Skip to main content

Help us improve the Digital Marketplace - send your feedback

NETPREMACY LIMITED

JumpCloud via Netpremacy

JumpCloud is a unified open directory platform that simplifies IT management by consolidating identity, access, and device management. It provides secure, frictionless access to resources from any location, enabling organisations to modernize infrastructure, enhance security with Zero Trust, and streamline cross-platform operations in a single, cloud-native solution.

Features

  • Centralised management for users, groups, and resource permissions
  • One-click access to web and internal applications
  • Robust security layers including push and biometric options
  • Securely manage Windows, macOS, Linux, and mobile devices
  • Secure authentication for WiFi, VPNs, and legacy applications
  • Context-based policies to control access by user and device
  • Streamlined onboarding/offboarding through HRIS and SCIM integrations
  • Automated OS and browser updates for enhanced security
  • Secure connection to remote resources from any location
  • Real-time monitoring and reporting for security and compliance

Benefits

  • Manage identities, access, and devices from one console
  • Implement Zero Trust and MFA to protect company data
  • Consolidate multiple IT tools into one comprehensive platform
  • Securely connect distributed teams to resources from anywhere
  • Lower TCO by eliminating expensive on-premise hardware
  • Meet regulatory requirements with detailed activity logging
  • Frictionless access to tools reduces login hurdles for employees
  • Save time by automating repetitive manual management tasks
  • Support Windows, Apple, and Linux environments seamlessly
  • Effortlessly grow your infrastructure as your organisation expands

Pricing

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at aeden@netpremacy.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

8 2 5 3 7 0 6 8 3 4 6 6 1 3 4

Contact

NETPREMACY LIMITED Andrew Eden
Telephone: 0113 366 2008
Email: aeden@netpremacy.com

About your service

Service categories

Applications

Production and operations

  • Other operations
Multi cloud support
Yes

Service scope

Software add-on or extension
No
Cloud deployment model
Public cloud
Service constraints
N/A
System requirements
  • Supports Windows 10, 11, and Server versions 2012 or newer
  • Apple macOS devices require version 10.15 Catalina or more recent
  • Various Linux distributions including Ubuntu, Debian, Red Hat, and CentOS
  • Installation of the system agent requires full local administrator privileges
  • Outbound internet access over port 443 is necessary for communication
  • Modern web browsers like Chrome, Firefox, or Safari for administration
  • Mobile devices must run Android or iOS for MFA applications
  • Minimum hardware requires one gigabyte of RAM for efficient operation
  • Environments should support standard protocols like SAML, LDAP, and RADIUS
  • Active Directory integration requires the JumpCloud AD Bridge software component

User support

Email or online ticketing support
Yes, at extra cost
Support response times
JumpCloud's response times vary by support tier. Premium and 24x7 plans provide a one-hour response for critical (Severity 1) issues. Standard plans typically receive a response within one business day. Response times differ significantly on weekends. Standard support operates only during business hours (Monday–Friday). Weekend assistance is exclusively available for customers on 24x7 or Premium plans, specifically for high-priority technical issues. Free-tier users do not have guaranteed response times and must rely on community forums and self-service documentation.
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
24 hours, 7 days a week
Web chat support
No
Onsite support
Yes, at extra cost
Support levels
JumpCloud offers three primary support tiers: Standard Support: Included with all paid subscriptions. It provides web-based ticketing during business hours and access to the JumpCloud University, Help Center, and community forums. Premium Support: A paid add-on providing 24/7/365 global support for critical issues, phone support, and prioritised response times (SLAs). Premium Plus Support: The highest tier, offering 24/7 support plus proactive account advocacy and strategic technical guidance. Costs: Standard: Included at no extra cost with any paid plan. Premium/Premium Plus: These are paid upgrades. While JumpCloud typically uses a per-user, per-month pricing model for these tiers, exact pricing often requires a custom quote from their sales team based on organisation size. TAM/CSE Availability: JumpCloud provides Technical Account Managers (TAMs). TAMs are generally available to customers subscribed to the Premium Plus tier or those with specific enterprise-level agreements. The TAM serves as a dedicated strategic resource for architectural guidance and deployment optimisation, while technical support engineers handle standard troubleshooting tickets.
Support available to third parties
No

Onboarding and offboarding

Getting started
JumpCloud provides several resources to help users start and scale their use of the platform: Online Training: JumpCloud University offers self-paced courses, video tutorials, and certifications to help admins master the platform. They also provide guided product simulations and interactive demos for hands-on learning. User Documentation: The JumpCloud Help Center serves as a comprehensive knowledge base, featuring step-by-step setup guides, troubleshooting articles, and detailed API documentation. Professional Services: For organisations requiring more tailored assistance, JumpCloud offers Professional Services, including implementation support, solutions architecture, and dedicated Customer Success Managers (CSMs). These services provide personalised expertise for complex environment migrations and configurations. Community & Support: Users can access the JumpCloud Lounge on Slack, participate in webinars, and view tutorials on their YouTube channel. While JumpCloud focuses primarily on online training and remote implementation services, their Professional Services Engineering team can design custom engagements to meet specific organisational needs.
Service documentation
Yes
Documentation formats
  • HTML
  • PDF
End-of-contract data extraction
When a JumpCloud contract ends, users are responsible for extracting their data before the service is terminated and the account is deleted. JumpCloud does not provide a single "export all" button, so data must be retrieved using the following methods: API and PowerShell: The most comprehensive way to extract data (users, groups, systems, and configurations) is via the JumpCloud API or the JumpCloud PowerShell Module. These tools allow administrators to script the export of all directory objects into JSON or CSV formats. Admin Portal Reports: Administrators can manually generate and download CSV reports for users, devices, and software inventory directly from the "Reports" section of the console. Directory Insights: Audit logs and event activity can be exported to CSV or JSON through the Directory Insights interface. For long-term retention, users often sync this data to an external SIEM or bucket (like AWS S3) prior to contract termination. Data Retention: Once a contract is officially terminated and the tenant is deactivated, JumpCloud typically purges the data after a short grace period (usually 30 days). Users must ensure all exports are completed before the final termination date.
End-of-contract process
At the end of a JumpCloud contract, the agreement automatically renews for a term equal to the original unless you provide 30 days' written notice of non-renewal to contractcancellation@jumpcloud.com. Upon termination, access to the platform and services (e.g., SSO, LDAP, RADIUS) expires immediately. While administrators can manually delete their tenant and data, JumpCloud generally retains data only as long as an account is active; inactive accounts may be deleted after a period of non-use (typically 180 days). Included in Price: Core Directory: Centralised identity management for users. MFA & SSO: Standard multi-factor authentication and single sign-on for web apps. User Lifecycle Management: Automated provisioning/deprovisioning. Device Management: MDM and cross-OS policy enforcement (depending on the specific tier). Additional Costs: Add-on Insights: "System Insights" and "Directory Insights" for advanced telemetry. Premium Support: Access to 24/7 technical assistance beyond standard tiers. Overages: Fees for users exceeding the contracted "high-water mark." Advanced Features: Items like "JumpCloud Go" (passwordless) or Zero Trust Conditional Access often require higher-tier plans or specific add-ons.
Documentation accessibility standard
WCAG 2.2 AA

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
Application to install
Yes
Compatible operating systems
  • Linux or Unix
  • MacOS
  • Windows
Designed for use on mobile devices
No
Service interface
No
User support accessibility
WCAG 2.2 AA
API
Yes
What users can and can't do using the API
JumpCloud provides RESTful APIs (V1 and V2) to automate identity and device management. Setup Users set up the service by generating an API Key in the Admin Portal or by creating Service Accounts that utilise OAuth 2.0 (Client ID/Secret). These credentials authenticate requests to manage the organisation’s directory and systems. Making Changes Users can programmatically manage the following: Identities: Create, update, or delete users and groups, and automate provisioning via SCIM. Devices: Bind users to systems, retrieve device telemetry, and apply security policies. Orchestration: Execute remote commands and scripts across Windows, macOS, and Linux fleets. Limitations API Versioning: Functionality is split between V1 and V2; users must often utilise both to access all features. Partial Updates: Many V2 endpoints (such as User Groups) do not support partial updates, requiring a PUT request to include the object's complete state. MDM Restrictions: The API only supports specific JumpCloud-approved Apple MDM commands and cannot forcibly uninstall pre-existing software. Administrative Tasks: High-level billing, license purchasing, and payment method management are primarily handled through the Admin Portal rather than public API endpoints. Performance: Calls are subject to rate limiting and specific pagination/sorting requirements.
API documentation
Yes
API documentation formats
  • HTML
  • PDF
API sandbox or test environment
No
Customisation available
Yes
Description of customisation
JumpCloud offers several ways to tailor the platform to an organisation’s specific requirements. What can be customised: Branding: Admins can add company logos and custom colours to the User Portal and login screens. Security Policies: Organisations can define specific password complexities, Multi-Factor Authentication (MFA) requirements, and Conditional Access rules. Device Management: Admins can create custom commands (Bash, PowerShell, or Python) and policies to manage Windows, macOS, and Linux endpoints. Integrations: Custom SAML 2.0 and OIDC connectors can be built for Single Sign-On (SSO) to virtually any application. How users customise: Admin Console: A web-based GUI for managing branding, policies, and user settings. API & PowerShell Module: For advanced users, JumpCloud’s REST API and dedicated PowerShell module allow for programmatic customisation and automation. Command Tab: Used to deploy and execute custom scripts across the fleet. Who can customise: IT Administrators: Only users with "Administrator" or "Manager" roles can modify global settings, branding, and security policies. End-Users: Have minimal customisation power, limited to updating personal profile details or selecting preferred MFA methods if permitted by the admin.

Scaling

Independence of resources
JumpCloud uses a multi-tenant architecture designed to isolate resources and decouple the central management console from its "data plane." Key architectural safeguards include: Autonomous Edge Nodes & Agents: Local agents and global edge nodes (LDAP/RADIUS) operate independently. High demand on central services or other tenants doesn't impact local device authentication or access. Regional Distribution: Services are distributed across multiple cloud availability zones and regions to ensure localised performance and redundancy. Scalability & Monitoring: Proactive auto-scaling and continuous monitoring detect and mitigate "noisy neighbour" effects, maintaining consistent performance for all users.

Analytics

Service usage metrics
Yes
Metrics types
JumpCloud provides comprehensive service metrics and reporting through three primary modules: Directory Insights: Tracks real-time event logs for user activity, authentication, and resource access (who, what, when, where). System Insights: Delivers device-level telemetry, including hardware/software inventories, storage capacity, memory usage, uptime, and patch status across Windows, macOS, and Linux. SaaS Management: Monitors application discovery, security insights, and spend optimisation. These metrics enable IT teams to audit compliance, monitor system health, and detect security anomalies through centralised dashboards and exportable reports (JSON/CSV).
Reporting types
  • API access
  • Real-time dashboards
Resource tagging
No
FOCUS resource tagging
No

Resellers

Supplier type
Reseller providing extra support
Organisation whose services are being resold
JumpCloud

Staff security

Staff security clearance
Other security clearance
Government security clearance
None

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
  • United Kingdom
  • European Economic Area (EEA)
  • Other locations
User control over data storage and processing locations
Yes
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 4.0)
Penetration testing frequency
At least every 6 months
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
Physical access control, complying with SSAE-18 / ISAE 3402
Data sanitisation process
Yes
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
Data sanitisation type
  • Deleted data can’t be directly accessed / Cryptographic Erasure
  • Data Erasure
  • Explicit overwriting of storage before reallocation / Secure Erase

Data importing and exporting

Data export approach
JumpCloud users and administrators can export data through several methods: Admin Portal: Administrators can export lists of users, devices, or software by navigating to the respective section (e.g., User Management > Users) and clicking the Export button to download data in CSV or JSON format. Reports: Custom reports (e.g., Users to Devices) can be generated and downloaded from the Insights > Reports tab. Password Manager: Users can export their personal vault data to a CSV file directly from the Password Manager desktop app or browser extension.
Data export formats
  • CSV
  • Other
Other data export formats
JSON
Data import formats
  • CSV
  • Other
Other data import formats
JSON

Data-in-transit protection

Data protection between buyer and supplier networks
TLS (version 1.2 or above)
Data protection within supplier network
TLS (version 1.2 or above)

Availability and resilience

Guaranteed availability
JumpCloud provides a Service Level Agreement (SLA) guaranteeing 99.9% monthly uptime for its core platform services, including the Admin Portal, User Portal, and authentication protocols (LDAP, RADIUS, and SSO). If JumpCloud fails to meet this 99.9% threshold during any calendar month, customers are eligible to receive Service Credits applied toward future invoices. The credit amount is tiered based on the actual uptime percentage: 99.0% to <99.9%: 10% credit of the monthly fee. 95.0% to <99.0%: 25% credit of the monthly fee. Below 95.0%: 50% credit of the monthly fee. To receive these credits, users must submit a written request within 30 days of the end of the month in which the service level was not met. Credits are the sole remedy for downtime; JumpCloud does not provide direct cash refunds. The guarantee excludes downtime caused by scheduled maintenance, factors outside JumpCloud’s reasonable control (such as internet-wide outages), or issues resulting from third-party hardware or software.
Approach to resilience
Available on request
Outage reporting
JumpCloud reports service outages and maintenance through their dedicated status page at status.jumpcloud.com. Public Dashboard: The site features a comprehensive public dashboard providing real-time operational status for all core components, including the Admin and User Portals, LDAP, RADIUS, and Agent check-ins. It also includes historical data on past incidents and scheduled maintenance. API: JumpCloud provides a status API (via Statuspage.io), allowing administrators to programmatically ingest system status and incident data into their own internal monitoring tools or custom dashboards. Alerts: Users can subscribe to proactive notifications by clicking the “Subscribe to Updates” button. Available delivery methods include: Email: Direct alerts for incident creation, updates, and resolutions. SMS: Real-time text message notifications. Slack: Integration to push updates directly to a team channel. Webhooks and RSS: For automated technical integrations. This multi-channel approach ensures visibility during service disruptions.

Identity and authentication

User authentication needed
Yes
User authentication
  • Multi-Factor Authentication (MFA)
  • Username or password
Access restrictions in management interfaces and support channels
JumpCloud restricts admin interface access using Role-Based Access Control (RBAC), enforcing the principle of least privilege. Mandatory Multi-Factor Authentication (MFA) and Conditional Access policies (based on IP, device, or geography) further secure logins. For support channels, JumpCloud employees have no default access to customer data. Access must be explicitly granted by a customer administrator for a specific duration. All actions performed by support personnel or administrators are recorded in comprehensive audit logs, ensuring transparency and accountability for any configuration changes or account interactions.
Access restriction testing frequency
At least every 6 months
Management access authentication
  • Multi-Factor Authentication (MFA)
  • Username or password

Audit information for users

Access to user activity audit information
Users contact the support team to get audit information
How long user audit data is stored for
At least 12 months
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
At least 12 months

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
  • CSA CSM version 4.0
  • ISO/IEC 27001
Information security policies and processes
JumpCloud maintains a robust security posture centered on SOC 2 Type 2 and ISO 27001 standards. Their core policies and processes include: Secure Development: Implementation of a Secure Software Development Life Cycle (SSDLC) using static (SAST) and dynamic (DAST) analysis tools. Access & Encryption: Enforcement of Least Privilege, Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC). Data is encrypted using TLS 1.2+ in transit and industry-standard ciphers at rest. Vulnerability Management: Continuous automated scanning and annual third-party penetration testing. Reporting Structure: JumpCloud’s security operations are managed by a dedicated security team and a Data Privacy Officer. To maintain independence and oversight, the security function typically reports to executive leadership (such as the CTO or CEO), ensuring security initiatives align with corporate governance. Ensuring Compliance: Policy adherence is ensured through: Independent Audits: Annual SOC 2 and ISO 27001 examinations by third-party auditors. Automated Monitoring: Real-time infrastructure monitoring and change controls. Human Factor: Mandatory annual security awareness training and comprehensive employee background checks. Verification: An active Vulnerability Disclosure Program to engage external security researchers.
Software Security Code of Practice
Yes

Operational security

Configuration and change management standard
Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
Configuration and change management approach
JumpCloud manages configurations and changes through a Secure Software Development Life Cycle (SSDLC). Service components are tracked throughout their lifetime using automated asset inventory and version control systems to maintain a clear audit trail from inception to decommissioning. Changes are assessed for security impact via mandatory peer reviews, risk evaluations, and automated security scanning (SAST/DAST) integrated into the build pipeline. This ensures potential vulnerabilities are identified and mitigated before production release. Change controls are strictly enforced, with all modifications documented and authorised to ensure platform integrity and SOC 2 Type 2 compliance.
Vulnerability management type
Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
Vulnerability management approach
JumpCloud assesses threats through continuous SAST/DAST scanning in the build pipeline, annual external penetration tests, and ongoing evaluation of source code, dependencies, and exploitability trends. Threat information is sourced from internal automated monitoring, third-party security audits (SOC 2/ISO 27001), and a public Vulnerability Disclosure Program (VDP). Patching speed is determined by criticality; vulnerabilities are prioritised using Bugcrowd’s Vulnerability Rating Taxonomy (VRT) and integrated into their secure software development lifecycle (SSDLC). While specific deployment timelines vary by severity, high-risk issues are prioritised for rapid remediation through JumpCloud’s continuous integration and deployment workflows.
Protective monitoring type
Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
Protective monitoring approach
JumpCloud’s protective monitoring processes focus on real-time identification and rapid remediation. Identification: Compromises are identified via real-time telemetry, Directory Insights, and behavioural analytics, which track failed logins, unauthorised access, and system deviations. Potential threats trigger near-instant alerts through integrated SIEM and EDR tools. Response: Response involves activating a formal Incident Response Plan, utilizing a centralized "kill switch" to revoke access globally, isolating compromised endpoints, and suspending accounts. Speed: Alerts occur in near real-time. JumpCloud targets the 555 Benchmark (5 seconds to detect, 5 minutes to triage/respond) and guarantees a 1-hour response SLA for critical (Severity 1) incidents.
Incident management type
Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
Incident management approach
JumpCloud employs pre-defined incident management processes, including automated monitoring, escalation protocols, and disaster recovery plans. Users and security researchers report incidents or vulnerabilities via vulnerability@jumpcloud.com or through JumpCloud Support. For transparency, JumpCloud provides real-time incident updates via dedicated US and EU status pages and publishes security advisories for significant vulnerabilities. Formal compliance and incident-related reports, such as SOC 2 Type 2 examinations, are available upon request by emailing security@jumpcloud.com (subject to a non-disclosure agreement). This structured approach ensures rapid response and consistent communication during security events.
Post-quantum cryptography secure
No

Secure development

Approach to secure software development best practice
Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)

Public sector networks

Connection to public sector networks
No

Pricing

Discount for educational organisations
No
Free trial available
No

Discount percentage by annual call-off contract value (excluding VAT)

Less than £250,000
7%
Between £250,000 and £500,000
7%
Between £500,001 and £1,000,000
10%
Between £1,000,001 and £2,500,000
13%
Between £2,500,001 and £5,000,000
16%
Over £5,000,001
19%

Non-mandatory Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2022 certification
No
ISO 9001 certification
No
Quality management systems (QMS)
Yes
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Please provide your Cyber Essentials Certificate Number
4ffa49d8-1eef-4a7a-95a0-4352562eabdf
Cyber essentials plus
No
Cyber Essentials Alternative
None of the criteria
Other security certifications
No

Social value

Section B - Commitment for Future: Delivery
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority

    • New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
    • New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
    • Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
    • Plans to engage the contract workforce in deciding the most important workplace issues to address
    • Ensuring new workers are informed of their right to join a trade union
    • Monitoring of employee engagement rates (by protected characteristic) and, where necessary, the development of actions to ensure all voices are heard across the diversity of the workforce
    • Employment contracts that reflect actual hours worked; steps taken to ensure employees understand their contracts and have the ability to review and adjust them if actual hours regularly exceed contracted hours
    • Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
    • Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
    • Activities to cascade good practice on fair working conditions throughout the supply chain
    • Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
    • Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
    • Monitoring and reporting of gender and ethnicity pay gaps and plans to address them where necessary
    • Entitlement to sick pay for the contract workforce, with provision in place for any staff who do not meet the earnings threshold for statutory sick pay, payment of sick pay from day one of absence and payment of staff on the contract workforce who are off sick a replacement income of 100% of their usual earnings for as long as possible
    • Plans for an appropriate income replacement policy for staff who are required to spend time away from work to care for a sick dependent or close relative
    • Understanding of in-work progression issues affecting the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
    • Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
    • Support for the contract workforce by providing career advice, and providing opportunities for staff working on the contract with in-work progression career development into known skills shortages or high growth areas
    • Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
    • Volunteering opportunities for staff
    • Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
    • Measures to identify, mitigate and manage modern slavery risks relating to the contract and how these will be implemented
    • Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
    • How these flow down the supply chain and are monitored Illustrative examples include reporting, site visits, audits, etc.
    • How to ensure business decisions re: price/cost, short lead times, payment timescales do not create modern slavery risks in the supply chain
    • How the supplier will work with NGOs, trade unions or other businesses to address modern slavery risk
    • Means of influencing staff, suppliers, customers, communities and/or any other appropriate stakeholders with respect to modern slavery risks relating to the contract
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.

    • Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
    • Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
    • Activities to support relevant sector related skills growth and sustainability in the contract workforce. Illustrative examples: careers talks, curriculum support, literacy support, safety talks and volunteering
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises

    • Understanding of the types of businesses in the market and the level of participation by new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
    • Activities that demonstrate a collaborative way to work with a diverse range of businesses as part of the supply chain
    • Structuring of the supply chain selection process to ensure fairness (e.g. anti-corruption) and encourages participation by a diverse range of businesses, including with regard to new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutual
    • Understanding of local demographics, needs and opportunities for the co-design of the goods, services and works to be delivered under the contract
    • Methods for engaging with different parts of the community (including the education system and charities representing the community) and how communities come together to inform decisions, strategy and projects to leave a positive legacy for future generations
    • Measures to involve local stakeholders and/or users in design (e.g. in the design of services, systems, products or buildings)
    • Plans for positive actions with community groups.
    • Measures for making facilities used in the delivery of the contract available for community groups, education or training
    • Measures to engage users and communities and build relationships to increase community integration build trust and influence how the contract is delivered
    • Plans to respond flexibly and adapt approaches to community engagement and initiatives
    • Support for community-led initiatives relevant to the contract. Illustrative examples: improving transport links; reducing loneliness; helping with English language proficiency; and facilitating social mixing among people with different backgrounds
    • Collaborating with anchor institutions and community groups to make facilities available for education, training or community events
  • Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero

    Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.

    • Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
    • Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
  • Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain

    Policy Outcome 6: Employment and training: For those who face barriers to employment

    • Understanding of employment and skills issues, and of the skills and employment shortages of high growth sectors relating to the contract
    • Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
    • Understanding of the issues affecting the representation of disabled people in the workforce in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
    • Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
    • Introducing transparency to pay and reward processes
    • Working conditions which promote an inclusive working environment and promote retention and progression
    • Other measures to provide equality of opportunity for disabled people and those with health conditions into employment, including becoming a Disability Confident employer and inclusion of supported businesses in the contract supply chain
    • Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
    • Inclusive and accessible development practices, including guidance for line managers on recruiting, managing and developing people with a disability or health condition
  • Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain

    Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.

    • Understanding of the issues affecting the development of new skills by target cohort
    • Understanding of the underlying factors affecting improvements to reduce barriers to entry and training schemes for the target cohort(s) related to the contract workforce
    • Other measures to offer development opportunities for the target cohort(s) in the contract workforce
    • Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
    • Understanding of issues relating to entering the contract workforce
    • Creation of outreach activities to create a pipeline of employees for the future contract delivery
    • Content of the outreach activity is designed to suit the target cohort
    • Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
  • Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.

    Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.

    • Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
    • Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion
    • Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
    • Actions to invest in the physical and mental health and wellbeing of the contract workforce

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at aeden@netpremacy.com. Tell them what format you need. It will help if you say what assistive technology you use.