Redstor Cloud Backup for Machines, Azure, Microsoft 365, Google Classroom, Entra ID and Salesforce
Redstor provides 100% cloud backup for workloads including servers, Microsoft 365, Google Workspace, Google Classroom, Azure VMs, Entra ID and Salesforce
Features
- Backup for: Machines, Microsoft 365, Google Workspace, Azure Workloads
- Secure Cloud Backup and Recovery
- Instant Data Recovery
- Disaster Recovery
- AI Malware Detection
- Remote Access
- Data Categorisation
- Optional Local Copy
- Data Migration
- Centralised Management
Benefits
- Unlimited cloud backup for education users
- Department of Education 3-2-1 compliant
- Immutable data backup
- Instant on-demand access to your data, eliminating downtime
- Flexible disaster recovery options
- Malware-free data recoveries
- Manage multiple sites and apps through a single console
- Air-gapped backup
- Multiple data sources protected
- Compliant with regulatory frameworks, including RPA and SIMS certified
Pricing
- Education pricing available
- Free trial available
Service documents
Request an accessible format
Framework
G-Cloud 15
Service ID
8 3 5 2 6 7 7 4 9 0 8 0 9 7 3
Contact
PMD DATA SOLUTIONS LIMITED
Matthew Gwynn
Telephone: 01789 268579
Email: sales@pmddatasolutions.co.uk
About your service
- Service categories
-
Applications
Production and operations
- Other operations
- Multi cloud support
- Yes
Service scope
- Software add-on or extension
- No
- Cloud deployment model
-
- Public cloud
- Private cloud
- Hybrid cloud
- Service constraints
- No known constraints
- System requirements
-
- Windows
- Mac
- Linux
User support
- Email or online ticketing support
- Yes
- Support response times
- Our UK-based support team typically respond to queries within minutes. We have a detailed SLA agreement with varying guaranteed response times depending on severity, from 1 hour for the highest severity issues to 48 hours for the lowest severity.
- User can manage status and priority of support tickets
- Yes
- Online ticketing support accessibility
- None or don’t know
- Phone support
- Yes
- Phone support availability
- 24 hours, 7 days a week
- Web chat support
- Yes
- Web chat support availability
- 9 to 5 (UK time), Monday to Friday
- Web chat support accessibility standard
- None or don’t know
- How the web chat support is accessible
- There are a number of accessibility features depending on the users web browser.
- Web chat accessibility testing
- Checked text to words, change in colour schemes, large format text.
- Onsite support
- Yes, at extra cost
- Support levels
-
All Redstor services include 24x7x365 support via support portal
https://helpdesk.redstor.com/support/home
24/7 severity 1 support is available at 0118 951 5200 - Support available to third parties
- Yes
- AI chatbot
- No
Onboarding and offboarding
- Getting started
- Initial training is provided by web demonstrations from our operations and support team. Full remote or onsite training is also available at additional cost. Full documentation is available in the form of FAQs and manuals available through the support site. Redstor provides a comprehensive knowledge base at https://helpdesk.redstor.com/support/home
- Service documentation
- Yes
- Documentation formats
-
- HTML
- End-of-contract data extraction
- Customers can restore their data at any time before the end of the contract. Any archived data should be restored/downloaded before the end of the contract.
- End-of-contract process
- Data is retained for 30 days following termination before being permanently deleted. There is no extra charge for this.
- Documentation accessibility standard
- None or don’t know
- How the documentation is accessible
- Onboarding documentation is available via https://helpdesk.redstor.com/support/home
Using the service
- Web browser interface
- Yes
- Supported browsers
-
- Microsoft Edge
- Firefox
- Chrome
- Safari
- Other
- Application to install
- Yes
- Compatible operating systems
-
- Linux or Unix
- MacOS
- Windows
- Designed for use on mobile devices
- No
- Service interface
- No
- User support accessibility
- None or don’t know
- API
- Yes
- What users can and can't do using the API
- The API is developed and maintained by Redstor. Redstor provides an API (RESTful) as part of the service which allows users to perform a variety of actions. This includes the ability to query the storage platform for account information (reporting), provisioning accounts (automated/integrated provisioning) and much more. Further information regarding the use of the Redstor API can be found on our support site in the following user guide: https://helpdesk.redstor.com/support/solutions/articles/4000219746-1607-how-to-use-the-redapi
- API documentation
- Yes
- API documentation formats
-
- Open API (also known as Swagger)
- API sandbox or test environment
- Yes
- Customisation available
- Yes
- Description of customisation
-
The service provides various customisation options. These include but are not limited to;
1) Ability to customise collection/group structure. - Customer controlled via the management console
2) Ability to customise backup selections - Customer controlled via the management console/local agent
3) Ability to customise backup schedules - Customer controlled via the management console/local agent
4) Ability to customise features and functions that are used - Customer controlled via the management console/local agent
5) Ability to customise email reporting - Customer controlled via the management console/local agent
6) Ability to request custom reports. - Customer requested via support channels (email/telephone/form submission) and actioned by Redstor's support team.
Scaling
- Independence of resources
- As part of adherence to ISO27001 (Information Security) and 22301 (Business Continuity) Redstor maintains a Capacity and Storage Management Policy. This policy outlines how Redstor manages capacity and storage for all critical systems. Redstor proactively monitor all platform components to ensure optimum service delivery and availability. The platform is designed with scale in mind and can be scaled up as required to meet the demands of the Redstor customer base. Redstor also provides load balancing in place to ensure that service degradation does not occur as a result of increased demand for Redstor services.
Analytics
- Service usage metrics
- Yes
- Metrics types
- A variety of metrics are available in user configured dashboards and reports (automated or ad-hoc). These include total data stored in the cloud, data selected on client machines, rate of change per backup, backup duration, backup outcomes etc
- Reporting types
-
- API access
- Real-time dashboards
- Regular reports
- Reports on request
- Resource tagging
- No
- FOCUS resource tagging
- No
Resellers
- Supplier type
- Reseller (no extras)
- Organisation whose services are being resold
- Redstor Cybercentriq
Staff security
- Staff security clearance
- Staff screening not performed
- Government security clearance
- None
Asset protection
- Knowledge of data storage and processing locations
- Yes
- Data storage and processing locations
-
- United Kingdom
- European Economic Area (EEA)
- Other locations
- User control over data storage and processing locations
- Yes
- Datacentre security standards
- Managed by a third party
- Penetration testing frequency
- At least once a year
- Penetration testing approach
- ‘IT Health Check’ performed by a CHECK service provider
- Protecting data at rest
-
- Physical access control, complying with another standard
- Encryption of all physical media
- Data sanitisation process
- Yes
- Equipment disposal approach
- A third-party destruction service
- Data sanitisation type
- Deleted data can’t be directly accessed / Cryptographic Erasure
Data importing and exporting
- Data export approach
- Backed up data can be downloaded directly or shipped on a NAS or USB device. The recovery process can be done in a variety of ways, for example browsing the backup and drag/drop individual files, streaming recovery or even recreating entire machines through bare metal recovery or as virtual machines using our Instant Data system. These options can be selected by the user from the recovery interface. More information on the recovery methods available can be found at support.redstor.com
- Data export formats
- Other
- Other data export formats
-
- Original
- Vhd
- Bare metal
- Data import formats
- Other
- Other data import formats
-
- Any file type can be backed up
- Full server/workstation backups can be performed
Data-in-transit protection
- Data protection between buyer and supplier networks
- TLS (version 1.2 or above)
- Data protection within supplier network
- TLS (version 1.2 or above)
Availability and resilience
- Guaranteed availability
- Redstor Cloud Backup offers high availability for its cloud backup and recovery services, targeting 99.5% or better uptime, using redundant, ISO-certified UK data centers (Equinix and Amito) with mirrored data, resilient power, and security layers for business continuity, plus features like InstantData for rapid recovery from ransomware or outages, with availability status accessible via help center or status board.
- Approach to resilience
- Redstor uses accredited UK based datacentres for cloud backup products. Each server uses RAID6 for customer data, allowing two simultaneous disk failures without any data loss, and each server is mirrored to produce a second identical copy of the backup data in a separate datacentre. These datacentres are in physically separate locations to insure that in the event of even a large scale disaster the service will not be interrupted. Examples of the certifications for the datacentres used are: PCI DSS SSAE 16/ISAE 3402 SOC-1 Type II FACT ISO27001
- Outage reporting
-
Redstor management console and dashboard application is available to all authorised users, and there is an API should other monitoring be required. Planned maintenance windows are announced by email in advance.
Service status and updates are also available at https://redtribe.redstor.com/service-status
Identity and authentication
- User authentication needed
- Yes
- User authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Username or password
- Access restrictions in management interfaces and support channels
-
Access is restricted via authentication and role-based access. Users can be created to allow viewing or editing of specific parts of the platform only.
If customer wishes to apply conditional access controls integration with Entra ID is recommended. - Access restriction testing frequency
- At least once a year
- Management access authentication
-
- Multi-Factor Authentication (MFA)
- Identity federation with existing provider (for example Google Apps)
- Username or password
Audit information for users
- Access to user activity audit information
- Users have access to real-time audit information
- How long user audit data is stored for
- At least 12 months
- Access to supplier activity audit information
- Users have access to real-time audit information
- How long supplier audit data is stored for
- At least 12 months
- How long system logs are stored for
- At least 12 months
Security governance
- Named board-level person responsible for service security
- Yes
- Security governance certified
- Yes
- Security governance standards
- ISO/IEC 27001
- Information security policies and processes
- Redstor have put in place an Information Security Management System (ISMS) in order to ensure that all Information and Systems will be protected against data loss, unauthorised access and disclosure. The ensured confidentiality, integrity and availability of all processing services, both internal and external are of the utmost importance. Redstor consider Information Security aspects as a top priority for customer confidence and the protection of the brand. Redstor are committed to preserving the confidentiality, integrity and availability of all the physical and electronic information assets throughout the organization, in order to preserve its assets, legal, regulatory as well as contractual, compliance and image. Redstor is committed to providing a service according to client’s expectations, ensuring that we take all aspects of Information Security in delivering our services to our clients. It is the policy of Redstor to commit and maintain an ISMS designed to meet the requirements of the current ISO27001 standard in pursuit of its primary objectives. In order to drive continual improvement within the ISMS Redstor set objectives on an annual basis as part of the Management Review Process. All objectives are communicated to all staff and include key responsibilities, timescales and appropriate measures of success.
- Software Security Code of Practice
- Yes
Operational security
- Configuration and change management standard
- Supplier-defined controls
- Configuration and change management approach
- As part of our adherence to ISO 27001, Redstor maintains a Change Management Policy and a Network Management Policy. The Change Management Policy stipulates that updates to hardware (including firewalls, routers, and switches) will take place as and when necessary to ensure the security vulnerabilities are patched at the earliest available opportunity having ensured the appropriate due diligence (research and testing) has taken place first. Changes are discussed, approved and tracked through to completion using our change management process to ensure any potential risks are minimised. Changes are also documented and audited within the Change Management System.
- Vulnerability management type
- Supplier-defined controls
- Vulnerability management approach
- As part of our adherence to ISO 27001, Redstor maintains a Change Management Policy. The policy stipulates that updates to software and hardware will take place as and when necessary to ensure the security vulnerabilities are patched at the earliest available opportunity having ensured the appropriate due diligence (research and testing) has taken place first. Changes are discussed, approved and tracked through to completion using our change management process to ensure any potential risks are minimised. Changes are also documented and audited within the Change Management System Redstor also operates a weekly risk meeting to discuss vulnerabilities/risks in depth.
- Protective monitoring type
- Supplier-defined controls
- Protective monitoring approach
- Redstor routinely review audit logs from each of our systems to ensure compliance with our security policies in adherence to ISO27001. We maintain/monitor each of our systems on a daily basis ensuring up-time and sufficient capacity as per our capacity planning and storage management policy. We maintain 24/7/365 monitoring of all production systems. Redstor also maintains a Malware Protection Policy and a Management of Technical Vulnerabilities Policy. Redstor uses a variety of controls to reduce the risk of virus infection of our systems/services. Redstor also provides security awareness notifications/training to staff to ensure that such risks are minimised.
- Incident management type
- Supplier-defined controls
- Incident management approach
- In adherence to ISO27001, Redstor maintains an Information Security Incident Policy. The policy details this at length. Herein is an extract: Employees report the security incident to the Technical Department via the Helpdesk, phone or email; the IMS Representative will then raise an Improvement Form, if the incident is considered to be minor. On form completion the IMS Management Representative will conduct the requisite investigation or the Technical Department will investigate and fix the problem. If required, the incident will be escalated to a Director. The Improvement Process should be followed in this instance. Further detail can be provided.
- Post-quantum cryptography secure
- Yes
Secure development
- Approach to secure software development best practice
- Supplier-defined process
Public sector networks
- Connection to public sector networks
- No
Pricing
- Discount for educational organisations
- Yes
- Free trial available
- Yes
- Description of free trial
- All Redstor backup services can be trialled for up to 30 days, free of charge via the link below. Extended POCs are available by arrangement.
- Link to free trial
- https://app.redstor.com/pmddatasolutions/sign-in
Discount percentage by annual call-off contract value (excluding VAT)
- Less than £250,000
- 1%
- Between £250,000 and £500,000
- 1.5%
- Between £500,001 and £1,000,000
- 3%
- Between £1,000,001 and £2,500,000
- 5%
- Between £2,500,001 and £5,000,000
- 5%
- Over £5,000,001
- 5%
Non-mandatory Standards and certifications
- ISO/IEC 27001 certification
- Yes
- Who accredited the ISO/IEC 27001
- Kompleye
- ISO/IEC 27001 accreditation date
- Wednesday 19 June 2024
- What the ISO/IEC 27001 doesn’t cover
- All UK services are covered by the 27001 certification.
- ISO 28000:2022 certification
- No
- ISO 9001 certification
- No
- Quality management systems (QMS)
- Yes
- CSA STAR certification
- No
- PCI certification
- No
- Cyber essentials
- Yes
- Please provide your Cyber Essentials Certificate Number
- 7898d4dd-3b81-4683-beac-e3222b654903
- Cyber essentials plus
- No
- Cyber Essentials Alternative
- You do not have a current and valid Cyber Essentials Plus certificate, or will not have in place within 12 months of the date of award but have an IASME certified equivalent.
- Other security certifications
- Yes
- Any other security certifications
-
- ISO 22301 for Business Continuity
- HIPAA compliant
- SOC 2 Type 1 Accredited
- SOC 2 Type 2 Accredited
Social value
- Section B - Commitment for Future: Delivery
-
-
Mission: Kick start economic growth. To secure the highest sustained growth in the G7 - with good jobs and productivity growth in every part of the country making everyone, not just a few, better off.
Policy Outcome 1: Fair work: That offers fair wages and good working conditions. Help people get a job, stay in work, and progress in their careers, with good employment opportunities across the country. Notes: Where there is a large proportion of labour costs in the contract, commercial teams should consider MAC in Outcome 1 as a priority
- New or retained jobs on the contract workforce in the relevant area that meet the criteria set out in MAC 1b, 1c and 1d
-