Elastic Cloud Hosted
Elastic provides a unified Search AI Platform combining search, observability, and security. It delivers real-time analytics, log and metric monitoring, full-stack APM, SIEM/XDR threat detection, scalable search across any data, and AI-powered retrieval/automation, Deployable on-prem, cloud, or hybrid to improve performance, resilience, and security across the enterprise.
Features
- Realtime search analytics–Instantly query structured and unstructured data.
- Scalable distributed indexing–Horizontally expands to handle growing data volumes.
- Machine learning detection–Identifies anomalies and behavioral threats automatically.
- Full-stack observability–Correlates logs, metrics, traces across all environments.
- SIEM/XDR automation–Accelerates threat investigation with automated response workflows.
- Vector search retrieval–Enhances generative AI with semantic relevance scoring.
- APM instrumentation–Traces application performance for root-cause analysis.
- Role-based access control– Enforces granular security and data governance.
- Cross-cloud replication – Ensures HA/DR across multi-region deployments.
- Real-time dashboards – Visualizes operational and security insights instantly.
Benefits
- Accelerates threat investigations by unifying security data for rapid analysis.
- Improves uptime by correlating logs,metrics, and traces for faster troubleshooting.
- Reduces storage costs through efficient tiering and searchable cold data.
- Enhances decision-making with real-time dashboards showing operational performance.
- Increases analyst productivity using automated detections and guided workflows.
- Speeds application debugging with end-to-end distributed tracing visibility.
- Strengthens compliance by enforcing governed access and comprehensive audit logs.
- Empowers AI workloads with high-relevance vector search retrieval pipelines.
- Supports hybrid work by enabling secure, remote access to data.
- Scales seamlessly as teams grow without disrupting existing processes.
Pricing
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
8 3 6 1 1 1 1 3 8 8 3 5 7 1 6
Contact
PHOENIX SOFTWARE LIMITED
Mark Pickersgill
Telephone: 01904 562200
Email: bids@phoenixs.co.uk
About your service
- Service categories
-
PaaS
Integration and Orchestration
- Integration software
Service scope
- Service constraints
- Elastic Cloud may have constraints such as scheduled maintenance windows, which can temporarily affect service availability. Buyers should be aware of these planned maintenance periods to minimize disruptions. Additionally, while Elastic Cloud supports a wide range of hardware configurations, optimal performance is achieved with recommended system requirements. Support is generally available for standard configurations, but highly customized setups may require additional consultation.
- System requirements
-
- Modern web browser required for accessing services.
- Stable internet connection for optimal performance.
- Compatible with Windows, macOS, and Linux.
- API access requires authentication credentials.
- Recommended use of updated antivirus software.
- Cloud deployment model
-
- Public cloud
- Private cloud
- Community cloud
- Hybrid cloud
User support
- Email or online ticketing support
- Yes
- Support response times
- Our support team operates 24/7/365. Response times are determined by the severity level of the issue and the customer's subscription plan. We prioritize urgent issues to minimize disruptions and ensure timely support.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 A
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- Yes
- Web chat support availability
- 24 hours, 7 days a week
- Web chat support accessibility standard
- WCAG 2.2 A
- Web chat accessibility testing
- Our support portal is WCAG A compliant working towards AA compliance
- Onsite support
- Yes, at extra cost
- Support levels
-
Onsite support services are offered through two distinct purchase options: Designated Support Engineers (DSE) and Professional Services (PS) for consulting.
DSEs are a single point of contact for technical inquiries, providing continuity and a deep understanding of specific needs and systems. They offer strategic guidance, optimize performance, and resolve issues. DSEs are skilled in addressing complex challenges and aligning insights with business objectives, assisting with architecture, performance tuning, and best practices.
Professional Services focus on consulting for implementation, optimizations, and strategic initiatives, helping achieve project goals and enhance system capabilities. Both DSE and PS are available as separate purchases. - Support available to third parties
- Yes
- AI chatbot
- No
Onboarding and offboarding
- Getting started
-
Elastic helps users get started with its services through a variety of resources designed for different learning styles and skill levels. Users have access to comprehensive online documentation, including tutorials, API references, and step-by-step guides. Elastic also offers self-paced online training and instructor-led workshops, both virtual and onsite, providing hands-on labs and practical exercises to accelerate onboarding.
For more information, please refer to the following links:
- https://www.elastic.co/guide/index.html
- https://www.elastic.co/training/ - Service documentation
- Yes
- Documentation formats
-
- HTML
- ODF
- End-of-contract data extraction
-
Users extract data through snapshot restoration to external repositories or via Elasticsearch APIs. Before contract expiration, users can restore snapshots to external destinations (S3, GCS, Azure Storage, or local repositories). The snapshot restore API enables selective index or cluster-wide restoration.
Alternatively, users can export data programmatically via APIs to JSON or CSV. Users can also utilise other Elastic software, such as Logstash or Beats, to export data via APIs. Elastic Cloud Hosted maintains automatic snapshots for 14 days as standard; users should complete data extraction before contract termination as Elastic deletes all deployment data per contractual requirements once the contract expires. No assistance from Elastic is required for extraction - customers maintain full control over data export operations through native product functionality. - End-of-contract process
- The price includes continued access to the service until the expiration date and support for data extraction. Users can export their data at no additional cost within the contract period. The service agreement typically covers standard support and access to online resources. However, any additional services, such as extended support beyond the contract term, specialized data migration assistance, or consulting services, may incur extra charges.
- Documentation accessibility standard
- WCAG 2.2 A
Using the service
- Web browser interface
- Yes
- Using the web interface
-
1. Users can easily set up the service by creating new deployments, selecting configurations such as cluster size, version, and additional features through guided workflows.
2. Users can make changes to existing deployments, including scaling resources, updating configurations, managing snapshots, and monitoring performance metrics directly from the web interface.
3. While the web interface provides comprehensive management capabilities, some advanced configurations or integrations might require API use for automation or complex scripting. Additionally, certain administrative tasks, like detailed billing management, may be limited to specific sections of the interface or require additional permissions. - Web interface accessibility standard
- WCAG 2.2 AA
- Web interface accessibility testing
-
Elastic Cloud's web interface is designed with accessibility in mind, aiming to provide a user-friendly experience for all users, including those using assistive technologies. Elastic strives to incorporate best practices in web design to enhance usability and accessibility. This includes features such as keyboard navigation, screen reader compatibility, and clear visual indicators.
For more information, please refer to the following links:
- https://www.elastic.co/docs/contribute-docs/style-guide/accessibility
- https://www.elastic.co/docs/reference/kibana/kibana-accessibility-statement - API
- Yes
- What users can and can't do using the API
-
Elastic provides two distinct API layers. The Elastic Cloud API manages deployment lifecycle: provisioning clusters with specific topologies, zones, and memory allocations; scaling resources vertically and horizontally; configuring autoscaling policies; managing snapshots and restoring from repositories; implementing network security policies and traffic filtering; restarting or shutting down deployments; and deploying plugins, extensions, and custom endpoints. Users access deployment metrics, diagnostics bundles, and can orchestrate infrastructure changes programmatically.
The Elasticsearch and Kibana REST APIs manage data and operational concerns: indexing, searching, and aggregating data across indices; managing cluster settings and node configurations; creating and modifying index mappings, templates, and lifecycle policies; configuring security through role-based access control, API keys, and encryption settings; managing machine learning jobs, ingest pipelines, and transforms; and creating dashboards, visualisations, and alerts within Kibana.
Users cannot modify underlying infrastructure-as-a-service resources (AWS/GCP/Azure managed by Elastic), alter physical datacentre security controls, modify system-owned deployments in ECE environments, bypass rate limits, or access platform control plane configurations. All API access requires authentication via API keys, enforces rate limiting per organisation, and certain operations require specific subscription tiers. Destructive operations like wildcard index deletion are configurable but restricted by default for data protection. - API automation tools
-
- Ansible
- Chef
- Terraform
- Puppet
- API documentation
- Yes
- API documentation formats
-
- Open API (also known as Swagger)
- HTML
- Command line interface
- Yes
- Command line interface compatibility
-
- Linux or Unix
- Windows
- MacOS
- Using the command line interface
-
Please refer to the following links:
- https://www.elastic.co/docs/reference/elasticsearch/command-line-tools
- https://www.elastic.co/docs/reference/elasticsearch/curator/command-line
- https://www.elastic.co/docs/manage-data/data-store/manage-data-from-the-command-line
Scaling
- Independence of resources
- We guarantee users aren't affected by others' demand through resource isolation and dynamic scaling. Each user is allocated dedicated resources, preventing interference from other users. Our infrastructure supports auto-scaling, adjusting resources in real-time based on demand to maintain optimal performance. Load balancing efficiently distributes traffic across servers, ensuring service stability. Continuous monitoring and proactive measures address potential bottlenecks, providing a seamless user experience regardless of demand fluctuations.
- Usage notifications
- Yes
- Usage reporting
- Optimising consumption
- Yes
- Automatic scaling
- Yes
Analytics
- Infrastructure or application metrics
- Yes
- Metrics types
-
- CPU
- Disk
- HTTP request and response status
- Memory
- Network
- Number of active instances
- Reporting types
-
- API access
- Real-time dashboards
- Regular reports
- Reports on request
- Resource tagging
- Yes
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Reseller (no extras)
- Organisation whose services are being resold
- Elastic
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- Other locations
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Data Erasure
- Explicit overwriting of storage before reallocation / Secure Erase
- Physical Destruction / Hardware containing data is completely destroyed
Backup and recovery
- What’s backed up
-
- Elasticsearch indices and data
- Cluster configurations and settings
- Snapshots of entire deployments
- User access and role configurations
- Machine learning job results
- Kibana dashboards and visualizations
- Security settings and audit logs
- Ingest pipelines and processors
- Alerting configurations and rules
- Custom scripts and stored queries
- Backup controls
-
Elastic Cloud customers have control over their content, including the ability to manage snapshots. Backup snapshots are taken on a per-deployment basis and are configurable by the customer. The default snapshot interval is 30 minutes. Customers can restore data to the same or a different deployment on demand, without requiring involvement from Elastic.
Customers are provided with functionality to store backup snapshots in a repository of their choosing: https://www.elastic.co/guide/en/cloud/current/ec-custom-repository.html - Datacentre setup
- Multiple datacentres with disaster recovery
- Scheduling backups
- Users schedule backups through a web interface
- Backup recovery
- Users can recover backups themselves, for example through a web interface
- Backup and recovery
- Yes
- RPO/RTO
- No
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
-
The uptime Service Level Agreement will differ based on customer configuration. For Elastic Cloud, Platinum, and Enterprise customers, an uptime SLA is offered with a monthly uptime percentage of at least 99.95%. This SLA requires customers to run High Availability (HA) configurations with clusters having at least one replica. High availability is achieved within a region by hosting the deployment in multiple availability zones. This configuration is enabled by default and is recommended for production deployments to be in at least two availability zones. This setup ensures that the system can withstand failures within a single zone without impacting overall availability.
Cross-Cluster Replication: Customers can configure tenant-triggered failover or high availability across regions using Cross-Cluster Replication (CCR) to meet their specific SLA requirements. CCR enables data replication across clusters in different regions, providing geographical redundancy and enhancing system reliability. Elastic Cloud Status can be viewed at https://status.elastic.co/ - Approach to resilience
-
Elastic utilizes an Infrastructure as a Service (IaaS) provider and does not maintain its own data centers. Elastic Cloud customers have the flexibility to choose the underlying IaaS provider and geographical region for their data on a per-deployment basis. Physical security, media, and hardware controls are the responsibility of the IaaS provider. More details on the controls they have in place can be found at:
- For AWS, see https://aws.amazon.com/compliance/programs/
- For GCP, see https://cloud.google.com/security/compliance/#/
- For Azure, see https://docs.microsoft.com/en-us/azure/compliance/
Elastic Cloud customers have complete control to select the cloud (IAAS) provider and geographic region on a per-deployment basis. Elastic does not share RTO/RPO externally, as this may differ based on customer configuration. High availability is achieved within the selected region by hosting the deployment in multiple availability zones. This is configurable by the customer and enabled by default. Elastic recommends that production deployments be in at least two availability zones. - Outage reporting
-
1. A public dashboard is available at https://status.elastic.co/ (opens in a new tab or window), where users can view real-time status updates and historical data on service performance and outages.
2. An API is available for users to integrate outage information into their own systems, allowing for automated monitoring and alerts.
3. Customers can subscribe to updates through various channels, including email, text messages, webhooks, and social media, ensuring they receive timely notifications about any service disruptions.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Access restrictions in management interfaces and support channels
- Elastic restricts access through Role-Based Access Control (RBAC) and the principle of least privilege. Privileged access to production systems and supporting tools is only allowed via a VPN protected with MFA. VPN accounts provide access based on a role-based system. Access requires documented requests and functional leader approval. All internal users have unique usernames and passwords. Access to the production environment is authenticated, authorized, and audited. For support, Elastic employees only access customer deployments with express written permission from the customer. Access is reviewed quarterly.
- Access restriction testing frequency
- At least once a year
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Devices users manage the service through
- Dedicated device on a segregated network (providers own provision)
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- ISO/IEC 27001
- Other
- Other security governance standards
-
Elastic holds certifications including ISO 27001/27017/27018, SOC 2 Type II, FedRAMP Moderate, and PCI/DSS.
The Elastic Stack supports BSI C5 compliance. Elastic is committed to adhering to global privacy regulations like GDPR and CCPA.
View all up-to-date certifications at https://www.elastic.co/trust/security-and-compliance. - Information security policies and processes
-
Elastic has formally adopted an Information Security Program, which is aligned with ISO 27001, NIST, PCI, HIPAA, and other best practice frameworks. An Elastic Information Security Program Policy serves as the backbone for all information security policies, standards, and guidelines. All policies are reviewed annually and approved by our CISO. A Configuration Management System is deployed, and version control is in place. Elastic operates in compliance with key information security standards and regulations. Our services are independently audited and confirmed to meet privacy and compliance standards for data security and privacy via our certifications and attestations.
Please visit elastic.co/trust
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
-
Elastic's Change Management Standard governs all software and infrastructure changes to production environments. This ensures changes are reviewed, authorized, tested, implemented, and released in a controlled, documented, and monitored manner, including provisions for Emergency Changes.
The Standard includes formal requirements for our Systems Development Life Cycle (SDLC), covering the multistep process from initiation and analysis to disposal. We do not share these policies externally.
Furthermore, Elastic utilizes version-controlled configuration management to enable efficient, quick, and reliable updates and rollbacks of agent configurations. - Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
Elastic maintains a public vulnerability submission process at https://www.elastic.co/community/security.
Internally, a dedicated, security-knowledgeable team follows a documented process to evaluate and respond to reports via a private mailing list. Public vulnerability announcements are posted at https://discuss.elastic.co/c/security-announcements.
Continuous application, network, and OS scans are conducted. A remediation plan is developed, and changes are implemented to remediate all critical and high findings at a minimum. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- Elastic employs a robust protective monitoring strategy. Potential compromises are identified through technical measures including Breach Detection Tools, Intrusion Detection Tools, Anti-Malware, Logging, and Vulnerability Detection Tools. Logical access to audit logs is restricted via Role-Based Access Control. Upon detection of a potential compromise, Elastic initiates its established Incident Response Plan. While an Incident Response Plan is in place, specific response timeframes are not detailed in the provided documentation.
- Incident management type
- Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
- Incident management approach
-
Elastic maintains a documented Incident Response and Recovery Plan that complies with, and is regularly audited against, industry standards.
The Security Incident Management Standard outlines customer notification requirements for security incidents, in accordance with regulatory and contractual obligations. The Incident Response Plan includes steps for evaluating the need for customer notification.
Tenants are not permitted to define or customize our internal policies and standards. - Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Supplier-defined process
Separation between users
- Virtualisation technology used to keep applications and users sharing the same infrastructure apart
- Yes
- Who implements virtualisation
- Third-party
- Third-party virtualisation provider
- TBC
- How shared infrastructure is kept separate
- Customer data is logically segmented in Elastic Cloud using containerization, which separates each tenant at multiple levels, including processes, storage, memory, network, and user accounts. Customer deployments cannot communicate with one another without explicit trust rules being configured by the customer (e.g., to enable cross-cluster replication or cross-cluster search).
Energy efficiency
- Energy-efficient datacentres
- No
Pricing
- Discount for educational organisations
- No
- Free trial available
- Yes
- Description of free trial
-
Elastic Cloud Hosted (ESS) provides a free trial that allows users to evaluate the service before committing to a paid subscription. Elastic offers a 14-day free trial with access to core Elastic Cloud features, enabling users to deploy and test Elasticsearch, Kibana, and related services.
please refer to: https://www.elastic.co/pricing - Link to free trial
- https://cloud.elastic.co/registration?pg=global&plcmt=nav&cta=205352-primary
Discount
- Provide your minimum discount applicable to your baseline prices
- 0%
Formula for calculating price of your services
- Formula for calculating price of your services
-
Which of the core deployment models you intend to offer
Public CloudPublic Cloud - Formula for calculating price of your services
- Total Cost
- The Total Cost for a buyer's call off requirement in a Public Cloud Deployment
- =
- Baseline Pricing
-
Baseline pricing is derived from hyperscaler publicly published price catalogues for Infrastructure as a Service (IaaS) and Platform as a Service (PaaS), ensuring full transparency and auditability for Buyers.
For Amazon Web Services (AWS), baseline pricing is published at:
https://aws.amazon.com/pricing/
For Microsoft Azure, baseline pricing is published at:
https://azure.microsoft.com/pricing/
These catalogues provide unit-based pricing for compute, storage, networking, and platform services, enabling Buyers to model costs accurately based on usage profiles. Baseline pricing is referenced directly within Phoenix Software’s G-Cloud service catalogue entries. - Baseline Pricing - Web link
- https://azure.microsoft.com/pricing
- -
- Minimum Discounting
- 0%
- +
- Onboarding Activity
- Onboarding costs may vary based on your specific requirements, please confirm with suppliers during the clarification process
- +
- Additional sources of cost
-
Additional sources of cost for Buyers contracting Public Cloud services may arise from variable consumption and optional service components. As IaaS and PaaS services are usage-based, costs can increase due to higher-than-forecast consumption of compute, storage, networking, or platform services driven by user demand, data growth, or changes in workload patterns.
Additional costs may also include data egress charges, cross-region or cross-availability-zone network traffic, and consumption of premium platform services such as advanced analytics, artificial intelligence, or enhanced security capabilities. Where Buyers elect higher support tiers from cloud service providers, these may incur additional charges aligned to overall usage.
Operational costs may increase where Buyers require optional managed services, extended monitoring, or bespoke configuration beyond standard service definitions. In some cases, onboarding activities such as environment design, landing zone deployment, security hardening, or migration support may be priced separately.
Phoenix Software supports Buyers in identifying, forecasting, and managing these potential cost drivers through transparent pricing structures, clear service definitions, and proactive cost governance. - -
- Additional sources of cost reduction
-
Buyers may benefit from several cost-reduction mechanisms when contracting Public Cloud services. Commitment-based pricing models such as AWS Savings Plans and Azure Reserved Instances enable Buyers to secure discounted rates by committing to predictable usage over one- or three-year terms, reducing long-term operational costs.
Consumption optimisation can further reduce costs through rightsizing of compute resources, removal of idle or underutilised services, and selection of appropriate storage tiers based on performance and access requirements. Platform-native recommendations and cost optimisation tools help identify these opportunities continuously.
Buyers may also benefit from public sector pricing arrangements, framework-aligned discounts, and sector-specific incentives made available by cloud service providers. Cost reductions can be achieved through architectural optimisation, including use of platform-managed services that reduce the need for customer-managed infrastructure and associated overheads.
Phoenix Software supports cost reduction through proactive cost reviews, optimisation recommendations, and governance guidance, helping Buyers align consumption with business need, avoid waste, and continuously improve value for money throughout the contract lifecycle.
Mandatory certifications
- Mandatory certifications
-
Are you are bidding to offer IaaS and/or PaaS as a reseller or are you in sole control of the infrastructure
ResellerCloud service suppliers you intend to resell with evidence
Organisation 1
Organisation name
Microsoft AzureWebsite address/upload for organisation
Website addressWebsite address
https://marketplace.microsoft.com/en-us/marketplace/partner-dir/2ec57e94-f52a-4588-b969-f463bf4ddcfc/overviewOrganisation 2
Organisation name
AWSWebsite address/upload for organisation
UploadUpload
ProvidedISO 9001 certification
ProvidedISO 27001 certification
ProvidedISO 20000-1 certification
ProvidedAre you reliant on the Cloud Service Provider for some accreditations
Yes
Cyber Essentials
- Do you have a Cyber Essentials Plus certificate?
- Yes
- Cyber Essentials Plus certificate Number
- F1e26d79-c268-4d22-a3d7-01e3f4c32c92
Non-mandatory Standards and certifications
- ISO 28000:2022 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- Yes
- Who accredited the PCI DSS certification
- Security Metric via Self Certification
- PCI DSS accreditation date
- Monday 20 October 2025
- What the PCI DSS doesn’t cover
-
Our certificate applies to services including software licensing, hardware, software asset management (SAM), and IT consultancy. It covers these services when delivered to public sector, charities and housing associations, education, and corporate customers by our employees, systems, and business processes.
All activities outside of this scope are not covered by the certification. - Other security certifications
- Yes
- Any other security certifications
- Cyber Essentials
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Plans to engage the contract workforce in deciding the most important workplace issues to address
- Monitoring of employee engagement rates (by protected characteristic) and, where necessary, the development of actions to ensure all voices are heard across the diversity of the workforce
- Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
- Monitoring and reporting of gender and ethnicity pay gaps and plans to address them where necessary
- Entitlement to sick pay for the contract workforce, with provision in place for any staff who do not meet the earnings threshold for statutory sick pay, payment of sick pay from day one of absence and payment of staff on the contract workforce who are off sick a replacement income of 100% of their usual earnings for as long as possible
- Plans for an appropriate income replacement policy for staff who are required to spend time away from work to care for a sick dependent or close relative
- Understanding of in-work progression issues affecting the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Measures to support in-work progression to help people in the contract workforce, to move into higher paid work by developing new skills relevant to the contract
- Support for the contract workforce by providing career advice, and providing opportunities for staff working on the contract with in-work progression career development into known skills shortages or high growth areas
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
- Volunteering opportunities for staff
- Understanding of the modern slavery risks and issues affecting the market, industry, sector or country (of origin or of source) relevant to the contract, and the workforce in the supplier’s own organisation and those of its key subcontractors
- Measures to identify, mitigate and manage modern slavery risks relating to the contract and how these will be implemented
- Outline policies and practices to be applied to or put in place for the contract to mitigate and manage modern slavery risks, including: Pre-employment checks, recruitment practices. Workplace conditions, safeguarding plans and processes in place and regular monitoring with relevant groups considered, which may include sampling
- Means of influencing staff, suppliers, customers, communities and/or any other appropriate stakeholders with respect to modern slavery risks relating to the contract
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Understanding of employment and relevant skills issues, and of the education and training issues relating to the contract. Illustrative examples: demographics, skills shortages, new opportunities in high growth sectors, geographic/local community and skills/employment challenges
- Support for educational attainment relevant to the contract, including training schemes that address skills gaps and result in recognised qualifications
- Activities to support relevant sector related skills growth and sustainability in the contract workforce. Illustrative examples: careers talks, curriculum support, literacy support, safety talks and volunteering
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Understanding of the types of businesses in the market and the level of participation by new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Activities to identify opportunities to open up sub-contracts under the prime contract to a diverse range of businesses, including new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
- Structuring of the supply chain selection process to ensure fairness (e.g. anti-corruption) and encourages participation by a diverse range of businesses, including with regard to new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutual
- Measures for making facilities used in the delivery of the contract available for community groups, education or training
- Collaborating with anchor institutions and community groups to make facilities available for education, training or community events
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 6: Employment and training: For those who face barriers to employment
- Understanding of employment and skills issues, and of the skills and employment shortages of high growth sectors relating to the contract
- Creation of employment opportunities particularly for those who face barriers to employment, such as prison leavers, care leavers and/or who are located in deprived areas, and for people in industries with known skills shortages or in high growth sectors
- Delivery of training schemes and programmes to address any identified skills gaps and under-representation in the workforce for the contract (e.g. prison leavers, care leavers, kinship carers, disabled people)
- Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
- Understanding of the issues affecting the representation of disabled people in the workforce in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors
- Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
- Offering a range of quality opportunities with routes of progression if appropriate, e.g. T Level industry placements, students supported into higher level apprenticeships.
- Working conditions which promote an inclusive working environment and promote retention and progression
- Other measures to provide equality of opportunity for disabled people and those with health conditions into employment, including becoming a Disability Confident employer and inclusion of supported businesses in the contract supply chain
- Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
- Inclusive and accessible development practices, including guidance for line managers on recruiting, managing and developing people with a disability or health condition
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.
- Understanding of the issues affecting the development of new skills by target cohort
- Understanding of the underlying factors affecting improvements to reduce barriers to entry and training schemes for the target cohort(s) related to the contract workforce
- Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
- Understanding of issues relating to entering the contract workforce
- Creation of outreach activities to create a pipeline of employees for the future contract delivery
- Content of the outreach activity is designed to suit the target cohort
- Advertising, promotional and outreach activities designed to raise awareness of the offer to reach the target cohort
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
- Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
- Actions to invest in the physical and mental health and wellbeing of the contract workforce
-