Skip to main content

Help us improve the Digital Marketplace - send your feedback

NG-IT LTD

Pure Evergreen One (Storage as a Service STaaS)

Evergreen//One is Pure’s Storage as-a-Service offering, where Pure provides block, file, and object services using equipment we own, delivered to locations of a customer’s choice. Integrated with the Public Cloud for seamless data mobility and backed by a set of SLAs for operational and commercial assurance.

Features

  • Built on enterprise all-flash block/file/object storage technology
  • Consumption-based data service
  • Instant Hybrid Cloud portable between on-premise and public cloud
  • Pure OPEX - Pay Only for What You Use
  • On-demand container Storage-as-a-Service
  • Open and simple automation for your cloud data
  • Offsite replication, snapshots and archive
  • Backup and Rapid data restoration platform
  • Real time reporting and cloud management
  • Implementation and advisory services for strategy and planning

Benefits

  • No large upfront costs for storage, OPEX model
  • Operational flexibility - Grow and shrink capacity as needed
  • Instant Hybrid Cloud: portable between on-premise and public cloud
  • Simplified operations and predictive support
  • Lower cost for IT via consolidation, efficiency and simple management
  • High performance, high resilience, low latency to support business processes
  • Reduced time-to-value via solution architects and operational readiness experts
  • Accelerated technology adoption with migration and consultancy services
  • Workflow automation delivered by consistent APIs across on-prem and cloud
  • Reduce the total cost of ownership for storage

Pricing

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at gcloud@ng-it.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 15

Service ID

2 6 3 6 2 4 7 5 5 5 8 7 6 8 8

Contact

NG-IT LTD Operations Team
Telephone: 0330 223 3915
Email: gcloud@ng-it.co.uk

About your service

Service categories

Systems Infrastructure Software

Storage

Data replication and protection

  • Data Protection Software
  • Backup and Recovery Reporting Software
  • Storage Replication Software
  • Host or Hypervisor-Based Replication Software
  • Systems and Data Migration Software
  • Fabric and Appliance-Based Replication Software
  • Array-Based Replication Software
  • Replication Management Software
Multi cloud support
Yes

Service scope

Software add-on or extension
No
Cloud deployment model
  • Public cloud
  • Private cloud
  • Community cloud
  • Hybrid cloud
Service constraints
None
System requirements
As long as OS and Applications are supported by Pure

User support

Email or online ticketing support
Yes
Support response times
P1 - 15 minutes
P2 - 1 Hour
P3 - 2 Hours
P4 - 4 Hours
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
None or don’t know
Phone support
Yes
Phone support availability
24 hours, 7 days a week
Web chat support
No
Onsite support
Yes
Support levels
SLAs are the legal agreements made with customers about measurable metrics like uptime, buffer capacity, energy consumption, and performance. They are our commitment backed by a guarantee specifically included in the service contract. Our SLAs include both corrective action to bring the service level back into compliance with committed targets, as well as defined remediation in the form of service credits for the period during which service level commitments were not met. For example, we commit to 99.9999% uptime as an SLA.
Support available to third parties
Yes

Onboarding and offboarding

Getting started
The service comes with installation and documentation.
Service documentation
Yes
Documentation formats
PDF
End-of-contract data extraction
Prior to contract end the Service Delivery Manager will approach the customer to agree a contract exit strategy, this includes data extraction. Pure will conduct a field-wipe of the array and a Certification of Erasure. If necessary, the flash modules can be retained by the customer for secure destruction - this is subject to custom pricing.
End-of-contract process
Once the contract has reached its term, the customer can either terminate or renew their contract. In this situation, there are no additional costs to the customer to exit the agreement or to renew. However, If the contract is terminated early, or the customer wishes to make significant changes to the contract before renewing, charges may be applicable.
Documentation accessibility standard
WCAG 2.2 A

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
  • Safari
Application to install
No
Designed for use on mobile devices
No
Service interface
Yes
User support accessibility
None or don’t know
Description of service interface
Integrated GUI for all data management and functionality and service based ticketing functionality.
Accessibility standards
None or don’t know
Description of accessibility
GUI . CLI
Accessibility testing
None
API
Yes
What users can and can't do using the API
The platform is an API 1st technology, with all features and functionalities accessed in this manner. https://api.pure1.purestorage.com/
API documentation
Yes
API documentation formats
Open API (also known as Swagger)
API sandbox or test environment
No
Customisation available
No

Scaling

Independence of resources
Storage-as-a-Service (STaaS) can be deployed on premise and in the public cloud for a specific client, rather than multi-tenant and the service scales to meet increased demand for storage capacity including a 20%-30% on-demand headroom. Our customer success team monitors usage and we also have a dashboard where the usage is seen by the customer. As part of the Subscription we proactively monitor and meter usage and utilization ensure it does not exceed 75% - 80%. If a customer is trending towards this level we proactively reach out to validate their usage and ship additional capacity as needed.

Analytics

Service usage metrics
Yes
Metrics types
Performance - Latency, IOPS, Bandwidth, Load
Capacity
Data Reduction Ratio
Protection Status
System Health
Capacity & Workload Planning
VM Topology & Analytics
Alerts
Support Cases
Reporting types
  • API access
  • Real-time dashboards
  • Regular reports
  • Reports on request
Resource tagging
No
FOCUS resource tagging
No

Resellers

Supplier type
Reseller providing extra features and support
Organisation whose services are being resold
Pure Storage

Staff security

Staff security clearance
Other security clearance
Government security clearance
Baseline Personnel Security Standard (BPSS)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
  • United Kingdom
  • European Economic Area (EEA)
  • Other locations
User control over data storage and processing locations
Yes
Datacentre security standards
Supplier-defined controls
Penetration testing frequency
At least every 6 months
Penetration testing approach
‘IT Health Check’ performed by a CHECK service provider
Protecting data at rest
  • Encryption of all physical media
  • Other
Other data at rest protection approach
The solution uses an always-on FIPS 140-2 certified implementation of AES-256 algorithm to encrypt all data and metadata stored. This data encryption occurs transparently to the accessing applications and without impacting performance, while maintaining data reduction.
The arrays manage the keys used for device locking and data encryption autonomously, regularly refreshing them without administrative intervention. The internal key management uses three layers of dependent keys and supports activities: automatic key rotation, periodic key regeneration, and unreadable partitioned keys that are spread over several FlashArray flash modules.
Data sanitisation process
Yes
Equipment disposal approach
Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
Data sanitisation type
  • Deleted data can’t be directly accessed / Cryptographic Erasure
  • Explicit overwriting of storage before reallocation / Secure Erase

Data importing and exporting

Data export approach
Data can be downloaded at any stage
Data export formats
CSV
Data import formats
CSV

Data-in-transit protection

Data protection between buyer and supplier networks
  • TLS (version 1.2 or above)
  • IPsec or TLS VPN gateway
Data protection within supplier network
  • TLS (version 1.2 or above)
  • IPsec or TLS VPN gateway

Availability and resilience

Guaranteed availability
99.99% Availability Guarantee
Approach to resilience
Pure’s technology is designed for resilience, with no single points of failure and the ability to upgrade non-disruptively avoiding the need for planned downtime. Measured average uptime across the entire fleet is 99.9999%.
Outage reporting
Dashboard Summary Reports available via Pure1 - Lists the top 10 arrays by load performance and capacity relative growth along with load and capacity projections for selected arrays over the next 30 days. Also includes a list of the most recent critical and warning alerts. Email notifications available for any incident/severity case transaction.

Identity and authentication

User authentication needed
Yes
User authentication
  • Multi-Factor Authentication (MFA)
  • Identity federation with existing provider (for example Google Apps)
Access restrictions in management interfaces and support channels
Interface includes RBAC supporting principle of least access
Access restriction testing frequency
At least every 6 months
Management access authentication
Multi-Factor Authentication (MFA)

Audit information for users

Access to user activity audit information
Users have access to real-time audit information
How long user audit data is stored for
User-defined
Access to supplier activity audit information
Users have access to real-time audit information
How long supplier audit data is stored for
User-defined
How long system logs are stored for
User-defined

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
NG-IT are a Cyber Essentials Plus partner and follow all the policies, processes and guidelines associated with CE+
Software Security Code of Practice
Yes

Operational security

Configuration and change management standard
Supplier-defined controls
Configuration and change management approach
There is a documented change control process for internal changes. For Pure1, almost all changes are heavily code reviewed. We are moving many of our critical systems to continuous deployment. With rigorous automated tests and a staging environment.
Vulnerability management type
Undisclosed
Vulnerability management approach
Pure Storage’s Vulnerability Management program monitors for applicable vulnerabilities reported from internal and external sources using manual and automated processes. Sources of information monitored
include reputable industry information sources e.g MITRE and tool/vendor specific intelligence collated from numerous sources. Pure Storage maintains a variety of dynamic and enumeration tools used by Security, that are tuned to detect and alert for new vulnerabilities. When a new a vulnerability is reported, Pure Storage follows our Vulnerability Management Standard using CVSS scores to assess, triage, and assign remediation efforts.
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
APIs and alerting protocols allow for querying and auditing of processes and sub-processes. Pure1 allows for global auditing of the above as well as leveraging the Pure meta AI to predict trends.
System monitoring is continuous on the platform. Telemetry data is updated to Pure1 on a 30 second interval. This is used more for analysis and forecasting through trend analysis. Additional log information is uploaded every hour by the system and scanned for fingerprint matches of existing known issues. If one is triggered it will automatically generate a support case and support will be alerted.
Incident management type
Supplier-defined controls
Incident management approach
Pure uses a variety of tools to maintain security for its internal systems. For instance, web filtering, anti-virus and anti-malware screening along with technology that automatically detects unknown threats before the organization is compromised, and each SaaS service used by Pure Storage uses an SSL encryption authentication protocol that leverages encryption. Pure Storage maintains basic password requirements and access controls, etc.
Post-quantum cryptography secure
No

Secure development

Approach to secure software development best practice
Conforms to a recognised standard, but self-assessed

Public sector networks

Connection to public sector networks
No

Pricing

Discount for educational organisations
No
Free trial available
No

Discount percentage by annual call-off contract value (excluding VAT)

Less than £250,000
10%
Between £250,000 and £500,000
22%
Between £500,001 and £1,000,000
30%
Between £1,000,001 and £2,500,000
30%
Between £2,500,001 and £5,000,000
30%
Over £5,000,001
30%

Non-mandatory Standards and certifications

ISO/IEC 27001 certification
No
ISO 28000:2022 certification
No
ISO 9001 certification
Yes
Who accredited the ISO 9001 certification
CDL Group
ISO 9001 accreditation date
Tuesday 1 July 2025
What the ISO 9001 doesn’t cover
N/a
Quality management systems (QMS)
Yes
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Please provide your Cyber Essentials Certificate Number
E29042f9-0029-4a93-840f-4178125bdd61
Cyber essentials plus
Yes
Please provide your Cyber Essentials Plus Certificate Number
76366978-ee23-40f3-80dd-8b48234414fd
Other security certifications
No

Social value

Section B - Commitment for Future: Delivery
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority

    • New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
    • Providing opportunities for, and measuring and monitoring of, staff workforce conditions over time, including employee engagement, involvement in decision-making and satisfaction and adapting to any changes in the results, with clear processes for acting on issues identified
    • Activities that support an environment where staff are educated about, and feel empowered to, address their physical wellbeing
    • Activities that support an environment where staff are educated about and feel empowered to report and address bullying and harassment
    • Monitoring and reporting of gender and ethnicity pay gaps and plans to address them where necessary
    • Support for the contract workforce by providing career advice, and providing opportunities for staff working on the contract with in-work progression career development into known skills shortages or high growth areas
    • Volunteering opportunities for staff
    • Means of influencing staff, suppliers, customers, communities and/or any other appropriate stakeholders with respect to modern slavery risks relating to the contract
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.

    • Activities to support relevant sector related skills growth and sustainability in the contract workforce. Illustrative examples: careers talks, curriculum support, literacy support, safety talks and volunteering
  • Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.

    Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises

    • Understanding of the types of businesses in the market and the level of participation by new businesses, entrepreneurs, start-ups, SMEs, VCSEs and mutuals
    • Activities that demonstrate a collaborative way to work with a diverse range of businesses as part of the supply chain
    • Measures for making facilities used in the delivery of the contract available for community groups, education or training
    • Measures to engage users and communities and build relationships to increase community integration build trust and influence how the contract is delivered
    • Support for community-led initiatives relevant to the contract. Illustrative examples: improving transport links; reducing loneliness; helping with English language proficiency; and facilitating social mixing among people with different backgrounds
  • Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero

    Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.

    • Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
    • Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
  • Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain

    Policy Outcome 6: Employment and training: For those who face barriers to employment

    • Delivery of training schemes and programmes to address any identified skills gaps and under-representation in the workforce for the contract (e.g. prison leavers, care leavers, kinship carers, disabled people)
    • Inclusive and accessible recruitment practices, and retention-focused activities, including those provided in the Guide for line managers on recruiting, managing and developing people with a disability or health condition
    • Working conditions which promote an inclusive working environment and promote retention and progression
    • Understanding of the issues affecting inequality in employment, skills and pay in the market, industry or sector relevant to the contract, and in the supplier’s own organisation and those of its key sub-contractors. Measures to tackle inequality in employment, skills and pay in the contract workforce
    • Inclusive and accessible development practices, including guidance for line managers on recruiting, managing and developing people with a disability or health condition
  • Mission: Break down barriers to opportunity: By reforming our childcare and education systems, to make sure there is no class ceiling on the ambitions of young people in Britain

    Policy Outcome 7: Creating a pipeline of opportunities: For the contract workforce, reducing barriers to entry for under-represented groups.

    • Other measures to offer development opportunities for the target cohort(s) in the contract workforce
    • Creation of outreach activities to create a pipeline of employees for the future contract delivery
  • Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.

    Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.

    • Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
    • Understanding barriers to access to health and social care services or employment opportunities e.g. digital inclusion

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at gcloud@ng-it.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.