Cloud Storage Risks
Without Umbra, there are numerous risks that must be managed with using any form of storage but especially cloud storage. Last year 39% of cloud systems suffered a breach.
Threats in cloud storage
Vastly simplified set up.
No risk of loss of client side encryption keys.
Billing failure doesn't take down service.
Cloud providers only have access to 1 Shadow- provably undecryptable forever.
Shadows provably undecryptable.
No reliance on cloud providers to keep keys securely.
Tamper-evident Shadows- remaining Shadows still provide access.
Versioning can be configured to provide PITR if required.
Failures in cloud storage
Implementation
-
Review of current practice (optional)
For many customers it's helpful to start with a review of their current provision. To cover the state of current security setup, current back-up provision, costs for storage and egress, use of CDN etc. We would be delighted to carry out this review for you, and if your current spend is over £1000 per month we’d be happy to provide a review for free.
-
Selecting underlying shadow storage providers
Umbra continuously monitors a wide range of potential storage providers for uptime, outages, latency and bandwidth, as well as keeping track of their charges. We can provide detailed information to help you select shadow storage that balances your requirements.
-
Transition
For most customers there's zero downtime. It's as simple as changing the application credentials to point to our proxies. Optionally we can move data across whenever its accessed, so over time allowing the data to move and avoiding any downtime. Until you are confident in the new system we can continue to every file in the legacy system, so you can revert at any time instantly.
Simplicity
No more manual back-ups of S3-type storage, no more wrestling with complicated setup or key management. Umbra is intrinsically secure.
Unneeded shadows are disregarded, keeping your connection fast.
Confidence
Every Shadow™ is mathematically provably undecryptable, reducing your risk of data loss, and Ransomware attacks on cloud buckets are detected and mitigated early.
The service tolerates seamlessly up-to 3 of the cloud providers being permanently or temporarily offline. So your application stays live.
National Critical Infrastructure projects require cloud provider resilience. Umbra provides that element for your cloud object storage.
No gap in coverage as backup is continuous, not periodic.
Early detection and isolation of ransomware.
We are so confident in ShadowStream’s security, we have a competition for anyone able to extract usable data from a shadow.
Value
Best practice for conventional S3-type storage demands you set up cross region replication (on its own, doubling your storage cost), and off-cloud backup. Storing three copies of everything to provide a limited 1-fault tolerant system. This also triples your attack surface.
Once you no longer rely on a single provider and can tolerate outages, you are free to select storage from the many alternatives costing far less than the premium providers for some or all of your underlying storage providers. Lowering your average cost per TB. Depending on your application and requirements, savings in total costs of 20-40% are commonplace.
Environmental
Cloud Object Storage accounts for 830 million tonnes of CO2 per year, nearly the same as all airlines combined.
Umbra reduces the total amount of storage required, resulting in savings of around 41% in the total carbon footprint.