Security Notice

Communication security and representative verification.

To help protect partners from phishing, spoofing, and social engineering, Cloud System Manager follows a zero-trust communication protocol for sensitive technical and corporate communications.

Zero-Trust Communication Protocol

Unexpected requests must be verified before action is taken.

Cloud System Manager personnel will not ask you to change system settings, approve access, share credentials, discuss sensitive operations, or disclose protected information through an unauthenticated communication path.

Any unexpected phone call, video conference, email exchange, or message involving sensitive operations should be verified through your established secure client channel before you proceed.

  • Do not rely on caller ID, email display names, or message branding as proof of identity.
  • Do not share passwords, MFA codes, recovery codes, private keys, or administrative credentials.
  • Validate sensitive requests through your authorized client channel before taking action.
Client mandate

Representative verification process.

Use this guidance whenever a person claims to represent Cloud System Manager and requests access, action, or discussion involving sensitive systems or operations.

Outbound verification required

For unexpected sensitive communications, our representative must be able to provide a valid verification method before requesting operational changes, privileged access, or confidential discussion.

How verification works

During an unexpected call, meeting, or email exchange, a Cloud System Manager representative may provide a temporary verification token, prearranged code, or other approved validation method.

How to validate

Use your secure Client Portal, if provisioned, or your established primary account channel to verify the representative before taking action. Do not use unauthenticated public communication paths for sensitive requests.

Important

If verification cannot be completed, stop the interaction.

If an individual claiming to be from Cloud System Manager contacts you and cannot or will not provide a valid verification method, end the communication and report the incident through your established primary account channel.

Cloud System Manager does not require clients or partners to rely on unauthenticated public contact paths for sensitive technical requests.

Employee verification

Employment verification is handled through a separate authenticated process.

Employment verification requests require the official verification phone number and access code provided directly by the employee or former employee.

This process is separate from client representative verification and is designed to protect employee privacy.