VM2Cloud Security

Effective Date: December 2025

Company Location: London, United Kingdom

At VM2Cloud, security is a foundational principle of how we design, build, and operate our cloud infrastructure. We take a risk-based, defence-in-depth approach to protecting our platform, services, and customer environments.

This page provides a general overview of VM2Cloud's security practices and is intended for informational purposes only.

1. Security Governance

VM2Cloud maintains organisational and technical controls designed to protect systems and data throughout their lifecycle. Security considerations are integrated into platform design, service operations, and ongoing improvements.

Our security practices are informed by widely recognised industry standards and best practices applicable to cloud infrastructure and managed services.

2. Infrastructure & Platform Security

VM2Cloud operates enterprise-grade infrastructure designed with layered security controls, including:

  • • Segregation of customer environments
  • • Controlled access to management systems
  • • Hardened operating systems and platform components
  • • Continuous monitoring of infrastructure health and availability
  • • Change management and configuration controls

Infrastructure components are regularly reviewed and maintained to support reliability and security.

3. Network Security

We apply network-level controls to reduce exposure and limit unauthorised access, including:

  • • Network segmentation and isolation
  • • Firewall rules and traffic filtering
  • • Secure access paths for management interfaces
  • • Monitoring for anomalous or suspicious activity

These controls help protect both internal systems and customer workloads.

4. Data Protection

VM2Cloud implements safeguards designed to protect customer and business information, including:

  • • Encryption of data in transit using industry-standard protocols
  • • Protection mechanisms for stored data
  • • Logical separation of customer resources
  • • Access controls based on defined roles and responsibilities

Customers retain ownership and control of their data hosted on the VM2Cloud platform.

5. Identity & Access Management

Access to VM2Cloud systems is governed by identity and access controls designed to follow the principle of least privilege, including:

  • • Role-based access controls
  • • Authentication mechanisms for platform access
  • • Logging and monitoring of access activity
  • • Periodic review of access permissions

Customers are responsible for managing access within their own environments.

6. Monitoring & Incident Management

We monitor platform operations to detect potential security and availability issues. When incidents are identified, they are managed through defined internal processes focused on assessment, mitigation, and recovery.

Where appropriate, customers may be notified in accordance with contractual or legal requirements.

7. Customer Responsibilities

While VM2Cloud provides a secure infrastructure foundation, customers are responsible for:

  • • Securing their applications, operating systems, and configurations
  • • Managing user access and credentials within their environments
  • • Implementing appropriate backup, retention, and recovery strategies
  • • Complying with applicable laws and regulations relevant to their use of the services

8. Continuous Improvement

Security is an ongoing process. VM2Cloud regularly reviews its controls, practices, and operational processes to adapt to evolving threats, technologies, and regulatory expectations.

9. Reporting Security Concerns

If you believe you have identified a security issue related to VM2Cloud services, please report it responsibly by contacting:

📧 info@vm2cloud.com

VM2Cloud Ltd.

85 Great Portland Street
London, W1W 7LT
United Kingdom