Procurement, Compliance and Assurance
Everything your procurement and IG team needs to assess CAREFUL. All certifications are current and verifiable online.
Company
Careful Systems Limited
Company number: 10176186
Vestry House, Laurence Pountney Hill, London EC4R 0EH
Product status
CAREFUL is a commercially available, TRL9 (Technology Readiness Level 9) clinical communications platform. It is not a product in development or a prototype. Current live NHS deployments include Maidstone & Tunbridge Wells NHS Foundation Trust (since January 2023) and Cardiff & Vale University Health Board (since 2024).
Clinical safety
DCB0129 — Active certification with maintained Clinical Safety Case Report and Hazard Log. Named Clinical Safety Officer: Dr DJ Hamblin-Brown, CEO.
Cyber security
Cyber Essentials Plus — Current. Verify →
NHS DSPT — Completed and published. Verify →
Data protection
ICO Registration — Verify (ZA249706) →
Data residency — Microsoft Azure, in appropriate zones for data sovereignty.
GDPR — CAREFUL processes data under the Trust's controllership.
Hosting
Microsoft Azure Kubernetes Service, in regions appropriate for data sovereignty (e.g. UK South). 99.95% uptime SLA. Three availability zones. Auto-scaling. Zero-downtime deployments. Defence-in-depth security across five layers.
Integration
Mirth Connect integration engine supporting HL7v2 ADT, FHIR and REST API. Proven PAS integration at multiple NHS sites. Established relationship with Altera for Sunrise EPR integration.
Implementation timeline
Full rollout achievable within 8 weeks for a typical multi-site trust. CAREFUL commits senior leadership (CEO, MD, CTO) to the implementation task force with on-site presence. User-led rollout with clinical champions at department, team and superuser levels.
References
Contact details for clinical and technical leads at NHS reference sites available on request.