Skip to content

Managed

Endura operates a dedicated Team Server instance and PostgreSQL database for your organization. You manage users, integrations, Sensors, and policies without operating the underlying service.

Service Summary

IncludedCustomer-managed equivalent
Dedicated Team Server instanceContainer and host operations
Managed PostgreSQLDatabase administration
Updates and security maintenanceImage and platform updates
Monitoring, backup, and recoveryOperational tooling and runbooks
Capacity managementResource planning and scaling

Configuration changes that self-hosted customers make directly are coordinated through Endura support.

Regions

Choose a region during onboarding. The selected region determines primary data residency and Sensor latency.

AreaRegions
United StatesNew York, San Francisco, Atlanta
EuropeAmsterdam, London, Frankfurt
Asia PacificSingapore, Bangalore, Sydney
CanadaToronto

Each customer receives an isolated instance with a managed database and automatic capacity adjustment.

Onboarding

Provide Endura with:

  • the preferred deployment region;
  • tenant name and primary administrative contact;
  • OIDC provider, client ID, client secret, and issuer URL; and
  • the email domains allowed to authenticate.

The onboarding sequence is:

  1. Confirm service terms and region.
  2. Provide OIDC and domain configuration.
  3. Endura provisions the instance, typically within one to two business days.
  4. Receive the Team Server URL and validate the first login.
  5. Confirm the initial Administrator account.

Security and Data Residency

ControlManaged-service behavior
Transport encryptionTLS 1.3
Database encryptionAES-256 at rest
IsolationDedicated customer environment and network isolation
Administrative accessMFA, least privilege, access reviews, and audit logging
Data residencyPrimary data and backups remain in the selected region
Edge protectionWeb application firewall, DDoS protection, and traffic filtering

MFA for Team Server users is enforced by your OIDC provider.

Shared Responsibility

EnduraYour organization
Infrastructure and network securityRuntime Sensor deployment
Team Server and operating-system updatesPolicy creation and assignment
Database maintenance, backup, and recoveryOIDC application maintenance
Capacity, monitoring, and incident responseUser roles and access scope
Service availabilityViolation investigation and response

See Access Control for user roles and scope.

Updates

Endura applies application and infrastructure updates during managed maintenance windows. Patch and minor releases use rolling updates. Customers receive advance notice before major releases.

Team Server and Sensors must share a major version. Coordinate Sensor upgrades for a managed major-version change; see Runtime Sensor Compatibility.

Backup and Recovery

ItemCommitment
Database backupEvery 6 hours
Backup retention90 days
Recovery time objective4 hours
Recovery point objective6 hours
Availability designMultiple availability zones with monitored failover

Endura tests disaster-recovery procedures and backs up configuration before changes.

Data Retention

DataRetention
Sensor telemetry2 years
User activity logs1 year
Audit logs7 years
Configuration changes5 years
PoliciesLife of the service

Backup retention is:

BackupRetention
Daily90 days
Monthly1 year
Annual7 years
Configuration snapshots2 years

Export and Deletion

  • Request an export of telemetry, policies, configuration, and audit data at any time. Exports use JSON and CSV and are delivered within five business days.
  • Service termination requires 30 days’ notice. Data remains exportable during that period and is deleted within 90 days after termination.
  • Specific erasure requests are processed within 30 days where applicable.
  • A certificate of destruction is available on request.

Managed service operations support GDPR and CCPA obligations, regional data sovereignty, and data-processing agreements on request.

Monitoring and Support

Endura monitors service health, application and database performance, capacity, and network security. Planned maintenance and incidents are communicated by email and through the service status page.

Support is available at support@endurasecurity.com, Monday through Friday from 9 AM to 5 PM in the customer’s region. Responses are best effort within 24 hours; critical service and security incidents receive priority escalation.

Configuration requests such as OIDC or domain changes are handled through support and backed up before application.

Next Steps

After onboarding:

  1. Install Runtime Sensors.
  2. Connect a CI/CD provider.
  3. Create security policies.