VM2Cloud Security
Effective Date: December 2025
Company Location: London, United Kingdom
At VM2Cloud, security is a foundational principle of how we design, build, and operate our cloud infrastructure. We take a risk-based, defence-in-depth approach to protecting our platform, services, and customer environments.
This page provides a general overview of VM2Cloud's security practices and is intended for informational purposes only.
1. Security Governance
VM2Cloud maintains organisational and technical controls designed to protect systems and data throughout their lifecycle. Security considerations are integrated into platform design, service operations, and ongoing improvements.
Our security practices are informed by widely recognised industry standards and best practices applicable to cloud infrastructure and managed services.
2. Infrastructure & Platform Security
VM2Cloud operates enterprise-grade infrastructure designed with layered security controls, including:
- • Segregation of customer environments
- • Controlled access to management systems
- • Hardened operating systems and platform components
- • Continuous monitoring of infrastructure health and availability
- • Change management and configuration controls
Infrastructure components are regularly reviewed and maintained to support reliability and security.
3. Network Security
We apply network-level controls to reduce exposure and limit unauthorised access, including:
- • Network segmentation and isolation
- • Firewall rules and traffic filtering
- • Secure access paths for management interfaces
- • Monitoring for anomalous or suspicious activity
These controls help protect both internal systems and customer workloads.
4. Data Protection
VM2Cloud implements safeguards designed to protect customer and business information, including:
- • Encryption of data in transit using industry-standard protocols
- • Protection mechanisms for stored data
- • Logical separation of customer resources
- • Access controls based on defined roles and responsibilities
Customers retain ownership and control of their data hosted on the VM2Cloud platform.
5. Identity & Access Management
Access to VM2Cloud systems is governed by identity and access controls designed to follow the principle of least privilege, including:
- • Role-based access controls
- • Authentication mechanisms for platform access
- • Logging and monitoring of access activity
- • Periodic review of access permissions
Customers are responsible for managing access within their own environments.
6. Monitoring & Incident Management
We monitor platform operations to detect potential security and availability issues. When incidents are identified, they are managed through defined internal processes focused on assessment, mitigation, and recovery.
Where appropriate, customers may be notified in accordance with contractual or legal requirements.
7. Customer Responsibilities
While VM2Cloud provides a secure infrastructure foundation, customers are responsible for:
- • Securing their applications, operating systems, and configurations
- • Managing user access and credentials within their environments
- • Implementing appropriate backup, retention, and recovery strategies
- • Complying with applicable laws and regulations relevant to their use of the services
8. Continuous Improvement
Security is an ongoing process. VM2Cloud regularly reviews its controls, practices, and operational processes to adapt to evolving threats, technologies, and regulatory expectations.
9. Reporting Security Concerns
If you believe you have identified a security issue related to VM2Cloud services, please report it responsibly by contacting: