boxxe Trend Micro One
Cloud-delivered and powered by over 250 million global sensors, Trend Micro One continuously discovers your dynamic attack surface, assesses your risk, and helps you respond with the right security at the right time. Built-in support for a Zero Trust strategy and executive risk dashboards enable you to be more confident.
Features
- Comprehensive security for the applications you build in the cloud
- Protection from known, unknown and undisclosed threats
- Complete user protection security with multiple integrated layers of protection
- Stop more attacks with a cross-generational blend of threat techniques
- Security provides you with forward-looking threat protection on web threats
- Secure your data center, cloud, and containers
- Increase risk visibility, understand broader threats
- Collect and correlates deep activity data across multiple XDR vectors
- Collect and correlates deep activity data across multiple XDR vectors
- Augment threat detection with expertly managed detection and response
Benefits
- Automated, flexible, all in one cloud security
- Prevent, detect, respond
- Protect users and their information anywhere, on any device.
- Layered protection guards against persistant and targeted attacks
- Protect users at any location, on or off the network.
- Automatically detect new workloads and protect them quickly.
- Increase risk visibility
- Powerful security analytics
- Collect and correlate deep activity data
- Superior threat expertise, intelliganvr and analytics.
Pricing
£33.36 a user a year
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 13
Service ID
5 6 2 3 8 2 6 2 9 2 8 2 7 7 1
Contact
BOXXE LIMITED
Gemma Franklin
Telephone: 07704551950
Email: tenders@boxxe.com
Service scope
- Service constraints
- No constraints regarding maintenance arrangements or specific hardware configurations. All supported platforms can be found at docs.trendmicro.com
- System requirements
- Based on the service that the end user requires
User support
- Email or online ticketing support
- Email or online ticketing
- Support response times
-
Trend Micro will make a commercially reasonable effort to ensure that its technical staff promptly answer
Customer’s calls, respond to Customer’s questions, and correct software/service deficiencies, according to the
severity definitions and target initial response times identified in the following link https://success.trendmicro.com/dcx/s/solution/000285802?language=en_US - User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- WCAG 2.1 AAA
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- Web chat
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- WCAG 2.1 AAA
- Web chat accessibility testing
- Full testing such as short hand word identification
- Onsite support
- No
- Support levels
-
Standard 9-6.30pm 5 days a week support is complimentary to Trend Micro customers.
Premium Support is 24x7 and charged based upon which solution is being supported. Further information can be requested from Account Manager. - Support available to third parties
- Yes
Onboarding and offboarding
- Getting started
- Chargeable onsite training is available. Complimentary online training is available. Best practice guides and user documentation is availabe at https://success.trendmicro.com/dcx/s/solution/1118282-compilation-of-best-practices-while-using-trend-micro-products-for-business?language=en_US and docs.trendmicro.com
- Service documentation
- Yes
- Documentation formats
-
- HTML
- End-of-contract data extraction
- N/A
- End-of-contract process
- Trend Micro will work proactively with the customer to ensure timely renewal is in place to avoid any issues to the customer's security services
Using the service
- Web browser interface
- Yes
- Using the web interface
- N/A
- Web interface accessibility standard
- WCAG 2.1 AAA
- Web interface accessibility testing
- Full testing such as short hand word identification
- API
- Yes
- What users can and can't do using the API
- Details can be found here https://automation.deepsecurity.trendmicro.com/article/20_0/
- API automation tools
-
- Ansible
- Chef
- Puppet
- API documentation
- Yes
- API documentation formats
- HTML
- Command line interface
- Yes
- Command line interface compatibility
-
- Linux or Unix
- Windows
- MacOS
- Using the command line interface
- Command Line interfaces and action vary across the Trend Micro portfolio. For example all information regarding Deep Security Command Line interfaces can be found here https://help.deepsecurity.trendmicro.com/20_0/on-premise/command-line-interface.html
Scaling
- Scaling available
- Yes
- Scaling type
- Manual
- Independence of resources
- Automscaling is in place
- Usage notifications
- Yes
- Usage reporting
Analytics
- Infrastructure or application metrics
- Yes
- Metrics types
-
- CPU
- Disk
- Memory
- Network
- Number of active instances
- Reporting types
- Reports on request
Resellers
- Supplier type
- Reseller providing extra support
- Organisation whose services are being resold
- Trend Micro
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Up to Developed Vetting (DV)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- Other locations
- User control over data storage and processing locations
- No
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 3.0)
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- Another external penetration testing organisation
- Protecting data at rest
- Physical access control, complying with CSA CCM v3.0
- Data sanitisation process
- Yes
- Data sanitisation type
- Deleted data can’t be directly accessed
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v.30, CAS (Sanitisation) or ISO/IEC 27001
Backup and recovery
- Backup and recovery
- Yes
- What’s backed up
- Databases for SaaS services
- Backup controls
- This is automated and used in the event of any loss of service. This is not manually configured by the end user but is available on request from support depending on the service used.
- Datacentre setup
- Multiple datacentres with disaster recovery
- Scheduling backups
- Users contact the support team to schedule backups
- Backup recovery
- Users contact the support team
Data-in-transit protection
- Data protection between buyer and supplier networks
- Private network or public sector network
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
- Trend Micro Service Levels can be found here https://success.trendmicro.com/dcx/s/solution/000285802?language=en_US
- Approach to resilience
- This information is available upon request
- Outage reporting
- Email Alerts
Identity and authentication
- User authentication
-
- 2-factor authentication
- Username or password
- Access restrictions in management interfaces and support channels
- 2-factor authentication and Username or password
- Access restriction testing frequency
- At least once a year
- Management access authentication
- Username or password
- Devices users manage the service through
- Directly from any device which may also be used for normal business (for example web browsing or viewing external email)
Audit information for users
- Access to user activity audit information
- Users receive audit information on a regular basis
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users receive audit information on a regular basis
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- SGS United Kingdom Ltd
- ISO/IEC 27001 accreditation date
- 28/12/2021
- What the ISO/IEC 27001 doesn’t cover
- N/A
- ISO 28000:2007 certification
- Yes
- Who accredited the ISO 28000:2007
- https://www.trendmicro.com/en_us/about/trust-center/compliance.html
- ISO 28000:2007 accreditation date
- N/A
- What the ISO 28000:2007 doesn’t cover
- https://www.trendmicro.com/en_us/about/trust-center/compliance.html
- CSA STAR certification
- Yes
- CSA STAR accreditation date
- N/A
- CSA STAR certification level
- Level 1: CSA STAR Self-Assessment
- What the CSA STAR doesn’t cover
- https://www.trendmicro.com/en_us/about/trust-center/compliance.html
- PCI certification
- Yes
- Who accredited the PCI DSS certification
- PCI
- PCI DSS accreditation date
- N/A
- What the PCI DSS doesn’t cover
- https://www.trendmicro.com/en_us/about/trust-center/compliance.html
- Cyber essentials
- Yes
- Cyber essentials plus
- Yes
- Other security certifications
- No
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- https://www.trendmicro.com/en_us/about/trust-center/compliance.html
Operational security
- Configuration and change management standard
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Configuration and change management approach
- All information can be found here https://www.trendmicro.com/en_us/about/trust-center/security-practices.html
- Vulnerability management type
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Vulnerability management approach
- https://www.trendmicro.com/en_us/about/trust-center/company.html
- Protective monitoring type
- Conforms to a recognised standard, for example CSA CCM v3.0 or SSAE-16 / ISAE 3402
- Protective monitoring approach
- All information can be found here https://www.trendmicro.com/en_us/about/trust-center/compliance.html
- Incident management type
- Conforms to a recognised standard, for example, CSA CCM v3.0 or ISO/IEC 27035:2011 or SSAE-16 / ISAE 3402
- Incident management approach
- All information can be found here https://www.trendmicro.com/en_us/about/trust-center/compliance.html
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v3.0)
Separation between users
- Virtualisation technology used to keep applications and users sharing the same infrastructure apart
- No
Energy efficiency
- Energy-efficient datacentres
- Yes
- Description of energy efficient datacentres
-
Our sustainability initiatives are a big part of our vision to help create of a world safe for exchanging digital information. By constantly innovating, we enable our clients with solutions that help create a positive impact on the world and the way we live.
https://www.trendmicro.com/en_us/about/corporate-social-responsibility/sustainability.html
Social Value
- Fighting climate change
-
Fighting climate change
Our sustainability initiatives are a big part of our vision to help create of a world safe for exchanging digital information. By constantly innovating, we enable our clients with solutions that help create a positive impact on the world and the way we live.
https://www.trendmicro.com/en_us/about/corporate-social-responsibility/sustainability.html - Covid-19 recovery
-
Covid-19 recovery
The recent outbreak of COVID-19 has affected people’s lives across the globe. At Trend Micro, our number one priority is to ensure that our employees and their families are as safe as possible. We realize this situation remains very dynamic, as information continues to change day-to-day, and as such we will continue to provide updates as we learn more. In the meantime, we remain committed to providing the superior service and support that our customers, partners, and suppliers have come to expect of Trend Micro.
In some regions, like many other companies, we have shifted our workforce to virtual/remote wherever it is feasible, and we are maintaining critical onsite operations as needed. At this time we have not experienced any major impact to our business operations as a result of this temporary shift. We will continue to closely monitor and adjust as appropriate to ensure we continue to deliver world class security protection and service for our customers and partners.
Please read the message from our COO regarding Trend Micro’s Customer commitment during the global Coronavirus Pandemic (COVID-19) - https://blog.trendmicro.com/letter-from-our-coo/ - Tackling economic inequality
-
Tackling economic inequality
https://www.trendmicro.com/en_us/about/trust-center/company.html - Equal opportunity
-
Equal opportunity
https://www.trendmicro.com/en_us/about/diversity-inclusion.html - Wellbeing
-
Wellbeing
https://newsroom.trendmicro.com/2017-01-30-Trend-Micro-Recognized-as-One-of-the-Nations-Best-and-Brightest-in-Wellness
Pricing
- Price
- £33.36 a user a year
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- 30 day free trials are available for many of our solutions and can be found here https://www.trendmicro.com/en_us/business/products/trials.html
- Link to free trial
- https://www.trendmicro.com/en_us/business/products/trials.html