A backup is not a recovery plan
Backups are copies of data; a recovery plan gets the business running again. What to add, how to test it, and a worksheet to start.
A backup is only useful if you can restore from it when it matters. We design, run and test backup and disaster recovery, covering servers, cloud workloads and Microsoft 365, with recovery objectives agreed in business terms and restores tested on a schedule.
Backup and disaster recovery make sure that when something goes wrong, such as a failed server, a deleted folder, a ransomware attack, a flood or a power outage, your organization can get its systems and data back within an acceptable time.
A backup is a copy of data. Disaster recovery is the tested ability to restore systems and get people working again. Many organizations have the first without the second. Our article on why a backup is not the same as a recovery plan explains the difference.
We provide backup and disaster recovery as a project and as part of managed IT services, where backups are monitored daily and restores are tested on a schedule.
We also use native backup services in AWS, Azure and Google Cloud where they fit. The platform follows your recovery objectives, not the other way round.
Moving to the cloud does not remove the need for backup. Services such as Microsoft 365 keep themselves running, but they are not designed to recover every deleted mailbox, overwritten file or compromised account, and retention settings eventually expire. We add independent backup for Microsoft 365 email, OneDrive, SharePoint and Teams, and for cloud servers and databases, stored separately from the service being protected. Restores can be as small as one email or as large as an entire site.
We schedule test restores, from single files to whole systems, and record how long each took. The disaster recovery plan sets out who declares a disaster, who does what, the order in which systems are restored and how staff and customers are kept informed.
Privacy law is relevant too. Under PIPEDA, organizations must report breaches of security safeguards that create a real risk of significant harm, and ransomware incidents can fall into that category. Recovery planning should include your breach response process. We explain the technical side; this is not legal advice. For prevention and detection, see our cybersecurity services.
The exact list is agreed in writing for each project. These are the usual deliverables and the usual boundaries.
Most delays in this kind of work come from access and decisions, not from the technical build. Knowing these early keeps the project predictable.
Each stage ends with something you can review before the next one starts.
We inventory systems and data, check existing backups and identify gaps and single points of failure.
Output: Backup and recovery review.
With your business owners, we agree how much data loss and downtime each system can tolerate.
Output: Recovery objectives for each system.
We implement the backup platform, off-site and ransomware-resistant copies, and monitoring.
Output: Working backups and a monitoring report.
We perform test restores, measure recovery times and write the disaster recovery plan.
Output: Test results and a disaster recovery plan.
Backups are checked daily, and restores and recovery exercises are repeated on a schedule.
Output: Regular test reports.
We do not publish package prices. Each estimate is based on an agreed scope, in Canadian dollars, with taxes shown separately. These are the things that move the number most:
We work with platforms such as Veeam, Altaro VM Backup (now part of Hornetsecurity), Acronis and Zerto, as well as native cloud backup services. The choice depends on your systems, recovery objectives and budget. Naming these vendors does not imply any partnership with them.
The recovery point objective is how much data, measured in time, you can afford to lose. The recovery time objective is how long a system can be unavailable. Agreeing both for each system drives the backup design and its cost.
Backups are a key part of ransomware recovery, but only if attackers cannot delete or encrypt them. We keep isolated or immutable copies, protect backup accounts and test restores. Backups do not prevent an attack, so we pair them with security controls.
Yes, in most cases. Many backup platforms and cloud providers offer Canadian storage locations. We confirm where each copy is stored, including any provider support or replication processes, and document it.
Backups are copies of data; a recovery plan gets the business running again. What to add, how to test it, and a worksheet to start.
Plan, migrate and manage cloud workloads so your data is secure, accessible from anywhere and hosted where it should be.
Practical cybersecurity: assessments, endpoint protection, email security, training, incident readiness and 24/7 monitoring for managed-service clients.
Tell us what you back up today and which systems matter most. We will reply to arrange a conversation about your recovery readiness.