IT Governance for Cloud
AtkinsRéalis’ IT Governance for Cloud Services provide flexible, agile, and efficient governance solutions for control of your IT transformation at pace. We optimise by tailoring to your requirements, with mitigation of risks like vendor lock-in, privacy compliance, and security, providing a roadmap, structure and metrics for continuous improvement and optimisation.
Features
- Cloud IT governance to meet organisation’s overall business objectives.
- IT organisation structure Terms of Reference with roles and responsibilities.
- Risk management and mitigation for cloud adoption.
- Compliance and regulatory adherence - assessment against appropriate legislation.
- Security controls - security governance for maintaining secure cloud environment.
- Cost optimisation - balancing cost savings, performance and requirements.
- Performance monitoring with metrics and key performance indicators (KPIs).
- Cloud migration strategies for efficient cloud adoption and governance.
- Tailored methodologies for change roadmap using COBIT, TOGAF, ITIL etc.
- Policy development and enforcement.
Benefits
- Reduces risk of cloud adoption, addressing common pitfalls.
- Optimises cost to meet business objectives.
- Conforms to legislation, standards and business requirements.
- Provides flexible, agile and efficient cloud solutions.
- Gives clear organisational structure and terms of reference.
- Improves skill level of technology resources.
- Provides IT governance in-line with best practices and proven frameworks.
- Integrates with corporate governance and internal audit practices.
- Improves technology service delivery, both demand and supply management.
- Provides reliable maintenance through well-defined processes.
Pricing
£600 a unit a day
- Education pricing available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
9 7 2 7 3 1 0 0 4 4 5 7 8 6 3
Contact
ATKINSRÉALIS UK LIMITED
Martin Yeoman
Telephone: +44 1372 75 2023
Email: ccs@atkinsrealis.com
Planning
- Planning service
- Yes
- How the planning service works
-
We identify your IT governance requirements and develop tailored solutions to get the full benefits of the transformational changes of cloud adoption and ensure the best investment for your organisation.
Our approach is to:
• Identify the considerations for moving the required IT services into the cloud, especially relating to levels of re-architecture needed to realise the full benefits of cloud adoption.
• Identify where and how IT governance needs to change to increase pace whilst maintaining control and aligning with your business goals and organisation-wide governance.
• Define roles, responsibilities and governance structure.
• Assess the risks and define mitigation strategies.
• Design a tailored and optimised cloud-focused governance solution for your organisation, addressing specific cloud considerations including: cloud cost optimisation strategies; vendor lock-in considerations; data privacy and compliance; security controls; availability and monitoring; code development and deployment approaches.
• Establish key performance indicators and metrics.
• Plan and deliver change roadmap, in line with your organisation’s architectural principles.
• Build confidence across the business in the benefits of cloud and provide coaching to stakeholders at all levels on delivering the cloud transformation programme.
• Deliver the IT Governance Change Programme, including change management, policy enforcement and continuous improvement. - Planning service works with specific services
- No
Training
- Training service provided
- No
Setup and migration
- Setup or migration service available
- Yes
- How the setup or migration service works
-
Our IT Governance for Cloud service designs and implements governance structures and capabilities to support the provision and management of cloud hosting, platforms and cloud software. We support buyers in making appropriate considerations to assist cloud migration; typical considerations include:
• Redeploy versus rearchitect: will existing software and/or data be redeployed as-is in the cloud environment or will it be rearchitected to be cloud-native to gain the full benefits (scalability, performance, cost optimisation, security, monitoring, data privacy compliance etc) of cloud adoption?
• Security and access control: How will data in the cloud be protected? What measures are in place to prevent other customers of the cloud provider accessing our data?
• Skills: What Skills do we need to have in house or buy in to manage my Cloud Provision. Reliability/Availability: Will data in the cloud be accessible when needed?
• Integrity: What measures are in place to avoid data loss? What recourse exists if the worst happens?
• Avoiding lock-in: Is there a risk of being tied to a cloud provider for long periods?
• Location: Is it guaranteed that data will be stored in acceptable locations e.g. within the UK or EU? - Setup or migration service is for specific cloud services
- No
Quality assurance and performance testing
- Quality assurance and performance testing service
- Yes
- How the quality assurance and performance testing works
-
Our Aerospace, Defence, Security and Technology (ADS&T) division within AtkinsRéalis holds ISO 27001 and all our UK businesses are independently certified as achieving the ISO 9001:2015 quality management standard.
New software or hosting will be subject to a rigorous testing plan agreed with the client. Each functional and non-functional requirement will be tested and will be retested at the end of each sprint to confirm its continued operation. Repetitious testing shall be scripted and automated where appropriate.
Customer journeys will be tested by both testing engineers and sampled end users, where practicable. Performance will be tested in conditions as close as possible to real-world conditions, including network/internet traffic and transactional load, as well as under exceptional loads such as the running of large MI reports.
In the event that a customer requirement cannot be met as expected, we will support clients in either rejecting the new product/capability or, where appropriate, in agreeing a pragmatic relaxation of an aspect of the original requirements. The quality assurance of the new software, capability or hosting shall cover not just the validation of requirements, but also the suitability of the “look and feel” for the end users.
Security testing
- Security services
- Yes
- Security services type
-
- Security strategy
- Security risk management
- Security design
- Cyber security consultancy
- Security audit services
Ongoing support
- Ongoing support service
- No
Service scope
- Service constraints
- No
User support
- Email or online ticketing support
- Yes, at extra cost
- Support response times
-
Our dedicated Technical Support team supports external customers, during contracted hours of support. Response times are aligned to the following incident priority levels:
• A - Critical, respond in 2 working hours providing circumvention instructions where possible or fix.
• B - Major, respond in 4 working hours details as per priority A.
• C&D - Functional or intermittent Incident, respond in 8 working hours details as per priority A.
Classification details are available for each Priority. - User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Support levels
- Standard Support is available during 08:00 – 18:00 hours, Monday to Friday (not English Public Holidays). Incidents may be logged via the web, telephone or email during these times. Additionally, Incidents may be logged via the web outside of these hours, but they will not be progressed until the next working day. Software fixes will be progressed during these hours, and a release made available in line with the Customers agreement. 7 days per week – see Standard Hours, the addition being able to log and receive responses to Incidents during the additional hours. Please note that we operate a Restoration of Service (RoS) approach to support on the additional days e.g. Saturday, Sunday and English public holidays – See below for RoS definition. 24/7 - see 7 days per week, the addition being able to log and receive responses on a 24/7 basis. Restoration of Service (RoS) – during extended hours of support the aim is to get the Customer operational as soon as possible. Software fixes will not be provided during the additional hours of support. Incidents remain the responsibility of the Technical Support team throughout the lifecycle.
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Developed Vetting (DV)
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- Lloyd's Register Quality Assurance Limited
- ISO/IEC 27001 accreditation date
- 06/04/2024
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Tackling economic inequality
- Equal opportunity
- Wellbeing
Fighting climate change
AtkinsRéalis are committed to achieving social value on everything we deliver. Everything we do supports our goal of delivering outstanding project outcomes for our clients, but also ensuring that we leave a legacy for our client and their stakeholders, whether it be environmental, social, or economic. As a global organisation working on the world’s biggest Infrastructure, Transport and Energy programmes we always work to ensure that climate change is considered. Tailored commitments will be agreed through the buying process.
Sustainability is at the heart of AtkinsRéalis purpose - engineering a better future for our planet and its people. As an organisation we have signed up to the United Nations Framework Convention on Climate Change's (UNFCCC) Race to Zero global campaign and signed the Business Ambition for 1.5oC commitments. We have signed The Climate Pledge, working towards net zero by 2030 and are in the process of setting science-based targets.
We support clients in safeguarding what we do today to enhance the environment and protect future generations from harm, this is fundamental to AtkinsRéalis’ sustainability policy and Sustainable Business Strategy.
We have a series of approaches that we use through the delivery of our cloud projects, including:
• Considering whole life carbon when designing systems and assets to minimise carbon.
• Utilising a variety of tools (appropriate to the sector and client) to assess whole life carbon from embodied to in-life to end of life.
• Raising awareness about climate change to stakeholders of the projects to ensure clear understanding.Tackling economic inequality
AtkinsRéalis are committed to achieving social value on everything we deliver. Everything we do supports our goal of delivering outstanding project outcomes for our clients but also ensuring that we leave a legacy for our client and their stakeholders, whether it be environmental, social, or economic. Tailored commitments will be agreed through the buying process.
We are committed to creating a healthy future for communities and the wider economy. We do this through creating new businesses, jobs and skills and working with supply chain partners to create capacity and resilience.
We recognise some of the digital and cyber skills shortages facing the UK and are actively participating and promoting careers from school age children through to lifelong training. This is often delivered through STEM outreach schemes such as Governors for Schools programme and CyberFirst. This can include upskilling activities delivered by some of our highly skilled professionals ranging from interview and job preparation (e.g., CV support, Mock interviews) through to technical training (e.g., cyber security, digital skillset, STEM-based careers, supply chain engagement). We promote our full-time opportunities to priority groups based on the area of operation. (e.g., people living in regionally and nationally deprived areas /disabled people/ people who are underrepresented in the industry including Women, BAME, LGBT+ etc.).
We understand the opportunities a diverse supply chain can bring to complement our overall solution we are providing to our clients, such as innovation, improved productivity, novel or new technologies or niche skillsets. As a large organisation we have a large network of approved suppliers from diverse backgrounds including small and medium enterprises that we can utilise as required. These suppliers go through our due diligence process to ensure they meet our standards (i.e. around cyber security) and we are working with suppliers who share our values.Equal opportunity
AtkinsRéalis are committed to achieving social value on everything we deliver. Everything we do supports our goal of delivering outstanding project outcomes for our clients but also ensuring that we leave a legacy for our client and their stakeholders, whether it be environmental, social, or economic. Tailored commitments will be agreed through the buying process.
We have achieved the platinum standard on Cleared Assured Accreditation and are well positioned in its advocacy of ED&I practices. We are committed to creating an inclusive, collaborative culture for all of its employees and sub-contractors and feeding back value directly to our clients.
AtkinsRéalis is a member of Inclusive Employers, a national network of businesses committed to building inclusive workplaces. Our processes have enabled us to create inclusive and diverse teams that will benefit clients with better performance, diversity of thinking and enhanced creativity. We are committed to cultivating a thriving diverse and inclusive work environment, where differences are valued and respected, and all staff are valued, supported, and treated fairly.
Equal opportunity is fundamental to how AtkinsRéalis operates. From the moment a candidate applies to a vacancy of ours, we assess how we can best ensure equality. With this in mind, we are committed to ensuring that we select and recruit the best people for each role based on their ability to do the job, in line with the needs of the business, irrespective of the candidates’ gender identity, marital status, disability, sexual orientation, health, age, race, nationality, religion, employment status, or membership or non-membership of a trade union. We pursue this commitment by having clear and concise procedures and guidelines for HR and line managers to ensure policies are fully understood and implemented.Wellbeing
AtkinsRéalis are committed to achieving social value on everything we deliver. Everything we do supports our goal of delivering outstanding project outcomes for our clients but also ensuring that we leave a legacy for our client and their stakeholders, whether it be environmental, social, or economic. Tailored commitments will be agreed through the buying process.
We are passionately committed to changing the way we think about, and deal with mental/ physical health and wellbeing in the workplace. Without a happy, healthy, and energised team we wouldn’t be able to serve our clients in the innovative way we want to and make substantive change like cloud transformation possible. We live by our own values and ensure these are embedded in our delivery. When undertaking our work, we ensure all stakeholders have a safe and open dialogue to talk about health and wellbeing and access appropriate support.
We consider ourselves long term partners with communities, upskilling people and enabling wellbeing benefits over the long term. This can include:
• Partnering with local groups and charities to invest in community wellbeing appropriate to the services being delivered.
• Training our staff to deliver inclusive design in every piece of work to account for those with accessibility issues.
• Designing with users'’ wellbeing in mind. (Implementing user centered design principles and co-designing with the stakeholders who will use cloud technology.
• Engaging with stakeholders; to raise awareness to address specific wellbeing agendas, such as mental health.
Pricing
- Price
- £600 a unit a day
- Discount for educational organisations
- Yes