KDMSERVER
Servers
Private AI
Solutions
Support
CataloguePricingOutlook: autonomous operationsAbout Book a call Log in
+49 (0) 3301 867 39 90 info@kdmserver.com Mon–Fri 09:00–18:00 (CET)

Language

Security

How we separate, back up and monitor

Verifiable technical statements — without platitudes.

  • Daily backup
  • Restore test once a year
  • Personal accounts with logging

Security at KDM Server means four concrete things. First: your systems run in their own virtual machines with their own network rules, separated from other customers. Second: data is written daily to a dedicated backup server, and once a year a restore test is carried out. Third: availability and deviations are tracked around the clock. Fourth: every administrative access runs through a personal account with logging. The servers stand in Germany.

Four pillars

Separation of customersOwn virtual machines, own network segments and firewall rules, separate backups and credentials. There are no shared application environments.
Backup and restoreDaily backup to a dedicated server, retention per contract (14 days by default), an annual restore test with a protocol, and on request a second copy at another location.
MonitoringAvailability, load, service state and certificate expiry — around the clock. A signal becomes a ticket, not an e-mail nobody reads.
Access and traceabilityPersonal administrator accounts without shared passwords, access over encrypted channels, logging of actions, passwords in an encrypted vault your own manager can access too.

What we do not claim

We are not certified to ISO 27001 and we do not operate our own data centre. Our servers stand in the Falkenstein data centre park; the operator is Hetzner Online GmbH, a certified company. We say this openly, because somebody else’s certificate helps nobody when you pin it to your own lapel.

Frequent questions

Who has access to our data?

Technically the administrators looking after your system, by name. Organisationally this is governed by the data processing agreement.

How do we learn about a security incident?

Without delay, with description, scope and measures; we keep the notification deadlines under GDPR and NIS2.

Is data encrypted?

In transit, always. Encryption at rest on request; we explain the consequences for recovery beforehand.

What happens to the data at the end of the contract?

A complete export, then deletion within the agreed period, with confirmation.

More technical questions?

We answer concretely — with configuration instead of platitudes.

Book a call