Data Protection for Applications
Rubrik allows you to achieve a logically air-gapped and immutable backups with the ability to detect and remediate ransomware attacks, discover sensitive data, contain incidents, and orchestrate application recovery—all conveniently managed within a single unified management plane.
Features
- Fully managed data recovery service
- Zero Trust Architecture
- Tested annually to prove recoverability of all data
- Policy based automation
- Global search and indexing
- Data deduplication and compression
- Ransomware protection with immutable snapshots
- Scalable architecture
- Cloud integration
- API Driven platform
Benefits
- Continuous data protection with Rubrik technology.
- Automated failover and failback for seamless DR operations.
- Achieve rapid RTOs and RPOs with efficient recovery.
- Flexible recovery options tailored to specific organizational needs.
- Scalable architecture to accommodate growing data volumes.
- Ensured security and compliance with Rubrik encryption features.
- 24/7/365 monitoring and support for uninterrupted DR operations
Pricing
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
4 5 0 2 5 4 1 5 1 1 7 6 7 1 8
Contact
Wavenet
Joe Ewins
Telephone: 0333 234 0011
Email: publicsector@wavenet.co.uk
About your service
- Service categories
-
Systems Infrastructure Software
Storage
Data replication and protection
- Data Protection Software
- Backup and Recovery Reporting Software
- Storage Replication Software
- Replication Management Software
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
- Hybrid cloud
- Service constraints
- On premises deployment requires specific hardware and/or resource configurations
- System requirements
- Customer provided networking
User support
- Email or online ticketing support
- Yes
- Support response times
-
Support SLAs P1-P4
Critical response 15 mins
P2 - 1 hour
P3 - 2hours
P4 - 4 hours - User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- None or don’t know
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
-
We provide a single level of support which its included in the cost of the sale. This a 24x7x365 support with the following SLAs
Initial Response Times:
P1 (Urgent) - 15 Minutes
P2 (High) - 1 Hour
P3 (Normal) - 2 Hours
P4 (Low) - 4 Hours
Target Resolution Times:
P1 (Urgent) - N/A*
P2 (High) - 12 Hour
P3 (Normal) - 24 Hours
P4 (Low) - 36 Hours
* There is no target resolution time as all reasonable endeavours will be made to resolve the P1 situation at the earliest possible time.
A Client Services Manager will be assigned to each customer manage the customers commercially and initiate/run the service reviews with the customers.
A Technical Account Manager is available depending on the opportunity. - Support available to third parties
- No
Onboarding and offboarding
- Getting started
- Once the sale has been completed, it is passed over to our implementation team. Implementation is included in all oppertunities. The implementation team will work with the customer all the way from Pre-Reqs to installation, configuration, testing and finally BAU. Knowledge transfer sessions can be arranged in to the form of screenshare during installation or dedicated online sessions.
- Service documentation
- Yes
- Documentation formats
- End-of-contract data extraction
- Natural expiration or manual migration through Wavenet/Rubrik professional Services
- End-of-contract process
- Customer has recovery only capabilities with no support on product or services. Customers with Rubrik hosted services will have set amount of days to expire/export.
- Documentation accessibility standard
- None or don’t know
- How the documentation is accessible
- Vendor and Wavenet websites
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Application to install
- Yes
- Compatible operating systems
-
- Linux or Unix
- MacOS
- Windows
- Other
- Designed for use on mobile devices
- No
- Service interface
- Yes
- User support accessibility
- None or don’t know
- Description of service interface
- Reports can be generated from the GUI, relating to success/failure and service usage. Reports will also be produced in accordance with the ITIL provisions of the Managed Service.
- Accessibility standards
- None or don’t know
- Description of accessibility
- N/A
- Accessibility testing
- N/A
- API
- Yes
- What users can and can't do using the API
- Rubrik's platform is built on a RESTful API architecture, making it easy to integrate with other tools and systems in the organisation's IT environment.
- API documentation
- Yes
- API documentation formats
- Open API (also known as Swagger)
- API sandbox or test environment
- No
- Customisation available
- No
Scaling
- Independence of resources
- Rubrik is infinitely scalable. Wavenet will also be on hand to ensure that the service is utilised to its fullest.
Analytics
- Service usage metrics
- Yes
- Metrics types
- Other
- Reporting types
- Regular reports
- Resource tagging
- No
- FOCUS resource tagging
- Yes
Resellers
- Supplier type
- Reseller (no extras)
- Organisation whose services are being resold
- Rubrik
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Security Clearance (SC)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
- Explicit overwriting of storage before reallocation / Secure Erase
Data importing and exporting
- Data export approach
- Via the back up software GUI
- Data export formats
- Other
- Other data export formats
- Same format as uploaded
- Data import formats
- Other
- Other data import formats
- Format of the existing file
Data-in-transit protection
- Data protection between buyer and supplier networks
- IPsec or TLS VPN gateway
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
-
"The Rubrik software will have a target uptime of 99.5% (10% Service Credit if SLA not achieved)
Availability shall be measured as a percentage of the total time in a month, in accordance with the following formula:
Availability % = ((MP-SD)x100)/MP
Where:
MP = Total number of minutes, excluding any permitted maintenance agreed in advance between the parties in writing, within the relevant month; and
SD = Total number of minutes of any period of time during which a service is not available, excluding any permitted maintenance agreed in advance in writing between the parties, in the relevant month." - Approach to resilience
- Available on request. Our Datacentre security setup complies with a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Outage reporting
- Utilising Protect View (the automated email and alerting tool included within the service), Rubrik's alerting capabilities and the 24/7/365 helpdesk.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Access restrictions in management interfaces and support channels
-
2-factor authentication,
Public key authentication (including by TLS client certificate),
Dedicated link (for example VPN or bonded fibre),
Username or password,
Users can authenticate using local usernames and password or via any SAML v2.0 based SSO/IDP provider - Access restriction testing frequency
- At least every 6 months
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Public key authentication (including by TLS client certificate)
- Identity federation with existing provider (for example Google Apps)
- Dedicated link (for example VPN)
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- Between 6 months and 12 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- Between 6 months and 12 months
- How long system logs are stored for
- User-defined
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- Through the establishment of a comprehensive security framework, Wavenet shall demonstrate a commitment to protect all assets that support the delivery of business objectives and address all legal, regulatory and contractual obligations. The following ISO27001 Group clause & objectives are referenced within this document: Clause 5, & Control objectives: A6, A9, A11, A13.2, and A14 Data Protection Policy Site Security Policy CCTV Policy
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Wavenet conform to ISO2000
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- Wavenet conform to and follow the NIST standard and ISO27002
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- We have continual monitoring with EDR solution feeding into a SIEM that is monitored 24/7 that is monitored by SOC
- Incident management type
- Supplier-defined controls
- Incident management approach
- Wavenet is ISO27001 certified and we follow the playbook as part of our certification.
- Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- No
- Free trial available
- No
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 0%
- Between £250,000 and £500,000
- 1%
- Between £500,001 and £1,000,000
- 2%
- Between £1,000,001 and £2,500,000
- 3%
- Between £2,500,001 and £5,000,000
- 4%
- Over £5,000,001
- 5%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- United Registrar of Systems
- ISO/IEC 27001 accreditation date
- Thursday 18 July 2024
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- Yes
- Who accredited the ISO 9001 certification
- United Registrar of Systems
- ISO 9001 accreditation date
- Monday 12 August 2024
- What the ISO 9001 doesn’t cover
- N/A
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 39aabf05-4ab8-4ee7-adcd-3318af1f9d2f
- Cyber essentials plus
- Yes
- Please provide your Cyber Essentials Plus Certificate Number
- 6cc5c85d-03f1-446c-9e9d-7338dfb9f0ce
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Delivery of apprenticeships, supported internships and T Level industry placement opportunities (Level 2, 3 and 4+) in relation to the contract
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Plans for positive actions with community groups.
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
-