The Service
Managed backup, verified recovery, and technical documentation
We handle the technical operation and documentation of the agreed backup service.
ArvaSafe provides a technical backup and recovery service. It does not replace legal counsel, a DPO, an accountant, or a general IT provider.
Lifecycle
The agreed service in four steps
We record the protection scope
We record the devices, folders, applications, expected volume, backup frequency, retention categories, and recovery priorities. The agreed scope is set out in writing in the Order Form.
We install and monitor
We install the agreed backup jobs, monitor their status, investigate alerts and failures, and provide a monthly report.
We test the restore
We run and record the agreed restore test. Its exact scope is written in the Order Form and may be file-level, a representative endpoint, or another specifically agreed test.
We document the service measures
ArvaSafe documents only the technical and organisational controls and activities related to its own agreed service.
Scope
What's included
- Installation and configuration of the agreed backup jobs
- Status monitoring and investigation of failures
- Monthly reporting and agreed alerts
- Agreed restore-test type
- Restore support within the written service scope
- Documentation of the ArvaSafe service measures and activities
Storage
Storage: 500 GB per workstation
Each workstation gives you 500 GB. If you have more than one, that allowance is pooled into a single shared pool for your entire business.
Example
A 5-workstation accounting office has 5 × 500 GB = 2.5 TB of total pooled capacity.
Technical
Technical specs (in plain language)
Client-side encryption
Files are encrypted with AES-256 before upload. ArvaSafe manages the keys and decrypts only for a customer-requested restore or support case, with restricted and logged access.
Agreed storage region
The content-storage region and relevant providers are recorded in writing in the Order Form and DPA.
Retention by data category
The retention period is defined in writing for each data category in the Order Form, based on the customer's instructions and legal or professional assessment.
Recovery priorities
Recovery objectives, priorities, and the type of restore support are defined in the Order Form and applicable contract documents.
Terminology
Retention, immutability, legal hold, deletion
The retention period is defined in writing for each data category in the Order Form, based on the customer's instructions and legal or professional assessment.
Retention
Retention determines how long a version remains available.
Immutability
Immutability determines how long a version cannot be modified or deleted. It is not the same as retention and applies only when agreed.
Legal hold
A temporary suspension of deletion on specific data, at your written request due to audit or dispute.
Deletion after termination
Export and deletion after termination follow the process set out in the contract and the agreed exit plan.
If audited
Support for audit questions concerning the ArvaSafe service
We provide documentation of the technical and organisational measures ArvaSafe applies to the specific service and support questions limited to that scope.
Talk to usWant the legal detail? See our compliance & documentation page →
