UNIQCloud Security
Security principles, tools & operational assurance for UNIQCloud — UNICC's private cloud platform built on a foundation of 8 security domains, aligned with CSA CCM, ISO 27001, NIST, and PCI-DSS.
Security Domains
Hosting, Openness & Residency
Open-source stack, UN data centers, vendor neutrality
Access Control & Personnel Security
Zero Trust, strict onboarding, role segregation
Network & Infrastructure
Dedicated infra, firewalls, DDoS/WAF, tenant segregation
Secure by Design & Defense in Depth
CSA CCM, defense in depth, secure by default
Monitoring, Detection & Response
24/7 ops, SIEM, CSOC, automation
OS & Data Protection
Hardened images, encryption, backup
Governance, Audit & Compliance
Pen tests, audits, ISO, SOC2 compliance
Patch Management & Remediation
Continuous updates, rapid fixes, SLA targets
Core Security Capabilities
Layered, enterprise-grade controls operate across UNIQCloud's core infrastructure and network:
| Capability | Purpose |
|---|---|
| Vulnerability Management | Continuous scanning and risk assessment across all environments |
| Endpoint & Container EDR | Real-time threat detection and response on hosts and containers |
| SIEM & Log Analytics | Centralized log correlation, analysis, and forensic investigation |
| Next-Gen Firewall & IDS | Stateful firewalling, intrusion detection, egress monitoring |
| Edge DDoS & WAF | Denial-of-service mitigation and web application firewalling |
| Privileged Access Management | Vaulting and control of administrative access |
| Identity & Access Management | Centralized authentication, RBAC, and directory services |
| Penetration Testing | Regular internal and independent third-party assessments |
Compliance Framework
UNIQCloud security is based on the CSA CCM (Cloud Security Alliance Cloud Controls Matrix), covering 197 controls across 17 domains. The framework is mapped to:
- ISO 27001 — Information security management
- NIST — Cybersecurity framework
- PCI-DSS — Payment card industry standards
- SOC 2 — Service organization controls
- CIS Benchmarks — System hardening baselines