DISX Secure Collaboration

DISX Secure Collaboration Deployment and Operations Guide


Deployment, Onboarding and Operational Management

DISX Secure Collaboration is a managed secure collaboration service designed for organisations that need to work with sensitive information across internal teams, suppliers and government customers. The precise combination of technology, endpoints, controls and managed services depends on the deployment profile selected and the customer’s agreed scope.

This guide explains how long deployment typically takes, what happens during onboarding, whether existing devices can be used, how external suppliers are connected, who manages the service after go-live and how security and compliance are maintained over time.

What is DISX?

DISX is a managed secure collaboration service. Depending on the deployment model, it can bring together a secure Microsoft 365 environment, verified user identities, managed or virtual endpoints, access controls, protective monitoring, operational maintenance, security assurance and user support. This operating model matters when comparing DISX with products that provide access to a collaboration application alone. The useful comparison is the full scope of work required to get people operating securely and to keep the environment secure afterwards.

Why can DISX take longer to deploy than a standard cloud collaboration platform?

A standard SaaS platform may be provisioned quickly because the primary task is enabling access to an existing service. A DISX deployment can include customer-specific configuration, security and quality checks, identity preparation, approved collaboration arrangements, the build of hardened endpoints and security clearance verification.

Some elements are deliberately reviewed rather than left to a completely automated deployment pattern. The result is an environment prepared for operational use, rather than a tenant that still requires the customer to design and organise the surrounding security and service-management arrangements.

What is included beyond Microsoft 365?

The value of DISX sits in the work around the collaboration technology. The managed service includes operational maintenance, patching, vulnerability management, security assurance coordination, security monitoring, service management, incident handling, access administration and connectivity components: endpoints, internet gateways and access to MOD services such as MCN. These activities are delivered by appropriately security cleared personnel.

This is also why the cost should not be compared directly with an ordinary Microsoft 365 subscription or a standard managed IT package. The customer is paying for the operational controls and specialist people required to manage a sensitive working environment.

How long does a typical DISX deployment take?

The indicative implementation time depends on the deployment profile selected. DISX Air and DISX Lite are typically deployed in around two to three weeks. A DISX Pro deployment is typically around eight weeks.

These timings can vary according to the customer’s requirements, the number and type of endpoints, third-party applications, integration needs, the availability of prerequisite information and delivery demand at the time.

What happens from contract signature to first login?

The onboarding journey begins with a prerequisite pack for the customer’s nominated point of contact. This captures the information needed to prepare the service, including in-scope users, vetting or clearance details, required applications, external collaborators and access to services such as r.mil.uk email or MOD core network services where included in scope and subject to the relevant approvals.

The DISX team then builds and configures the environment behind the scenes. For a larger DISX Pro deployment, this can account for several weeks of the implementation period. As go-live approaches, the focus moves to user configuration, identity checks, training and communications. Training can be provided through a webinar, written guides or another agreed approach.

On the agreed go-live date, users receive the credentials and instructions needed to access the service.

What does Day 1 look like?

Go-live is the point at which the in-scope users become operational. They can authenticate to the service, use the agreed functionality, collaborate with approved organisations and process information appropriate to the environment. There is no separate post-deployment waiting period before the service becomes usable.

This distinction is important when evaluating time to value. The deployment period includes the work needed to make the environment ready; the team is expected to be able to work when that period ends.

What does the customer need to provide?

The customer needs to identify the users and organisations that will access the service, confirm relevant clearances or vetting, specify required applications and services, provide collaboration details and nominate operational and security contacts.

Accurate and timely information makes the deployment easier to plan and reduces avoidable delays. Bespoke applications may also require licences, installation media or input from third-party suppliers.

What usually delays deployment?

The most common delays arise when prerequisite information, licences, application media, user details or clearance information are not available when needed. Bespoke DISX Pro environments can also take longer where additional applications or integrations must be designed and introduced.

Onboarding should begin with a clear owner on the customer side and a complete view of users, devices, applications and collaborating organisations.

Can onboarding be phased?

Yes. A customer can choose a single go-live or bring users on by project, programme or business unit. DISX has supported both small phased onboarding and go-lives involving hundreds of users in one day.

The preferred approach usually depends on internal readiness, training, device distribution and the urgency of the customer’s programme.

How are external suppliers brought into a new DISX environment?

External organisations can be identified during the initial onboarding process. When the required domains, organisations and individuals are known in advance, the DISX team can prepare the collaboration arrangement as part of the deployment so it is available from day one.

This allows the service to support the real structure of defence and regulated programmes, where work often crosses organisational boundaries.

Can an external organisation be added after go-live?

Yes. Post-go-live collaboration is handled through a defined service request in the customer portal. The DISX service desk works with the customer security assurance function to obtain evidence that the external environment is appropriate to connect to the DISX environment.

These requests can typically be completed within five working days, provided the required evidence and information are available.

Can suppliers join without replacing their existing IT?

In many cases, yes. A supplier can use an existing device to access a virtual DISX endpoint through the Windows App or a browser. The suitability of that model depends on the information being handled, the customer’s assurance obligations and the scope of any Cyber Essentials, Cyber Essentials Plus or DCC requirements.

Where the supplier’s existing endpoint cannot meet the required boundary or control expectations, a managed physical endpoint may be the more appropriate route.

Can customers use their existing devices?

Yes. The virtual endpoint model allows an existing physical device to act as the access device, with the user connecting to the DISX service through the Windows App or a supported browser.

This can reduce the logistical work involved in issuing hardware, particularly when new users need to be added after the main deployment. It does not remove the need to assess the security and compliance implications of the device used to access the service.

When is a managed physical endpoint required?

The endpoint decision depends on the operating model and assurance scope. A managed physical endpoint may be needed when the organisation cannot apply the required controls to its existing corporate device, when the physical device must form part of a Cyber Essentials or Cyber Essentials Plus boundary, or when the customer’s DCC and contractual requirements make a dedicated managed device the clearer option.

For the purpose of accessing and processing information in DISX, physical and virtual endpoint models can both be appropriate. The correct choice is driven by the wider control boundary and user requirement.

What happens if a DISX-managed device is lost or stolen?

A lost or stolen device is treated as a security incident. The relevant incident-response process is invoked and the DISX team works with the customer’s security contact to manage the risk, protect the service and complete the required investigation and reporting.

What happens to a device when a user leaves?

A DISX device is managed as an asset within the secure service. When a user leaves, it can be rebuilt for another authorised user, securely wiped and returned to the customer’s corporate environment, or sanitised for another approved form of reuse or disposal.

The account and access-removal process is handled separately so that the departing user no longer has access to the service or its information.

How are user identities verified?

Before first access, the user completes an identity-verification process. The customer provides the user’s details and confirms the relevant vetting position. A verification request is then sent to the user through a registered mobile number, and the user follows the required steps to prove that they are the authorised person.

Access is enabled only after the identity check has been completed successfully.

How quickly can access be revoked?

Access can be revoked immediately once an authorised request reaches the service desk. This supports urgent leaver, role-change and security-incident scenarios.

The customer remains responsible for notifying Logiq when someone joins, changes role or leaves. Logiq cannot act on an employment or project change that has not been communicated.

How are permissions managed?

Permission management is shared between Logiq and the customer. The service desk can process approved requests for access to Microsoft Teams, SharePoint areas, folders and other information stores. Approval is obtained from the relevant owner before access is granted.

Customers can also be enabled to manage access within their own Teams and SharePoint environments. In that model, the customer’s business or information owners must keep membership current and remove access when people move between projects or no longer need the information.

Who owns the information-management decisions?

The customer owns its information and determines who should be able to access it. DISX provides the managed controls and administration needed to enforce those decisions, while the customer remains accountable for data ownership, classification, need-to-know decisions and the timely notification of joiners, movers and leavers.

Who manages the environment day to day?

DISX is managed by appropriately vetted and cleared Logiq personnel. The service includes administrators and support engineers, an operational maintenance function covering patching and vulnerability management, a security assurance coordination function and 24/7 security operations monitoring.

The customer also has access to service delivery and customer-success functions so that operational issues, service performance and evolving requirements can be addressed over time.

What responsibilities remain with the customer?

The customer retains responsibility for its information, user population and contractual obligations. This includes nominating service and security contacts, notifying Logiq about joiners, movers and leavers, managing information ownership and access decisions, and making sure security requirements from the contracting authority are understood and flowed through its supply chain.

Logiq supports these responsibilities with service processes and reporting, including information that can help identify inactive users. The relationship works best as a shared operating model rather than a complete transfer of accountability.

How does DISX reduce operational risk?

The customer does not need to assemble every component of the operating model independently. Identity, endpoint options, access administration, security monitoring, maintenance, vulnerability management, assurance and support are brought together within one managed service.

This gives the customer a clearer line of responsibility for operating the secure environment and helps provide evidence that the controls are being maintained, rather than relying on a platform configuration that may become outdated after deployment.

How are support incidents handled?

DISX operates within Logiq’s ISO 20000-1 certified service-management system. Users can raise an issue by phone, email or the web portal. The service desk aims to resolve the issue at first contact wherever possible.

Authorised support engineers can investigate and resolve many issues directly. Where specialist input is required, the incident is escalated to the team responsible for the relevant technology or service component. That team carries out deeper investigation, root-cause analysis and resolution within the applicable service levels.

How is compliance maintained over time?

The security posture is reviewed on an ongoing basis, rather than treated as a one-off deployment activity. Logiq evaluates relevant security notices, MOD and industry guidance, changes in customer requirements and the ongoing performance of the service.

The DISX roadmap also follows changes in Microsoft technology. New capabilities and platform changes are reviewed to determine how they should be designed into the service, whether controls need to change and how security can be improved without creating unnecessary operational friction.

This combines formal governance, risk and compliance activity with an evergreen improvement programme.

How easily can DISX scale after go-live?

Adding individual users is a routine service request. New starter requests can typically be completed within five working days, including the user account and a laptop build where a physical endpoint is part of the service.

Larger expansions can be delivered as a planned bulk activity. DISX currently supports customers ranging from small, single-digit user groups to environments with several hundred users. The underlying Microsoft platform can support much larger populations.

Commercial arrangements can be structured with agreed headroom so that ordering activity does not become the main constraint when a customer needs to add people quickly.

Can DISX integrate with existing customer infrastructure?

DISX is often kept separate from the existing corporate environment by design, particularly where that environment is not approved or suitable for the information being processed. Integration is still possible where there is a valid operational need. Logiq has connected DISX cloud services with existing on-premises environments and specialist operational systems. These integrations are assessed, designed and assured case by case because every legacy and operational environment is different.

What types of customer use DISX?

DISX can support small specialist teams as well as large organisations. A growing use case involves complex project and programme environments, including construction and infrastructure organisations that need large user populations, collaboration across company boundaries and specialist design applications running on high-specification endpoints.

The common factor is a need to collaborate on sensitive work without asking the customer to build and operate the complete secure environment themselves.

What makes DISX secure?

A useful answer needs to go beyond the word ‘secure’. The service combines verified identities, controlled access, managed endpoint options, vulnerability and patch management, protective monitoring, incident management, security assurance and ongoing review of the platform’s control baseline.

Does buying DISX automatically make an organisation compliant or DCC certified?

Organisations are responsible for the ownership of their certification, contractual scope and security obligations. DISX can underpin a substantial part of the technical and operational control environment, but certification also depends on the customer’s wider people, processes, governance and supply-chain arrangements.

Logiq’s cyber advisory capability can help customers understand scope and prepare for Cyber Essentials, Cyber Essentials Plus or DCC, working alongside the appropriate certification body where required. In partnership with customers, we can support the entire journey.

How should buyers compare DISX with a simpler collaboration service?

Buyers should compare the full operating model. Useful questions include: Who verifies users? Who manages the endpoint? Who monitors the environment? Who patches and manages vulnerabilities? Who responds to incidents? Who maintains the security posture when technology and guidance change? What evidence can the supplier provide? Can I email r.mil.uk and access MCN resources? Will email be secured? Can we use AI assistants securely?

A platform that can be switched on quickly may still leave those responsibilities with the customer. DISX is designed for organisations that want the collaboration capability and the surrounding managed security service.

Still have questions?

Can’t find what you’re looking for? Get in touch!