earthwave

Security Operation Centres

The earthwave Security Analysts are based at earthwave's Security Operations Centres (SOCs), which serve as home to earthwave's security analysts, as well as customer engineering groups. Designed for maximum redundancy, earthwave's multi-million dollar, state-of-the-art SOC's contain redundant, discrete power sources, fire suppression systems, three-factor biometric personnel screening, and VPN termination points that allow interoperability with nearly any client network.

An earthwave SOC maintains multiple, redundant connections to the Internet, each communicating with separate Tier-1 ISPs. And a portion of each SOC and IDC is also specially designed to maintain and store large amounts of client security data. Our distributed architecture has the ability to dynamically reroute customer data to available resources, and analysts responsible for particular sets of clients can perform analysis from any SOC.

Floor Plans

Operations

The earthwave SOCs, located in Sydney and Canberra serve as the command, control and communications center for all earthwave network operations and customer support centres. Staffed 24 x 7 with teams dedicated to maintaining the highest quality of service, the SOC utilises state-of-the-art equipment and technology for monitoring and managing the network and identifying and resolving problems.


IDC

Our choice of advanced climate-controlled facilities is designed to exacting standards to provide systems redundancy and security. earthwave Internet Data Centres benefit from the connection to the fault-tolerant, fiber-optic networks.

Both Sydney and Canberra facilities are built to meet or exceed the highest industry standards. With a backup Uninterruptible Power Supply (UPS) system and multiple emergency backup diesel generators, our electrical power could run indefinitely, even during a blackout. Our closed-loop heat-rejection system maintains a constant average-space temperature and relative humidity. Our fire-suppression systems are capable of detecting a fire even prior to a visible smoke condition.

Earthwave takes every precaution necessary to ensure your Internet connections will be reliable and available when you need them. Our facilities are superior for hosting mission-critical security infrastructure, systems and applications, and free you from the expense of constructing, maintaining and monitoring complex infrastructure on your own.

Security

In addition to more space, enhanced services and greater power capacity, the Sydney and Canberra SOCs and IDCs feature a multi-faceted security system for protecting your equipment and data. The system includes controlled access to the building through full-time security personnel, social engineering practices, restricted floor access, motion sensors, a biometric identification system and surveillance cameras.

Specifications

Highly Reliable: The earthwave SOC architecture delivers maximum availability by providing hot standby components for each element in the SOC, eliminating any single point of failure. Elements include routers, firewalls, Network IPSs, load balancers, application servers, storage subsystems and Web-brokering servers.

Highly Scalable: By separating the security application, management, monitoring, reporting and authentication servers from the Web servers and storage subsystems, the earthwave SOC achieves extremely high levels of scalability and performance. All servers can be scaled independently of one another based on the different requirements placed on these unique server environments. In addition to this scaling capability, each set of servers is accessed through load balancing switches.

Data Centre Facility
  • Custom designed with raised floors
  • HVAC temperature control systems
  • Seismically braced racks
  • Smoke detection and fire-suppression systems
  • Video-camera surveillance
  • Security-breach alarms
Redundant, multi-tier architecture
  • Multi-tier architecture that abstracts security, Web-enabling, applications, database, and data storage layers
  • Pod-based modular architecture that is scalable to terabytes of data and thousands of users
  • N+1 components for all sub-systems eliminate any single point of failure
  • High-performance switches and load balancers
  • Multiple fibre runs between application pods and storage pods
Monitoring
  • 24x7x365 monitoring supported by a manned Security Operations Centre (SOC)
  • Long-term traffic monitoring
  • SNMP for deep monitoring on key system parameters
  • Daily file-integrity checking
Network Facilities
  • Triple BGP4 100 MB redundant feeds
  • Homed to separate routers in the data centre
  • Fibre-core backbone
  • Direct connection to the Internet backbone delivering high-bandwidth availability
Data Storage and Backup
  • High-performance NFS file servers
  • Mainframe-class symmetric storage systems
  • Multiple datamovers for performance and redundancy
  • RAID-5 protection
  • Point-in-time copies of data
  • Secure connectivity
  • Redundant, dedicated-fiber connections to the application pod
Client Care
  • 24x7x365 help desk that can be configured for first-Ievel or second-level support
  • Can accommodate for a dedicated 1800 number for each customer
  • Call log database and reporting
Managed Firewall and Intrusion Detection
  • Redundant appliances running state-of-the-art firewall software
  • Intrusion Prevention technology on all Internet connections
Security
  • Physical access provided by highly secure data centre controlled by biometric scanners and manual checking of photo-identification
  • Internet access restrictions through firewalls, VPN and encryption
  • Internet-intrusion-detection monitoring
  • Application environment access controlled by operating system security including passwords, authentication, etc.
  • Application access controlled through passwords, SSH, certificates
  • Data access controlled through user authentication and by abstracting data layer from application layer
Provisioning
  • Via Phone / Fax
  • Email
  • Online via MSS Client Portal for reporting, help desk and configuration management requirements
Connectivity Packages
  • Ethernet, DSL, Frame, ATM, and ISDN connectivity packages
  • Peering arrangement with Tier-1 connectivity providers to minimise hops
Policies, Procedures & Programs
  • Security policy
  • Privacy policy
  • Disaster recovery plan
  • Data Backup Program
  • Security Incident Response Team ("SIRT")
  • Change control program
  • Penetration testing program
  • Independent compliance audits