Moodle Learning Management System
Catalyst is a Moodle partner, providing mission critical, at scale, managed hosting services for the Moodle LMS.
Service includes full security patching, upgrades, disaster recovery and provides High Availability, Security and Scalability within a fully managed Moodle service.
Features
- Full hosted, managed, Moodle Cloud eLearning solution including assessment tools
- Purpose built, fully responsive user experience through customised theme
- Content creation using the H5P toolkit as standard
- Supports learning content including SCORM, documents, audio, video
- Full integration with other systems including those with LTI compatibility
- Distance and blended learning facilitated with the BigBlueButton feature set.
- Built in accessibility checking and reporting
- Powerful reporting functionality, including graphical representations and dashboards
- Compatible with all modern platforms, browsers, devices and even offline
- Open source code offers core functionality and bespoke development options
Benefits
- Construct learner-centric courses with a variety of resources/activities available
- Offer content and track engagement for internal and external audiences
- Engage with learning anywhere and on multiple devices
- Integrate learning and development with existing systems for seamless experience
- Build in competency based learning and development frameworks
- Develop, approve and monitor learning plans by individual or role
- Provide synchronous and asynchronous learning delivered direct to users
- Customise themes to your organisation's requirements to support learner engagement
- Report on learning, progress and activities throughout learning resources
- Benefit from advanced support and training
Pricing
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
8 6 9 7 5 3 3 9 1 4 7 2 1 5 4
Contact
CATALYST IT EUROPE LIMITED
Richard Oelmann
Telephone: 01273 929450
Email: businessdevelopment@catalyst-eu.net
About your service
- Service categories
-
Applications
Production and operations
Service industry and public sector operations
- Education
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Service constraints
- None
- System requirements
- Standards compliant browser
User support
- Email or online ticketing support
- Yes
- Support response times
-
Critical - <1 hour (24/7)
High - < 4hours (business hours)
Medium - < 8 hours (business hours)
Low - <24 hours (business hours) - User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 AA
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
- See table in Service Definition document
- Support available to third parties
- No
Onboarding and offboarding
- Getting started
-
On receipt of a confirmed purchase order, Catalyst will confirm your nominated URL and then install and complete base configuration of your Moodle LMS instance on our cloud hosting infrastructure. Lead time on this process will be 5-10 working days.
The Catalyst on-boarding team will provide the foundation administrator training / configuration support as described in the service offer and the core platform will be handed over at this point. The contracting of further support (data migration, systems integration, plug-in management, custom theme development) may be negotiated (under Lot 3 – Cloud Support) at this time.
For services beyond the core SaaS platform, Catalyst employ a consultative approach, working closely with the client to fully understand their requirements, audience, expected outcomes and preferred ways of working. - Service documentation
- Yes
- Documentation formats
- HTML
- End-of-contract data extraction
-
As an open source product, you own your LMS site and all the data/content it contains. If you wish to move your hosting and support services to a new supplier or to an in-house service, Catalyst will provide you with copies of your Moodle LMS data, usually comprising of the database(s), site data and code base.
A copy of the full site data, up-to the storage capacity provided for the contracted tier of service, is provided as part of service, with an additional delta provision during a migration of service. Data transfers above the contracted tier storage (eg where additional storage provision has been consumed), or where multiple (more than 1) requests for full downloads may incur additional charges. Where a standard migration of data (database, files, code) is requested to be completed once, no fees will be charged.
At the completion of a contract period, all data relating to the site(s) systems(s) will be deleted from the Catalyst managed servers. Catalyst shall retain data relating to the services delivered for the purposes of audit and record keeping, these may include emails, contracts, purchase orders, invoices and other documents/files as necessary to maintain records of services provided. - End-of-contract process
-
As an open source product, you own your LMS site and all the data/content it contains. If you wish to move your hosting and support services to a new supplier or to an in-house service, Catalyst will provide you with copies of your Moodle LMS data, usually comprising of the database(s), site data and code base.
A copy of the full site data, up-to the storage capacity provided for the contracted tier of service, is provided as part of service, with an additional delta provision during a migration of service. Data transfers above the contracted tier storage (eg where additional storage provision has been consumed), or where multiple (more than 1) requests for full downloads may incur additional charges. Where a standard migration of data (database, files, code) is requested to be completed once, no fees will be charged.
At the completion of a contract period, all data relating to the site(s) systems(s) will be deleted from the Catalyst managed servers. Catalyst shall retain data relating to the services delivered for the purposes of audit and record keeping, these may include emails, contracts, purchase orders, invoices and other documents/files as necessary to maintain records of services provided. - Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Other
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- Some additional third party plugins may not be compatible with mobile
- Service interface
- No
- User support accessibility
- WCAG 2.2 AA
- API
- Yes
- What users can and can't do using the API
-
Moodle provides a raft of APIs with documentation available online
https://moodledev.io/docs/5.2/apis - API documentation
- Yes
- API documentation formats
- HTML
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
Plugins can be added on request
Custom development
Scaling
- Independence of resources
-
Catalyst employ native services, such as compute instances and read/write database separation. This allows a seamless scaling of service without the need for downtime, as would be the case in a single server based architecture.
Catalyst infrastructure has been tested and is used with sites upto multiple hundreds of thousands of active users, and concurrencies of several hundred users in simultaneous usage.
Catalyst utilise scheduled and automated scaling rules and can apply manual scaling on request.
Analytics
- Service usage metrics
- Yes
- Metrics types
-
User numbers
Work Request Tickets
Site web-analytics - Reporting types
-
- Real-time dashboards
- Regular reports
- Resource tagging
- Yes
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
-
- Encryption of all physical media
- Scale, obfuscating techniques, or data storage sharding
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Data Erasure
Data importing and exporting
- Data export approach
- API, CSV, Database clone
- Data export formats
-
- CSV
- ODF
- Other
- Other data export formats
-
- MS Office formats (docx, xlsx)
- Data import formats
-
- CSV
- ODF
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
-
99.9% or above, depending on tier of service contracted
Service credits can be agreed on contracting - Approach to resilience
-
Catalyst specialise in the ‘Mission Critical, At Scale’ managed hosting of education and training platforms, such as Moodle and Totara. We utilise a ‘well-architected’ infrastructure on AWS data centres, facilitating high availability, robust and resilient services, with built in scaling by design.
This architecture utilises native cloud services on a distributed infrastructure across multiple availability zones.
Further details are available on request, but are considered commercially sensitive. - Outage reporting
-
Email alerts
WRMS ticketing system
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Limited access network (for example PSN)
- Dedicated link (for example VPN)
- Username or password
- Access restrictions in management interfaces and support channels
- User authentication
- Access restriction testing frequency
- At least once a year
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Limited access network (for example PSN)
- Dedicated link (for example VPN)
- Username or password
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users receive audit information on a regular basis
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- ISO/IEC 27001
- Other
- Other security governance standards
- Cyber Essentials Plus
- Information security policies and processes
- ISO27001
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Process
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- Security patching
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- Monitoring
- Incident management type
- Supplier-defined controls
- Incident management approach
- Incident management
- Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- Yes
- Connected networks
- Joint Academic Network (JANET)
Pricing
- Discount for educational organisations
- No
- Free trial available
- Yes
- Description of free trial
- Sandbox environment, limited users, limited time
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 0.5%
- Between £500,001 and £1,000,000
- 2%
- Between £1,000,001 and £2,500,000
- 2.5%
- Between £2,500,001 and £5,000,000
- 5%
- Over £5,000,001
- 5%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- BSI
- ISO/IEC 27001 accreditation date
- Monday 11 September 2023
- What the ISO/IEC 27001 doesn’t cover
- Catalyst service is covered
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 720e7338-7518-4783-9085-29ad3ac9dd3f
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 1cc1cdab-d38b-4eed-8e96-1585ac373c39
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
-