We combineren best practices uit EN 50600, ISO 27001 en internationale datacenterstandaarden met praktische ervaring in multi-site en colocatieomgevingen.
We combine best practices from EN 50600, ISO 27001 and international data center standards with hands-on experience in multi-site and colocation environments.
1. Fysieke beveiliging & toegangscontrole
1. Physical security & access control
Wie kan waar naar binnen, en op basis waarvan? We kijken van perimeter tot rack.
Who can enter which areas, and on what basis? We review from perimeter to rack.
- Terreintoegang, hekken, poorten, CCTV en perimetercontrole.
- Badges, biometrie, mantraps, escorts en bezoekersregistratie.
- Rack-, cage- en suite-toegang inclusief logging.
- Site access, fencing, gates, CCTV and perimeter control.
- Badges, biometrics, mantraps, escorts and visitor logging.
- Rack, cage and suite access including logging.
2. Power, UPS & noodstroom
2. Power, UPS & emergency supply
Power is de levensader van elk datacenter. We beoordelen ontwerp, redundantie en omschakeling.
Power is the lifeblood of any data center. We assess design, redundancy and transfer behaviour.
- Voedingspaden, UPS-architectuur, generatoren en brandstofscenario’s.
- Testen van omschakeling, onderhoud en lifecycle management.
- Single points of failure in power design.
- Power feeds, UPS architecture, generators and fuel strategies.
- Transfer testing, maintenance and lifecycle management.
- Single points of failure in power design.
3. Koeling & omgevingscondities
3. Cooling & environmental conditions
Oververhitting is een stille risicofactor. We bekijken koelconcept, luchtstromen en monitoring.
Overheating is a silent risk. We examine cooling design, airflow and monitoring.
- Hot/cold aisle, containment, free cooling en airflow.
- Redundantie van chillers, CRAC/CRAH en pompsystemen.
- Temperatuur, vocht, alarmen en responstijden.
- Hot/cold aisle, containment, free cooling and airflow.
- Redundancy for chillers, CRAC/CRAH and pumps.
- Temperature, humidity, alarms and response times.
4. Branddetectie & veiligheid
4. Fire detection & safety
Brand- en rookincidenten kunnen complete hallen uitschakelen. We toetsen detectie, blussing en evacuatie.
Fire and smoke incidents can disable entire halls. We assess detection, suppression and evacuation.
- VESDA, rook- en hittemelders, compartimentering.
- Gas, watermist, sprinklers en impact op apparatuur.
- Evacuatieplannen, oefeningen en hulpdienstenafstemming.
- VESDA, smoke and heat detection, compartmentalisation.
- Gas, water mist, sprinklers and impact on equipment.
- Evacuation plans, drills and emergency services alignment.
5. Netwerk, segmentatie & remote toegang
5. Network, segmentation & remote access
De netwerkinfrastructuur bepaalt hoe veilig diensten binnen en buiten het datacenter beschikbaar zijn.
Network infrastructure determines how securely services are delivered inside and outside the data center.
- Core, distribution, access, redundante paden en uplinks.
- Segmentatie voor tenants, management en out-of-band.
- Jump hosts, console servers en remote access controls.
- Core, distribution, access, redundant paths and uplinks.
- Segmentation for tenants, management and out-of-band.
- Jump hosts, console servers and remote access controls.
6. Monitoring, DCIM & alarmering
6. Monitoring, DCIM & alerting
Zien teams afwijkingen op tijd? We beoordelen BMS/DCIM, drempels, dashboards en opvolging.
Do teams see anomalies in time? We review BMS/DCIM, thresholds, dashboards and follow-up.
- Integratie van power, koeling, omgeving en securitymeldingen.
- Alarmdrempels, escalatiepaden en 24/7-bewaking.
- Rapportages, trends en capacity planning.
- Integration of power, cooling, environment and security events.
- Alert thresholds, escalation paths and 24/7 monitoring.
- Reporting, trending and capacity planning.
7. Operaties, procedures & incidentrespons
7. Operations, procedures & incident response
Hoe wordt het datacenter dagelijks gerund, en wat gebeurt er als er iets misgaat?
How is the data center run day-to-day, and what happens when something goes wrong?
- Shift-overdrachten, runbooks, changebeheer en onderhoudsvensters.
- Incidentprocessen, post-incident reviews en verbeteracties.
- Afstemming met klanten, tenants en interne teams.
- Shift handovers, runbooks, change management and maintenance windows.
- Incident processes, post-incident reviews and improvements.
- Coordination with customers, tenants and internal teams.
8. Redundantie, continuïteit & compliance
8. Resilience, continuity & compliance
Hoe robuust is het totaalbeeld, inclusief uitwijk, multi-site strategie en regelgeving?
How robust is the overall picture, including failover, multi-site strategy and regulation?
- N, N+1, 2N en multi-site architectuur.
- Back-up, herstel, failover en testresultaten.
- Relatie met ISO 27001, EN 50600, NIS2 en klantvereisten.
- N, N+1, 2N and multi-site architecture.
- Backup, recovery, failover and test results.
- Alignment with ISO 27001, EN 50600, NIS2 and customer requirements.