Shared Responsibility Model for True IDC Cloud Service

True IDC Cloud Service's Security Responsibilities

True IDC is responsible for the security of IaaS services and the physical infrastructure of the True IDC Cloud Service located in True IDC data center. True IDC is also responsible for scanning, updating and patching the service software and maintaining the security maintenance for the physical infrastructure including network, Hypervisor software and system image library. In addition, True IDC stores data in the form of vm storage according to the service contract period and collect log data for the past 90 days on V-Cloud Director. However, after the contract is terminated or expires 14 days, True IDC will delete the data from the disk immediately.


Customer Security Responsibilities

The customer is responsible for the system configurations and data on the cloud and to secure identity and user access management, key management, and other encryptions settings. The customer is also responsible for network traffic protection and other applications on the cloud.