White Paper The simpro Cloud

Similar documents
There are also a range of security and redundancy systems designed to improve the speed, reliability, stability and security of the simpro Cloud.

Intermedia. CX-E Cloud Hosting Provider. Introduction. Why Intermedia for CX-E Cloud? Cost of Ownership

What can the OnBase Cloud do for you? lbmctech.com

IBM Case Manager on Cloud

IT your way - Hybrid IT FAQs

Dimension Data IaaS Services. Gary Ramsay

THE WORLD S BEST- CONNECTED DATA CENTERS EQUINIX MIDDLE EAST & NORTH AFRICA (MENA) Equinix.com

TB+ 1.5 Billion+ The OnBase Cloud by Hyland 600,000,000+ content stored. pages stored

DELIVERING PERFORMANCE, SCALABILITY, AND AVAILABILITY ON THE SERVICENOW NONSTOP CLOUD

Kerio Cloud. Adam Bielawski. Cloud Hosted Enterprise-Class , Calendars, Contacts, Tasks, and Instant Messaging. Twitter LinkedIn Facebook

Cisco Meraki Privacy and Security Practices. List of Technical and Organizational Measures

BeBanjo Infrastructure and Security Overview

Cloud Services. Infrastructure-as-a-Service

AUTOTASK ENDPOINT BACKUP (AEB) SECURITY ARCHITECTURE GUIDE

Fully managed Cloud-based business software solution

IBM Security Intelligence on Cloud

Managed Services Rely on us to manage your business services

Five Key Considerations for Selecting Cloud Recovery Services

Custom hosting solutions orchastrated for your needs.

CAMPUSPRESS TECHNICAL & SECURITY GUIDE

Business Continuity & Disaster Recovery

Atmosphere Fax Network Architecture Whitepaper

Data Centre & Colocation in Birmingham. Flexible. Secure. Accredited.

For Australia January 2018

SAS SOLUTIONS ONDEMAND

Projectplace: A Secure Project Collaboration Solution

Virtustream Cloud and Managed Services Solutions for US State & Local Governments and Education

SoftLayer Security and Compliance:

AWS continually manages risk and undergoes recurring assessments to ensure compliance with industry standards.

IaaS Buyer s Checklist.

How Managed Service Providers Can Meet Market Growth with Maximum Uptime

Specifications for WebDocs On-Demand

Choosing the Right Cloud. ebook

Edge for All Business

Asset Bank - Shared Hosting. Service Description

CLOUD INFRASTRUCTURE DESIGN GUIDE

Why Microsoft Azure is the right choice for your Public Cloud, a Consultants view by Simon Conyard

GSN Cloud Contact Centre Customer Connectivity Datasheet

SECURITY PRACTICES OVERVIEW

PretaGov Australia SaaS Hosting with Fully Managed Services, Support and Maintenance

Cloud Computing Architecture

Lifesize Cloud, Architecture. A comprehensive guide

Network Service Description

KantanMT.com. Security & Infra-Structure Overview

The professional IT management platform

SECURITY ON AWS 8/3/17. AWS Security Standards MORE. By Max Ellsberry

CTS performs nightly backups of the Church360 production databases and retains these backups for one month.

DATA CENTRE & COLOCATION

Awareness Technologies Systems Security. PHONE: (888)

A Ready Business rises above infrastructure limitations. Vodacom Power to you

Crises Control Cloud Security Principles. Transputec provides ICT Services and Solutions to leading organisations around the globe.

Accelerate Your Enterprise Private Cloud Initiative

Disaster Recovery and Business Continuity

Welcome to the. Migrating SQL Server Databases to Azure

Choosing the Right Cloud Computing Model for Data Center Management

For USA & Europe January 2018

Cloud Services. Introduction

MYOB Advanced SaaS. Why choose MYOB Advanced? Fact Sheet. What is MYOB Advanced SaaS?

COLOCATION A BEST PRACTICE GUIDE TO IT

Whitepaper. 10 Reasons to Move to the Cloud

Business Continuity and Disaster Recovery. Ed Crowley Ch 12

Data Center Operations Guide

10 Considerations for a Cloud Procurement. March 2017

Lifesize Cloud-based Service Architecture. A comprehensive guide

Vblock Infrastructure Packages: Accelerating Deployment of the Private Cloud

Automate sharing. Empower users. Retain control. Utilizes our purposebuilt cloud, not public shared clouds

FUJITSU Backup as a Service Rapid Recovery Appliance

Migration and Building of Data Centers in IBM SoftLayer

Concord Fax Network Architecture. White Paper

A Cloud WHERE PHYSICAL ARE TOGETHER AT LAST

PLATFORM AS A SERVICE (PAAS):

IT Services. We re the IT in OrganIsaTion.

Enabling IT Redundancy and Scalability for High-Availability Logistics Software

A Single Cloud for Business Applications

Managed Service. Managed Services. High Availability / Disaster Recovery Solutions. Cloud and Hosting Solutions. Security Solutions.

Watson Developer Cloud Security Overview

TECHNICAL WHITE PAPER - MAY 2017 MULTI DATA CENTER POOLING WITH NSX WHITE PAPER

WHITE PAPER Cloud FastPath: A Highly Secure Data Transfer Solution

Unity EdgeConnect SP SD-WAN Solution

Security Architecture Models for the Cloud

Whitepaper. 10 Reasons to Move to the Cloud

UNCLASSIFIED. Mimecast UK Archiving Service Description

Imperva Incapsula Product Overview

Reliable, fast data connectivity

MICROSOFT APPLICATIONS

Understanding As-a-service: Teradata IntelliCloud

How to Leverage Containers to Bolster Security and Performance While Moving to Google Cloud

Hosted Desktop Features & Benefits. Technology House, 59 Washway Road, Sale, Manchester, M33 7AB Support

CANVAS DISASTER RECOVERY PLAN AND PROCEDURES

INTO THE CLOUD WHAT YOU NEED TO KNOW ABOUT ADOPTION AND ENSURING COMPLIANCE

MPLS VPN: Business Ready Networks. The cost-effective, scalable and robust network solution

Microsoft 20409FS - Server Virtualization with Windows Server Hyper-V and System Center Fast Start (4 days)

IBM Compose Managed Platform for Multiple Open Source Databases

CLOUD DISASTER RECOVERY. A Panel Discussion

The IBM Platform Computing HPC Cloud Service. Solution Overview

COGECO PEER 1 MISSION CRITICAL CLOUD

DATA CENTRE SOLUTIONS

Introducing VMware Validated Designs for Software-Defined Data Center

PANACEA PLATFORM. A unified communications platform for SMS, USSD and Push Notifications.

MTS Co-Location Hosting - MILAN

Transcription:

White Paper The simpro Cloud

White Paper The simpro Cloud Executive Summary... 1 Cloud Overview... 1 Global Data Centre Network... 2 Cloud Architecture... 3 Primary Objectives... 3 Data Security... 4 Certification and Testing Standards... 5 Infrastructure (DC) Certification... 5 Application Testing Standards... 5 Data Redundancy... 5 Database Data... 5 File Data... 5 Snapshots... 5

Executive Summary The simpro Cloud environment is an enterprise-grade cloud network designed specifically to host simpro s software offerings in an easy to use and reliable platform. simpro s cloud infrastructure allows us to ensure that simpro provided business applications perform to their fullest potential, providing the highest level of control and scalability. We re also able to balance configurability, redundancy and price to make the system cost effective to run. This white paper describes the technical detail behind the simpro Cloud. It offers information about our cloud s infrastructure, virtual machines, firewalls, private cloud options, managed service levels, and more. It also describes our it s comprehensive scalability, reliability, and support processes, which are designed specifically to deliver a worry-free cloud experience. Cloud Overview simpro s cloud environment is a highly available multi-tenant platform architected specifically around superior performance, availability and data protection. The simpro Cloud spans across data centers in multiple locations globally to ensure reliability and data protection in case of major impact events. simpro s cloud also enables our engineering team to deploy and support simpro systems quickly while avoiding issues encountered with on-premise installations and configuration. All simpro Cloud clients benefit from our infrastructure management including: Automated Software Updates 99.9% Service Level Agreement (SLA) 24x7 Systems Availability Nightly Automated Client Snapshots 24x7 Proactive Monitoring CapEx Free Easy Remote / Mobility Access Included are also a range of security and redundancy systems designed to make the simpro Cloud fast, reliable, stable and secure. 1.

Global Data Centre Network The simpro Cloud has been provisioned across six geographically separated data centers on the global Equinix and IBM Softlayer Networks. Equinix and IBM Softlayer are recognized as premier data center and cloud providers. These providers were chosen because of the ability to provide a best of breed platform on which we have built a highly scalable cloud network. simpro employs its own specialist engineering team to design, deploy, and manage its cloud network with a network operations center based in Australia. The team manage the simpro worldwide network on a 24/7 basis with escalation available \to each data center around the clock. Sydney AU (EQ) San Jose USA (IS) London UK (EQ) London UK (IS) Sydney AU (EQ) Sydney AU (IS) Primary DC Backup DC EQ - Equinix Data Center IS - IBM Softlayer Data Center The Data centers employed by simpro Software include data centers in Australia, the USA and the UK. Each simpro environment has been configured to run as an integral part of the overall global network - however each center can also run as an independant cloud when required to accommodate for network transmission and other data center centric unavailability autonomously. 2.

Cloud Architecture Each cloud in the simpro data center network comprises of a range of load balancers, storage arrays, web servers and database servers all synchronously connected to each other data center. This allows for a geographically fault tolerant network and maximises uptime of simpro services. The simpro Cloud is built on technologies and software from leading providers such as Cisco, KVM, FreeBSD, PostgreSQL and Lighttpd. All systems employed have been rigorously tested and are tailored specifically for use on the simpro network. Primary Objectives 1. Reliability The simpro cloud utilizes the latest available load balancing and acceleration technologies to ensure we are able to provide a highly consistent operating environment. This includes the ability for our systems to automatically redirect traffic (geographic traffic management) away from outages whilst ensuring performance degradation is kept to a minimum. 2. Performance Performance of each system is monitored 24/7 by both automated systems and by our engineering team. Systems performance is managed through a range of automated processes that load balance services across data centers and can provision added capacity when required in near real time. Automated geographic configuration enables the system to re-route client access to alternative access points based on load in each data center so that traffic spikes in one geographic area can be accommodated and mitigated. 3. Security Our security systems encompass both server and data. A range of hardening processes are used across servers to ensure best proactive security measures are adhered to at a systems level. Monitoring of all events and access is also conducted in real time along with monthly reviews. Data storage is segregated across private networks within data centers and not made accessible on public networks. 4. Scalability Each system and service within the simpro cloud is designed to scale horizontally so that service capacity can be increased as required to meet demand in real time. Overhead allocation also ensure that the system has plenty of headroom to handle load spikes. 3.

Data Security Data Security has and always be a primary focus of both our engineering and development processes. We ve published policies on how we deal with data available on our web site. Visit: Privacy policy Personal data protection policy Each data center and peering point selected are based within countries that are signatories to cross border privacy enforcement agreements. The data centres employed are world-class facilities and SAS 70 accredited. SAS 70 accreditation stipulates no public access to the data centre floor at any time. Each data center has systems in place to securely encrypt all data during replication to other data centers as all data in the simpro network is synchronously replicated across all data centers for maximum data integrity. At a systems level, a range of private networks and firewalls are employed within the primary network of each data center installation to ensure segregation of systems where required. This also serves to firewall data storage arrays so that they are inaccessible from public networks and can only be accessed securely by applications over encrypted private network services. The simplest way to explain our overall data protection policy is that all production environments are secured and selected for PCI compliance to ensure maximum security of housed data - and to limit access to such data even at the server administration level. PCI compliance is the same strict standard adhered to by banks and credit card companies when handling financial / transaction information. Clients with policies around offshore storage of sensitive data should contact simpro to ensure that the storage of their data within the simpro network meets these policies. simpro can provision Private Cloud installations to overcome issues around offshore storage of data and any other geographic data access/hosting policies. 4.

Certification and Testing Standards A range of certifications are employed to provide formalised processes around handling of physical and application security. These include the following: Infrastructure (DC) Certification ISO 27001:2005 Certified ISO 27001:2013 Certified ISO 9001:2008 Certified Level 1 Payment Card Industry (PCI) Service Provider SSAE16 Type II SOC1 and SOC2 Certified Safe Harbor Certified CDSA Content Protection and Security Standard Certified Application Testing Standards ISO/IEC 27001 (using the PDCA model) ISO 27001:2005 ISO 9001:2008 (under review for adoption and certification) ISO27002:2013 (under review for adoption) SoGP OWASP Data Redundancy Each data centre has multiple levels of redundancy to ensure data integrity. Database Data All active database servers are replicated in real time to secondary servers both within the same data center. In addition, a replication slave exists in each other data center. This means that every time a transaction occurs on the database, the exact same transaction occurs on the secondary servers. In the unlikely event of a problem occurring on the primary server, we can switch users to the secondary server without any loss of data. File Data All file data is replicated in real time across all data centres and slave file servers are kept hot for failover purposes. Data can also be segregated at a server level during maintenance and outages and resynced automatically on service restoration prior to re-inclusion in the cloud pool. Snapshots Whilst the range of redundant systems in place are designed to ensure against catastrophic failure we still adopt a catastrophic event approach to data security as well. All database and file data (including file attachments, databases and customisation code) is snapshotted every 24 hours and then archived on a backup private network within each data center in the event of catastrophic failure. This ensures that in the event of a catastrophic failure across our data centre network we have the ability to fall back to the previous night s backups should the need ever arise. 5.