Skip to main content

Help us improve the Digital Marketplace - send your feedback

COLLECTIVE MINDS RADIOLOGY LIMITED

Collective Minds Platform

Collective Minds Radiology is a healthcare collaboration company, providing services in collaboration, education and research. We offer a secure GDPR compliant platform enabling radiologists, radiographers, researchers and other healthcare professionals to share, discuss and process diagnostic images with other medical professionals worldwide

Features

  • A secure online environment to share anonymised patient images
  • Built in clinical grade DICOM image viewer
  • Browser access from multiple device types
  • Scalable storage solution for medical images
  • Education tools for virtual distributed learning
  • Research tools to manage reader studies to clinical trials
  • Online community of radiologists, radiographers and researchers

Benefits

  • Discuss, collaborate and manage patient cases securely
  • View clinical images online with access to image manipulation tools
  • Ease of access and availability to the platform service
  • Build a secure and accessible repository of clinical images
  • Build and deliver online courses and examinations
  • Conduct reproducible and repeatable imaging research
  • Enable multi-institution collaboration across national and international borders

Pricing

£25 to £500 a user a month

  • Education pricing available
  • Free trial available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at rebecca@cmrad.com. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 14

Service ID

8 7 4 0 7 3 4 0 4 3 0 6 2 5 7

Contact

COLLECTIVE MINDS RADIOLOGY LIMITED Rebecca Johnson
Telephone: 07340126490
Email: rebecca@cmrad.com

Service scope

Software add-on or extension
No
Cloud deployment model
Public cloud
Service constraints
The service is accessible through an up to date browser and does not support Microsoft Internet Explorer. Browsers supported include Google Chrome, MS Edge, Mozilla Firefox and Apple Safari
System requirements
  • Compatible Browser - Chrome, Edge, Safari, Firefox
  • Internet connection - minimum 15-20Mbps

User support

Email or online ticketing support
Email or online ticketing
Support response times
We target same day response. All first responses are within 24 hours
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
Onsite support
Support levels
Email support - support@cmrad.com
We provide support for all application related issues, but not for customers' hardware or IT infrastructure issues
Support available to third parties
Yes

Onboarding and offboarding

Getting started
We provide online help from the home page of www.cmrad.com (registration is required), where both videos and written guides can be found. In addition we provide remote training using a video client from appropriately trained and qualified members of staff. We can also provide onsite training as part of the start-up phase of a deployment
Service documentation
Yes
Documentation formats
HTML
End-of-contract data extraction
Users are in control of the data they upload, share and remove from the Collective Minds platform. At the end of the contract the user can delete their uploaded cases themselves and request us to delete their user data.
End-of-contract process
All data uploaded by the user can be deleted by themselves at the end of the contract. Users can also delete their profile from the system at the end of the contract, although maintaining a profile does allow free access to the Global Community. There is no charge for this. For data that has been added to a case on the CMRAD platform e.g. annotation, there may be a charge for providing this annotated data back to the user, although give the age of our company, this has not been requested yet.

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
Application to install
No
Designed for use on mobile devices
Yes
Differences between the mobile and desktop service
The mobile application allows a subset of the full desktop functionality. Users are able to view and comment on cases within the Collective Minds global community and also premium education groups of which they are a member. Some more advanced functions e.g. uploading a case, is not currently possible through the mobile application
Service interface
No
User support accessibility
None or don’t know
API
No
Customisation available
No

Scaling

Independence of resources
We have an auto-scalable system that allows us to increase our processing and memory capacity automatically

Analytics

Service usage metrics
No

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Other security clearance
Government security clearance
None

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
European Economic Area (EEA)
User control over data storage and processing locations
No
Datacentre security standards
Managed by a third party
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
Encryption of all physical media
Data sanitisation process
No
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
Education service: Currently, it is not possible for users to extract their data. However, they can download the responses from a Quiz

Research service: TBC
Data export formats
CSV
Data import formats
Other
Other data import formats
  • DICOM
  • PDF
  • JPG / JPEG
  • Video files

Data-in-transit protection

Data protection between buyer and supplier networks
  • TLS (version 1.2 or above)
  • Legacy SSL and TLS (under version 1.2)
Data protection within supplier network
TLS (version 1.2 or above)

Availability and resilience

Guaranteed availability
Education service: We provide system access 24x7

Research service: In addition, research clients may request us to agree to a dedicated SLA
Approach to resilience
We have a disaster recovery plan in place. More details are available on request
Outage reporting
This is currently being worked on by our company

Identity and authentication

User authentication needed
Yes
User authentication
Username or password
Access restrictions in management interfaces and support channels
Every action in our platform is based on roles. Only users with specific roles can access to our support channels
Access restriction testing frequency
At least every 6 months
Management access authentication
Username or password

Audit information for users

Access to user activity audit information
Users contact the support team to get audit information
How long user audit data is stored for
At least 12 months
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
At least 12 months

Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
No
Cyber essentials plus
No
Other security certifications
Yes
Any other security certifications
Externally audited IT security vs data/patient privacy risk

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
Basic aspects of Collective Minds' information security policy:
- Ensuring the confidentiality, integrity and availability of the information.
- Comply with all applicable legal requirements.
- Have a continuity plan that allows you to recover from a disaster in the shortest possible time.
- Train and educate all employees on information security.
- Properly manage all incidents that have occurred.
- All employees are informed of their safety duties and obligations and are responsible for fulfilling them.
- Communicate

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
We are following the guidelines within the Medical Device Regulations (MDR)
Vulnerability management type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach
Vulnerability management is built into our product development procedures. We run automatic scans every minor release, typically every 2-3 months, confirmed by our system tests. Additionally we run manual "hire a hacker" penetration tests annually as part of our IT security audits
Protective monitoring type
Undisclosed
Protective monitoring approach
We have multiple layer of threat detection and monitoring in place. Most importanly:
- AWS WAF filtering all incoming trafic and logging and detecting rouge behaviour. e.g. bot nets are typically stopped in this layer
- AWS Shield rouge/abnormal activity detection. e.g. would stop and log a brute force login attempt
- Automated and manual vulnerability scans and penetration tests. Manual tests are performed once per year, automated tests are continuously applied.
- log monitoring and review are part of the post-market surveillance and operations activities.
Incident management type
Supplier-defined controls
Incident management approach
Described in our Issue management procedure, data breach procedure and post-market surveillance procedure.
Base process is inspired by and compliant with MDR medical device processes (issues management, CAPA, etc).

Secure development

Approach to secure software development best practice
Conforms to a recognised standard, but self-assessed

Public sector networks

Connection to public sector networks
No

Social Value

Social Value

Social Value

Wellbeing

Wellbeing

Improving the capabilities to collaborate and improve the wellbeing of patients and healthcare staff, by simplifying the possibility to collaborate and improved diagnoses.

Pricing

Price
£25 to £500 a user a month
Discount for educational organisations
Yes
Free trial available
Yes
Description of free trial
Free account with premium access. Possibility to trial the service in full including basic application training.

30 - 90 days free of charge, subject to terms

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at rebecca@cmrad.com. Tell them what format you need. It will help if you say what assistive technology you use.