Azure Infrastructure as a Service (IaaS)
Public Cloud Infrastructure as a Service (IaaS) for server-based and legacy workloads
Features
- Infrastructure as a Service
- Virtual Machines: Deploy scalable VMs in the cloud environment effortlessly.
- Networking: Securely connect your infrastructure with flexible networking solutions.
- Storage: Store data reliably with scalable, high-performance cloud storage options.
- Load Balancing: Distribute traffic efficiently across multiple servers
- Auto Scaling: Automatically adjust resources on demand to optimize efficiency.
- Identity and Access Management: Manage user identities and control access
- Backup and Disaster Recovery: Safeguard data with backup solutions.
- Monitoring and Logging: Gain insights into performance and security.
- Security Center: Protect workloads with threat detection and security management.
Benefits
- Scalability: Easily scale resources up or down based on demand.
- Cost Efficiency: Pay only for what you use, reducing costs.
- Flexibility: Customize infrastructure to meet specific workload requirements seamlessly.
- Reliability: Leverage Microsoft's robust infrastructure for high availability and reliability.
- Global Reach: Access data centres worldwide, optimal performance and reach.
- Rapid Deployment: Deploy virtual machines and infrastructure without hardware constraints.
- Disaster Recovery: Ensure business continuity with built-in disaster recovery solutions.
- Security: Benefit from Microsoft's top-notch security measures and compliance certifications.
- Innovation: Stay ahead with access to cutting-edge technologies and services.
- Integration: Seamlessly integrate with other Azure services for comprehensive solutions.
Pricing
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
7 9 3 6 4 3 8 7 4 7 8 4 3 3 2
Contact
WAVENET LIMITED
Paddy Sheridan-Ruddy
Telephone: 07714737991
Email: publicsector@wavenet.co.uk
About your service
- Service categories
-
IaaS
IaaS Compute
Virtualised x86
- General purpose
Service scope
- Service constraints
- Mastering Azure tools and concepts takes time, constituting a learning curve. Operational reliance on stable internet connectivity poses a potential risk, and resource limitations may affect scalability. Vendor lock-in can complicate transitioning away from Azure, while navigating compliance standards within its framework can be complex. Data governance challenges may arise due to legal constraints, and shared infrastructure can result in performance variations. Effective cost management requires diligent monitoring, and integrating with legacy systems may demand extra effort. Finally, support dependency on Azure for technical assistance remains a consideration.
- System requirements
-
- Internet connectivity to access resources
- Azure subscription for billing
- Compatibility with cloud-based services
- Re-engineering or re-architecting for cloud services
- Cloud deployment model
- Public cloud
User support
- Email or online ticketing support
- Yes, at extra cost
- Support response times
- Wavenet support - 1 hour response time inside core working hours 9-5 Monday-Friday UK time. Extended hours 8-8 Monday-Friday available with same SLA. Out of Hours support available with 1 hour response for critical issues. Microsoft infrastructure-level support is 24/7/365 for underlying, abstracted hardware.
- User can manage status and priority of support tickets
- No
- Phone support
- Yes
- Phone support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support
- No
- Onsite support
- Yes, at extra cost
- Support levels
- Any customers on managed support will have a dedicated account manager and will be assigned a support team of engineers ranging from 1st line to 3rd line in ability. Escalation points are available with optional to follow through with issues until resolution. Costs vary depending on the Azure resources being supported.
- Support available to third parties
- No
Onboarding and offboarding
- Getting started
- Optional low-level design documentation shared with the client. 'Train the trainer' either on-site or remote. Guidance on customer up-skilling in accordance with the Microsoft Cloud Adoption Framework for Azure (CAF)
- Service documentation
- Yes
- Documentation formats
- End-of-contract data extraction
- Customers are able to remove their data at any time through the same means they uploaded. Either over their network (internet or express route) or via the Azure Import/Export services. Also see https://www.microsoft.com/en-us/trustcenter/privacy
- End-of-contract process
- Please see https://www.microsoft.com/en-us/trustcenter/privacy/you-own-your-data. Microsoft contractually commits to specific processes when a customer leaves a cloud service or the subscription expires. This includes deleting customer data from systems under our control. If you terminate a cloud subscription or it expires (except for free trials), Microsoft will store your customer data in a limited-function account for 90 days (the “retention period”) to give you time to extract the data or renew your subscription. During this period, Microsoft provides multiple notices, so you will be amply forewarned of the upcoming deletion of data. After this 90-day retention period, Microsoft will disable the account and delete the customer data, including any cached or backup copies. For in-scope services, that deletion will occur within 90 days after the end of the retention period.
- Documentation accessibility standard
- WCAG 2.2 A
Using the service
- Web browser interface
- Yes
- Using the web interface
- Configure Azure Management Groups, Policies, Subscriptions, Resource Groups. Deploy and configure Azure resources such as Virtual Machines, Storage Accounts, Virtual Networks, Backup and Recovery services. All access is governed by Role-Based Access Control (RBAC) and Identity and Access Management (IAM) governed by aforementioned Management Groups and Policies, in conjunction with Azure roles and Microsoft Entra ID Conditional Access.
- Web interface accessibility standard
- WCAG 2.2 AA
- Web interface accessibility testing
- None
- API
- Yes
- What users can and can't do using the API
- The Azure REST API serves as a vital interface for developers to interact programmatically with Azure services. This API empowers users to automate tasks, manage resources, and integrate Azure functionalities into custom applications efficiently. With RESTful endpoints, developers can perform a myriad of operations such as provisioning and configuring resources, querying status, accessing metadata, and monitoring performance. The API offers extensive capabilities, enabling users to deploy, scale, and manage services across Azure's diverse ecosystem. Additionally, it provides access to billing information, facilitating cost management and optimization. Security is paramount, and the API supports various authentication methods, including Azure Active Directory (AAD) tokens, ensuring secure access to resources. Its flexibility allows for seamless integration with third-party tools and platforms, enabling developers to build dynamic, agile workflows tailored to their specific needs. Moreover, the API's scalability accommodates diverse use cases, from small-scale applications to enterprise-grade solutions. Overall, the Azure REST API streamlines development processes, enhances productivity, and empowers users to leverage Azure's vast array of services effectively.
- API automation tools
- Other
- API documentation
- Yes
- API documentation formats
- Command line interface
- Yes
- Command line interface compatibility
-
- Linux or Unix
- Windows
- MacOS
- Using the command line interface
- Any and all options available in the Azure GUI are configurable via CLI, with some additional options, for example deployment of Legacy Azure Networking SKUs may only be accomplished via CLI.
Scaling
- Independence of resources
- Azure is a hyper-scale public cloud service. Reservation of compute instances where applicable will guarantee availability. Microsoft's vast capacity across multiple datacentres in multiple regions ensures capacity on demand for non-reserved compute instances.
- Usage notifications
- Yes
- Usage reporting
-
- API
- Other
- Other usage reporting
- Emails raised via proactive monitoring tools will also prompt the support desk to contact key stakeholders by telephone if required to authorise changes
- Optimising consumption
- Yes
- Automatic scaling
- Yes
Analytics
- Infrastructure or application metrics
- Yes
- Metrics types
-
- CPU
- Disk
- HTTP request and response status
- Memory
- Network
- Number of active instances
- Other
- Other metrics
-
- Boot diagnostics
- Performance diagnostics
- Reporting types
-
- API access
- Real-time dashboards
- Reports on request
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Reseller providing extra support
- Organisation whose services are being resold
- Azure
Staff security
- Staff security clearance
- Conforms to BS7858:2019
- Government security clearance
- Security Clearance (SC)
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
- United Kingdom
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Complies with a recognised standard (for example CSA CCM version 4.0)
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CHECK service provider
- Protecting data at rest
-
- Physical access control, complying with CSA CCM v4.0
- Physical access control, complying with SSAE-18 / ISAE 3402
- Physical access control, complying with another standard
- Encryption of all physical media
- Scale, obfuscating techniques, or data storage sharding
- Other
- Other data at rest protection approach
- Data in Azure is encrypted at rest by default. See: https://learn.microsoft.com/en-us/azure/security/fundamentals/physical-security and https://learn.microsoft.com/en-us/azure/storage/common/storage-service-encryption
- Data sanitisation process
- Yes
- Equipment disposal approach
- Complying with a recognised standard, for example CSA CCM v4.0, CAS (Sanitisation) or ISO/IEC 27001
- Data sanitisation type
-
- Deleted data can’t be directly accessed / Cryptographic Erasure
- Explicit overwriting of storage before reallocation / Secure Erase
Backup and recovery
- What’s backed up
-
- Azure Infrastructure as a Service (IaaS) servers
- Azure Storage Accounts
- Azure Managed Disks
- Azure File Shares
- SQL Databases
- Non-SQL Databases
- Kubernetes/Containers
- Backup controls
- Azure Backup is highly configurable, with the capability to create and assign different backup policies to different Azure resources such as File Shares and Virtual Machines. Backup frequency and retention are highly configurable when using Enhanced Backup policies, with the capability to run backups multiple times per day, weekly, monthly or yearly with long-term retention options available using tiered storage for cost optimisation purposes. Backup storage immutability can be enabled to prevent backups from being prematurely deleted.
- Datacentre setup
- Multiple datacentres with disaster recovery
- Scheduling backups
- Users contact the support team to schedule backups
- Backup recovery
-
- Users can recover backups themselves, for example through a web interface
- Users contact the support team
- Backup and recovery
- Yes
- RPO/RTO
- Yes
Data-in-transit protection
- Data protection between buyer and supplier networks
- Other
- Other protection between networks
- Azure virtual networks entirely segregated from Wavenet's network.
- Data protection within supplier network
-
- TLS (version 1.2 or above)
- Other
- Other protection within supplier network
- Role-Based Access Control (RBAC), Multi-Factor Authentication
Availability and resilience
- Guaranteed availability
- See Microsoft's Service Level Agreements (SLA) for online services: https://www.microsoft.com/licensing/docs/view/Service-Level-Agreements-SLA-for-Online-Services?lang=1
- Approach to resilience
- Numerous options are available to increase resilience subject to workload and business importance including (but not limited to) distribution of data and compute instances across multiple datacentres or Azure regions, synchronous or asynchronous replication of data for disaster recovery, robust encrypted and immutable backups
- Outage reporting
- Platform level outages are reported publicly via: https://azure.status.microsoft/en-gb/status. Individual servers/applications are proactively monitored and incidents raised with Wavenet helpdesk to remedy as required.
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Dedicated link (for example VPN)
- Username or password
- Other
- Other user authentication
- Conditional Access governs access based on logon location, device used for access and its compliance status.
- Access restrictions in management interfaces and support channels
- Microsoft Entra ID (Microsoft's cloud-based Identity provider) provides advanced identity management functionality such as Multi-factor authentication, device registration, self-service password management, self-service group management, privileged identity management and role-based access.
- Access restriction testing frequency
- At least once a year
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Devices users manage the service through
-
- Dedicated device on a segregated network (providers own provision)
- Any device but through a bastion host (a bastion host is a server that provides access to a private network from an external network such as the internet)
Audit information for users
- Access to user activity audit information
- Users receive audit information on a regular basis
- How long user audit data is stored for
- User-defined
- Access to supplier activity audit information
- Users receive audit information on a regular basis
- How long supplier audit data is stored for
- User-defined
- How long system logs are stored for
- Between 1 month and 6 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- Wavenet is an ISO27001 certified company and we adhere to the standard and has an Information security management system drawn from ISO27002 and we follow the NIST standard for cyber security framework, we are audited on this standard annually, Wavenet is also a CE+ certified company.
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- Wavenet conform to ISO2000
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- We conform to and follow the NIST standard and ISO27002
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- We have continual monitoring with EDR solution feeding into a SIEM that is monitored 24/7 that is monitored by SOC
- Incident management type
- Supplier-defined controls
- Incident management approach
- Wavenet is ISO27001 certified and we follow the playbooks as part of our certification.
- Post-quantum cryptography secure
- No
Secure development
- Approach to secure software development best practice
- Independent review of processes (for example CESG CPA Build Standard, ISO/IEC 27034, ISO/IEC 27001 or CSA CCM v4.0)
Separation between users
- Virtualisation technology used to keep applications and users sharing the same infrastructure apart
- Yes
- Who implements virtualisation
- Third-party
- Third-party virtualisation provider
- Hyper V
- How shared infrastructure is kept separate
- Logical separation of Azure resources into subscriptions associated with individual client Azure tenants. Access governed by Role-Based Access Control (RBAC), Multi-Factor Authentication (MFA) and Conditional Access.
Energy efficiency
- Energy-efficient datacentres
- Yes
- Description of energy efficient datacentres
- We leverage Power Purchase Agreements (PPAs) and purchase energy attribute certificates (EACs) to increase our renewable energy coverage.
Pricing
- Discount for educational organisations
- No
- Free trial available
- No
Discount
- Provide your minimum discount applicable to your baseline prices
- 1.5%
Formula for calculating price of your services
- Formula for calculating price of your services
-
Which of the core deployment models you intend to offer
- Public Cloud
- Private Cloud
Public Cloud - Formula for calculating price of your services
- Total Cost
- The Total Cost for a buyer's call off requirement in a Public Cloud Deployment
- =
- Baseline Pricing
- Baseline pricing can be found on the Microsoft Azure calculator
- Baseline Pricing - Web link
- https://azure.microsoft.com/en-gb/pricing/
- -
- Minimum Discounting
- 1.5%
- +
- Onboarding Activity
- Onboarding costs may vary based on your specific requirements, please confirm with suppliers during the clarification process
- +
- Additional sources of cost
- Additional sources of cost from the supplied baseline pricing may include Wavenet supplied elements such as: support, managed services, and bespoke requirements
- -
- Additional sources of cost reduction
- Some services may offer discounts and cost reductions based on sector, or for agreeing to a multi-year contract.
Private Cloud - Formula for calculating price of your services
- Total Cost
- The Total Cost for a buyer's call off requirement in a Private Cloud Deployment
- =
- Baseline Pricing
- Baseline pricing for our Private cloud deployments can be found in our G-Cloud service offerings.
- -
- Minimum Discounting
- 1.5%
- +
- Onboarding Activity
- Onboarding costs may vary based on your specific requirements, please confirm with suppliers during the clarification process
- +
- Additional sources of cost
-
Additional sources of cost that may affects deployments include fluctuations in vendor pricing or exchange rates.
Other factors include situations where expectations for level of utilisation, capacity or storage have been specified, and these have then been exceeded by the customer. - -
- Additional sources of cost reduction
- Some services may offer discounts and cost reductions based on sector, or for agreeing to a multi-year contract.
Mandatory certifications
- Mandatory certifications
-
Are you are bidding to offer IaaS and/or PaaS as a reseller or are you in sole control of the infrastructure
ResellerCloud service suppliers you intend to resell with evidence
Organisation 1
Organisation name
MicrosoftWebsite address/upload for organisation
UploadUpload
ProvidedOrganisation 2
Organisation name
Hewlett Packard EnterpriseWebsite address/upload for organisation
Website addressWebsite address
https://partnerconnect.hpe.com/partner/wavenet-gb121801474Organisation 3
Organisation name
Asanti Datacentres LtdWebsite address/upload for organisation
Website addressWebsite address
https://asanti.com/partners/ISO 9001 certification
ProvidedISO 27001 certification
ProvidedISO 20000-1 certification
ProvidedAre you reliant on the Cloud Service Provider for some accreditations
Yes
Cyber Essentials
- Do you have a Cyber Essentials Plus certificate?
- Yes
- Cyber Essentials Plus certificate Number
- 6cc5c85d-03f1-446c-9e9d-7338dfb9f0ce
Non-mandatory Standards and certifications
- ISO 28000:2022 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Other security certifications
- No
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New apprenticeships on the contract workforce in the relevant area that meet the criteria set out in MAC 1b
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 2: Skills for growth: Supporting growth sectors and addressing skills gaps.
- Delivery of apprenticeships, supported internships and T Level industry placement opportunities (Level 2, 3 and 4+) in relation to the contract
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 3: Resilient, innovative and flexible supply chains: Support economic growth through enabling resilient businesses, opportunities for small businesses and voluntary, community and social enterprises
- Plans for positive actions with community groups.
-
Mission: Make Britain a clean energy superpower: To cut bills, create jobs and deliver security with cheaper, zero-carbon electricity by 2030, accelerating to net zero
Policy Outcome 4: Sustainable procurement practices: Reducing carbon footprints, minimising waste, and promoting the use of clean energy and green technologies.
- Understanding of opportunities for additional environmental benefits delivery in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Collaborative ways of working with the supply chain to deliver additional environmental benefits in the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Delivery of additional environmental benefits through the performance of the contract, including working towards net zero carbon emissions and use of clean energy and green technologies
- Understanding of how to influence staff, suppliers, customers, communities and/or any other appropriate stakeholders through the delivery of the contract to support climate and nature protection and improvement
-
Mission: Build an NHS fit for the future: That is there when people need it; with fewer lives lost to the biggest killers; in a fairer Britain, where everyone lives well for longer.
Policy Outcome 8: Increasing productivity through physical and mental wellbeing: In the supply chain and communities in the relevant area.
- Understanding of issues relating to health and wellbeing, including physical and mental health, in the contract workforce
-