Microsoft Power Platform Services
KPMG Microsoft Power Platform implementation services are designed to share knowledge, understand clients, identify value, build innovative solutions and have impact across Power Platform Common Data Service, Power Apps, Power BI, Power Automate, Virtual Agents, Portals, Azure, and Artificial Intelligence. KPMG also offer Power Platform managed services and governance services.
Features
- Drive operational efficiency with low code/no code applications
- Services include discovery, construct, deploy, testing, training and support
- Services scale and complexity calibrated to clients scenarios and needs
- Microsoft Power Platform governance services ensure leading practice is applied
- Guided training for Microsoft Power Apps and Automate Design
- Full ITILv3.0 Service Management support for Microsoft Power Platform applications
Benefits
- Improve core processes and operations
- Empower end users
- Rapid delivery of value and ROI
- Automate key processes
- Digitises paper-based operations improving efficiency and access
- Reduce risk and shadow IT
- Unlocks data from line of business applications
Pricing
£325 to £2,325 a person a day
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 12
Service ID
7 9 6 2 9 6 5 4 6 7 8 0 1 2 9
Contact
KPMG LLP
KPMG G-Cloud Team
Telephone: 02073115767
Email: uk-g-cloud@kpmg.co.uk
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Public cloud
- Service constraints
- No
- System requirements
-
- Service scope will be discussed individually with clients.
- These system requirements are offered as examples
- 3.3 gigahertz (GHz) or faster 64-bit dual core processor
- 4-GB RAM or more
- Super VGA with a minimum resolution of 1024 x 768
- Bandwidth greater than 1Megabit per second (125 KBps/Kilobyte per second)
- Latency under 150 ms
- Common Modern Browser (latest versions)
- Office 365 Enterprise E3 or later (for full features integration)
- TLS 1.2 Support
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
-
We offer a variety of service level objectives or agreements depending on the complexity of the system to be implemented and the level of support required, but our typical response time would be as follows:
Priority 1 – 1 hour
Priority 2 – 2 hours
Priority 3 – 8 hours
Priority 4 – 3 working days - User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.1 A
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- No
- Onsite support
- Onsite support
- Support levels
- We offer a full, SLA backed, managed services function for incidents & problems. We typically offer a mix between functional and technical resolution resources at all levels.
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- Full documentations is provided by MS. Sample app templates, automations and API connectors are provided by Microsoft. KPMG can provide a full range of services including application configuration, integration, data migration, testing, training services, user documentation and support.
- Service documentation
- Yes
- Documentation formats
-
- Other
- Other documentation formats
-
- Word
- Materials such as guide videos can be produced.
- End-of-contract data extraction
- The Service Management contract will include provisions for the removal of client data from the solution using the standard Microsoft data entity structures. Clients can then transform this information into whatever formats are required for other solutions to use.
- End-of-contract process
- The Service Management contract will include provisions that describe end of contract activities
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Internet Explorer 10
- Internet Explorer 11
- Microsoft Edge
- Firefox
- Chrome
- Safari 9+
- Opera
- Application to install
- No
- Designed for use on mobile devices
- Yes
- Differences between the mobile and desktop service
- Microsoft provide a mobile application for iOS (10+), Android (4.4+) and Windows (10+). The Power Platform can also be accessed within the web browser on the phone.
- Service interface
- Yes
- Description of service interface
- Microsoft is a major software and cloud-services provider to states and governments around the world, it is committed to complying with all relevant international standards and compliance controls. By adhering to these wide-ranging accessibility standards, Microsoft ensures that all customers—both inside and outside of government—can use Microsoft services and products.
- Accessibility standards
- WCAG 2.1 A
- Accessibility testing
- None
- API
- Yes
- What users can and can't do using the API
- All functionality is available within an API, what individual users can perform is controlled by what their permissions are set to within D365CE.
- API documentation
- Yes
- API documentation formats
- HTML
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
- The Power Platform is a Low code/no code suite that is highly customisable and can cater for highly customisable and unique applications and automations to be created. Customisations do not affect the ability of the solution to receive regular Microsoft cloud updates
Scaling
- Independence of resources
- Scaling is managed by Microsoft as part of the Azure cloud platform
Analytics
- Service usage metrics
- Yes
- Metrics types
- The Service Management contract entered into by the client will provide details of service metrics applicable to the solution.
- Reporting types
- Regular reports
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Conforms to BS7858:2012
- Government security clearance
- Up to Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
- Physical access control, complying with another standard
- Data sanitisation process
- Yes
- Data sanitisation type
- Explicit overwriting of storage before reallocation
- Equipment disposal approach
- A third-party destruction service
Data importing and exporting
- Data export approach
- Data import and export is managed through over 300 standard, out of the box connectors / API's. Dedicated connectors/API's can be created for the specific use cases.
- Data export formats
-
- CSV
- ODF
- Other
- Other data export formats
- Most modern data formats can be used
- Data import formats
-
- CSV
- ODF
- Other
- Other data import formats
-
- Compressed (.zip)
- XML Spreadsheet 2003 (.xml)
- Most modern data formats can be used
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
- Availability and resilience service levels are derived directly from the underlying Microsoft Azure Cloud service.
- Approach to resilience
- Availability and resilience service levels are derived directly from the underlying Microsoft Azure Cloud service.
- Outage reporting
- Availability and resilience service levels are derived directly from the underlying Microsoft Azure Cloud service.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- 2-factor authentication
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Dedicated link (for example VPN)
- Username or password
- Access restrictions in management interfaces and support channels
- This is fully configurable identity and access management. Role based access controls restrict access to named users only
- Access restriction testing frequency
- At least once a year
- Management access authentication
- 2-factor authentication
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users have access to real-time audit information
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- User-defined
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- Independently audited at 6 monthly intervals by external accreditation body.
- ISO/IEC 27001 accreditation date
- 01/01/2017
- What the ISO/IEC 27001 doesn’t cover
- The scope statement for our ISO certificate reads: ‘The protection of information in relation to the provision of professional services to KPMG clients. This includes all client-facing business units that use KPMG’s centrally managed information systems and processes
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- All KPMG staff comply with KPMG's security policy and standards. This safeguards the confidentiality, integrity and availability of physical assets and the information which we hold on behalf of our clients.
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- KPMG defined controls are applied. However these can be varied to suit specific client requirements by agreement. Such tailored non-standard services may attract additional cost.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- KPMG defined controls are applied. However these can be varied to suit specific client requirements by agreement. Such tailored non-standard services may attract additional cost. We can provide details upon request
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- KPMG defined controls are applied. However these can be varied to suit specific client requirements by agreement. Such tailored non-standard services may attract additional cost. We can provide details upon request
- Incident management type
- Supplier-defined controls
- Incident management approach
- KPMG defined controls are applied. However these can be varied to suit specific client requirements by agreement. Such tailored non-standard services may attract additional cost. We can provide details upon request
Secure development
- Approach to secure software development best practice
- Conforms to a recognised standard, but self-assessed
Public sector networks
- Connection to public sector networks
- No
Pricing
- Price
- £325 to £2,325 a person a day
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- Provides the majority of services available within D365 for trial purposes, some for example Resource Scheduling Optimisation are only available within a paid license.
- Link to free trial
- https://powerplatform.microsoft.com/en-gb/