Keepit at Gartner IOCS 2023 in London: How AI capabilities take SaaS data protection to the next level

Keepit speaks in two sessions: With Porsche Informatik on how Europe’s largest car distributor works to ensure cyber resilience today; and a showcase on how to prepare for future data protection

COPENHAGEN, DENMARK, Nov. 16, 2023 – Keepit, the market leader in cloud data protection and management, announced today that it will be presenting and exhibiting at the Gartner IT Infrastructure, Operations & Cloud Strategies in London, UK, from November 20th to 21st.

On Monday, November 20th, Keepit’s Chief Technology Officer (CTO) Jakob Østergaard will co-present with Josef Perlinger, Lead Program Manager Resilience, Security & Cloud at Porsche Informatik GmbH, in the session: “Keepit: Real-World M365 Cyber Resilience – Insights from Porsche Informatik.” The two talk about how Porsche Holding Salzburg, Europe’s largest car dealership, deals with the increase in cybersecurity threats by strengthening the organization’s cyber resilience with Keepit’s independent backup and recovery for Microsoft 365.

Key takeaways from the session will include:

• How cloud backup is crucial to fortifying Microsoft 365 against cyber threats

• Why an independent cloud is pivotal in achieving operational resilience

• Case studies from Porsche Informatik highlighting challenges and solutions in implementing cloud backup

Session 2: Cyber resilience, AI and data protection

On Tuesday, November 21st, Keepit’s CTO Jakob Østergaard is on stage again – this time, with Keepit VP of Product Henrik Brusgaard, for an Exhibit Showcase session entitled: “Keepit: Accelerating Cyber Resilience with AI-Driven Data Protection Platforms.” In the session, they reflect on the challenges of applying AI to data protection and shed light on how Keepit works to assess and select which AI capabilities to adopt, in order to match future, next-level data protection needs while adhering to existing and coming regulatory controls.

“Harnessing the power of technological advancement while securing user activity and user data is a key charge for all SaaS platform providers, and we really look forward to discussing these questions with the audience in London. All businesses are becoming SaaS-powered. We’re seeing a continuous transition with companies typically using hundreds of SaaS apps – and IT’s biggest concern is how to secure those SaaS apps.” says Keepit CTO Jakob Østergaard.

Gartner IT Infrastructure, Operations & Cloud Strategies Conference 2023 in London brings the world’s technology leaders together to hear top trends, find objective answers and explore topic coverage in addition to best practices.

How’s the NIS2 readiness coming along?

One topic that will be central to the conversations for the Keepit team at IOCS is the upcoming Network and Information Security (NIS2) Directive being implemented across the EU from October 2024:

“NIS2 will be taking the urgency of adhering to regulatory standards on data and infrastructure protection to the next level: It effectively enables regulators to hold company executives personally liable if the company fails to comply with the regulation. As backup and disaster recovery capabilities are identified as critical for compliance with NIS2, I look forward to a lot of interesting discussions on how organizations are preparing themselves,” says Jakob Østergaard.

At the event, the Keepit team will also be sharing the latest insights on how to mitigate the impact of ransomware attacks by ensuring fast and complete recovery for enterprises. Research shows that a strong backup and recovery strategy can mean the difference between organizations being able to ignore extortionists and having to succumb to paying ransom again and again.

WHAT: Solution Provider Session, “Keepit: Real-World M365 Cyber Resilience – Insights from Porsche Informatik”

WHO: Jakob Østergaard, Keepit CTO, and Josef Perlinger, Lead Program Manager Resilience, Security & Cloud at Porsche Informatik GmbH

WHERE: Arcadia, Level 2, InterContinental London, The O2

WHEN: Monday, Nov 20, 1:15 – 2:15 pm.

WHAT: Theater Session, “Keepit: Accelerating Cyber Resilience with AI-Driven Data Protection Platforms.”

WHO: Jakob Østergaard, Keepit CTO, and Henrik Brusgaard, Keepit VP of Product

WHERE: Theater 1, Exhibit Showcase, Level 1, InterContinental London, The O2

WHEN: Tuesday, Nov 21, 10:00 – 10:20 am.

Keepit will be exhibiting for the duration of the conference at booth #301.

To arrange a product demonstration or meeting with a member of the Keepit team at the conference, book a meeting here.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Keepit
At Keepit, we believe in a digital future where all software is delivered as a service. Keepit’s mission is to protect data in the cloud Keepit is a software company specializing in Cloud-to-Cloud data backup and recovery. Deriving from +20 year experience in building best-in-class data protection and hosting services, Keepit is pioneering the way to secure and protect cloud data at scale.

What’s the business risk of not backing up Azure AD?

Keepit’s Paul Robichaux, Microsoft MVP and Keepit Sr. Director of Product, explains the math of not protecting Azure AD (Entra ID).


“It’s all about the probability of ‘x’ expected damage. The probability: 2/3 of Azure AD admins don’t use MFA. With 50 million password attacks daily targeting Azure AD, you can be pretty sure you’ll be on the receiving end of a successful attack one day. Or a system outage. Or human error.”


The damage: Protecting your identities and policies is critical to keeping your business up and running. Losing access to Azure AD means your business is dead in the water.


The solution: Back up Azure AD in a completely separate infrastructure.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Keepit
At Keepit, we believe in a digital future where all software is delivered as a service. Keepit’s mission is to protect data in the cloud Keepit is a software company specializing in Cloud-to-Cloud data backup and recovery. Deriving from +20 year experience in building best-in-class data protection and hosting services, Keepit is pioneering the way to secure and protect cloud data at scale.

Why backups are key ransomware targets

And 10 best practices for being ransomware resilient

“Ransomware is the new normal.” We’ve all heard it, and we’re going to keep hearing it. Why’s that exactly? Cyberthreats such as ransomware are a constant concern, and now more than ever, safeguarding your data (and business) against ransomware attacks is a necessity as the frequency of ransomware attacks continues to increase and new regulatory standards for cybersecurity are introduced.

The frequency of attempted ransomware attacks
respondents experienced over the past 12 months​:

How often businesses experienced a ransomware attack during the past 12 months, according to ESG research

IT managers, CISOs, and CIOs are acutely aware of the pivotal role data protection plays in their organizations and are searching for a ransomware solution, but it’s not “just” the data at risk, it’s the entire business impact. And ransomware is increasingly targeting backup data.

So, what’s the level of concern across those tasked with cyber resilience?

According to ESG research, nearly 1 in 3 have serious concerns about the security of their backups

According to the Enterprise Strategy Group (ESG) report, “2023 Ransomware Preparedness: Lighting the Way to Readiness and Mitigation,” of the 600 IT and cybersecurity professionals surveyed, only 4% were not concerned at all about ransomware attacks affecting their data protection copies. So, that’s a whopping 96% that have at least some level of concern for their backup data — with nearly one in three voicing serious concerns.

Access the full report

Let’s look into the current ransomware landscape to understand why backups are being targeted by ransomware and the measures (both proactive and reactive) that companies should have in place to not fall victim to the ransomware threat. This will lead us into data protection best practices that ensure cyber readiness.

6 Reasons why backup is targeted by ransomware

  

  • Data recovery: Ransomware attackers understand that organizations rely on their backups to recover from data loss incidents. By encrypting or deleting backup data, cybercriminals significantly reduce the victim’s ability to restore their systems and data without paying the ransom. 
  • Business continuity: When backup data is compromised, an organization’s ability to continue its operations is severely hampered. Ransomware aims to disrupt business continuity and inflict financial damage. Targeting backups achieves this goal effectively. 
  • Data value: Backups often contain a comprehensive historical record of an organization’s data, which can be extremely valuable. This includes sensitive customer information, intellectual property, and financial records. Ransomware attackers can threaten to expose or sell this data to further pressure victims into paying the ransom, or leverage compliance-critical data that organizations need to avoid serious liabilities, substantial fines, and reputational damage. 
  • Access and control: Once ransomware infects a system, it often seeks to propagate to other devices on the network. By compromising backups, the attacker gains a strategic foothold in the organization’s infrastructure, making it easier to continue the attack, demand ransom, and potentially cause more damage. This is very much a valid concern for businesses utilizing Entra ID. Learn more about the control plane and why data cloud protection is a must for Entra ID (Azure AD).
  • Lack of separation: In many cases, cloud backups are stored on the same network or in the same cloud environment as the primary data. This is true with Microsoft backups and others using public cloud. If ransomware infiltrates one part of the network, it can easily spread to backups that lack adequate separation, rendering them vulnerable. 

    Put simply, one attack could reach all your production data and backup data. This brings to mind the adage of not putting all your eggs in one basket and is why true backup requires having backup data on a logically separate infrastructure. 
  • Minimal security measures: Historically, cloud backups have not received the same level of security scrutiny as production data. Many organizations focus their security efforts on their active systems and underestimate the need to secure backups adequately. If your backups aren’t stored safely and independently, how can you restore your data from them in the event of an attack? With new cybersecurity regulations being introduced, organizations need to put their attention on how to secure their backups in a way that is compliant with regulations.

The protection gap

The protection gap in data security refers to the potential vulnerability that exists between an organization’s primary data and its ability to recover or restore that data in case of data loss or a cyberattack.

This gap stems from the fact that while organizations invest in various security measures to protect their active data, they may overlook comprehensive backup and recovery strategies. This oversight can leave critical data exposed and susceptible to loss, damage, or theft.

We can see from the respondents’ answers in the report that backup infrastructure security is one of the most critical to protect, as well as one of the areas with the biggest gaps in ransomware preparedness.

Top four preventative security controls, as well as the top four gaps in ransomware preparedness:

Top security controls critical in protecting against ransomware, as well as the top four gaps in ransomware preparedness

What are the common vulnerabilities in data protection?

 

  • Inadequate access controls: Weak or improperly configured access controls can allow unauthorized users or malware to infiltrate backup systems, compromising the integrity of the data stored there.
  • Lack of air gapping: In cases where backup systems share a network with primary systems, ransomware can easily move between them. The absence of air gapping (network segmentation) increases the risk of cross-contamination.
  • Insufficient authentication: If backups lack robust authentication mechanisms, malicious actors can gain unauthorized access to backup data, manipulate it, or delete it without hindrance.
  • No data immutability: Without data immutability, backup data is vulnerable to tampering by ransomware. Attackers can alter or delete backup files, rendering them useless for recovery.
  • Single points of failure: Relying on a single backup solution or location can result in a single point of failure. If this point is compromised by ransomware, an organization may lose both primary and backup data.

Understanding the vulnerabilities and the tactics used by ransomware to attack backup systems is essential for developing a comprehensive defense strategy to protect valuable data assets and maintain business continuity.

Safeguarding your data: Data protection best practices

Organizations employ various strategies and technologies to protect their cloud-based backups and ensure data integrity, and there are well-established best practices proven effective at keeping data safe and companies compliant with all regulatory bodies, such as NIS2 and GDPR. These methods are essential for safeguarding cloud data against various threats, including ransomware.

Here’s 10 best practices that organizations typically follow to ensure their cloud-based backups are protected and that their businesses meet regulatory and compliance standards: 

   

  • Access control: Access to cloud backup systems is tightly controlled. Only authorized personnel are granted permission to modify or delete backup data stored in the cloud. Access control mechanisms may include role-based access control (RBAC) and multi-factor authentication (MFA) to enhance security. It’s also important to limit the number of subprocessors to as few as possible: Some backup solutions even have zero subprocessors.

  • Encryption: Backup data stored in the cloud is encrypted both in transit and at rest. This ensures that even if an attacker gains access to the data, it remains unintelligible without the right decryption keys.

  • Data immutability: Immutability features are implemented to prevent the unauthorized modification or deletion of backup data. This safeguards the integrity of the cloud backups, making them resilient to ransomware attacks.

  • Regular cloud backups: Organizations perform regular backups of their cloud data to ensure that information is backed up frequently. This minimizes the amount of data that could be lost in an attack or data corruption.
  • Offline and air-gapped backups: Some organizations maintain offline or air-gapped cloud backups. These backups are physically disconnected from the network, making them immune to online attacks, including ransomware. Air-gapped cloud backups are especially effective in preventing data loss due to cyber threats.
  • Versioning/snapshot: Cloud-based backup systems often support versioning, allowing organizations to recover previous versions of files stored in the cloud. This feature is crucial for restoring data to a known-good state when ransomware has altered files.
  • Geographic redundancy/sovereignty: Large organizations may store cloud backups in multiple geographic locations within the cloud infrastructure to mitigate the risk of data loss due to regional incidents or localized cyberattacks. It’s vital that your data protection provider offers regional data centers and that they guarantee no data transmission outside of your selected region.
  • Regular testing: Cloud-based backup systems are regularly tested to ensure that they are functioning as expected. This involves not only verifying the backup process but also performing restoration tests to confirm that cloud data can be successfully recovered.
  • Monitoring and alerts: Continuous monitoring of cloud backup systems and alerts for suspicious activities are set up. Any unusual access or data modification triggers alerts that can be addressed promptly.
  • “Offsite storage” in the cloud: Backups are often stored offsite in cloud services. This protects cloud data in the event of on-premises disasters, such as fires or floods. But in cloud storage, having backup data outside of the production environment is key: Read more about this in the 3-2-1 backup rule blog.

By implementing these protective measures, organizations can maintain the security and availability of their cloud-based backup data, reducing the risk of data loss due to ransomware and other potential threats and thereby strengthening cyber resilience.

As organizations have become aware of the vulnerabilities in their data protection processes for backup and recovery, many are taking extra precautions to safeguard their backup copies, which are crucial for recovery in case of a crisis.

Let’s look at the percentage of organizations taking additional measures to protect their backup copies​:

According to ESG research, the percentage of organizations taking additional measure to protect their backup copies

As awareness grows of the vulnerabilities and data protection best practices, it’s unfortunately only 40% of organizations that are making extra efforts to protect all their backup copies. This gap in data protection is highlighted in the finding that after a ransomware attack, not all data can be recovered.

The amount of data organizations were able to recover after a ransomware attack:

Percentage of data able to be recovered by organizations after a ransomware attack, according to ESG research

The numbers show that there is still a lot to be done to prepare for the ransomware threat. To continue learning about what to do to improve your cyber resiliency and avoid being ransomed, join us for our expert-led webinar on November 28. Together with industry experts from Enterprise Strategy Group, we will be sharing even more insights and discussing best practices and data protection strategies that effectively combat the threat of ransomware.

Join our webinar!

This post is part one of a five-part series on the role backups play in the protection against ransomware, so check back soon to catch the next installment, which will cover the importance of air gapping in data protection.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Keepit
At Keepit, we believe in a digital future where all software is delivered as a service. Keepit’s mission is to protect data in the cloud Keepit is a software company specializing in Cloud-to-Cloud data backup and recovery. Deriving from +20 year experience in building best-in-class data protection and hosting services, Keepit is pioneering the way to secure and protect cloud data at scale.

Keepit at Gartner IT Symposium/Xpo™ 2023 in Barcelona: How to bolster cyber resilience and ignore ransomers.

Keepit CTO to present with Porsche Informatik on how Europe’s largest car dealership address escalating cybersecurity threats

COPENHAGEN, DENMARK, Nov. 2, 2023 – Keepit, the market leader in cloud data protection and management, today announced that it will be presenting and exhibiting at the Gartner IT Symposium/Xpo™ 2023 conference taking place in Barcelona, Spain, from November 6th to November 9th.

On Wednesday, November 8th, Keepit’s Chief Technology Officer (CTO) Jakob Østergaard will co-present with Peter Friedwagner, Head of Infrastructure, Cloud & Security at Porsche Informatik, in a session titled, “Keepit: Real-World M365 Cyber Resilience – Insights from Porsche Informatik”. Session attendees will learn how Porsche Holding Salzburg, Europe’s largest car dealership, addresses escalating cybersecurity threats and has bolstered the organization’s cyber resilience with Keepit’s independent backup and recovery for Microsoft 365.

Key takeaways from the session will include:

● Tips on how to align Microsoft 365 cloud backup with enterprise risk management.

● Actionable insights into the strategic advantages of independent backup for Microsoft 365 for operational resilience in enterprises.

● Porsche Informatik’s blueprint for overcoming cyber challenges.

The Gartner IT Symposium/Xpo™ 2023 will be held at the International Barcelona Convention Center. The conference provides an opportunity for information technology (IT) and cybersecurity executives to explore the technology, insights, and trends shaping the future of IT and business while getting expert guidance on best practices to define and validate IT strategies, as well as real-world examples of how to execute on key initiatives. Topics covered will include accelerating business transformation, cybersecurity, customer experience, data analytics, executive leadership, and the impact of generative artificial intelligence (AI) on every industry and job role.

At Symposium, the Keepit team will also be sharing the latest insights on how to mitigate the impact of ransomware attacks by ensuring fast and complete recovery for enterprises. Research shows that a strong backup and recovery strategy can mean the difference between organizations being able to ignore extortionists and having to succumb to paying ransom again and again.

WHAT: Solution Provider Session, “Keepit: Real-World M365 Cyber Resilience – Insights from Porsche Informatik”

WHO: Jakob Østergaard, Keepit CTO, and Peter Friedwagner, Head of Infrastructure, Cloud & Security at Porsche Informatik

WHERE: Room 113 & 114, Level P1, International Barcelona Convention Center.

WHEN: Wednesday, Nov 8, 4:15 – 4:45 pm CET

Keepit will be exhibiting for the duration of the conference at booth #645.

To arrange a product demonstration or meeting with a member of the Keepit team at the conference, book a meeting here.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Keepit
At Keepit, we believe in a digital future where all software is delivered as a service. Keepit’s mission is to protect data in the cloud Keepit is a software company specializing in Cloud-to-Cloud data backup and recovery. Deriving from +20 year experience in building best-in-class data protection and hosting services, Keepit is pioneering the way to secure and protect cloud data at scale.

Keepit Recognized for Risk Management Innovation in 2023 CyberSecurity Breakthrough Awards Program

Prestigious International Awards Program Honors Outstanding Information Security Products and Companies 

LOS ANGELES, Calif., Oct. 5, 2023 – CyberSecurity Breakthrough, a leading independent market intelligence organization that recognizes the top companies, technologies and products in the global information security market, today announced that Keepit, the market leader in cloud data protection and management, has been selected as winner of the “Overall Risk Management Solution Provider of the Year” award in the 7th annual CyberSecurity Breakthrough Awards program. 

 

Keepit’s breakthrough cloud protection for Azure AD helps businesses back up and recover critical identity and application objects in the cloud that are not protected by Microsoft. Coverage of Azure AD cloud objects include: Users, Groups, Roles, App Registrations, Enterprise apps, BitLocker Recovery Keys, Sign-In Logs and more. 

 

Keepit keeps customer data in a separate, dedicated infrastructure, with the backed-up stored data fully isolated from the SaaS vendor’s cloud. Customer data is held in two separate physical data centers across six regions worldwide. 

 

 Utilizing the Keepit platform, it takes only moments to backup Azure AD and requires virtually no training or administration to operate. Recovery of data is fast, precise, and granular. Keepit provides the highest security standards as the platform is built on unique architecture which keeps data and metadata immutable and ensures compliance. In anticipation of future cyber resilience standards and requirements, Keepit is evolving into a comprehensive platform to support all SaaS application data types. 

 

“Azure AD is the brain to the Microsoft 365 body, but it also sees 50 million password attacks per day. Our protection helps users access and recover business-critical identity and access management objects when they need it,” said Frederik Schouboe, co-CEO and co-founder of Keepit. “It’s an honor to receive this recognition from CyberSecurity Breakthrough. We’re committed to providing fine-grained, incremental coverage that protects against any size incident with unmatched ease of use, minimizing downtime and serving as a solution that organizations rely on to protect their cloud-based data.” 

 

The mission of the CyberSecurity Breakthrough Awards is to honor excellence and recognize the innovation, hard work and success in a range of information security categories, including Cloud Security, Threat Detection, Risk Management, Fraud Prevention, Mobile Security, Email Security and many more. This year’s program attracted thousands of nominations from over 20 different countries throughout the world.  

 

“Azure AD is the heart of an organization’s IT, serving as one place for managing user identities and permissions – making it a prime target for hackers,” said Steve Johansson, managing director, CyberSecurity Breakthrough. “Keepit addressing this head-on with a breakthrough solution that allows companies to close critical gaps in their cloud security strategy that they haven’t been able to close properly up until now. We extend our sincere congratulations to Keepit for bringing home the 2023 CyberSecurity Award for “Overall Risk Management Solution Provider of the Year!’” 

 

In addition to Azure AD, Keepit offers unrivaled backup and recovery for Microsoft 365, Dynamics, Power Platform, Azure DevOps, Google Workspace, Salesforce, and Zendesk. 

About CyberSecurity Breakthrough

Part of Tech Breakthrough, a leading market intelligence and recognition platform for global technology innovation and leadership, the CyberSecurity Breakthrough Awards program is devoted to honoring excellence in information security and cybersecurity technology companies, products and people. The CyberSecurity Breakthrough Awards provide a platform for public recognition around the achievements of breakthrough information security companies and products in categories including Cloud Security, Threat Detection, Risk Management, Fraud Prevention, Mobile Security, Web and Email Security, UTM, Firewall and more. For more information visit CyberSecurityBreakthrough.com. 

Tech Breakthrough LLC does not endorse any vendor, product or service depicted in our recognition programs, and does not advise technology users to select only those vendors with award designations. Tech Breakthrough LLC recognition consists of the opinions of the Tech Breakthrough LLC organization and should not be construed as statements of fact. Tech Breakthrough LLC disclaims all warranties, expressed or implied, with respect to this recognition program, including any warranties of merchantability or fitness for a particular purpose.

About Version 2 Digital

Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

About Keepit
At Keepit, we believe in a digital future where all software is delivered as a service. Keepit’s mission is to protect data in the cloud Keepit is a software company specializing in Cloud-to-Cloud data backup and recovery. Deriving from +20 year experience in building best-in-class data protection and hosting services, Keepit is pioneering the way to secure and protect cloud data at scale.