Skip to main content

Help us improve the Digital Marketplace - send your feedback

COOLSPIRiT

COOLSPIRiT a Databarracks Company: Illumio - Network Micro Segmentation

Safeguard your organisation, stop digital attacks in their tracks. Illumio provides the only proven segmentation product suite purpose-built for Zero Trust security. Illumio has pioneered an unprecedented way to orchestrate Zero Trust segmentation down to the application and workload level, identifying and easily blocking pathways of attack to digital operations.

Features

  • Automated security enforcement
  • Real-time application insights
  • See clearly how apps communicate through real-time application dependency maps
  • Create optimal segmentation policies in minutes with a policy generator
  • Analyse historical records of traffic between workloads exploring weak links
  • Create optimal segmentation policies in minutes with a policy generator
  • View which applications are connecting to vulnerable ports in real-time
  • Identify core services/provision Zero Trust Segmentation to quickly reduce risk
  • View which applications are connecting to vulnerable ports in real-time
  • Set enforcement boundaries safely and effectively with Zero Trust Segmentation

Benefits

  • Eliminate blind spots inside data centers and the cloud
  • Regain control of your application environment
  • See potentially vulnerable connections: prioritize patching/inform micro-segmentation policy
  • Immediately detect unauthorized activity and stop breaches in their tracks
  • Eliminate service delivery delays, deploy applications with security in hours
  • Decrease firewall rules inside the data-center by over 95 percent
  • Reduce investigations of unauthorized communications
  • Solution protects applications running in bare-metal, virtualized, containerized environments
  • Protect multi-cloud infrastructure with consistent security
  • Gain visibility into application dependencies

Pricing

£150 a server a year

  • Free trial available

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at frameworks@coolspirit.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.

Framework

G-Cloud 14

Service ID

1 3 5 3 3 8 1 1 4 2 0 8 1 6 7

Contact

COOLSPIRiT Alex Raben
Telephone: 01246 454 222
Email: frameworks@coolspirit.co.uk

Service scope

Software add-on or extension
No
Cloud deployment model
  • Public cloud
  • Private cloud
  • Community cloud
  • Hybrid cloud
Service constraints
N/A
System requirements
  • For an Illumio VEN (Light weight agent) the following
  • Minimum Disk Space: 500MB
  • Recommended Disk Space: 1.5GB to 2.0GB
  • Operating System: Windows or Linux

User support

Email or online ticketing support
Email or online ticketing
Support response times
Illumio provides customers with 24/7 support by phone, email, and through our support portal. Response times are driven by ticket priority; P4: 1 Business Day, P3: 4 Business Hours, P2: 2 Hours, P1: 30 Minutes
User can manage status and priority of support tickets
Yes
Online ticketing support accessibility
WCAG 2.1 AA or EN 301 549
Phone support
Yes
Phone support availability
24 hours, 7 days a week
Web chat support
No
Onsite support
Yes, at extra cost
Support levels
During the Subscription Term, customers will receive 24/7 support for all maintenance releases and updates via support website, email and telephone. Customers should reach out to technical support for assistance in identifying and verifying the causes of suspected errors in the product and for existing workarounds for identified errors. Illumio will work directly with a customer’s designated internal support liaisons. On request, customers will provide access for online diagnostics of the product during error diagnosis. Professional services personel are available if assistance above support is required (charged per day).
Support requests are based on designed priority; P1, P2, P3 or P4
Support available to third parties
Yes

Onboarding and offboarding

Getting started
To help customers implement the solution, Illumio Professional Services Consultant to help with project planning, technical design, implementation, integrations, system tuning, knowledge transfer, and workshops on reporting and event tuning – any set of tasks that is agreed upon and itemized on a Statement of Work.
Services Include:
Provides the highest level of expertise with the Adaptive Security Platform® (ASP).
Helps deploy, troubleshoot, monitor, and manage your ASP deployment and product upgrades.
Works with your architecture team to design and develop a security policy framework based on Illumio best practice guidelines.
Helps develop ASP-specific API scripts to optimize services.
Prepares and maintains project documentation
Service documentation
Yes
Documentation formats
  • HTML
  • PDF
End-of-contract data extraction
In the event of contract termination the support team can help extract data where required and will be discussed at the time
End-of-contract process
An offboarding plan will be created specific to each customer and their deployment in the event the contract ends

Using the service

Web browser interface
Yes
Supported browsers
  • Microsoft Edge
  • Firefox
  • Chrome
Application to install
Yes
Compatible operating systems
  • Linux or Unix
  • Windows
  • Other
Designed for use on mobile devices
No
Service interface
No
User support accessibility
None or don’t know
API
Yes
What users can and can't do using the API
The Illumio API is a RESTful API and uses JSON over HTTPS, which helps automate configuration. JSON is used to encode all data transfer in both directions, so that everything sent to and everything received from the API gets encoded in JSON. To work with Illumio API, you need to be authorized by an Illumio administrator and to have the appropriate credentials for authentication
API documentation
Yes
API documentation formats
HTML
API sandbox or test environment
Yes
Customisation available
Yes
Description of customisation
Illumio has three core products which helps an organisation customise the solution to their requirements; Illumio Core (Workload Security), Illumio Cloud Secure (Cloud Security) and Illumio Edge (Endpoint Security

Scaling

Independence of resources
Illumio has been built for modern cloud infrastucture and is scalable to meet demands of users/organisations

Analytics

Service usage metrics
Yes
Metrics types
Metrics play a valuable role in helping organisations operationalise and achieve Zero Trust . Illumio customers use metrics to identify where to begin, define key milestones, advance their Zero Trust capabilities, and describe what success looks like. Some of these metrics in the context of a three-step plan for implementing Zero Trust are, Discovery, Define, Enforce and Measure
Reporting types
  • API access
  • Real-time dashboards
  • Regular reports
  • Reports on request

Resellers

Supplier type
Reseller (no extras)
Organisation whose services are being resold
Illumio

Staff security

Staff security clearance
Conforms to BS7858:2019
Government security clearance
Up to Security Clearance (SC)

Asset protection

Knowledge of data storage and processing locations
Yes
Data storage and processing locations
  • United Kingdom
  • European Economic Area (EEA)
  • Other locations
User control over data storage and processing locations
Yes
Datacentre security standards
Supplier-defined controls
Penetration testing frequency
At least once a year
Penetration testing approach
Another external penetration testing organisation
Protecting data at rest
  • Physical access control, complying with CSA CCM v3.0
  • Physical access control, complying with SSAE-16 / ISAE 3402
  • Physical access control, complying with another standard
  • Scale, obfuscating techniques, or data storage sharding
Data sanitisation process
Yes
Data sanitisation type
  • Explicit overwriting of storage before reallocation
  • Deleted data can’t be directly accessed
Equipment disposal approach
In-house destruction process

Data importing and exporting

Data export approach
Using the Export feature, you can download PCE objects in JSON and CSV formats. These reports are very useful when you want to share the data with application owners, managers, executives, or auditors who do not have access to the Illumio PCE
Data export formats
CSV
Data import formats
CSV

Data-in-transit protection

Data protection between buyer and supplier networks
Private network or public sector network
Data protection within supplier network
TLS (version 1.2 or above)

Availability and resilience

Guaranteed availability
24x7x365
Approach to resilience
Illumio has been built for modern cloud infrastucture, including scalability and resilience, meeting demands of modern users/organisations
Outage reporting
Email communications

Identity and authentication

User authentication needed
Yes
User authentication
  • 2-factor authentication
  • Username or password
Access restrictions in management interfaces and support channels
Illumio includes seven roles that grant users access to perform operations. Each role is matched with a scope. You can add users (local and external) and groups to all the roles. These Global Roles use the scope All Applications, All Environments, and All Locations. You cannot change the scope for these roles. Following roles are available; Global Organization Owner, Global Administrator. Global Read Only, Global Policy Object Provisioner
Access restriction testing frequency
At least once a year
Management access authentication
  • 2-factor authentication
  • Username or password

Audit information for users

Access to user activity audit information
You control when users can access audit information
How long user audit data is stored for
Between 6 months and 12 months
Access to supplier activity audit information
You control when users can access audit information
How long supplier audit data is stored for
Between 6 months and 12 months
How long system logs are stored for
At least 12 months

Standards and certifications

ISO/IEC 27001 certification
Yes
Who accredited the ISO/IEC 27001
BSI
ISO/IEC 27001 accreditation date
01/12/2020
What the ISO/IEC 27001 doesn’t cover
N/A
ISO 28000:2007 certification
No
CSA STAR certification
No
PCI certification
No
Cyber essentials
Yes
Cyber essentials plus
Yes
Other security certifications
No

Security governance

Named board-level person responsible for service security
Yes
Security governance certified
Yes
Security governance standards
ISO/IEC 27001
Information security policies and processes
The information security policies follow ISO/IEC 27001:2013 certification

Operational security

Configuration and change management standard
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Configuration and change management approach
Configuration and change manament processes follow ISO/IEC 27001:2013 certification, managed with third party products
Vulnerability management type
Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
Vulnerability management approach
IIllumio constantly review the solution for vulnerabilities and patch requirements. If customers need to be aware of any information they will be contacted directly and advised of the details required and any tasks to be carried out. This is inline with the customers active support agreement and priority levels
Protective monitoring type
Supplier-defined controls
Protective monitoring approach
Protective monitoring process detaisl are available upon request
Incident management type
Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
Incident management approach
Illumio’s online support portal provides access to releases, Illumio Materials, Documentation, knowledge base articles, trouble-shooting reports and other additional information. When a customer raises a support ticket to report an issue, the support team will advise on event type and if common will supply information to fix the issue.

If a customer needs to troubleshoot VEN issues, they can also generate a support report from the command line for any Workload and then send the report to the Illumio customer support team.

Secure development

Approach to secure software development best practice
Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)

Public sector networks

Connection to public sector networks
No

Social Value

Social Value

Social Value

Fighting climate change

Fighting climate change

As an organisation, COOLSPIRiT is wholly committed to improving our social & sustainability record and drive real change through to delivery of our contracts. We take great pride working with our supply chain and customers to understand how our services can be provided with reduced emissions seeking a net zero impact on our environment. We employ a number of activities / initiatives to help accelerate us towards our global population becoming carbon neutral, including, Partnering with World Land Trust to plant trees in Borneo, SME Climate Commitment, Working from solar-powered offices, Availability of electric car charge points, Electric-powered company vehicles, Upgrading to LED lighting throughout our offices, Eradicating the use of single-use plastic, Achieving ISO 14001 Certification, Supporting the 721 Challenge. We understand that our business has a direct impact on the environment, so we're actively working towards best practices in the technology sector. In regard to our Social Responsibility, we also thrive on making differences wherever possible, be it big or small, to help support the overall impact that organisations can have on our local communities. Initiatives we have in place include, Apprenticeships for local people, Employment skills structure, Supporting the community, Donations of technology equipment, Local collaboration, Sustainability and environmental focus, Supporting Charity. We're excited to have now partnered with the World Land Trust (Registered Charity No. 1001291) as a corporate supporter. The World Land Trust carries out essential reforestation projects, supporting conservation and creation of wildlife-rich habitats benefitting local communities, reconnecting forest areas, and storing carbon. In addition to the measures noted above we will automatically plant a tree for every contract placed with us. More information can be found on our website https://www.coolspirit.co.uk/

Pricing

Price
£150 a server a year
Discount for educational organisations
No
Free trial available
Yes
Description of free trial
For any customer wishing to try Illumio a Proof of Concept service can be supplied, or a virtual test environment can be accessed to see the solution in practice.

This is available on request

Service documents

Request an accessible format
If you use assistive technology (such as a screen reader) and need versions of these documents in a more accessible format, email the supplier at frameworks@coolspirit.co.uk. Tell them what format you need. It will help if you say what assistive technology you use.