Lexacom
Lexacom is a comprehensive platform that helps organisations make the most of their time. It brings tasks, data, systems, and people together by combining speech recognition, ambient voice technology, digital dictation, AI, workflows, and text messaging, and letting users choose the features that suit their role and digital confidence.
Features
- Real-time, 99% accurate speech-to-text across all applications
- Dictation for all document types and clinical workflows
- Optional AI workflows and configurable documentation modes
- Medical vocabulary and automatic clinical coding
- Single platform combining dictation, AI, workflows, and reporting
- Fully configurable specialty specific workflows
- Mobile, tablet, and desktop applications included
- Configurable usage and activity reporting built in
- UK MDR Class I device, ISO27001 / ISO9001 accredited
- Simple installation and updates
Benefits
- All professional documentation tools in one secure platform
- Save time, reduce admin, improve productivity and wellbeing
- Work in the office, at home, and on the go
- Quicker, more accurate, and complete data entry
- Simpler working on one platform instead of several
- Faster turnaround for letters, notes, and referrals
- Easy adoption for users of all digital confidence levels
- Data security onboarding packs for simplified compliance
- Data security onboarding packs for simplified compliance
- Flexible pricing and licensing to suit your organisation
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
9 5 0 9 8 6 2 7 7 0 5 5 9 8 7
Contact
Lexacom
Simon Brady
Telephone: 01295 236910
Email: sales@lexacom.co.uk
About your service
- Service categories
-
Application Development and Deployment
AI platforms
AI software services
- Conversational AI Software Services
- Document AI Software Services
- Multi cloud support
- No
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Public cloud
- Service constraints
- None
- System requirements
-
- Reliable internet connectivity
- Windows 10 or later
- Audio Input/Output (Soundcard/Compatible Microphone)
User support
- Email or online ticketing support
- Yes
- Support response times
- Lexacom's target response time for questions is 1 working day.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
- Lexacom provide comprehensive support to all customers with a subscription. This includes telephone, email and remote access support.
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
-
We help users get started with Lexacom through comprehensive training that is included within the annual subscription. Training can be delivered remotely, either individually or in group sessions, depending on user preference.
In addition, we provide access to a full library of digital training resources, including video guides and FAQs available on our website, and we host regular interactive webinars to support ongoing learning.
For organisations that prefer in-person support, onsite training is also available at an additional cost. - Service documentation
- Yes
- Documentation formats
-
- HTML
- End-of-contract data extraction
-
For Lexacom customers, data extraction at the end of a contract is only applicable to users who use the workflow elements of Lexacom. These customers retain full ownership of their data and can request an export before or at contract termination.
On request, we provide a secure export of the workflow data in standard, interoperable formats so it can be transferred to another system. Our team manages the extraction process and supplies the data via secure transfer. - End-of-contract process
-
At the end of the contract, users are given advance notice of the contract expiry. On the final day of the contract period, access to all elements of the application is removed.
If a customer decides to return, access can be re-initiated within a defined period after expiry, allowing them to resume use of the service without disruption. - Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Opera
- Other
- Application to install
- Yes
- Compatible operating systems
-
- Android
- IOS
- Windows
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- The Lexacom mobile app has been developed to have a consistent appearance and the same functionality as the desktop client, providing a fully cross platform experience.
- Service interface
- No
- User support accessibility
- WCAG 2.2 AA
- API
- Yes
- What users can and can't do using the API
-
Users can set up the service via the API by authenticating and sending requests with specific parameter.
Changes are made similarly by sending requests with updated parameters. Certain limitations exist to maintain system integrity and security, such as predefined schemas and permissions.
Users must adhere to API documentation for valid requests. - API documentation
- Yes
- API documentation formats
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
Multiple elements of the Lexacom solution can be customised to match the exact requirements of the customer.
Workflows and AI templates are fully configurable. The user interface is fully customisable.
With Live speech recognition, Lexacom provides the ability to add custom words, the creation of custom macros and the Lexacom Comprehension Engine can be configured to provide intelligent simplification of terminology as you dictate.
Scaling
- Independence of resources
- Autoscale is configured within the hosting environment to automatically increase resources during periods of increased demand. This is based on realtime usage metrics and not schedules.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Lexacom provide customers with detailed service metrics. These are important to monitor application usage and return on investment. This can include activity levels and productivity gain measurements.
- Reporting types
-
- Real-time dashboards
- Regular reports
- Reports on request
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least every 6 months
- Penetration testing approach
- ‘IT Health Check’ performed by a CHECK service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Physical access control, complying with SSAE-18 / ISAE 3402
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Explicit overwriting of storage before reallocation / Secure Erase
- Physical Destruction / Hardware containing data is completely destroyed
Data importing and exporting
- Data export approach
- N/A
- Data export formats
- Other
- Data import formats
- CSV
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- Other
- Other protection within supplier network
- Azure private link service
Availability and resilience
- Guaranteed availability
-
We are dedicated to providing a highly reliable and stable service, maintaining an exemplary track record of uptime. We pride ourselves on consistently achieving high levels of service availability, underscoring our commitment to operational excellence.
Our uptime is ensured by leveraging robust infrastructure and cutting-edge technologies. Our service delivery is supported by Microsoft Azure, known for its high resilience and secure environment.
Our SLAs are specifically tailored to meet the diverse needs and requirements of our customers, ensuring alignment with their needs. These agreements include detailed performance metrics and availability targets, which are rigorously monitored and reported through transparent communication. - Approach to resilience
-
We ensure high service resilience by leveraging Microsoft Azure cloud, which embodies robust asset protection and resilience measures in line with the UK Government’s cloud security principles.
Hosted in Azure UK South/UK West, our service benefits from built-in redundancy to safeguard against failures, ensuring continuous service availability. Azure’s comprehensive security includes multi-layered defenses, stringent access controls, and continuous network monitoring, mitigating risks from physical and cyber threats. Our architecture is designed to automatically scale and reroute traffic between Azure's resilient frameworks, minimizing downtime and performance bottlenecks.
Data is encrypted both at rest and in transit, with regular backups stored securely across multiple locations to enable rapid recovery in case of an incident. Microsoft Azure complies with key certifications, ensuring that our infrastructure meets high standards for security and data protection.
Detailed documentation on our resilience strategies and data center specifics is available upon request. - Outage reporting
- We are committed to transparency and prompt communication in the event of service disruptions. We employ multiple methods to ensure our users are well-informed and can plan accordingly during outages. We include information on the nature of the outage, the services impacted, the expected time for resolution, and any recommended actions for users. We add details of any service outage to our website in a prominent place. Our help desk telephone lines also plays a recorded message to callers. We have the capability to send email alerts to all affected users in the event of an outage.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Username or password
- Access restrictions in management interfaces and support channels
- To access Lexacom a user must have a username and secure password. They can only access the application once allocated a licence/subscription. MFA can be optionally configured at user or organisation level.
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Username or password
Audit information for users
- Access to user activity audit information
- You control when users can access audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- You control when users can access audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
-
Lexacom maintain a comprehensive collection of security policies which cover:
- acceptable use
- data access and handling
- cryptography
- telecoms
- information handling
- incident response
- data (backup and antivirus)
- data protection (employee and customer)
- disaster recovery
- business continuity
Policies are reported within an information security management system.
All security polices are reviewed and updated by the Head of IT and senior management team.
Lexacom are dedicated to providing the most robust security policies utilising technology and best practice. - Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Configuration and change management approach
- Our configuration and change management process tracks service components via version control and a managed database, documenting changes from inception. Changes undergo rigorous assessment, including security impact assessment. Validation tests and peer reviews ensure integrity and security. Critical changes require approval from stakeholders and adhere to a structured rollout plan. Continuous monitoring post-change guarantees stability and security.
- Vulnerability management type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Vulnerability management approach
- We have a comprehensive vulnerability management process which rigorously evaluates potential threats through continuous monitoring of system logs, penetration testing, and vulnerability scanning. We assess vulnerabilities through automated tools, network scanning and manual inspection, prioritizing based on severity and potential impact. Rapid patch deployment via automated systems, with critical patches applied within hours of release. Information about potential threats is sourced from a variety of channels including security advisories, threat intelligence feeds, and industry forums. Regular audits and reviews of all processes are conducted periodically. The process includes ongoing employee training and awareness.
- Protective monitoring type
- Complies with a recognised standard, for example CSA CCM v4.0 or SSAE-18 / ISAE 3402
- Protective monitoring approach
- Our protective monitoring employs anomaly detection, real-time log analysis and behaviour analytics to identify potential compromises. Upon detection, we enact automated response protocols and escalate for immediate investigation and containment. Our response time is measured in minutes, enabling us to mitigate threats and minimize impact.
- Incident management type
- Complies with a recognised standard, for example, CSA CCM v4.0 or ISO/IEC 27035:2011 or SSAE-18 / ISAE 3402
- Incident management approach
- We have pre-defined processes for common events. Internal and external users report incidents via telephone or email, internal users can also report in-person or via instant messaging. Incident reports are provided to external users via email.
- Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- Lexacom provide a free 30-day trial period for an unlimited number of users.
- Link to free trial
- N/A
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 1%
- Between £500,001 and £1,000,000
- 2%
- Between £1,000,001 and £2,500,000
- 3%
- Between £2,500,001 and £5,000,000
- 4%
- Over £5,000,001
- 5%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- British Assessment Bureau (UKAS accredited)
- ISO/IEC 27001 accreditation date
- Thursday 15 August 2024
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- British Assessment Bureau (UKAS accredited)
- ISO 9001 accreditation date
- Thursday 15 August 2024
- What the ISO 9001 doesn’t cover
- N/A
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 28c6e3c8-972d-470e-a0bf-687eb7b1e781
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 81dca9e5-f015-4740-b308-80ab63f8e40f
- Other security certifications
- Yes
- Any other security certifications
- DSP Toolkit (Standards Exceeded). ODS code: 8J566
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
- Plans to engage the contract workforce in deciding the most important workplace issues to address
- Monitoring of employee engagement rates (by protected characteristic) and, where necessary, the development of actions to ensure all voices are heard across the diversity of the workforce
- Employment contracts that reflect actual hours worked; steps taken to ensure employees understand their contracts and have the ability to review and adjust them if actual hours regularly exceed contracted hours
- Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
- Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
- Activities to cascade good practice on fair working conditions throughout the supply chain
- Offer a pay and leave entitlement to all eligible staff who become kinship carers, ideally equivalent to statutory adoption pay and leave
- Payment of more than the National Minimum Wage or National Living Wage (as appropriate) to the contract workforce
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
- Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion
- Inclusive and accessible recruitment practices, development practices and retention policies that support-focused activities including those provided in the Guide for line managers on recruiting, managing and developing which support people with a disability or health condition
-