Skip to main content

Help us improve the Digital Marketplace - send your feedback

CACI UK Ltd

Insite (Hosted) and Insite Everywhere Geographical Information System (GIS) Platform

InSite (hosted) & InSite Everywhere is a Geographic Information System (GIS) – a secure hosted or cloud application combining licensed and imported datasets (e.g. household, individual data), analysis, mapping and reporting. It enables definition of geographic areas and analysis of data such as the population who live and work there.

Features

  • Secure online web-enabled service, hosted cloud GIS platform
  • Access to administative and postal geogrpahies
  • Create drivetime, radii and bespoke catchments
  • Unlimited coding and profiling
  • Thematic mapping functionality, ability to create density and penetration maps
  • Clean, update and geocode data
  • Experienced Account Director and Account Manager
  • Training support included
  • Access to helpdesk and expert technical support
  • Analyse open, CACI and customer data with import/export functionality

Benefits

  • Increased understanding of evolving communities to inform decision-making
  • Consistent view of demographic, lifestyle and behavioural characteristics of residents
  • Local intelligence to better understand the needs of the community
  • Prioritise resources and delivery of services to achieve efficiency savings
  • An understanding of the health and wellbeing of residents
  • Ability to assess the wider determinants of health
  • Detailed understanding of digital connectivity and online/offline behaviours
  • Support effective engagement that reflects channel, contact and marketing preferences
  • Understanding of gross household, disposable, equivalised and lifestage incomes
  • Publicly publishing and sharing permissions included

Pricing

£14,000 to £15,000 a user

  • Free trial available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at digital.marketplace@caci.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 14

Service ID

8 1 0 2 8 8 0 7 1 8 5 4 8 9 8

Contact

CACI UK Ltd CACI Digital Marketplace Sales Team
Telephone: 0207 602 6000
Email: digital.marketplace@caci.co.uk

Service scope

Software add-on or extension
No
Cloud deployment model
Private cloud
Service constraints
No
System requirements
Appropriate browser enabled device and connection to the internet

User support

Email or online ticketing support
Email or online ticketing
Support response times
CACI responds to questions on average within one hour, or less, from reciept during office hours. Resolution, if not achieved immediately when responding, is typically within 24-48 hours depending on the complexity of the enquiry. Enquiries logged outside of office hours will be quickly addressed on the next working day.
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
Yes, at extra cost
Support levels
CACI provides comprehensive support as standard for all InSite Everywhere customers. For the duration of the license term CACI provides 1 x two hour training session per annum.

Initially, from contract start, support is provided in the form of training to users to ensure they can effectively use InSite Everywhere. Depending on the number and location of users that require training this can be held at CACI’s Head Office, in London, or onsite. Sessions are designed to be interactive and are conducted by one of CACI’s experienced consultants. Subsequent training sessions throughout the licence term will review how the users are utilising InSite Everywhere to maximise the value delivered.

InSite Everywhere customers will have access to a single point of contact for all enquiries. An Account Manager will field all general or technical enquiries, and depending on the nature of the enquiry, will either resolve directly, pass to the helpdesk or escalate to CACI’s InSite Everywhere technical team of experts. Customers can make contact via telephone or email.
Support available to third parties
Yes

Onboarding and offboarding

Getting started
To ensure users maximise the value of InSite (hosted) and InSite Everywhere and the associated licenced datasets, CACI includes training as standard. Depending on the number of users and location this can be held virtually (e.g. via Teams), at CACI’s Head Office, in London, or onsite.

To embed the required knowledge for users to effectively use InSite (hosted) and InSite Everywhere and the associated licenced datasets training is designed to be interactive and are conducted by one of CACI’s experienced consultants, with in-depth knowledge of the solution. Training will last for approximately 2 hours. User Guides will be supplied, and can either be provided before or after the training.

Follow-on support is available for the life of the licence term - two hours per annum for the duration of the licence term, and can be used to review how the users are utilising InSite (hosted) and InSite Everywhere or to train new users.
Service documentation
Yes
Documentation formats
  • PDF
  • Other
Other documentation formats
  • Microsoft Word
  • Microsoft Excel
  • Microsoft Powerpoint
End-of-contract data extraction
At the end of the contract InSite (hosted) and InSite Everywhere will automatically switch off. Users are contractually required to remove and delete all data with the exception of aggregated data that may have been included as part of published reports and / or maps in line with CACI's publishing and sharing terms and conditions.

CACI will issue a Termination Letter at the end of the licence term for the customer to sign and return. This formally and legally terminates the agreement and confirms compliance with the contract termination terms and conditions.
End-of-contract process
Should a customer choose not to renew their license, it is a requirement for the customer to serve notice (in writing or via email) 90 days before the end of the agreement. As the end of the agreement approaches CACI will issue a termination letter for the customer to sign and return formalising the end of the agreement.

The customer will be required to delete / destroy all deliverables of InSite (hosted) and InSite Everywhere at the end of the last day of the agreement. The customers access to InSite (hosted) and InSite Everywhere will then be switched off and all user account data will be deleted.

Using the service

Web browser interface
Yes
Supported browsers
  • Internet Explorer 11
  • Microsoft Edge
  • Firefox
  • Chrome
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
None - InSite (hosted) and InSite Everywhere allows users to access the tool wherever they are. InSite (hosted) and InSite Everywhere has been optimised to provide a seamless experience across desktop, laptop and tablet devices. In addition, InSite Everywhere has been optimised specifically for mobile devices.
Service interface
Yes
User support accessibility
WCAG 2.1 AAA
Description of service interface
InSite (hosted) and InSite Everywhere is designed to work on an internet browser with and without a touch interface. All operations are either typed into input boxes or selections made through clickable menu items.
Accessibility standards
WCAG 2.1 AAA
Accessibility testing
Internal testing has been carried out during the development of InSite (hosted) and InSite Everywhere to optimise access and usability for customers, i.e. colour schemes, fonts and page layouts. InSite (hosted) and InSite Everywhere is fully compatible with the accessibility features of the leading web browsers; Microsoft Edge, Safari, Firefox and Chrome. CACI has experience of tailoring visual displays for users with visual impairment, and discuss specific requirements on a customer-by-customer basis.
API
Yes
What users can and can't do using the API
DarkBlue APIs provide a secure interface from the platform. Allowing you to retrieve in real-time, relevant information about your records.
The APIs follow the REST conventions, Buyers can get started making requests, after successful authentication.
To authenticate buyers will need first to register and request API keys. The set-up process and any requests for changes must be conducted in liaison with DArkBlue’s Technical Team.
Usage limitations are based on a combination of CACI’s own terms of use as well as the buyers’ requirements, the limitations will be upon request.
API documentation
Yes
API documentation formats
HTML
API sandbox or test environment
Yes
Customisation available
Yes
Description of customisation
Users can customise InSite Everywhere by adding additional datasets such as:

- CACI's consumer segmentations - Acorn and Household Acorn
- CACI's health and wellbeing segmentation - Wellbeing Acorn
- CACI's gross household income - Paycheck Family of products
- CACI's house price dataset - StreetValue
- CACI's lifestyle database - Ocean
- CACI's environmental, social and corporate governance (ESG) propensity scores - ESG Score
- CACI's single factual view of the UK property market - Address Spine

Users can customise their service for an additional fee via a contract amendment. Upon receipt of the signed contract amendment CACI will update the service for users to access. Please allow up to five working days for the service to be updated with the contracted customisations. Customers cannot customise their service themselves.

Scaling

Independence of resources
CACI operates internal processes to ensure resources are matched to meet demand.

Services are provided from systems and platforms that are highly resilient, scalable and able to adapt to all levels of demand.

Analytics

Service usage metrics
Yes
Metrics types
Successful/failed logons
Session duration
Password resets
Password changes
Reporting types
Reports on request

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Conforms to BS7858:2019
Government security clearance
Up to Baseline Personnel Security Standard (BPSS)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
United Kingdom
User control over data storage and processing locations
No
Datacentre security standards
Supplier-defined controls
Penetration testing frequency
At least once a year
Penetration testing approach
‘IT Health Check’ performed by a Tigerscheme qualified provider or a CREST-approved service provider
Protecting data at rest
Other
Other data at rest protection approach
A Data Loss Prevention (DLP) solution is in place which monitors all endpoints, identifies any attempts to download or move personal data, and alerts administrators should any such event be detected.

All data, regardless of storage location - on premise or in the cloud - is encrypted at rest using AES-256.

CACI has an enterprise level Data Loss Prevention (DLP) solution in place which monitors all endpoints, identifies attempts to download/move personal data, and alerts administrators should any such event be detected.
Data sanitisation process
Yes
Data sanitisation type
Explicit overwriting of storage before reallocation
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
InSite (hosted) and InSite Everywhere allows users to define at a granular level the data they wish to export. Data can extracted in either .xls or .csv formats.
Data export formats
  • CSV
  • Other
Other data export formats
XLS
Data import formats
  • CSV
  • Other
Other data import formats
  • Fixed width text file
  • Delimited text file

Data-in-transit protection

Data protection between buyer and supplier networks
TLS (version 1.2 or above)
Data protection within supplier network
  • TLS (version 1.2 or above)
  • Other
Other protection within supplier network
InSite (hosted) is protected in a segregated environment with industry leading firewalls and WAF, on n+1 enterprise architecture infrastructure in a UK data centre, with daily encrypted backups stored off-site.

InSite Everywhere is hosted within a secure AWS environment and supported from CACI’s Head Office and Tier-3 Co-location data centre. It is protected from unauthorised network access by AWS Web Application Firewall and AWS monitoring services. Automation detects anomalies, suspicious activity, and security incidents, using Amazon GuardDuty, AWS Config and host-based endpoint protection.

Systems/data are protected by IPS, anti-virus/anti-malware solutions.

Data access is tightly restricted, observing principle of least privilege.

Availability and resilience

Guaranteed availability
InSite (hosted) and InSite Everywhere availability for the last 12 months has been over 99%. Where customers require a Service Level Agreement (SLA) and respective Key Performance Indicators (KPIs), these are discussed and agreed at contract signature to align service availability and performance to the customers needs.

The InSite (Hosted) service is provided from a tier-3 data centre that hosts critical national infrstructure.

InSite Everywhere is provided using extremely resilient AWS Amazon Web Services (AWS) components and infrastructure

Anticipated downtime for upgrades is agreed in advance with customers to avoid any impact during busy periods. This proactive approach enables communications to be sent to the user base prior to the release of upgrades or patches.
Approach to resilience
InSite (Hosted) is highly resilient and hosted within a Tier-3 data centre data proving a very high degree of redundancy including:
Multiple independent network fibre rings provide redundancy in connectivity
N+1 Close Control Unit air conditioning provides redundancy in internal environment management Multiple, disparate 20Mva power feeds from a local power station vastly reduce the likelihood of a power interruption
In the unlikely event of a power interruption, N+N Uninterruptable Power Supply (UPS) systems, combined with three backup diesel generators that are kept warm and able to take up the load from the UPS within five minutes, provide a great degree of redundancy to the power supply.
The solution utilises HP blade server architecture with redundant blades, power, and networks.
CACI’s enterprise storage solution is architected to eliminate any single point of failure (hardware or software) in the system. To mitigate single points of failure at the hardware layer, the system is designed with redundant components, including redundant power domains.

InSite Everywhere is provided using extremely resilient AWS Amazon Web Services (AWS) components and infrastructure

CACI use highly resilient cloud-based collaboration tools such as Outlook, SharePoint, and Teams to provide support to our services.
Outage reporting
In the unlikely event of service outage an email alert would be sent to the user(s).

Identity and authentication

User authentication needed
Yes
User authentication
2-factor authentication
Access restrictions in management interfaces and support channels
Identity/access management controls are in place within the hosting environment restricting personnel access to administrative tools, and ensuring authorised personnel have the appropriate level of access.

• Each account created has a unique ID.
• Multi-factor authentication is standard.
• Authentication/administrative activities are logged within the instance.
• Sessions are timed out after a period of inactivity which can be defined systems administrators.
On premise hosted solutions supports single-sign-on (SSO) where customers have Azure Active Directory.

Customers control user management to their solution.
Database access privileges and role-based user access can be assigned using the the service system administration module.
Access restriction testing frequency
At least once a year
Management access authentication
  • 2-factor authentication
  • Dedicated link (for example VPN)
  • Username or password
  • Other
Description of management access authentication
Multi-factor authentication is required for administrate access or restricted to internal machines.
Only a small number of consultants are provided with special access privileged, these are subject to a technical competency assessment and are in accordance with our privileged access rights and segregation of duties policies.
Administrators have each been assigned a separate account for privileged account activities.
Comprehensive security monitoring on all key configuration, user, and administrator. Daily peer reviews are conducted on Change Auditor Software alerts and all anomalies are investigated.

Audit information for users

Access to user activity audit information
Users contact the support team to get audit information
How long user audit data is stored for
At least 12 months
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
At least 12 months

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
BSI
ISO/IEC 27001 accreditation date
Original Registration Date:11th April 2006 – last re-certification date was on the 6th July 2021 .
What the ISO/IEC 27001 doesn’t cover
Our 27001 certification covers all CACI services, offices, and data centres.
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Cyber essentials plus
Yes
Other security certifications
Yes
Any other security certifications
  • Registered with the ICO - Network and Information Systems Directive
  • Data Seal - DS 27001/1-2014
  • ISO 9001 - this includes additional elements regarding security

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
CACI have a comprehensive suite of security policies that uses the ISO27001 standard as a baseline. The policy is owned by CACI's Executive Management Team which is an executive level body, and which assumes ultimate responsibility. The ISO standard coverage includes:

- Organisation and Management
- Information Security
- Asset Classification
- Physical and Environmental Security
- Communications and Operations Management
- System Access
- Systems Development and Maintenance
- Compliance
- Personnel and Provisioning
- Business Continuity Management
- Third Party Management.

CACI’s Information security objectives are defined at board level and managed day to day by the Security team (all qualified ISO27001 lead auditors.) They report to the Chief Information Security Officer, who holds overall responsibility for information security.

Information security and data privacy training is provided upon induction. On-going training and updates are provided throughout employment.

Staff sit an annual exam to demonstrate their security and data privacy awareness and competency.

Annual phishing and social engineering awareness training, and monthly phishing tests, are conducted by an external training and testing partner.

All Information security policies and training presentations are published on our intranet site.

Operational security

Configuration and change management standard
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Configuration and change management approach
A documented change management system forms part of our ISMS. All major and significant changes are peer reviewed and must be approved by the change advisory board (CAB) which delivers support to a change management team by approving requested changes and assisting in the assessment and prioritisation of changes.

All changes are subject to our Change Control Policy. Where there is the possibility of an impact to user activity, the appropriate stakeholders are notified for feedback.

The change must then be forwarded to Change managers for CAB approval, who may append plans when appropriate.
Vulnerability management type
Supplier-defined controls
Vulnerability management approach
CACI has a comprehensive vulnerability management program that includes conducting weekly vulnerability scans on critical systems and applications.
New patches are promptly risk assessed and prioritised based on the severity of the vulnerability and the threat intelligence available.
Where an Emergency patch poses an imminent threat to the network it is installed without undue delay.
All other Windows patches are installed within 14 days of receipt.
Our system administrators subscribe to alerts and publications to ensure new are emerging threats are countered promptly and effectively and that new Technologies and security best practices are assessed and adopted where appropriate.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
CACI use Checkpoint firewalls with IPS blade installed with. IPS subscriptions.

Active Directory event logging is configured on Windows system, and configured to capture appropriate events to prevent security incidents/ malpractices.

OpenNMS Meridian and checkmk utilised for network monitoring.

Zabbix and HPE OneView used for server monitoring.

Checkpoint SmartCenter and HPE OneView used to monitor systems and alert administrators of security/capacity/resource problems.

Quest Change Auditor monitors all configuration/user/administrator changes. Daily reviews are conducted.

Antivirus logs centrally processed and alerts sent.

O365 vlogs collated into Microsoft Cloud App Security. Alerts are reviewed.

Windows server event logs are shipped to logging server.
Incident management type
Supplier-defined controls
Incident management approach
All employees are required to report any real, perceived, or potential security incidents that may affect the confidentiality, integrity, or availability of data.
All Security Incidents are recorded in-line with our Security Incident Policy and Response Procedure, for each incident a root cause analysis is conducted, a corrective action undertaken, and a preventative action will be implemented to prevent or reduce the probability of the incident reoccurring in the future.
CACI’s cyber security management programme includes cyber incident response plans, advanced technical controls, operation resilience and business continuity management to minimise the impact of a cyber-security attack or incident

Secure development

Approach to secure software development best practice
Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)

Public sector networks

Connection to public sector networks
No

Social Value

Social Value

Social Value

  • Fighting climate change
  • Tackling economic inequality
  • Equal opportunity
  • Wellbeing

Fighting climate change

As a supplier primarily of professional IT services, CACI’s environmental impact is minimal. However, we are constantly looking at how we can operate more efficiently in our fight towards climate change. We are working towards a Net Zero Carbon business model through our delivery to our customers as promoting this to our supply chain.
This commitment is demonstrated by our achievement of ISO14001 accreditation, which we have held for nine years. To attain this standard, we ensure our Environment Management System (EMS) met the following requirements:
-Awareness of environmental impact through procedures and controls
-Acceptance of responsibility through environmental management systems
-Reducing harmful impacts via environmental policies
-Displaying community responsibility via staff training and awareness

We are fully committed to working towards a circular economy approach and where practically possible CACI select the most sustainable means to operate its facilities We remain aware of any and all opportunities to share, lease, reuse, repair, refurbish and recycle existing materials and products. That includes using recycled paper, enforcing double sided printing, and using Energy Star devices. Our recycling policy includes energy/water consumption, waste materials and paper use.
CACI has an agreed Carbon Reduction Plan (CRP) which is in implementation and is published on our website. This includes a set of carbon reduction targets up until 2040, with a baseline period set from July 2020 to June 2021.

Tackling economic inequality

CACI is dedicated to creating employment opportunities, working with local suppliers and hiring local people. We adjust our recruitment and training processes to focus on attributes rather than qualifications, which could exclude those from a disadvantaged background or deprived areas. Inclusivity and accessibility are encouraged via unconscious bias education and positive and inclusive designs, accessible capabilities, and inclusivity in gathering requirements for digital services. For example, we work closely with the National Autistic Society and Autism at Work to create an inclusive recruitment process, actively supporting neurodiverse candidates to flourish.
CACI works with a number of outreach organisations to develop and attract individuals from minority groups into the cyber security sector, including CyberFirst. A number of our employees volunteer as Ambassadors to this NCSC led government outreach programme. This is a reflection of our belief in the programme’s mission, to develop a sustainable and diverse talent pipeline into the cyber security industry. The majority of the programme’s focus is on students in UK schools, to improve issues with massive student dropout from IT education.
CACI has pledged to promote equality of opportunity within our supply chain, and work with a diverse range, including specialist Small and Medium Enterprise (SME)s. Our network is diverse and wide ranging in terms of skill set, age of business, make up of employees, geographical location, and therefore varying business cultures and diversity of individuals.
We are focussed on creating opportunities from the following groups who experience barriers to employment :
-Long term unemployed
-Armed forces veterans
-Mothers returning to work
-Care leavers

Equal opportunity

CACI’s Equal Opportunities policy formalises our approach to not discriminate against any employee on the basis of sex or sexual orientation, marital or civil partner status, gender reassignment, race, religion or belief, colour, nationality, ethnic or national origin, disability or age, pregnancy or maternity or other characteristics defined in anti-discrimination legislation (Protected Characteristics), or trade union membership or the fact that they are a part-time worker or a fixed-term employee. Our employees and applicants for employment with CACI are not disadvantaged by any policies or conditions of service which cannot be justified as necessary for operational purposes.
CACI is dedicated to ensuring our work environment, operational delivery and recruitment processes accommodate people with disabilities. Adjustments are made to ensure that those with disabilities are included and supported in our workplaces.
Our Workplace Adjustment Passport (WAP) enables employees to declare a disability, workplace adjustments are driven at company level.
CACI has signed up to the Disability Confident Scheme, formalising our commitment to play a lead role in changing attitudes for the better. We aim to successfully employ and retain disabled people and/or those with health conditions. When designing internal training or selecting an external partner, staff are consulted to capture any specialist needs to tailor sessions, including location, means of delivery and materials. This ensures all staff can develop in a comfortable and accessible environment.
CACI also works closely with the National Autistic Society to create an inclusive recruitment process, partnering with their Autism at Work programme; actively supporting neurodiverse candidates to flourish.
CACI have funded the creation of a number of staff networks, where employees with protected characteristics have time and resources to share ideas and support in a safe private environment. CACI have also offered specific training and talks from speakers related to these characteristics.

Wellbeing

CACI has a range of comprehensive support initiatives that have been implemented to aid the health and wellbeing of our workforce (including contractors). Below is a comprehensive list, with specific reference to the six standards of Mental Health at Work commitment.
Promotion of an Open Culture around Mental Health:
-Team of 18 Mental Health First Aiders
-Conduct regular drop-in sessions for all staff, delivered by a Mental Health First Aider Team, focus on a particular element of Mental Health

Prioritising Mental Health in the Workplace by developing and delivering a systematic programme of activity:
-Regular check-ins for staff and our contractor workforce
-Annual Staff Satisfaction Survey, which includes a section on Health & Wellbeing
-Free 24/7 professional counselling
-Private healthcare and health and wellbeing plan (extendable to family members/dependents)
-Employee Assistance Programme
-Discounted gym memberships
-Physiotherapy
-Medical services
-Mental Health First Aider programme
-Stress assessments

Proactively ensure work design and organisational culture to drive positive mental health outcomes
-Comprehensive property and facilities management, ensuring modern, comfortable and state of the art technology for all employees
-Distributed Working Programme, allowing employees and contractors to structure their working week in a way that suits their preference and personal commitments whilst delivering against their work accountabilities
-Open and honest communications at all levels throughout the organisation

Increased organisational confidence and capability:
-Dedicated area of our company intranet for mental health and wellbeing, including various supporting resources and colleagues
-Line Managers and Career Coaches trained in aspects of mental health

Provide mental health tools and support:
-Formal Mental Health First Aid Programme including a team of MHFAs
Increase transparency and accountability through internal and external reporting:
-Publish the results of our annual staff satisfaction survey to all staff. Includes Mental Health and Wellbeing, actions taken and areas for improvement

Pricing

Price
£14,000 to £15,000 a user
Discount for educational organisations
No
Free trial available
Yes
Description of free trial
The free trial version is a fully functional trial up to a maximum of 30 days.
Link to free trial
A link to free trial is available on our website

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at digital.marketplace@caci.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.