Mime Online
Our "Mime Online" service allows users to login and access a wide range of analysis dashboards, reports, trackers and tools. These are all aimed at supporting local authorities, regional government, multi-academy trusts, schools, other public bodies and charities to better understand their context and make more evidence-informed decisions.
Features
- Interactive, visual dashboards and insight reports
- Performance reports for local authorities, schools, MATs, colleges and universities
- Locality profiles showing demographics of a specified local area
- Single child index automatically linking data between source systems
- Statistical analysis, inc forecasting, survey analysis & evaluation
- Access analysis from your computer, mobile, or tablet
- Bespoke analysis / management dashboard design and development
- Child tracking for early years providers and special schools
- Automated school data transfer (to MATs or LAs)
- Regular updates so analysis stays up to date
Benefits
- Quickly understand the most important data for your organisation
- Evaluate the impact of your service
- Benchmark against similar organisations to understand strengths and weaknesses
- Understand the key messages from the data
- Track progress of your service over time
- Support statutory reporting requirements
- Understand future trends and upcoming demand for services
- Free up staff time by automating reporting processes
- Generate a single source of truth
- Get more timely analysis through automated data sharing
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
9 0 6 9 9 5 0 5 2 6 1 8 4 3 1
Contact
MIME CONSULTING LIMITED
Steve Preston
Telephone: 0208 099 4240
Email: info@mime.org.uk
About your service
- Service categories
-
Application Development and Deployment
Analytics and business intelligence
- Business Intelligence
- Advanced and predictive analytics
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Hybrid cloud
- Service constraints
- No known constraints. The service is accessible from any device with access to the internet.
- System requirements
- Internet access
User support
- Email or online ticketing support
- Yes
- Support response times
- Users will have a response within 48 hours
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
We provide email and direct phone support for users in office hours as standard. All licence holders will have a named contact at Mime who will be responsible for ensuring a good service and supporting the user to make the most of their Mime Online. We have extremely good feedback from our clients on the quality of our after sales support, which is why the vast majority of our clients stay with us year after year.
Different modules include different forms of self-service help including videos, FAQs and fully annotated help guides with screenshots. Many of the modules include training sessions as part of the licence fee. These are usually delivered remotely but can be delivered onsite. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- We offer user documentation and online training sessions to all new users. The online training will cover the practicalities of using "Mime Online" as well as how to get the most from the service.
- Service documentation
- Yes
- Documentation formats
- End-of-contract data extraction
- At the end of each contract, users will be asked whether they want to renew their licence. If they do not, Mime will discuss what data they would like extracted and provide this in a useful format.
- End-of-contract process
- At the end of the contract, the user will have the opportunity to download any analysis and request data extracts. Mime will keep the users' analysis for a short period of time to allow for any changes around renewal or data extract requirements.
- Documentation accessibility standard
- None or don’t know
- How the documentation is accessible
- Colours alone are not used to depict performance - these are always accompanied by text descriptions and icons to support interpretation, to avoid issues relating to colour blindness.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Other
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- Some analysis, such as online dashboards have a limited version for mobile access. When this is the case, a message will appear to make clear that more is available by accessing on a larger screen.
- Service interface
- Yes
- User support accessibility
- None or don’t know
- Description of service interface
- The user interface will present the analysis available to that specific user and let them explore it online or download it.
- Accessibility standards
- None or don’t know
- Description of accessibility
- Colours alone are not used to depict performance - these are always accompanied by text descriptions and icons to support interpretation, to avoid issues relating to colour blindness.
- Accessibility testing
- We have not yet done any interface testing with users of assistive technology.
- API
- No
- Customisation available
- Yes
- Description of customisation
-
We are happy to work with users to customise the service. In similar services we have provided in the past, customisations have included:
- Tracking bespoke indicators
- Refocussing analysis on particular topics of interest
- Adjusting the data exports available to meet reporting requirements
- Adding new sections of analysis to dashboards
Some modules of Mime Online allow users to customise their reports themselves, while others require us to make the customisations on our clients' behalf.
Scaling
- Independence of resources
- We use AWS to host our Services and can scale up or down the environment depending on demand. We monitor the resources carefully to ensure that avaibility remains high even at peak times.
Analytics
- Service usage metrics
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- User control over data storage and processing locations
- No
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- Less than once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- In-house destruction process
- Data sanitisation type
- Deleted data can’t be directly accessed / Cryptographic Erasure
Data importing and exporting
- Data export approach
- Some data will be available to extract by copying out of dashboards and tools. If users require data in a different format or structure, they can request data extracts via their named contact at Mime. Mime will make all reasonable efforts to meet those requirements.
- Data export formats
-
- CSV
- Other
- Other data export formats
- Excel Workbook
- Data import formats
-
- CSV
- ODF
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
-
The Mime Online service will normally be available 24 hours a day. However, we make no guarantees that the service will be available for 100% of the time, as there may be periods of site maintenance, upgrades or server outages that necessitate some downtime.
We routinely make upgrades to the service, for example installing security patches or adding new features. When these upgrades necessitate any downtime, we normally provide at least 2 working days’ notice for any periods of scheduled downtime. Wherever possible this downtime will be scheduled out of core working hours (e.g. in evenings or weekends). - Approach to resilience
- Available on request
- Outage reporting
- We use email alerts as part of monitoring to check for outages on both the backend API and frontend Service
Identity and authentication
- User authentication needed
- Yes
- User authentication
- Username or password
- Access restrictions in management interfaces and support channels
- Management interfaces are on Amazon Webservices (AWS), with only senior development and director level staff with access. All logins use MFA authentication.
- Access restriction testing frequency
- Less than once a year
- Management access authentication
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- No audit information available
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- No
- Security governance approach
- Only senior development staff and directors have access to the AWS infrastructure. MFA is enforced on all access to AWS , which itself has many levels of security and access logging. Our information security policy outlines the requirements of all staff covering information security and data governance.
- Information security policies and processes
- We adhere to set security polices which all employees follow and are communicated clearly by line management. Staff are supervised and trained accordingly, both when they join and ongoing.
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Code is tracked in git with new features, bug fixes, and enhancements checked and thoroughly tested in our separate development environment before being deployed. Changes are measured for risk and impact in advance of work starting. We use a project and issue tracking software tool to manage this approach.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- Information about potential threats and vulnerabilites to our software are assessed and raised by AWS, and reviewed by our IT security team. Where necessary we deploy patches generally within 48hrs of a vulnerability being highlighted
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- We respond promptly to security incidents with alerts in place to notify the relevant people in our security team. Where any risk to data is identified, customers will be notified as soon as possible in line with our SLA commitments.
- Incident management type
- Supplier-defined controls
- Incident management approach
-
Users can report incidents directly to our team with a dedicated email address.
We don't have a pre-defined process for common events, as incidents are rare. - Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Supplier-defined process
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
-
We provide free demonstration versions of our dashboards and tools. They will not be based on the users' data but will show what they can get from each dashboard or tool.
The exception is the EYFS tracking module which includes a fully featured 6 week trial.
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 2%
- Between £500,001 and £1,000,000
- 5%
- Between £1,000,001 and £2,500,000
- 10%
- Between £2,500,001 and £5,000,000
- 12%
- Over £5,000,001
- 15%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- No
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 87dbc1c7-5ebb-45eb-a457-c68abc6cf91b
- Cyber essentials plus
- No
- Cyber Essentials Alternative
- None of the criteria
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 6: Employment and training: For those who face barriers to employment
- Understanding of employment and skills issues, and of the skills and employment shortages of high growth sectors relating to the contract
-
Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain
Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.
- Understanding of the issues affecting the development of new skills by target cohort
-