• Skip to primary navigation
  • Skip to main content
site logo
  • About
    • Approach
    • Partnerships
    • Mission
    • Leadership
    • Awards
    • Arraya Cares
  • Solutions
    • Solutions

    • Hybrid Infrastructure
      • Hyperconverged
      • Infrastructure as a Service
      • Servers, Storage, and Virtualization
      • Data Protection
      • Disaster Recovery & Business Continuity
    • Apps & Data
      • AI
      • Automation
      • Customizations
      • Visualizations & Integrations
      • Migrations
    • Network
      • Enterprise Networks
      • Wireless Connectivity
      • Cloud Networking Solutions
      • IoT
    • Cybersecurity
      • Endpoint Security
      • Network Security
      • Cloud Security
      • Application Security
    • Modern Workplace
      • Microsoft Licensing
      • Productivity & Collaboration
      • Modern Endpoint Deployment & Management
      • Microsoft Compliance & Risk
      • Backup
      • Cloud
  • Services
    • Services

    • Managed Services
      • Service Desk
      • Outsourced IT
      • Managed Security
      • Managed NOC
      • Arraya Adaptive Management for Microsoft Technologies
      • ADEPT: Arraya's White Label Program
    • Advisory Services
      • Assessments
      • Strategy
      • vCTO
      • vCISO
      • Enterprise Architecture
    • Staffing
      • Infrastructure Engineering
      • Security & Compliance
      • Application & Software
    • Professional Services
      • Project Management 
      • Systems Integration 
      • Mergers & Acquisitions
      • Knowledge & Skills Transfer 
  • Industries
    • Education
    • Finance
    • Healthcare
    • Legal
    • Manufacturing
    • Software and Services
  • Insights
    • News
    • Blog
    • Events
    • Videos
    • Case studies
  • Careers
  • CSP Login
search icon
Contact Us

3 Questions Every Organization Should Ask Their Cloud Provider (and Themselves)

3 Questions Every Organization Should Ask Their Cloud Provider (and Themselves)

An IT nightmare scenario came to life last week after a fire tore through a data center complex in Strasbourg, France operated by European cloud giant OVH. All told, the disaster took more than 3.5 million websites offline, including those of banks, government agencies, and beyond. Luckily, no one was injured in the blaze, which destroyed one of four data centers housed at the site, damaging one other. However, at least one organization reported complete regional data loss, tweeting seven words bound to send chills down the spine of any IT pro: “Data will be unable to be restored.”

Those words were typed by Facepunch Studios, developer of an online survival game. The company slowly got back online during the latter half of last week, but acknowledged game progress had to be reset for some users due to the destruction of its OVH servers. Other organizations, like Algeria’s Trust Bank, saw their website outages drag on as they waited for power and normalcy (or some version of it) to return to the campus’ remaining data centers. 

In the wake of this disaster, here are three questions every organizations should be asking their cloud providers (and themselves):

  • “What physical security safeguards do you have in place?” A detailed accounting of a site’s safety mechanisms likely won’t be forthcoming. Yet, it’s good to know at least at a high level what a provider is doing in terms of fire suppression, access restrictions, etc. For its part, OVH does apparently have security personnel always on site, something that could potentially have sped up emergency response times. Meanwhile, it never hurts to turn that investigative eye inside, reviewing your in-house physical security systems and procedures. This will take on added significance as organizations begin bringing more teams back on site.  
  • “Where specifically is my data going to live?” Diversity is always a good thing and regional diversity when it comes to the cloud is certainly no exception. What took place at OVH’s Strasbourg site is a good example of the risks faced by those who put too many eggs in one regional cloud basket. Instead, your organization would likely be better served duplicating data across multiple cloud regions. Cross region resiliency ensures that, in the event of an outage, you wouldn’t end up in a scenario where your site goes offline for hours on end or user data must be reset.    
  • “What’s your disaster recovery plan? Is it up to snuff? How do I know?” This one is cheating a little bit since it’s three questions rolled into one, but they are all connected. Wherever data resides, all organizations (and their cloud providers) need a disaster recovery plan. In the event of a worst case scenario, be it cyber or physical, you need to know that you will be able to get your operations back to the status quo quickly and with no data loss. Further, it’s not just enough to have a plan in place. It must be routinely tested to ensure it performs as expected and that team members know how to execute it. These are questions you’ll want to have answered regardless of where your data calls home.

Next Steps: Prepare your organization for a ‘worst case scenario’     

Accidents are going to happen. While it’s impossible to fully eradicate risk, organizations can take steps to lessen the impact of such events. Arraya can work with you to protect your resources onsite, in the cloud and everywhere in between. Our team can help you audit the security and availability of your current data center and/or cloud environment and recommend the tools and tactics you need to close any gaps.

Arraya’s team can help you design and walk through a fully customizable worst-case scenario. Our Incident Response Readiness Discovery Session will stress test the response mechanisms you have in place to ensure your plan is fully ready and optimized for real world threats.

Visit https://www.arrayasolutions.com//contact-us/ to connect with our team now.

Comment on this and all of our posts on: LinkedIn, Twitter, and Facebook.

Follow us to stay up to date on our industry insights and unique IT learning opportunities.

Arraya Insights
Back to Top
Arraya Solutions logo

We combine technological expertise and personal service to educate and empower our customers to solve their individual IT challenges.

518 Township Line Road
Suite 250, Blue Bell, PA 19422

p: (866) 229-6234     f: (610) 684-8655
e: info@arrayasolutions.com

  • Careers
  • Privacy Policy
  • Contact Us

© 2025 Arraya Solutions. All rights reserved.

Facebook Twitter YouTube LinkedIn
Manage Cookie Consent
We use cookies to enhance your experience. By selecting “Accept,” you agree to our cookie policy.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
Manage options Manage services Manage {vendor_count} vendors Read more about these purposes
View preferences
{title} {title} {title}