CloudCover Guardian for Azure
An established Microsoft 365 estate has over 250 configurable items governing how Microsoft 365 is used within an organisation. CloudCover Guardian for Azure enables you to capture and protect these configurations and pro-actively manage your Microsoft 365 environment. Includes protection for SharePoint, Teams, OneDrive, Exchange and Entra ID (Azure AD).
Features
- Comprehensive management of your Microsoft 365 tenancy configuration.
- Fast restoration from accidental and intentional configuration changes.
- Point-in-time blueprint reports of your environment.
- Notifications of adds, moves, and changes.
- Protects Azure AD (Entra ID), Intune, Security and compliance.
- Also protects Exchange, SharePoint, OneDrive, Planner & Teams.
Benefits
- Quick online setup.
- Easily protect your data and keep it in the UK.
- Long term storage and fast data recovery.
- Self service setup and trials.
- MSP management available.
- Compliments ISO 27001 and NIST standards.
Pricing
£2.50 to £5.00 a user
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 14
Service ID
1 2 1 5 9 4 2 0 4 6 2 8 1 0 1
Contact
virtualDCS Ltd
Kerri Milburn
Telephone: 03453 888327
Email: sales@virtualdcs.co.uk
Service scope
- Service constraints
- None
- System requirements
- An existing Microsoft 365 subscription
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
- Instant online support agents are available Mon-Fri 9:00 - 17:30 GMT via chat once you are logged in.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- Web chat
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- WCAG 2.1 AA or EN 301 549
- Web chat accessibility testing
- None.
- Onsite support
- No
- Support levels
- Support is included with the service. If you have bespoke support requirements, we can accommodate dedicated agents, technical account management, and 24x7 phone support at additional cost.
- Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- Everything is done online using a step-by-step on-boarding wizard. Online chat to support agents is embedded in the site in case of difficulties. Full documentation is also online at https://cloudcover365.virtualdcs.co.uk/
- Service documentation
- Yes
- Documentation formats
- HTML
- End-of-contract data extraction
- When the contract ends all customer data is securely destroyed. We recommend customers restore any required copies before this date.
- End-of-contract process
- The service is on a subscription basis, and invoiced on a rolling month basis. If the customer ends the subscription at any time, there will be a final invoice for that last month of usage at the normal rate. There are no contract end fees to pay. Upon termination, the data held will be securely deleted within 14 days.
Using the service
- Web browser interface
- Yes
- Using the web interface
- Users can sign up for and manage Microsoft Office 365 backups with no software or agents to download.
- Web interface accessibility standard
- WCAG 2.1 AA or EN 301 549
- Web interface accessibility testing
- None.
- API
- No
- Command line interface
- No
Scaling
- Scaling available
- Yes
- Scaling type
- Automatic
- Independence of resources
- We monitor our bandwidth and storage processing capabilities 24/7 and scale elastically based on demand. This service can be provided as a dedicated private solution if required.
- Usage notifications
- No
Analytics
- Infrastructure or application metrics
- Yes
- Metrics types
-
- Disk
- Network
- Number of active instances
- Reporting types
- Real-time dashboards
Resellers
- Supplier type
- Not a reseller
Staff security
- Staff security clearance
- Other security clearance
- Government security clearance
- Up to Baseline Personnel Security Standard (BPSS)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- No
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 3.0)
- Penetration testing frequency
- At least every 6 months
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
-
- Physical access control, complying with another standard
- Other
- Other data at rest protection approach
- Customers configure their own encryption key, which we have no access to. This ensures data stored are rest is protected with AES 256-bit encryption.
- Data sanitisation process
- Yes
- Data sanitisation type
- Deleted data can’t be directly accessed
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001
Backup and recovery
- Backup and recovery
- Yes
- What’s backed up
-
- Entra ID
- Exchange Online
- Sharepoint
- Teams
- OneDrive
- Security and Compliance
- Power Platforms
- Intune
- Planner
- Backup controls
- Users are in complete control of what items they protect, and also the frequency of that protection.
- Datacentre setup
- Multiple datacentres with disaster recovery
- Scheduling backups
- Users schedule backups through a web interface
- Backup recovery
- Users can recover backups themselves, for example through a web interface
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
- We guarantee 99.9% service availability. There are credits for failing to meet this availability laid out in the subscriber agreement.
- Approach to resilience
-
Our platform has been designed to be incredibly resilient and self-healing. This means that in the unlikely event of a failure, you will be up and running again within minutes. Our enterprise platform has been designed to provide 99.999% up-time and is monitored 24 x 7 x 365 by our team of highly skilled support team. Our datacentres have: 24 Hour Manned Security 3 x N+1 Generators Resilient UPS N+1 Air Conditioning Systems Fire Suppression Systems CCTV & Intruder Alarms Diverse Fibre Entry from all major carriers Multiple T1 Carriers for Internet Transit.
Further information available on request. - Outage reporting
- VirtualDCS operate a separate status website, with automated email updates to inform customers of potential issues with the environment. Email alerts are also delivered via the service desk to registered users.
Identity and authentication
- User authentication
-
- 2-factor authentication
- Identity federation with existing provider (for example Google apps)
- Access restrictions in management interfaces and support channels
- Only tenant administrators can create protection jobs. Any tenant user can restore their own data only. All users can interact with support but what they can access is determined by the customer's own Azure AD permissions.
- Access restriction testing frequency
- At least every 6 months
- Management access authentication
- 2-factor authentication
- Devices users manage the service through
- Directly from any device which may also be used for normal business (for example web browsing or viewing external email)
Audit information for users
- Access to user activity audit information
- Users contact the support team to get audit information
- How long user audit data is stored for
- Between 1 month and 6 months
- Access to supplier activity audit information
- Users contact the support team to get audit information
- How long supplier audit data is stored for
- Between 1 month and 6 months
- How long system logs are stored for
- Between 1 month and 6 months
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- BSI
- ISO/IEC 27001 accreditation date
- 13/07/2024
- What the ISO/IEC 27001 doesn’t cover
- The ISO 27001 certification covers our whole service.
- ISO 28000:2007 certification
- No
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Cyber essentials plus
- No
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- All our staff follow strict ISO 27001 audited ISMS procedures. We have our own accredited ISO auditor, and are independently assessed by BSI on a regular basis.
Operational security
- Configuration and change management standard
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Configuration and change management approach
- We operate a change management process in accordance with our ISO 27001 certification. As part of this process, assessments are made of the risk and impact associated with any change, along with conditions required to mitigate the risks of any approved changes. Full details of our change management process are available on request.
- Vulnerability management type
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Vulnerability management approach
- VirtualDCS uses a specialist vulnerability monitoring service which continuously monitors our services for vulnerabilities. We aim to deploy patches to security related vulnerabilities within one day of the vulnerability being discovered.
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- VirtualDCS uses an automated audit and alerting solution continuously monitors our services for irregular activity. We invoke our standard response process in the event of a suspected compromise; the response time target for such an incident is 1 hour.
- Incident management type
- Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
- Incident management approach
- We follow ISO 27001 recommendations for incident management.
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)
Separation between users
- Virtualisation technology used to keep applications and users sharing the same infrastructure apart
- No
Energy efficiency
- Energy-efficient datacentres
- Yes
- Description of energy efficient datacentres
-
By applying good practice, and continually improving efficiency and operations to reduce energy consumption. Improving energy performance is factored into all processes.
Our datacentres are certified as being compliant with ISO 50001: 2018 Energy Management
Social Value
- Social Value
-
Social Value
Fighting climate changeFighting climate change
virtualDCS CloudCover services combat climate change by consolidating servers and reducing energy usage. They also reduce the demand for physical hardware, leading to decreased energy consumption and lower carbon emissions associated with manufacturing, operating, and disposing of such equipment. Supporting remote working initiatives through highly available data helps to reduce commuting and further lowers carbon emissions.
Pricing
- Price
- £2.50 to £5.00 a user
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- Free 14 day fully featured trial.
- Link to free trial
- https://www.virtualdcs.co.uk/cloudcover365#trial