Cloud2 Ltd

Hadron (Digital Workplace)

Hadron/Wizdom: powerful, prebuilt ‘Modern’ enterprise intranet for Office 365, broad, deep, easy to adopt and extend. Hadron/Wizdom takes Office 365 workspaces up a notch: full mobile support; rich content management, collaboration, communication & business processes; best in class features and structure; strong UI & visual design. 100+ public sector installations.


  • Native Office 365/SharePoint Online, leverage and extend Modern capabilities
  • Many additional web parts: Advanced Megamenu, App Launcher and more
  • Full enterprise intranet, out of the box, pocket intranet
  • Extended UI, mobile friendly, user friendly integrated with MS Teams
  • Best practice document management & enhanced search functionality
  • Sophisticated Policy Centre, Knowledge Centre, Departments sites, Social Centre, chatbot
  • Crisis communications capability, including personalised news, corporate alerts, Yammer integration
  • Mature and extensive information architecture, templates, content types, taxonomies
  • Project and Change Management Office
  • Connect - active directory – Connecting People, Teams & Locations


  • Best practice, O365 Digital Workplace, 80% pre-configured, 20% personalised
  • Flexible, extensive and feature rich, out of the box
  • Launch quickly (~8 weeks), reduced effort from internal staff
  • Office 365 integration- leverage Teams, Flow, PowerApps, Office Online etc
  • Visually rich and highly intuitive– better branding and user adoption
  • Best practice development - resilient to changes in Office 365
  • Enhanced Search– improved findability using metadata filtering & enhanced UI
  • Navigation– intuitive menu builder and mature Information architecture improve adoption
  • Product Maturity– Version 8.5 reliability, sophistication, engineered for the future
  • Mobile- Responsive Design; supports Microsoft O365 applications


£980 per person per day

  • Education pricing available

Service documents


G-Cloud 11

Service ID

3 7 9 1 6 5 4 7 5 1 2 4 0 7 8


Cloud2 Ltd

Oliver Chan

01274 308378

Service scope

Service scope
Software add-on or extension Yes, but can also be used as a standalone service
What software services is the service an extension to Cloud2 Services - Hadron, Power BI Kick-starter, Health Solutions.
Cloud deployment model
  • Public cloud
  • Private cloud
  • Hybrid cloud
Service constraints No Specific constraints depending on architect agreed with customer.
System requirements
  • Microsoft Office 365 licences
  • A platform capable of hosting Microsoft services

User support

User support
Email or online ticketing support Yes, at extra cost
Support response times Response hours are Mon-Fri 9am - 5.30pm.
Response times are 1 hour for critical (P1) and 4 hours for others (non-critical).
User can manage status and priority of support tickets Yes
Online ticketing support accessibility None or don’t know
Phone support Yes
Phone support availability 9 to 5 (UK time), Monday to Friday
Web chat support Web chat
Web chat support availability 9 to 5 (UK time), Monday to Friday
Web chat support accessibility standard None or don’t know
How the web chat support is accessible We use standard Microsoft features.
Web chat accessibility testing None.
Onsite support Yes, at extra cost
Support levels Our Support Services are described in detail in our 'Cloud2 - Support Services' offering in G-cloud 11.
Support available to third parties Yes

Onboarding and offboarding

Onboarding and offboarding
Getting started We provide training options as standard as part of the offering for operations and end-users of the system
Service documentation Yes
Documentation formats
  • PDF
  • Other
Other documentation formats Microsoft Word
End-of-contract data extraction All data remains the property of the customer. Cloud2 do not create any bespoke data containers so data can be extracted using a variety of industry standard solutions or Cloud2 can offer services to perform migrations to a new system.
End-of-contract process At the end of the contract, the customer owns all of the contracted deliverables. Any Cloud2 IP that is separately licenced reverts to Cloud2 and must cease to be used. Cloud2 licenced IP in the PowerApps space is used to accelerate on-going development for customer teams. The remaining products will continue to operate without this IP.

Using the service

Using the service
Web browser interface Yes
Supported browsers
  • Internet Explorer 10
  • Internet Explorer 11
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari 9+
  • Opera
Application to install No
Designed for use on mobile devices Yes
Differences between the mobile and desktop service No feature differences. Layouts will auto adapt dependent on screen configuration.
Service interface No
What users can and can't do using the API Standard Microsoft API's.
API documentation No
API sandbox or test environment No
Customisation available Yes
Description of customisation The services are customisation services.


Independence of resources We deliver our off-premise services via the Microsoft Cloud (Azure/O365).


Service usage metrics No


Supplier type Reseller providing extra features and support
Organisation whose services are being resold Microsoft

Staff security

Staff security
Staff security clearance Other security clearance
Government security clearance Up to Developed Vetting (DV)

Asset protection

Asset protection
Knowledge of data storage and processing locations Yes
Data storage and processing locations United Kingdom
User control over data storage and processing locations Yes
Datacentre security standards Complies with a recognised standard (for example CSA CCM version 3.0)
Penetration testing frequency At least once a year
Penetration testing approach ‘IT Health Check’ performed by a Tigerscheme qualified provider or a CREST-approved service provider
Protecting data at rest
  • Physical access control, complying with CSA CCM v3.0
  • Physical access control, complying with SSAE-16 / ISAE 3402
  • Encryption of all physical media
  • Other
Other data at rest protection approach For data at rest, Office 365 deploys BitLocker with AES 256-bit encryption on servers that hold all messaging data, including email and IM conversations, as well as content stored in SharePoint Online and OneDrive for Business.
In some scenarios, we use file-level encryption. Office 365 moves beyond a single encryption key per disk to deliver a unique encryption key so that every file stored in SharePoint Online is encrypted with its own key. files are distributed across multiple Azure Storage containers, each with separate credentials, rather than storing them in a single database.
Data sanitisation process Yes
Data sanitisation type Deleted data can’t be directly accessed
Equipment disposal approach Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data importing and exporting
Data export approach Data is kept in standard data formats and can be extracted at any time by the customer using standard Microsoft or other products.
Data export formats
  • CSV
  • Other
Other data export formats
  • XML
  • JSON
  • HTML
Data import formats
  • CSV
  • Other
Other data import formats
  • XML
  • JSON
  • HTML

Data-in-transit protection

Data-in-transit protection
Data protection between buyer and supplier networks Other
Other protection between networks Customer own responsibility for the network all the way to the Microsoft Cloud.
Data protection within supplier network
  • TLS (version 1.2 or above)
  • IPsec or TLS VPN gateway

Availability and resilience

Availability and resilience
Guaranteed availability There are no Cloud2 specific SLA's since all the services reside on customer infrastructure or the Customers Azure environment.
Approach to resilience
Outage reporting Via the Service status portal.

Identity and authentication

Identity and authentication
User authentication needed No
Access restrictions in management interfaces and support channels We supply permissions based on the customers active directory.
Access restriction testing frequency At least once a year
Management access authentication
  • 2-factor authentication
  • Identity federation with existing provider (for example Google Apps)
  • Username or password

Audit information for users

Audit information for users
Access to user activity audit information Users have access to real-time audit information
How long user audit data is stored for User-defined
Access to supplier activity audit information Users have access to real-time audit information
How long supplier audit data is stored for User-defined
How long system logs are stored for User-defined

Standards and certifications

Standards and certifications
ISO/IEC 27001 certification Yes
Who accredited the ISO/IEC 27001 BSI
ISO/IEC 27001 accreditation date 15 Jan 2019
What the ISO/IEC 27001 doesn’t cover Our services are handed over to the customer support teams who have complete access to all aspects of the system (as defined by customer security policy) the ultimate usage is the customer responsibility.
Service scope for Office 365 is decribed in this document:
ISO 28000:2007 certification No
CSA STAR certification No
PCI certification No
Other security certifications No

Security governance

Security governance
Named board-level person responsible for service security Yes
Security governance certified Yes
Security governance standards ISO/IEC 27001
Information security policies and processes Our Services are delivered within the customer or Microsoft environments and we follow and comply with customer and Microsoft security policies.
FISMA/FedRamp, EU Model Clauses, HIPAA/HITECH, ISB 1596, ISO 27018, SASE16 SOC1 & SOC 2

Operational security

Operational security
Configuration and change management standard Supplier-defined controls
Configuration and change management approach Once created the environment is managed by the customer and Cloud2 do not apply any changes other than those requested by customer following their change control procedures.
Vulnerability management type Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach This runs in the Microsoft environment, the office 365 and Azure vulnerability management approach applies.
Protective monitoring type Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Protective monitoring approach This runs in the Microsoft environment O365 and Azure, these processes are applied.
Incident management type Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
Incident management approach Please see

Secure development

Secure development
Approach to secure software development best practice Supplier-defined process

Public sector networks

Public sector networks
Connection to public sector networks No


Price £980 per person per day
Discount for educational organisations Yes
Free trial available No

Service documents

Return to top ↑