alerted to negate the threat which may involve isolating affected systems, further investigations and mitigating the risk of the threat.
4. Reports are prepared to document monitoring activities and findings, ensuring transparency and accountability. - Incident management type
- Supplier-defined controls
- Incident management approach
-
ICONI’s incident management approach ensures that we effectively handle any security or operational incidents:
1. Upon detection, the incident is logged and categorised based on its severity.
2. ICONI’s Cloud Team respond to the incident and undertakes an investigation to understand its root cause and scope.
3. Solutions/corrective actions are implemented to resolve the incident (deploying patches, adjusting security controls, or restarting services).
4. A review to assess how the incident was handled and mitigated is carried out with lessons learned.
5. Timely communication with all stakeholders is maintained to ensure they are informed of the status and actions taken. - Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- No
- Free trial available
- Yes
- Description of free trial
- ICONI provide free trial accounts that replicate production functionality, though they may not run at full capacity or include every feature. These two‑week trial accounts allow organisations to explore features, test workflows and assess suitability. Trial accounts are available upon request.
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 10%
- Between £500,001 and £1,000,000
- 20%
- Between £1,000,001 and £2,500,000
- 20%
- Between £2,500,001 and £5,000,000
- 20%
- Over £5,000,001
- 20%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- SGS UK
- ISO/IEC 27001 accreditation date
- Saturday 23 September 2023
- What the ISO/IEC 27001 doesn’t cover
- None.
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- SGS UK
- ISO 9001 accreditation date
- Wednesday 30 August 2023
- What the ISO 9001 doesn’t cover
- None.
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 3d8ba4a3-1664-4f37-aa57-ff6684c17c14
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 322dda30-28d0-4099-bda1-1738f565ea5b
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Plans to engage the contract workforce in deciding the most important workplace issues to address
- Monitoring of employee engagement rates (by protected characteristic) and, where necessary, the development of actions to ensure all voices are heard across the diversity of the workforce
- Employment contracts that reflect actual hours worked; steps taken to ensure employees understand their contracts and have the ability to review and adjust them if actual hours regularly exceed contracted hours
- Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Activities to cascade good practice on fair working conditions throughout the supply chain
- Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
- Understanding of in-work progression issues affecting the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
- Volunteering opportunities for staff
- Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
- Measures to identify, mitigate and manage modern slavery risks relating to the contract and how these will be implemented
- Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
- How these flow down the supply chain and are monitored Illustrative examples include reporting, site visits, audits, etc.
- How to ensure business decisions re: price/cost, short lead times, payment timescales do not create modern slavery risks in the supply chain
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Understanding of the types of businesses in the market and the level of participation by new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Activities that demonstrate a collaborative way to work with a diverse range of businesses as part of the supply chain
- Ensuring accessibility to contracting and subcontracting opportunities for disabled business owners and employees
- Understanding of local demographics, needs and opportunities for the co-design of the goods, services and works to be delivered under the contract
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 6: Employment and training: For those who face barriers to employment
- Understanding of the issues affecting the representation of disabled people in the workforce in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
- Working conditions which promote an inclusive working environment and promote retention and progression
- Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.
- Understanding of issues relating to entering the contract workforce
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
- Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
-