zsah Cloud Offering Security FAQ In partnership with Clearswift
zsah s Cloud Offering Overview zsah Main office and Data Centres Our main office is located in central London with support staff available 24x7, 365 days a year We use world-class UK Data Centres located in London and Manchester Data Handling All client data is hosted in our UK data centres No customer data is sent outside the UK (assisting with GDPR compliance) Only the client has access to their own data (not zsah staff) Each client is assigned its own VLAN and can only access their data using a secure SSL VPN All access is encrypted to Secure SSL over VPN standard Data is encrypted using AES-256 encryption zsah Certifications and Compliance We have the following certifications: ISO 27001:2013 (UKAS accredited), ISO 9001:2015 (UKAS accredited), Cyber Essentials We are ISO audited annually by an external organization (details can be provided upon request) Our contracts comply fully with the Data Protection Act (2018), GDPR and Data Security Standards All of our operations are risk managed and reviewed on a regular basis Regular PEN testing is undertaken by an external security company zsah have a Change Management process and Business Continuity/Disaster Recovery Plan 2 Cloud Offering Security FAQ
Security Management Tools zsah takes security management very seriously and employs a number of tools to safeguard our client s data and to monitor access including: Encryption SSL VPN s Firewalls Intrusion Detection Systems Access controls Authentication DDoS protection Infrastructure management tools zsah ltd 3
Data Centre Overview zsah uses only the very best UK data centres managed by Telehouse with a strong pedigree and track record in resilience and security located in London and Manchester. These Data centres are Tier 3/4 and are used by a wide range of leading global companies and organisations across all sectors including finance and government. zsah s strategy is to only use market leading facilities where the highest levels of security, resilience and capabilities can be provided. We have our own secure locked racks/cabinets and equipment in the datacentres and only authorised zsah engineers have access to this. Security is multi-layered to safeguard the datacentre 24 hours a day, 7 days a week, 365 days a year. Data centre physical site security includes the following measures: A single point of entry into the data centre for employees and clients Coded key cards for entry into the data centre Biometric scanners Surveillance cameras located throughout the data centre Database of individuals authorised to access the date centre Manned security staff Strict visitor controls Data centre physical site security includes the following measures: ISO 9001:2008 Quality Management Standard ISO 14001:2004 Environmental Management System Standard ISO/IEC 27001:2005 Information Security Management PCI DSS (Payment Card Industry Data Security Standard) Attestation BS 25999-2:2007 Business Continuity Management The Carbon Trust Standard 4 Cloud Offering Security FAQ
About zsah zsah, established in 2002, offer a complete managed IT solution to our customers. From managing your cloud infrastructure, to supporting your companies day to day IT and DBAaaS. Our service offerings add value to your existing functions or complement your IT operations, where and when you want. Based in London, our teams consist of smart, driven, responsive and security-minded people who deliver a personal, dedicated service. Together with our robust, reliable infrastructure, our people can support, develop and manage your technology needs so you can do what you do best. With the kind of partners, experience and ethics that characterise zsah, we enjoy exceptionally high loyalty, satisfaction and retention rates from our customers. For further information or to talk to a cloud or security expert in confidence, please call 020 7060 6032 or email info@zsah.net zsah ltd 5
zsah Ltd. Suite 7-8, 3-9 Imperial Rd, Fulham, London, UK, SW6 2AG www.zsah.net info@zsah.net +44 (0) 20 7060 6032 ISO ISO 9001 27001 INFORMATION QUALITY SECURITY ASSURANCE MANAGEMENT