Need IT support?

Data Protection

A backup you have restored from is a backup

Everything else is a scheduled job with a green tick. We design protection around agreed recovery targets, then prove it with tests.

  • Enterprise and cloud backup
  • Immutable copies
  • DRaaS
  • Documented restore testing

How it fits together

Two numbers decide the design

How much data can you afford to lose, and how long can you afford to be down? Those two numbers — recovery point and recovery time objective — determine the architecture, the cost, and whether a proposed solution is adequate. Everything else is detail.

The diagram is illustrative. It shows the shape of the capability rather than any specific customer environment.

Data protection chain Data blocks moving from production into a scheduled backup repository, then to an immutable copy that cannot be deleted, then offsite replication, and finally a disaster recovery target in cloud. ProductionLIVE WORKLOADS Backup repositorySCHEDULED Immutable copyCANNOT BE DELETED ReplicationOFFSITE DR / CloudTESTED RECOVERY RECOVERY POINT · RECOVERY TIME AGREED

Overview

In practice

In practice the answers differ per system. A finance database might need fifteen-minute recovery points; a file share might tolerate twenty-four hours. Designing to a single blanket standard either overspends or under-protects.

We also treat Microsoft 365 as in scope. Retention inside a tenant is not the same as backup, and the responsibility for protecting that data sits with you, not with Microsoft.

What changes

Outcomes we are measured on

The point of the work, stated as results rather than product names.

01

Recovery targets agreed in writing

Per-system RPO and RTO signed off by the business, so expectations are set before an incident, not during one.

02

Copies ransomware cannot reach

Immutable and offsite copies so an attacker with domain access cannot delete your only means of recovery.

03

Tested restores

Scheduled restore testing with documented results — including how long it actually took.

04

Coverage of the gaps

Microsoft 365 data, endpoints and SaaS platforms included, not just the servers in the rack.

Capabilities

What sits inside this practice

Capability areas we design, implement and support. Scope for any engagement is agreed and documented in writing.

Backup

Getting reliable copies made.

  • Enterprise Backup
  • Veeam Backup
  • Microsoft 365 Backup
  • Endpoint Backup
  • Cloud Backup
  • Offsite Backup
  • Immutable Backup
  • Backup as a Service
  • Backup Monitoring
  • Long-Term Retention
  • Data Archiving

Disaster recovery

Getting the business running again.

  • Disaster Recovery
  • Disaster Recovery as a Service
  • Replication
  • Failover Design
  • Recovery Planning
  • Business Continuity
  • RPO/RTO Planning
  • Runbook Development

Assurance

Proving it works.

  • Recovery Testing
  • Restore Verification
  • Backup Health Assessments
  • Data Restoration
  • Reporting and Evidence
  • Retention Policy Review

How we deliver

A sequence, because order matters here

Each stage produces something you can review before the next one starts.

Classify

Systems and data ranked by criticality, with recovery objectives agreed with system owners.

Design

Backup topology, retention, immutability, offsite copies and DR approach matched to those objectives and to budget.

Implement

Deployment, initial seeding, schedule tuning and monitoring integration.

Test and report

Scheduled restore tests, documented recovery times, and reporting suitable for audit and board review.

Questions

The things people ask before signing anything

Microsoft protects its own infrastructure and provides retention and recovery features, but under its shared responsibility model your data remains your responsibility. Retention policies and recycle bins are not a substitute for backup, particularly after a compromised account or a malicious deletion.

A backup copy that cannot be altered or deleted for a defined period, even by an administrator account. It is the control that stops ransomware operators destroying backups before they encrypt production systems.

At minimum annually for a full DR scenario, and more frequently for spot restores of individual systems or files. We build a test schedule into the service and provide the evidence afterwards.

Yes, starting with a backup health assessment — what is protected, what is not, whether jobs are actually completing, and whether the retention matches what the business believes it has.

Related

Usually discussed alongside this

Cloud Services

Migration is the easy part.

Explore

Enterprise Infrastructure

Compute, storage and virtualisation designed for the load you actually have — and a refresh plan so you are not making decisions in an outage.

Explore

Cybersecurity

Not a wall of dashboards.

Explore
Technologies supporting this capability
Backup & Data Resilience
Cloud & Productivity

Next step

Let's define what your technology should be doing.

Tell us what is not working, what is coming up, or what you are being asked to deliver. We will come back with a considered view — not a generic proposal.