LocalGov Drupal AWS Cloud Hosting
Zoocha provides AWS cloud hosting for LocalGov Drupal platforms used by UK local authorities. As an AWS Partner and Drupal specialist, we deliver secure, resilient hosting aligned to LocalGov Drupal standards. The service is fully covered by Zoocha’s ISO-certified management systems, supporting compliant, scalable and sustainable council digital services.
Features
- LocalGov Drupal AWS hosting
- AWS Partner delivery model
- Drupal and LocalGov specialists
- ISO-certified cloud operations (9001, 14001, 20000, 22301, 27001, 27701)
- Secure UK public sector hosting
- High availability and resilience
- Backup and disaster recovery
- Performance monitoring and alerting
- Scalable cloud infrastructure
- Ongoing support and governance
Benefits
- Designed for UK local authorities
- Optimised for LocalGov Drupal
- Secure LocalGov Drupal hosting for council websites
- ISO-aligned assurance and compliance (inc. JOSCAR & FSQS)
- Reduced operational and security risk
- Scales with service demand
- Improved resilience for public services
- Clear accountability and reporting
- Trusted public sector supplier
- Long-term platform sustainability
Pricing
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
9 7 7 2 0 6 1 6 2 7 3 0 9 3 4
Contact
ZOOCHA LIMITED
William Huggins
Telephone: 441992256700
Email: info@zoocha.com
About your service
- Service categories
-
PaaS
Application Platforms
- Deployment-centric application platforms
Service scope
- Service constraints
-
Service is designed specifically for LocalGov Drupal distributions.
Hosting is provided on AWS cloud infrastructure.
Planned maintenance may be required to align with LocalGov Drupal release cycles. - System requirements
-
- LocalGov Drupal distribution
- Drupal 9 or later
- AWS cloud environment
- Compliance with local authority security requirements
- Backup, resilience and recovery requirements agreed
- Cloud deployment model
- Public cloud
User support
- Email or online ticketing support
- Yes
- Support response times
-
15 minutes for critical support (24/7/365)
Our standard support hours are 9am to 5.30pm Monday to Friday, excluding bank holidays. Zoocha also offers extended support hours from 7am to 9pm Monday to Friday, excluding bank holidays. - User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.2 AA
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Yes
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- WCAG 2.2 AA
- Web chat accessibility testing
- N/A
- Onsite support
- Yes, at extra cost
- Support levels
-
Zoocha provide a multi tier support service which is contracted as 'support days per month' @ £700 per day and utilisation against contracted support time is reported monthly. Contracted support time can be increased or decreased (to a minimum of 1 day per month) at any time during the contract, by providing 30 days notice.
Our standard support hours are 9am to 5.30pm Monday to Friday, exluding bank holidays. Zoocha also offers extended support hours from 7am to 9pm Monday to Friday, exluding bank holidays.
Critical support can be provided on a 24/7/365 basis at an additional cost of £250 per month.
Service level agreements (SLA's) cover uptime, incident response and incident resolution.
Each client will have a named Client Services Manager, who will be their main point of contact and will be responsible for the monthly service reviews.
Note: Overages (support time used above the contracted amount) is charged at £150 per hour. - Support available to third parties
- Yes
- AI chatbot
- No
Onboarding and offboarding
- Getting started
-
Zoocha provides a structured onboarding process tailored specifically for local authorities using the LocalGov Drupal platform.
We begin with an onboarding and discovery phase to understand your council’s website, service priorities, security requirements, and LocalGov Drupal configuration. Our Drupal and AWS specialists review the existing platform, content model, integrations, and user roles to confirm alignment with LocalGov Drupal standards and council governance needs.
Zoocha then provisions AWS hosting environments optimised for LocalGov Drupal, configuring security controls, backups, monitoring, and resilience in line with public sector best practice. Where a migration is required, we plan and deliver this using a controlled, low-risk approach, including testing, validation, and rollback planning.
We provide clear documentation covering environments, access, deployment processes, backup and recovery, and day-to-day operational responsibilities. Knowledge transfer sessions are delivered remotely as standard and tailored for council digital teams, service owners, and content editors.
Ongoing support is delivered through Zoocha’s ISO-certified service management processes, with defined escalation routes and regular service reviews. Onsite workshops or additional training can be provided by agreement where required.
This approach ensures councils can adopt LocalGov Drupal hosting confidently and securely from day one. - Service documentation
- Yes
- Documentation formats
- Other
- Other documentation formats
- Confluence - PDF extracts
- End-of-contract data extraction
-
Zoocha provides a clear, controlled end-of-contract process to ensure local authorities can retain full access to their LocalGov Drupal platform, data, and services without disruption.
Where LocalGov Drupal AWS Cloud Hosting is delivered using a buyer-owned AWS account, the service can continue as is at contract end. Zoocha will support a structured handover to the council or a nominated third party, including transfer of access, documentation, monitoring, and confirmation of backup and recovery arrangements.
Where hosting is provided via a Zoocha-managed AWS account, ownership of the AWS account can be transferred to the buying organisation or a nominated supplier. This ensures that all environments, data, services, and backups remain fully operational, avoiding any interruption to live council websites or digital services.
Alternatively, Zoocha can provide all customer data in structured, industry-standard formats. This includes Drupal databases, uploaded files, configuration, code, and infrastructure definitions, transferred securely in line with agreed exit timelines.
Zoocha does not retain any intellectual property rights over client systems or data. All data remains the property of the local authority and is handled in accordance with GDPR, public sector obligations, and information security best practice.
Following successful handover, Zoocha securely removes any remaining access or credentials. - End-of-contract process
-
Zoocha provides a structured and low-risk exit process to ensure local authorities retain full ownership of their LocalGov Drupal platform, data, and hosting.
Where LocalGov Drupal AWS Cloud Hosting is delivered in a buyer-owned AWS account, the service can continue as is at contract end. Zoocha completes a managed handover to the council or nominated supplier, including transfer of access, documentation, and confirmation that environments, services, and standard backups remain operational. This handover is included in the contract price.
Where hosting is provided via a Zoocha-managed AWS account, ownership of the AWS account can be transferred to the local authority or nominated supplier. This transfer, including all live environments, services, and standard backup configurations, is included in the price of the contract and avoids disruption to live council websites.
The contract price includes standard backups as configured during service delivery and the secure removal of Zoocha access following handover.
Additional services are available by agreement and may incur extra cost. These include post-handover support, extended transition assistance, or creation of bespoke data or backup extracts in council-specified formats.
All data remains the property of the local authority and is handled in line with GDPR, public sector obligations, and legal requirements. - Documentation accessibility standard
- WCAG 2.2 AA
Using the service
- Web browser interface
- No
- API
- No
- Command line interface
- No
Scaling
- Independence of resources
-
Zoocha guarantees service independence through its ISO 20000-1 certified Service Management System, applied across all services. Capacity planning, demand forecasting, and resource management are embedded into our operating model to ensure one client’s demand does not adversely impact another.
Services are provisioned using logically isolated environments with defined capacity boundaries. Resource utilisation is continuously monitored, with proactive scaling and intervention where thresholds are approached. Forecasting and workload planning are reviewed regularly to account for growth, peak demand, and planned changes.
This structured, audited approach ensures consistent service performance, predictable availability, and resilience for all customers, regardless of wider platform demand. - Usage notifications
- Yes
- Usage reporting
- Optimising consumption
- Yes
- Automatic scaling
- Yes
Analytics
- Infrastructure or application metrics
- Yes
- Metrics types
-
- CPU
- Disk
- HTTP request and response status
- Memory
- Network
- Number of active instances
- Reporting types
-
- API access
- Real-time dashboards
- Regular reports
- Reports on request
- Resource tagging
- Yes
- FOCUS resource tagging
- Yes
Resellers
- Supplier type
- Reseller providing extra support
- Organisation whose services are being resold
- Amazon Web Services
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- At least every 6 months
- Penetration testing approach
- ‘IT Health Check’ performed by a CREST-approved service provider
- Protecting data at rest
-
- Physical access control, complying with another standard
- Encryption of all physical media
- Scale, obfuscating techniques, or data storage sharding
- Other
- Other data at rest protection approach
-
Zoocha protects data at rest through a combination of cloud-native security controls and ISO-certified governance. Data is encrypted at rest using industry-standard encryption mechanisms provided by the underlying cloud or PaaS platforms. Logical isolation, role-based access control, and least-privilege principles are enforced to prevent unauthorised access.
These technical controls are governed through Zoocha’s ISO 27001 Information Security Management System and ISO 20000-1 Service Management System, which apply across all services. Regular risk assessment, monitoring, and audit activities ensure data protection controls remain effective and aligned with government security expectations. - Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Data Erasure
- Explicit overwriting of storage before reallocation / Secure Erase
- Physical Destruction / Hardware containing data is completely destroyed
Backup and recovery
- What’s backed up
-
- Everything
- User Files
- Application Files
- Databases
- All Environments
- System Configuration
- States
- VM’s
- Backup controls
-
Zoocha works with users to agree backup scope and schedules as part of service onboarding and ongoing management. Standard backups are configured by default, covering core service components such as databases, file assets, and platform configuration.
Users can request different backup schedules for different components, for example more frequent database backups and less frequent file or configuration backups, subject to platform capabilities. Retention periods and recovery objectives are agreed and documented.
Backup configurations are reviewed regularly and can be adjusted through change management processes. Users retain visibility of backup arrangements and can request restores or changes via Zoocha’s Service Desk. - Datacentre setup
- Multiple datacentres with disaster recovery
- Scheduling backups
- Supplier controls the whole backup schedule
- Backup recovery
- Users contact the support team
- Backup and recovery
- Yes
- RPO/RTO
- Yes
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- IPsec or TLS VPN gateway
Availability and resilience
- Guaranteed availability
-
Zoocha designs and operates services delivering high availability appropriate to public sector digital services. Availability targets are agreed per service and are underpinned by resilient cloud architecture, proactive monitoring, and ISO-certified service management.
Typical availability targets are aligned to the underlying cloud or platform provider service levels (for example AWS or leading Drupal PaaS providers), which commonly offer infrastructure availability of 99.9% or higher. Zoocha complements this with robust application configuration, monitoring, incident response, and capacity management to maximise real-world service availability.
Availability is measured on a monthly basis and excludes agreed planned maintenance windows, which are scheduled in advance and communicated to customers. Zoocha operates an ISO 20000-1 certified Service Management System, covering incident management, problem management, and continual improvement, ensuring rapid response and resolution when incidents occur.
Service level agreements (SLAs) for availability, response, and resolution are agreed as part of the call-off contract. Where agreed availability targets are not met, service credits or fee adjustments are applied in line with the contractual SLA mechanism. Refunds are calculated proportionately based on the level and duration of the availability shortfall.
Zoocha provides transparent reporting on availability and incidents, ensuring customers have clear visibility and assurance throughout the service lifecycle. - Approach to resilience
-
Zoocha designs its services to be resilient by default, using proven cloud architectures and operating under ISO-certified management systems.
Services are hosted on leading cloud platforms that provide resilient data centre infrastructure, including multiple availability zones within a region, redundant power, networking, and environmental controls. This ensures that the failure of a single component or data centre does not result in service loss. Detailed data centre resilience information is available on request.
At the application and platform level, Zoocha designs services with redundancy, automated recovery, and regular backups. Monitoring and alerting are in place to detect issues early and enable rapid response. Disaster recovery and backup strategies are defined per service, aligned to business continuity requirements.
Operational resilience is governed through Zoocha’s ISO 20000-1 certified Service Management System and ISO 22301 Business Continuity Management System. These cover capacity planning, incident management, problem management, and continual improvement, ensuring services can absorb demand spikes and recover quickly from incidents.
Resilience is tested and reviewed regularly through operational reviews, incident analysis, and risk assessment. This structured approach ensures services remain available, recoverable, and protected against both infrastructure and operational failures. - Outage reporting
-
Zoocha provides clear, structured, and transparent outage reporting through its centralised Service Desk and monitoring processes.
All incidents and outages are logged and managed through Zoocha’s Jira Service Desk, which acts as the single system of record. Customers are notified of incidents via automated email alerts generated from the Service Desk, with ongoing updates provided throughout the incident lifecycle until resolution.
For higher-severity incidents, Zoocha provides more frequent communications in line with agreed service levels, ensuring service owners and stakeholders remain informed of impact, progress, and recovery actions.
Zoocha integrates proactive monitoring and alerting into the Service Desk, allowing infrastructure and application issues to be raised automatically as incidents, often before users are affected. This supports rapid response and reduced downtime.
Customer-facing dashboards can be provisioned by agreement, providing visibility of incidents, service status, response times, and trends. These dashboards are tailored to customer needs and draw directly from Service Desk data to ensure accuracy and consistency.
Where required, Zoocha can also support API-based access or integrations for incident data, subject to agreement.
All outage reporting is governed by Zoocha’s ISO 20000-1 certified Service Management System, ensuring consistent communication, auditability, and continual improvement.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Dedicated link (for example VPN)
- Access restrictions in management interfaces and support channels
-
Zoocha restricts access to management interfaces and support channels using role-based access control and least-privilege principles, governed by its ISO27001 and ISO20000-1 certified management systems.
Access to hosting platforms, cloud accounts, and administrative tools is limited to authorised personnel with approved roles. MFA is enforced where supported. Permissions are reviewed regularly and updated promptly when roles change or access not needed.
Support channels, including the Jira Service Desk, are restricted to named users and authorised Zoocha staff. All access is logged/auditable. Access requests, changes, and removals follow documented joiner, mover, leaver processes to ensure consistent control and security. - Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Dedicated link (for example VPN)
- Devices users manage the service through
-
- Dedicated device on a segregated network (providers own provision)
- Dedicated device on a government network (for example PSN)
- Dedicated device over multiple services or networks
- Any device but through a bastion host (a bastion host is a server that provides access to a private network from an external network such as the internet)
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users have access to real-time audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
-
- CSA CSM version 4.0
- ISO/IEC 27001
- Information security policies and processes
-
Zoocha operates a comprehensive information security framework governed by its ISO 27001–certified Information Security Management System (ISMS), which applies across all services. This is supported by ISO 27701 for privacy information management and integrated with Zoocha’s ISO 20000-1 Service Management System and ISO 22301 Business Continuity Management System.
Zoocha maintains a full suite of documented information security policies and procedures, including access control, asset management, risk management, incident management, supplier management, data protection, and secure disposal. Policies are approved by senior management, reviewed regularly, and updated in response to risk, audit findings, or changes in legislation.
Clear reporting and accountability structures are in place. An appointed Information Security Manager is responsible for ISMS ownership, supported by defined internal roles including Data Protection Officer and Service Manager functions. Security incidents and risks are reported through formal escalation routes and tracked to resolution.
Compliance is ensured through mandatory staff training, role-based access controls, documented procedures, and continuous monitoring. Regular internal audits, external certification audits, and management reviews verify that policies are followed and remain effective.
This structured, audited approach ensures consistent protection of customer information and alignment with UK government security expectations.
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
-
Zoocha operates formal configuration and change management processes under ISO 20000-1 and ISO 27001 certified management systems.
All service components, including infrastructure, platforms, applications, and integrations, are recorded as configuration items and tracked throughout lifecycle. Changes are logged, assessed, approved, implemented, and reviewed using controlled workflows.
Each change is assessed for operational and security impact, including risk to confidentiality, integrity, and availability. Security-related changes receive additional review where required. Changes are prioritised, tested, and implemented in line with agreed change windows, with rollback plans in place.
Audit trails, approvals, and outcomes are retained to support accountability, assurance, and continual improvement. - Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
-
Zoocha operates structured vulnerability management processes governed by its ISO27001 and ISO20000-1 certified management systems.
Potential threats are assessed through continuous monitoring, risk assessment, and platforms/infrastructure/applications review. Vulnerabilities are prioritised based on severity, exploitability, and service impact.
Security patches are deployed in-line with patch management procedures. Critical security patches are assessed and applied as a priority, with testing and controlled deployment to minimise risk.
Zoocha sources threat intelligence from cloud and platform providers, vendor security advisories, CVE databases, security mailing lists, and industry best-practice guidance. Vulnerability findings are tracked to resolution, with audit evidence retained for assurance and continual improvement. - Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
-
Zoocha operates protective monitoring, aligned to ISO27001 and ISO20000-1 certified management systems.
Potential compromises are identified through continuous monitoring of infrastructure/applications, including automated alerts, log analysis, and anomaly detection provided by cloud-native and third-party monitoring tools. Monitoring covers availability, performance, security events, and unauthorised access attempts.
When potential compromise is detected, an incident is immediately raised in Zoocha’s Service Desk and triaged. Incidents are investigated, contained, and escalated where required, with corrective actions applied promptly.
Response times are governed by defined incident severity levels, with high-severity security incidents receiving immediate attention and prioritised response to minimise impact and restore quickly. - Incident management type
- Supplier-defined controls
- Incident management approach
-
Zoocha operates formal incident management processes under ISO20000-1 certified SMS.
Pre-defined processes exist for common incident types, including service outages, performance degradation, and security incidents. These processes define severity levels, response targets, escalation, and communication requirements.
Users report incidents via Zoocha’s Jira Service Desk, which acts as the single system of record. Incidents may also be raised automatically through monitoring and alerting tools.
Incidents are tracked from identification through to resolution, with clear ownership and audit trails. Incident updates are communicated through the Service Desk, and post-incident reports, including RCA where appropriate, are provided following resolution, supporting transparency and improvement. - Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Separation between users
- Virtualisation technology used to keep applications and users sharing the same infrastructure apart
- No
Energy efficiency
- Energy-efficient datacentres
- Yes
- Description of energy efficient datacentres
-
Zoocha delivers services using leading cloud and platform providers whose data centres align with the principles of the EU Code of Conduct for Energy Efficient Datacentres.
Our primary hosting partners design and operate data centres with a strong focus on energy efficiency, including optimised cooling systems, high-efficiency power distribution, and continuous monitoring of energy usage. These providers actively measure and improve Power Usage Effectiveness (PUE) and invest in modern infrastructure to reduce waste and environmental impact.
Energy efficiency is supported through consolidation, virtualisation, and elastic scaling, ensuring compute resources are provisioned only when required and not left underutilised. Automated scaling and capacity management reduce unnecessary energy consumption during periods of low demand.
Zoocha’s selection and ongoing review of hosting providers form part of our ISO 14001 certified Environmental Management System. Environmental performance, sustainability commitments, and energy efficiency practices are considered as part of supplier evaluation and risk management.
Where required, detailed information on specific data centre locations, certifications, and energy efficiency measures can be provided on request, subject to provider disclosure policies.
This approach ensures that services are delivered in line with recognised European best practice for energy-efficient, resilient data centre operations.
Pricing
- Discount for educational organisations
- No
- Free trial available
- No
Discount
- Provide your minimum discount applicable to your baseline prices
- 5%
Formula for calculating price of your services
- Formula for calculating price of your services
-
Which of the core deployment models you intend to offer
Public CloudPublic Cloud - Formula for calculating price of your services
- Total Cost
- The Total Cost for a buyer's call off requirement in a Public Cloud Deployment
- =
- Baseline Pricing
-
Baseline pricing for Zoocha’s Public Cloud services is published through the G-Cloud Digital Marketplace catalogue and the associated service listings for Lot 1a. These listings define the standard, undiscounted prices for each service using clear and auditable units of consumption, such as monthly managed hosting charges, environment size, service tier, or the agreed scope of managed infrastructure or platform services.
Baseline prices represent the starting point for calculating the total cost of a buyer’s requirement and exclude any framework-level discounts, onboarding charges, or service-specific adjustments that may be agreed at call-off. Pricing is structured to be transparent, predictable, and aligned with typical public sector usage patterns for cloud infrastructure and platform services.
Where Zoocha delivers services using third-party Public Cloud platforms, such as AWS, baseline pricing reflects Zoocha’s management, operation, support, and governance of those services rather than the underlying cloud provider’s consumption-based charges. Underlying cloud provider costs may be billed separately based on actual usage, in line with the buyer’s requirements and the selected service model.
Buyers can review Zoocha’s public service catalogue and supporting information via Zoocha’s website, with definitive baseline pricing, units of measure, and assumptions confirmed within the relevant G-Cloud service descriptions and the call-off contract. - Baseline Pricing - Web link
- https://www.zoocha.com
- -
- Minimum Discounting
- 5%
- +
- Onboarding Activity
- Onboarding costs may vary based on your specific requirements, please confirm with suppliers during the clarification process
- +
- Additional sources of cost
-
Additional sources of cost may arise where a buyer’s requirements extend beyond the baseline Public Cloud service definition published within the G-Cloud catalogue. This can include increased consumption of underlying cloud resources such as compute, storage, networking, or managed cloud services provided by third-party platforms, e.g. AWS, which are charged based on actual usage.
Costs may also increase where buyers require additional environments, enhanced resilience or availability configurations, bespoke security controls, higher service tiers, or extended support coverage outside standard service hours. Requirements for accelerated onboarding, complex migration activities, or delivery to compressed timescales may also result in additional cost.
In some cases, buyers may request additional assurance, reporting, or governance activities to meet internal or regulatory obligations. Where such requirements fall outside the standard service scope, they may introduce additional cost.
Changes in third-party cloud provider pricing or currency exchange rates may also impact the overall cost of service delivery over the contract term. Any pass-through costs from cloud or platform providers are charged transparently.
All additional sources of cost are discussed openly in advance, agreed as part of the call-off contract, and documented clearly to ensure transparency, predictability, and effective cost control throughout the duration of the service. - -
- Additional sources of cost reduction
-
Cost reductions may apply where buyers are able to align their requirements closely with Zoocha’s standard Public Cloud service offerings. Use of standardised architectures, predefined service tiers, and established delivery patterns can reduce operational overhead and therefore overall cost.
Buyers may also benefit from efficiencies achieved through longer contract terms, which allow onboarding and setup costs to be amortised over a longer period and support more predictable service delivery. Where appropriate, service consolidation, e.g. combining multiple workloads or environments into a single managed service, may also reduce total cost.
Optimisation of cloud resource usage can further reduce costs. This includes right-sizing compute and storage resources, removal of unused or underutilised services, and adoption of cost-efficient cloud-native services where appropriate. Zoocha works with buyers to support ongoing optimisation and cost control throughout the contract.
The minimum framework-level discount declared as part of this G-Cloud submission is applied to baseline pricing for all buyers. Additional cost reductions may be agreed at call-off where buyers commit to reduced operational complexity, standard support models, or clearly defined and stable service requirements.
Any cost reductions are agreed transparently and reflected clearly within the call-off contract to ensure predictable and controlled pricing over the contract.
Mandatory certifications
- Mandatory certifications
-
Are you are bidding to offer IaaS and/or PaaS as a reseller or are you in sole control of the infrastructure
Sole Control and also accredited to resell other providers' servicesCloud service suppliers you intend to resell with evidence
Organisation 1
Organisation name
PantheonWebsite address/upload for organisation
Website addressWebsite address
https://directory.pantheon.io/agencies/zoochaISO 9001 certification
ProvidedISO 14001 certification
ProvidedISO 27001 certification
ProvidedISO 20000-1 certification
ProvidedISO 27017 certification
ProvidedAre you bidding to provide services under Lot 1b or both Lot 1a and Lot 1b?
YesISO 27018 certification
Provided
Cyber Essentials
- Do you have a Cyber Essentials Plus certificate?
- Yes
- Cyber Essentials Plus certificate Number
- E929f140-4295-4708-b019-8f74133e265a
Non-mandatory Standards and certifications
- ISO 28000:2022 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
- Activities to reconnect people with the environment and increase awareness of ways to protect and enhance it
-