The Sollis Partnership

Sollis Clarity

Sollis Clarity is a Population Health Management (PHM) analytics platform. Delivers insights from data and supports the delivery of better patient outcomes, better patient experiences at a reduced cost. It does this through a sophisticated suite of health analytics that includes risk stratification, population segmentation, actuarial analysis & unwarranted variation.

Features

  • Scalable web based portal with user friendly, intuitive reporting.
  • Secure, IG compliant, with pseudonimysation and reidentification support.
  • Advanced risk stratification models available with bespoke configuration options.
  • LTC, QOF, frailty, mortality, multimorbidity, urgent care and costing analysis.
  • Sophisticated population segmentation with variation analysis for peer benchmarking.
  • Support for GPs, CCGs, CSUs, STPs, PCNs, PCHs and ICSs.
  • National and local tariffs, capitated and outcomes contracts, pathway costs.
  • Integrate SUS, GP, community, ASC Mental Health and other data.
  • Geographical mapping and support for public health analysis.
  • Expert consultancy, implementation, data analysis, benefits realisation and training.

Benefits

  • Analyse you population and case find patients using one platform.
  • Understand costs and drivers for care and access.
  • Understand the risk associated with different population cohorts.
  • Benefits realisation. Monitor programmes of care ensuring value and success.
  • Efficiently import and quality assure integrated data sources.
  • Compare providers of care and identify opportunity for improvement.
  • Quickly identify trends in disease patterns and access to care.
  • Access data to support and deliver local or national programmes.
  • Access rich data sources to support transformation and business change.
  • Design and manage multiple local care contracts (Pbr, outcomes, etc)

Pricing

£0.20 per person per year

  • Free trial available

Service documents

Framework

G-Cloud 11

Service ID

4 7 6 0 6 2 5 9 3 0 5 6 7 7 2

Contact

The Sollis Partnership

Nigel Slone

01372 847 525

nigel.slone@sollis.co.uk

Service scope

Software add-on or extension
No
Cloud deployment model
Private cloud
Service constraints
The service is only available over the N3 and HSCN networks. Access to patient identifiable information is only available to health and care teams. We do not provide access to underlying data structures for security reasons. No information regarding dissented patients and sensitive conditions is held.
System requirements
  • Users must have an N3 or HSCN connection.
  • Buyers must arrange access to SUS data.
  • The buyer is responsible for completing NHSD DARS application.
  • The buyer is responsible for performing privacy impact assessments.
  • The buyer must support practices with signing data processing agreements
  • The buyer must enable the IG process and lawful requirements.
  • Minimum supported browsers: Internet Explorer v10, Chrome v50.

User support

Email or online ticketing support
Email or online ticketing
Support response times
The Sollis service desk is available Monday – Friday between 9am – 5pm. All incidents and contacts are recorded on service desk software with agreed priorities.

Our service levels for incidents are as follows:
- Critical; resolved with 4 hours
- High; resolved within 1 day
- Medium; resolved within 3 days
- Low; resolved within 15 days
- Non-urgent (information); resolved and closed within 30 days
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
None or don’t know
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
Onsite support
Support levels
The service desk employs specialists dedicated to issue resolution and there are developers available for problem resolution. All staff are employed full time and the service desk is available to log incidents calls between the core hours of 9am- 5pm.
Support available to third parties
Yes

Onboarding and offboarding

Getting started
Initial implementation includes a project management service which includes scope setting and development of training plans. The standard solution training typically follows the ‘train the trainer’ format although we can design bespoke courses. Sollis also offer one-one training and mentoring/coaching. User guides and online videos are also made available as standard. The active user group acts as a forum for sharing experiences and benefits.
Service documentation
Yes
Documentation formats
PDF
End-of-contract data extraction
An option will be offered to the customer to export certain historic data items from the system (separately chargeable fee may apply). This will be offered as a database snapshot or flat file/XML export.
End-of-contract process
Once a customer has taken the decision to end the agreement all data associated with the customer (e.g. patient records, historic data) will be removed from the system. Certificates stating that this deletion has happened will also be made available. This service is included in the price of the service. Where the option to export additional historic data items is taken up, this may be chargeable.

Using the service

Web browser interface
Yes
Supported browsers
  • Internet Explorer 10
  • Internet Explorer 11
  • Microsoft Edge
  • Chrome
Application to install
No
Designed for use on mobile devices
No
Service interface
No
API
No
Customisation available
Yes
Description of customisation
Specific areas of the service can be customised for example the Clinical Code Listener (CCL), local costs, contract code allocation module (CCAM), and multiple advanced contracting rules can be customised, to action specific business rules. Case finding reports can be tailored, saved and shared as can cube analyses. Additional modules allow the customer to build their own immersive BI dashboards.

In many cases, customisation is carried out directly by authorised local customer experts - in a few cases, customisation must be carried out by Sollis professionals via Service Desk requests.

Sollis always actively seek feedback from customers. This feedback is then used to develop new functionality within the software.

Scaling

Independence of resources
The performance of the service is actively monitored. If other users are making demands on the servers which affects other customers on the same platform Sollis will work with the hosting provider to increase system resources to mitigate any effects. Querying tools are designed and developed to extract data in batches which minimise the impact on the system.

Analytics

Service usage metrics
Yes
Metrics types
Sollis Clarity provides online reports on who has used the tool and which functions are being used. These reports can be accessed at anytime to give real-time information on usage.
Reporting types
  • Real-time dashboards
  • Regular reports
  • Reports on request

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Other security clearance
Government security clearance
Up to Baseline Personnel Security Standard (BPSS)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
United Kingdom
User control over data storage and processing locations
Yes
Datacentre security standards
Managed by a third party
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
  • Physical access control, complying with another standard
  • Scale, obfuscating techniques, or data storage sharding
  • Other
Other data at rest protection approach
Data is securely held within an appropriately accredited and NHS Digital approved data centre. This includes strict access controls. Pseudonymisation algorithms are also applied to sensitive data.
Data sanitisation process
Yes
Data sanitisation type
Explicit overwriting of storage before reallocation
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
All reports within Sollis Clarity can be exported in a variety of formats, using standard tools within the BI environment. This includes the capability to export patient level processed risk data, as well as complete population health analyses and benchmarking analyses.

Authorised expert users can also define their own exports using the inbuilt query tool.
Data export formats
  • CSV
  • Other
Other data export formats
Microsoft Excel
Data import formats
CSV

Data-in-transit protection

Data protection between buyer and supplier networks
  • TLS (version 1.2 or above)
  • Other
Other protection between networks
All access to Sollis Clarity is strictly controlled using role based authentication. The databases which house the source data are never directly accessible to users and only queried from the application web server.
Data protection within supplier network
  • TLS (version 1.2 or above)
  • Other
Other protection within supplier network
Data within our network is de-identified so individuals cannot be recognised from the core datasets. Our hosting partners use industry standard firewall technologies and encryption.

Availability and resilience

Guaranteed availability
We provide 99% uptime excepting agreed service outages (e.g. to implement new customer features).
Approach to resilience
The data centres we use to host Sollis Clarity are N+1 throughout. This means that all parts of the physical architecture have backups to ensure maximum reliance.
Outage reporting
The service is monitored by our product specialists. Any downtime, planned or otherwise, is reported to all customers with expected resolution times. Metrics are published to users.

Identity and authentication

User authentication needed
Yes
User authentication
  • Limited access network (for example PSN)
  • Username or password
Access restrictions in management interfaces and support channels
Management functions are restricted to authorised personnel and need specific access. Sollis have developed specific security management software to assist in this area. Support channels are also restricted to authorised customers.
Access restriction testing frequency
At least every 6 months
Management access authentication
  • 2-factor authentication
  • Username or password

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
User-defined
Access to supplier activity audit information
Users contact the support team to get audit information
How long supplier audit data is stored for
User-defined
How long system logs are stored for
User-defined

Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Other security certifications
No

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
Other
Other security governance standards
NHS Data Security and Protection Toolkit; GDPR Compliant
Information security policies and processes
Working with our external partners we annual review security policy procedures, technologies and audit logs to ensure a continuous improvement in overall security framework.

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
Sollis apply industry standard change management procedures. Working with partners, and customers where appropriate, all configuration and other changes are subject to risk assessment and evaluation. Rollback paths are identified and responsibilities are defined. Minor changes are subject to templated procedures.
Vulnerability management type
Supplier-defined controls
Vulnerability management approach
Wherever Sollis Clarity is hosted we require the infrastructure is protected from external threats by an industry leading firewall which is actively updated against new vulnerabilities. The operating systems of our application and data servers are also regularly updated to guard against any new threats. Lastly our software and built in access controls undergo regular security testing. Critical updates are deployed within hours and important and other patches deployed within weeks.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
Sollis Clarity audits access to the system and tracks users actions within the system. This information is accessible to users with appropriate security permissions via online reports and analysis. Sollis also perform regular audits of system usage. If any compromise was found the threat would be immediately evaluated to understand the current impact to the system. Our response would then proportionate to the threat level. We also require any hosting partner to provide industry standard defences against malware and hacking attacks.
Incident management type
Supplier-defined controls
Incident management approach
Sollis' incident management process is based on the ITIL incident management process which we have modified to fit our needs. Incidents are captured prioritised and tracked to resolution, management and technical escalation processes are defined, supported by industry standard incident management software solution. Performance against SLAs reviewed and reported.

Secure development

Approach to secure software development best practice
Supplier-defined process

Public sector networks

Connection to public sector networks
Yes
Connected networks
  • NHS Network (N3)
  • Health and Social Care Network (HSCN)

Pricing

Price
£0.20 per person per year
Discount for educational organisations
No
Free trial available
Yes
Description of free trial
Access to a demonstration system of Sollis Clarity with test data. This will allow customers to test the functionality of the system.

Service documents

Return to top ↑