Changes to Non-Functional Questions Standard

Title

Changes to Non-Functional Questions Standard

Description

Changes applied to Non-Functional Questions (NFQs) to uplift the content and Applicable Framework(s)

Date Added

Feb 13, 2024

Standards and Capabilities

Non-Functional Questions

Change Route

Managed Capacity - Other

Change Type

Uplift

Status

Draft

Publication Date

TBC

Effective Date

TBC

Incentives / Funding

No

Incentive / Funding Dates

N/A

Background

The Subject Matter Experts (SMEs) undertook a review of the Non-Functional Questions Standard and have uplifted the content and the Applicable Frameworks for various NFQs. In addition, Patch Changes have been applied.

Outline Plan

TBC

Summary of Change

Non-Functional Questions: Usability section updated

Applicable Framework(s)

ID

Sub-category

Description

Evidence Example

Assessment Criteria

DFOCVC

Digital Pathways

All

GP-NFQ-U-7

Supported devices

What devices are supported by the Solution that can be used and accessed by end users?

Provide the type of devices supported, compatible with the Solution (including how these facilitate security/secure access in line with the Authority’s authentication/authorisation policies) and any supporting documented evidence and rationale.

Demonstrate that the Solution is securely accessed and used by end users on supported devices through authentication and authorisation mechanisms in line with NHS Digital the Authority’s policies.

DFOCVC

Digital Pathways

All

GP-NFQ-U-8

Client Access Mechanism (Accessibility)

Describe how the Solution is accessed by/available to the end user?

Provide any supporting documents and information on the mechanism to securely access the Solution, including how to access the Solution in the event of unexpected connection or other interruption and how availability of the event is managed by the Solution.

For data or file sharing and uploading, provide information on the file formats supported by the Solution.

Demonstrate that the Solution is securely accessed by the end user via the provided mechanism.

Demonstrate the Solution is accessed and available to the end user via the provided the mechanism if interrupted in the event of an interruption.

Demonstrate that the event will be available for appropriate length of time.

Non-Functional Questions: Resilience section updated

Applicable Framework(s)

ID

Sub-category

Description

Evidence Example

Assessment Criteria

DFOCVC

Digital Pathways

All

GP-NFQ-RS-6

Network quality/performance

Describe what hardware/software requirements are supported for good quality of video, minimum resources required for good quality of video?

Provide minimum specification to get better quality of video (minimum call speed/bandwidth 500 Kbps, Uupload/download speed: min 2 Mbps upload, 5 Mbps download) and details of resources like data usage and that the costs associated are at a minimum to claim economic benefits of your Solution.

Demonstrate the following minimum requirements for better network quality:

  • Minimum call speed/bandwidth 500 Kbps

  • Upload and download speed: minimum 2 Mbps upload and 5 Mbps download speed

Confirm that data usage and cost associated is at minimum level.

 

Non-Functional Questions: Security section updated

Applicable Framework(s)

ID

Sub-category

Description

Evidence Example

Assessment Criteria

All

GP-NFQ-S-2

Encryption

Describe what encryption is implemented to protect data at rest and in transit and which Standards are implemented? (should adhere to NIST Cryptography Standards).

Provide statement of encryption level.

Provide a statement of encryption level and technique used (should adhere to NIST Cryptography Standards).

Confirm encryption is at minimum level.

 

Non-Functional Questions: Capacity Management section updated

Applicable Framework(s)

ID

Sub-category

Description

Evidence Example

Assessment Criteria

DFOCVC

Digital Pathways

All

GP-NFQ-CM-5

Storage Capacity

Describe how Solution is scalable and meets storage capacity needs?

Provide list of storage options, tools provided data transactions, scalability, and effective cost.

Demonstrate that proposed Solution has made provisions for "enough" storage and network capacity for the data transactions (as specified by the business) flow between hardware components of the proposed Solution, especially at peak usage times.

Applicable Framework(s)

ID

Sub-category

Description

Evidence Example

Assessment Criteria

All

GP-NFQ-LCA-1

Accessibility

Does your service/product comply with the Equality Act (Equality Act 2010: guidance) and meet at least level AA of the Web Content Accessibility Guidelines (WCAG 2.0) (WCAG 2.1)?

For more guidance see the NHS Digital Service Manual.

Provide a statement along with details of, and availability of, supporting documentation that can be provided to confirm statements.

Demonstrate systematic approach and rationale of how evidence is derived.

Provide a statement relating to conformance and compliance;

All

GP-NFQ-LCA-5

Support for external audit

What independent audit of the implemented Solution has been undertaken?

Provide a Sstatement or report along with details of, and availability of, supporting documentation.

Demonstrate systematic approach and rationale of how evidence is derived.

Full Specification

The updated Non-Functional Questions Standard will be added at a later date. Proposed changes can be viewed in the Summary of Change above.

Assurance Approach

TBC