Management · IT · CISO · Sensitive professions

Document confidentiality as a business requirement.

Board files, intellectual property, strategic transactions and client documents: choose a scope of protection suited to the sensitivity of your data and to your organisation.

The plans describe the premium offering currently in development. The quote sets out integrations, timelines and commitments; real data is accepted after the security and restore validations.

The three dimensions of your protection.

01

Your keys, your control

Vault architecture: encryption and decryption on authorised devices, keys controlled by your organisation and recovery kept separate from the account. Storage receives the encrypted files.

Understand the key model

02

Phishing-resistant access

Passkeys, revocable sessions, permissions by organisation and approval of sensitive actions. SSO integration in the Enterprise plan ties access to the lifecycle of your employees.

Manage AI-related risks

03

Recovery that gets tested

Backups at Infomaniak in a separate administration account, a restore procedure and checks on restored permissions. Enterprise includes a quarterly exercise within its scope.

Prepare for recovery after an attack

Support built around the vault.

Identity configuration, key responsibilities, continuity and documentation: these are the services we prepare with your teams.

Integrate your identity provider

SSO, staff lifecycle and least privilege. When a user leaves, a review of their access and devices must follow, without promising the deletion of copies already downloaded.

Define key custody

Named owners, tested recovery, authorised devices and dual approval of privileged actions. The responsibilities of the client and those of the service are set out in writing.

Prepare for continuity

Separate backups, restore exercises and incident procedures. The recovery time and the maximum age of recoverable data are agreed after testing.

Document the evidence

Architecture, subprocessors, storage countries, audits and fixes. Reports must reflect checks actually carried out, not labels inherited from the hosting provider.

A view of access rights to walk your teams through.

Demo screenshot: event log, users and timestamps
Screenshot of the Helvedrive demo. The log illustrates access and sharing events: user, action and timestamp. The events shown in this screenshot are sample data.

Before we receive your real data.

  1. 01Data flow map, location and register of subprocessors
  2. 02Documentation of encryption, key custody and recovery
  3. 03Independent encryption review and penetration test before opening
  4. 04Restore report: documents, permissions and timings
  5. 05Review of access rights, devices and administrative access
  6. 06Support, retention and recovery objectives defined in the contract

24/7 human monitoring, endpoint control and incident response require dedicated resources and contracts. Whether they are included is always confirmed in writing.

Scoping in confidence

Let’s define the scope of your protection.

Team, sensitive data, keys, location and recovery: let’s discuss your requirements. Please do not send any confidential documents through the form.