IQVIA Technology Services Limited

Healthcare and Clinical Coding Analytics

IQVIA provide healthcare analytics, privacy analytics, clinical coding analytics, performance analytics and professional services for healthcare organisations in the UK . Clinical Coding Analytics (EPS) provides rapid ROI ensuring better data quality and identifying complex patients to help create a more Integrated Care Model and ensuring the correct income.

Features

  • Dedicated and experienced healthcare team
  • Integrate real wold evidence, analytics, financial, patient activity
  • Dashboards, Analytics, Reporting, Visualisation, Portals
  • Operational, financial and strategic reporting suites
  • Expertise in BI, analytics, ETL, data governance and quality
  • Improve data quality
  • Informing STPs and Integrate Care System (ICS)
  • Predictive Analytics
  • Understood by clinicians and management
  • Impact, Engage, Clinical Code Review

Benefits

  • Integration between datasets in disparate systems
  • Actionable insight designed to support value-based decision-making
  • Provide common language for clinicians and managers
  • Help improve the healthcare outcomes of patients
  • Consistent, improved reporting accuracy driving wider engagement, improved performance
  • Protect patient data
  • Support healthcare decision making
  • Confidence your data properly describes care provided and correct income
  • Detailed coding analysis of areas of potential improvement.

Pricing

£900 to £1200 per person per day

Service documents

Framework

G-Cloud 11

Service ID

5 1 7 2 0 7 8 9 9 0 1 7 8 8 7

Contact

IQVIA Technology Services Limited

Bhavin Shindroja

01785 238009

nhssolutions@iqvia.com

Service scope

Software add-on or extension
No
Cloud deployment model
Private cloud
Service constraints
No
System requirements
Dependant on analytical service

User support

Email or online ticketing support
Email or online ticketing
Support response times
This will be set out within the agreed SLA with client.
User can manage status and priority of support tickets
No
Phone support
Yes
Phone support availability
9 to 5 (UK time), Monday to Friday
Web chat support
No
Onsite support
Onsite support
Support levels
The IQVIA Service Team will act as a single point of contact for the Trust. It is the mission of the Service Team to provide the Trust with a great service experience and to resolve any issues or requests in an effective manner and within the agreed timescales. The Service Team have accountability for all the Service Management processes and work across our Delivery Teams to monitor all aspects of the service, manage governance and risk and continually review and recommend improvements. IQVIA unlimited support queries relating to any aspect of the solution. Our Service Team will monitor Major Incidents, Incidents, Service Requests and Problem Management resolution timings. In agreement with the client, Severity Levels will be allocated to Incidents, Service Requests and Problem Records. IQVIA will allocate an account manager to the client.
Support available to third parties
No

Onboarding and offboarding

Getting started
At contract initiation a member of our analytics team will discuss your requirements and with your input, plan and execute an approach. As part of the approach the appropriate training will be provided to your team(s).
Service documentation
Yes
Documentation formats
PDF
End-of-contract data extraction
This will be dependent on the analytics service and will be discussed at contract start.
End-of-contract process
This will be discussed with the client at contract start with the client.

Using the service

Web browser interface
Yes
Supported browsers
  • Internet Explorer 9
  • Internet Explorer 10
  • Internet Explorer 11
  • Chrome
Application to install
Yes
Compatible operating systems
Windows
Designed for use on mobile devices
No
Service interface
No
API
No
Customisation available
Yes
Description of customisation
This will be dependent on the analytics service required by the client.

Scaling

Independence of resources
Each client will have its own deployment.

Analytics

Service usage metrics
No

Resellers

Supplier type
Not a reseller

Staff security

Staff security clearance
Other security clearance
Government security clearance
Up to Security Clearance (SC)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
United Kingdom
User control over data storage and processing locations
Yes
Datacentre security standards
Complies with a recognised standard (for example CSA CCM version 3.0)
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
  • Physical access control, complying with another standard
  • Other
Other data at rest protection approach
IQVIA have implemented a Global Information Assurance Framework to provide information assurance to information assets. It is based on industry standards and regulations including GDPR, HITRUST, the ISO 27000 family, COBIT, HIPAA, HITECH and NIST. All data assets are assessed against an Information Classification Level in order for the appropriate safeguards and controls to be implemented. The control sets cover the following areas: Access Control; HR Security; Compliance; Asset Management; Physical Security; Operational Management; Security Incident Management; Business Continuity
Data sanitisation process
Yes
Data sanitisation type
  • Explicit overwriting of storage before reallocation
  • Deleted data can’t be directly accessed
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001

Data importing and exporting

Data export approach
The options can be discussed with the client to ensure IQVIA provide this appropriately.
Data export formats
  • CSV
  • ODF
Data import formats
  • CSV
  • ODF

Data-in-transit protection

Data protection between buyer and supplier networks
  • Private network or public sector network
  • TLS (version 1.2 or above)
  • Other
Other protection between networks
IQVIA have implemented a Global Information Assurance Framework to provide information assurance to information assets. It is based on industry standards and regulations including GDPR, HITRUST, the ISO 27000 family, COBIT, HIPAA, HITECH and NIST. The framework includes the management of Risk, Cryptography, Change, vulnerability and monitoring and these policies and controls apply to the management of the data that is in transit. Data is transferred encrypted typically using N3. Our approach ensures a high level of data protection, security and confidentiality in our Products and Service.
Data protection within supplier network
  • TLS (version 1.2 or above)
  • Other
Other protection within supplier network
IQVIA have implemented a Global Information Assurance Framework to provide information assurance to information assets. It is based on industry standards and regulations including GDPR, HITRUST, the ISO 27000 family, COBIT, HIPAA, HITECH and NIST. The framework includes the management of Risk, Cryptography, Change, vulnerability and monitoring and these policies and controls apply to the management of the data that is in transit. Data is transferred encrypted typically using N3. Our approach ensures a high level of data protection, security and confidentiality in our Products and Service.

Availability and resilience

Guaranteed availability
IQVIA are pleased that the availability of this service is 99.80%.
Approach to resilience
To be discussed with client on contract start.
Outage reporting
Service outages are communicated to internal stakeholders and external key conttacts by the IQVIA Service Delivery team in line with ITIL Service Management processes

Identity and authentication

User authentication needed
Yes
User authentication
  • Username or password
  • Other
Other user authentication
This will depend on the analytics service.
Access restrictions in management interfaces and support channels
Interfaces and support channels Asset owner and Access Control Register will govern who can access the service in addition to the authentication management access
Access restriction testing frequency
At least every 6 months
Management access authentication
Username or password

Audit information for users

Access to user activity audit information
You control when users can access audit information
How long user audit data is stored for
User-defined
Access to supplier activity audit information
You control when users can access audit information
How long supplier audit data is stored for
At least 12 months
How long system logs are stored for
Between 6 months and 12 months

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
BSI (UKAS accredited certificate)
ISO/IEC 27001 accreditation date
25/03/2019
What the ISO/IEC 27001 doesn’t cover
There are no exclusions to the ISO 27001 Statement of Applicability
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Other security certifications
Yes
Any other security certifications
  • HSCIC Information Governance Toolkit (ISMS Certificate)
  • ISO 27001 Lead Implementer
  • ISo 27001 Auditor

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
IQVIA is committed to Information security and we operate under a Corporate Global Information Assurance Framework to ensure the management, controls and protection of our information Assets and those entrusted to us by clients and business partners The Global Information Assurance Framework is based on industry standards and regulations including GDPR, HITRUST, the ISO 27000 family, COBIT, HIPAA, HITECH and NIST. In addition IQVIA also maintains and aligns with a current NHS Digital Information Governance Toolkit with a ‘compliant’ status. IQVIA approach ensures a high level of data protection, security and confidentiality in our Products and Service. IQVIA also comply fully with our obligations under the NHS Digital IG Toolkit and we maintain a ‘compliant’ status. N3 is used for Support and Project work and staff undergo data protection, confidentiality and ISO27001 training so they understand their responsibilities in their role. We also ensure we follow the clients IG policy and data security processes

Operational security

Configuration and change management standard
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Configuration and change management approach
The IQVIA Service Delivery team follow an Operational Change Management process aligned with ITIL standards
Vulnerability management type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach
The IQVIA Global Information Assurance Framework provides information assurance to information assets. It is based on industry standards and regulations including HITRUST, the ISO 27000 family, COBIT, HIPAA, HITECH and NIST. Vulnerability management process consists of Risk Assessment, Vulnerability test and Penetration test. Findings out of these assessments are prioritised and addressed. Change, Patch and Asset management processes helps in identifying and mitigating the vulnerabilities and the associated risks.
Protective monitoring type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Protective monitoring approach
IQVIA Global Information Assurance Framework provides information assurance to information assets. It is based on industry standards and regulations including HITRUST, the ISO 27000 family, COBIT, HIPAA, HITECH and NIST. Protective monitoring process includes review of access and resource requests, system errors, system logs, security threats, weaknesses or vulnerabilities. These events are logged with a service desk and recorded in a service management system. Necessary remediation measures are taken to address the risks.
Incident management type
Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
Incident management approach
IQVIA has an integrated Incident and Problem Management process aligned with ITIL standards

Secure development

Approach to secure software development best practice
Conforms to a recognised standard, but self-assessed

Public sector networks

Connection to public sector networks
No

Pricing

Price
£900 to £1200 per person per day
Discount for educational organisations
No
Free trial available
No

Service documents

Return to top ↑