Planning and Discovery Phase: In this phase, teams from both the vendor and client side collaborate to define the project goals, scope, timeline, and the necessary resources. Key business requirements are gathered, and any potential customizations or integrations are identified.
Configuration and Customization: Once planning is completed, the system is configured based on the client's needs. This can include setting up user profiles, defining workflows, integrating third-party systems, and applying any necessary customizations to the software's features.
Testing and Quality Assurance: Before fully launching the software, a rigorous testing phase is conducted. This phase involves end-to-end testing, user acceptance testing (UAT), and addressing any issues that arise to ensure the system functions as expected.
Training and Go-Live: The final phase involves training the client’s team on how to use the software effectively. This includes providing both administrative and user training. Once training is complete, the software is officially launched, and the client begins using it in their day-to-day operations.
Customisation
Configurable User Interfaces: Cornerstone allows organizations to configure dashboards, interfaces, and workflows to match their brand identity and operational needs. This ensures a personalized user experience.
Customizable Learning Paths and Modules: The software supports the creation of bespoke training paths, courses, and learning content tailored to different teams or job roles within an organization.
Advanced Reporting and Analytics: With customizable reporting tools, businesses can track key performance indicators (KPIs) and other metrics that are important to them. Reports can be adjusted to focus on specific business goals and performance benchmarks.
Integration Capabilities: Cornerstone allows for integrations with a wide range of third-party software, including HRIS systems, payroll software, and talent management platforms, enabling organizations to ensure seamless data flow across systems.
Setup and Implementation Fees: The initial implementation of Cornerstone software often requires setup fees, which can vary depending on the complexity of the installation. These fees typically cover customization, integrations, data migration, and training.
Licensing Fees: Cornerstone operates on a subscription-based model, with licensing fees typically charged on a per-user or per-feature basis. The cost of licensing may increase with the size of the organization or the number of users accessing the platform.
Maintenance and Support Fees: Ongoing maintenance and support charges are an additional cost that businesses should account for. This typically includes software updates, bug fixes, and helpdesk support. These fees may be included in the subscription package or charged separately.
Customization and Development Costs: If a company requires additional custom features or specialized development work, there could be additional charges for these services. This might include developing custom reports, workflows, or integrations specific to the business's needs.
Training and Onboarding Fees: While some training may be included with the software, additional in-depth training for employees or administrators could incur additional costs. Organizations may choose to invest in premium training services to ensure their teams fully understand how to use the platform effectively.
Training
The training programs are designed to accommodate different learning preferences and organizational needs. These range from self-paced learning materials to instructor-led sessions, allowing users to choose the format that best suits their schedule and learning style.
In addition to training, Cornerstone provides ongoing support through various channels. These include a dedicated customer success team, technical support, and access to a resource-rich knowledge base. This support is designed to help users resolve issues quickly and get the most out of the platform.
The company also facilitates community-based learning through forums and user groups, where clients can exchange tips, share experiences, and receive guidance from peers and product experts.
Self-paced Online Training: A wide library of on-demand video tutorials, documents, and e-learning modules is available to help users learn at their own pace.
Instructor-led Training: Live virtual or in-person sessions conducted by certified trainers provide detailed walkthroughs of platform features.
Certifications: Cornerstone offers certification programs for administrators and advanced users to build deep platform expertise.
Knowledge Base: A robust online help center includes articles, FAQs, user guides, and troubleshooting tips.
Customer Success Managers: Dedicated representatives offer strategic guidance to help align the platform with business goals.
24/7 Technical Support: Support teams are available around the clock to address technical issues or concerns.
User Community and Forums: Access to user groups, forums, and peer networks enhances learning through collaboration and shared experience.
Security Measures
Their security framework encompasses physical, administrative, and technical safeguards to ensure comprehensive protection. This includes secure data centers, strict access controls, and continuous monitoring for threats or vulnerabilities.
Compliance with industry standards and frameworks is also a key part of Cornerstone’s approach. The software aligns with regulations such as GDPR, SOC 2, ISO 27001, and others to maintain the integrity and confidentiality of data.
In addition, data privacy and user access rights are rigorously enforced, allowing organizations to manage and restrict data visibility based on roles and responsibilities. Encryption practices are applied both in transit and at rest to further safeguard sensitive information.
Regular audits and penetration testing are performed to identify potential weaknesses and improve system defenses, ensuring that security measures are continually evolving in response to new risks.
Data Encryption: All data is encrypted both in transit and at rest using advanced encryption standards.
Access Control: Role-based access ensures users can only access the data necessary for their role
Compliance Certifications: The platform is certified under various security standards including SOC 2, ISO 27001, and GDPR compliance.
Secure Data Centers: Cornerstone uses Tier 3 or higher certified data centers with advanced physical and network security.
Regular Audits and Penetration Testing: Continuous assessments are conducted to test for vulnerabilities and maintain compliance.
Monitoring and Threat Detection: Real-time monitoring systems detect and alert the team of any suspicious activity.
User Authentication: Multi-factor authentication (MFA) and single sign-on (SSO) options help enhance account security.
Updates
Quarterly Update Schedule: Regular updates occur every three months to maintain system performance and introduce enhancements.
Advance Communication: Clients receive detailed information about upcoming changes well before the release date.
Sandbox Environments: A test environment allows organizations to explore new features and prepare for updates without affecting live data.
Comprehensive Release Notes: Each update includes clear documentation outlining new features, fixes, and potential impacts.
Webinars and Previews: Cornerstone hosts sessions to walk users through changes and gather feedback before final deployment.
Minimal Disruption Approach: Updates are scheduled to avoid peak usage times and are designed for seamless transition.
Client Feedback Integration: Many update features are influenced by direct client feedback, ensuring relevance and practical value.
Data Ownership and Portability
Client Data Ownership: Clients maintain complete ownership of their data at all times.
Data Portability Tools: Built-in tools and APIs support secure data extraction in standard formats (e.g., CSV, XML).
Regulatory Compliance: Adheres to GDPR and other privacy laws, where clients are considered the data controllers.
Data Export on Demand: Clients can request and download data anytime without needing vendor approval.
Clear Contractual Terms: Agreements specify ownership rights and the process for data retrieval upon termination.
Support for System Migration: Portability features help clients transition data smoothly to other platforms when necessary.
No Unauthorized Use of Data: Data is not used for analytics, training, or third-party sharing without explicit client permission.
Scaling Up / Down
Modular Architecture: Organizations can add or remove software modules based on changing needs.
Flexible Licensing: User licenses can be scaled up or down with adjustments to the subscription plan.
Contract Review Cycles: Annual or periodic contract reviews allow for formal changes to the service level.
Customer Success Support: Dedicated teams help align system capabilities with business transformation goals.
Usage-Based Pricing: Some features and services may follow a usage-based model to prevent overpayment.
Seamless User Management: Admin tools make it easy to manage new user groups or deactivate inactive accounts.
Smooth Expansion Capability: Supports geographical or departmental expansion with minimal disruption.
The terms & conditions for contract renewal and cancellation
Standard Contract Length: Typically annual or multi-year agreements.
Automatic Renewal: Contracts may auto-renew unless written notice is provided.
Notice Period: Clients must usually provide 30–90 days’ written notice for cancellation before renewal
Early Termination Fees: Fees may apply if a contract is canceled before the end of its term.
Breach of Contract Terms: Contracts can be terminated by either party in case of a serious breach.
Mutual Termination Clauses: Some agreements include provisions for mutual termination under special conditions.
Renewal Support: Cornerstone teams assist in assessing contract performance before renewal.
Adjustable Terms: Renewal agreements can be modified based on new needs or changes in service scope.
Compliance
GDPR (General Data Protection Regulation): Fully compliant with EU data privacy laws, ensuring protection of personal data.
ISO/IEC 27001: Certified for information security management systems (ISMS).
SOC 1 & SOC 2 Type II: Attestation reports available to verify controls related to security, availability, and processing integrity.
HIPAA Readiness: Designed to support clients who require compliance with healthcare data privacy standards.
FedRAMP Moderate Authorization: Enables use by U.S. federal agencies with required security controls.
CCPA (California Consumer Privacy Act): Supports compliance with U.S. state-level privacy regulations.
VPAT / Section 508: Adheres to accessibility standards to ensure usability for individuals with disabilities.
CSA STAR Registry: Listed in the Cloud Security Alliance's registry, showing transparency in cloud security practices.