DXC Technology Procurement Analytics
DXC Technology's Procurement Analytics is a fully managed service for processing and visualising spend data. It includes spend data cleansing, classification, enhancement and aggregation, analysis and visualisations via cloud based Software as a Service and Power BI. Supports budget management, category management, cost optimisation, supplier management, economic development, drives savings.
Features
- Custom managed data processing service
- Customised data visualisation and dashboards
- Data is cleansed, classified and standardised prior to analysis
- Managed service
- Multiple user licenses included
- Visualisations built for a business audience
- User support included
- User training
- Accessible from any current web browser
Benefits
- Data rendered fit for purpose for particular requirements
- Information tailored to deliver against specific business requirements
- Analysis based on high quality data yields superior MI
- Reduces data cleansing and manipulation burden on internal resources
- All team members working from single version of the truth
- No analytical skills required to gain insights into data
Pricing
£10,000 an instance
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
9 9 6 3 5 5 1 1 7 7 9 2 2 8 4
Contact
EntServ UK Ltd part of the DXC Technologies Group
DXC Frameworks Team
Telephone: +44 330 105 8389
Email: ukitenders@dxc.com
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Private cloud
- Service constraints
- N/A
- System requirements
-
- Internet access
- Web-browser
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Mon - Fri (0900 - 1730) excluding public holidays
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Yes, at an extra cost
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- None or don’t know
- How the web chat support is accessible
- Synchronous conferencing is available via Microsoft Skype or Microsoft Teams, with dial-in options available.
- Web chat accessibility testing
- Not tested by Reseller, but Microsoft are conducting testing and implementing feedback into their Synchronous conferencing packages. This will include screen-reading and navigation capabilities.
- Onsite support
- No
- Support levels
- Telephone and email support from customer services with escalation where necessary to technical resources.
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- By contacting DXC though the G-Cloud contact information provided.
- Service documentation
- Yes
- Documentation formats
-
- HTML
- ODF
- Other
- Other documentation formats
- Video
- End-of-contract data extraction
- All data can be downloaded from the service at any time in xls, csv or mdb formats. Customers can request a data extraction at any time and it will be provided for them in any format they require by customer services.
- End-of-contract process
- At the end of a contract period, assuming that a customer does not want to renew the contract, we would deliver a data extract if required, turn off all users access and set the dataset to "dead" in our systems. If a customer requires, their data can be permanently deleted from all of our systems. All end of contract options are free of any additional charge.
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Internet Explorer 11
- Microsoft Edge
- Firefox
- Chrome
- Application to install
- No
- Designed for use on mobile devices
- No
- Service interface
- Yes
- User support accessibility
- WCAG 2.1 A
- Description of service interface
- Disclosed upon application.
- Accessibility standards
- WCAG 2.1 AA or EN 301 549
- Accessibility testing
- Disclosed upon application.
- API
- Yes
- What users can and can't do using the API
- API available is a read only service. Users can access the API to extract data as required. The API service is set up for users by DXC.
- API documentation
- Yes
- API documentation formats
- ODF
- API sandbox or test environment
- No
- Customisation available
- No
Scaling
- Independence of resources
- Systems and resources are sized according to the number of users at any given time.
Analytics
- Service usage metrics
- Yes
- Metrics types
- We track every user's activity on our service and can provide reports on request that detail number of logins, last login date, applications accessed, reports viewed and generated, downloads completed
- Reporting types
- Reports on request
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Up to Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- European Economic Area (EEA)
- User control over data storage and processing locations
- No
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CHECK service provider
- Protecting data at rest
-
- Encryption of all physical media
- Scale, obfuscating techniques, or data storage sharding
- Data sanitisation process
- Yes
- Data sanitisation type
- Explicit overwriting of storage before reallocation
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001
Data importing and exporting
- Data export approach
- There are options for a user to export charts, graphs, tables and lists of data from any of the reports provided in DXC’s Spend Analytics. At the bottom of every report there are three icons, one each for exporting data in xls, csv or mdb formats. Simply clicking on one of these icons opens a dialogue box offering the user options for opening the exported file or saving it to a location of their choice.
- Data export formats
-
- CSV
- ODF
- Data import formats
-
- CSV
- ODF
Data-in-transit protection
- Data protection between buyer and supplier networks
-
- Private network or public sector network
- Legacy SSL and TLS (under version 1.2)
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- Legacy SSL and TLS (under version 1.2)
Availability and resilience
- Guaranteed availability
- No guarantees are provided, we aim for 99.9% uptime and have a mirror system to ensure continued access for users in the event of main system downtime.
- Approach to resilience
- Available on request
- Outage reporting
- Should a service outage occur, all users are automatically switched to a mirrored service which will be no more than 24 hours older than the main service site. If the outage on the main database is expected to last for more than one hour, all users are notified by email and are notified again when systems are back online.
Identity and authentication
- User authentication needed
- Yes
- User authentication
- Username or password
- Access restrictions in management interfaces and support channels
- Only authorised DXC staff can access management interfaces. There are no remote administration interfaces
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Identity federation with existing provider (for example Google Apps)
- Username or password
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- Lloyd’s Register
- ISO/IEC 27001 accreditation date
- 28/05/2018
- What the ISO/IEC 27001 doesn’t cover
- Available on Request
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- We follow company the most demanding public standards in terms of security policies and processes.
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- The DXC Analytics Development Team operate a tiered testing methodology for both application development and development of new reports. Our aim is to produce a zero defect product, the methodology is comprised of the following: • unit testing which is carried out by the development team • regression testing, manual functional testing, automated functional scenario testing which is carried out by a dedicated, professional software tester • user acceptance which is carried out by the product management team and customer facing staff
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- Regular log file analysis. Patches deployed weekly. Forefront TMG and ESET for information
- Protective monitoring type
- Undisclosed
- Protective monitoring approach
- Forefront TMG and ESET are the controls we use. Regular network audits of installed software. Found compromises initiate a triage process to assess the severity of the compromise and anything deemed to be severe would result in the service being turned off. If the compromise is in our own network we would switch all users to the mirror. If the compromise is on our product we would configure users to restrict access to an appropriate level that dealt with the compromise. All found compromises are responded to immediately that they are detected.
- Incident management type
- Undisclosed
- Incident management approach
- Telephone based support for users to report incidents. Maintain an evidence log of any security incident. Log and evidence reports can be provided to customers.
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- No
Social Value
- Social Value
-
Social Value
- Fighting climate change
- Tackling economic inequality
- Equal opportunity
- Wellbeing
Fighting climate change
We recognise the impact companies have on the environment we all live in. We are committed to being net zero by 2050 in the UK. The Science Based Targets initiative (SBTi) has validated our near-term emission reduction target of 65% by FY30 against our FY19 baseline as being in line with minimizing global warming to 1.5°C. In FY23, 96% of the energy we purchased in the UK was renewable. We are continually improving the efficiency of our offices and data centers, and are ensuring that our data centers are certified under the ISO 50001 energy management system standard. We are also advancing the sustainability of our IT services, helping our customers to become more sustainable. We are members of the Green Software Foundation, a non-profit with the mission to build a trusted ecosystem of people, standards, tooling and best practices for creating and building green software. We help our customers increase their energy efficiency and reduce their environmental impacts with proprietary technology and next-generation solutions such as cloud computing, desktop virtualization and data center management. We will build on our existing programme of sustainability activities to deliver additional environmental benefits in the performance of the contract.Tackling economic inequality
We provide high-quality learning and development opportunities to young people via our Early Careers Programme and Digital Futures Academy. Our Early Careers Programme provides development opportunities and training to enable young people to jumpstart their careers. We focus on developing potential, and our programme is designed to broaden and deepen knowledge. DXC and Manchester United Foundation have partnered to launch the DXC Digital Futures Academy, a four-year education programme for secondary-school students in the Greater Manchester area. The academy aims to support, inspire and empower young people, connecting them to opportunities and enhancing their career prospects in the technology sector. 50 students aged 12-13 years old are participating in the programme, which includes teaching technology, personal and professional development skills. We will build upon our existing programme of activities to create new jobs and new skills during the performance of the contract.Equal opportunity
We are building an inclusive, high-impact culture based on equitable practices and diverse employee perspectives. We achieve this through our focus on impact-driven programmes - for example, the DXC Dandelion Programme. The DXC Dandelion Programme provides an environment that supports and celebrates the talents and skills of neurodiverse people — such as those with Autism, ADHD or Dyslexia — and helps them build valuable skills to pursue a career in information technology. The DXC Dandelion Programme has been awarded a Silver award for Best Learning Programme that Supports and Promotes Diversity, Equity and Inclusion from the Brandon Hall Group. We are also a Disability Confident organisation in the UK and achieved a top score of 100 in the 2023 Disability Equality Index. 99% of our global workforce is enabled to work virtually, including from home, and all of our people are able to apply for flexible working, supporting the needs of diverse individuals. We also support a diverse, inclusive and equitable culture through our Employee Resource Groups. They provide support, networking and allyship to diverse individuals, as well as valuable feedback to the organisation on how it can better support diverse communities. Our ERGs work closely with HR to continuously evolve our best practice. We have several ERGs including for:
• Gender
• Race and ethnicity
• Disability and neurodiversity
• LGBTQ+
• Armed forces
We will build upon our existing programme of diversity, equity and inclusion activities to support equal opportunity during the performance of the contract.Wellbeing
Caring is core to our values. We take care of each other and work as a team to build a sustainable company that supports our communities. This includes supporting the health and wellbeing of our people and wider society. As a virtual first organisation, 99% of our global workforce is enabled to work virtually, including from home. Working from home can be more inclusive for people with disabilities, health conditions and caring responsibilities. We also run several programmes to support the physical and mental health of our people. This includes:
Wellbeing Awareness Programmes. Working with our partners and delivered by Wellbeing Champions alongside HR, we provide a number of awareness programmes and activities throughout the year centered on improving the health and wellbeing of our employees. For example, walking challenges, healthy eating programmes, and financial planning support.
Employee Assistance Programme, supporting the personal matters of our people. Services are available 24/7, 365 days a year, and include counselling, online CBT and critical incident support, as well as health checks, mood trackers, and wellbeing articles.
Mental Health First Aiders. We work with Mental Health First Aid England, a social enterprise, to train our employees as Mental Health First Aiders (MHFAs).
We will build upon our existing programme of wellbeing activities to support the wellbeing of the workforce in the performance of the contract.
Pricing
- Price
- £10,000 an instance
- Discount for educational organisations
- No
- Free trial available
- No