Skip to content

Keepit Backup & Recovery for Autodesk Forma

Safeguarding Autodesk Forma: Keepit’s Dedicated Backup & Recovery Solution

The AEC Lifeline: For the Architecture, Engineering, and Construction (AEC) sector, Autodesk Forma (formerly Autodesk Construction Cloud) is indispensable. It houses the critical blueprints, cost data, RFIs, issues logs, and transmittals that keep projects on track. Even a momentary loss of data access translates directly to stalled construction sites. Keepit steps in as the industry’s first enterprise SaaS data protection platform to offer independent backup and recovery for Forma, ensuring your operations survive the unexpected.

The Reality of Shared Responsibility

Like the majority of enterprise SaaS providers, Autodesk operates on a shared responsibility model. They guarantee the infrastructure, but you own the data. Relying solely on native capabilities during a platform-wide incident simply won’t keep your projects afloat.
Autodesk’s Responsibility (The Platform) Your Responsibility (The Data)
Securing and operating the core platform Retaining data long-term, beyond active subscription periods
Managing infrastructure resilience and uptime Recovering from mass permission errors or botched integrations
Replicating data across their own storage facilities Maintaining independent, off-site backup copies
Providing basic “Deleted Items” recovery Meeting strict business continuity and disaster recovery (DR) mandates

Why Native Tools Aren’t Enough

Forma is the central nervous system for information you absolutely cannot afford to lose. Version histories map the evolution of drawings, while issue logs track defects straight through to resolution. If this reference material vanishes—due to accidental modification, upstream infrastructure events, or platform outages—work grinds to a halt. Beyond daily operations, this data serves as a vital compliance ledger. For highly regulated construction enterprises, these records are mandatory for audit readiness, regulatory compliance, and fulfilling contractual obligations. Missing data doesn’t just cause delays; it invites legal and financial consequences. While Autodesk Forma does offer a basic trash bin and version history during an active subscription, it lacks essential enterprise features: it cannot perform point-in-time restores, it doesn’t allow for custom retention policies, and it provides no long-term, off-platform archiving. If an incident occurs, you are entirely at the mercy of the provider’s recovery timeline.

The Keepit Advantage: True Independent Protection

Keepit eliminates these vulnerabilities by backing up your project data entirely outside of the SaaS provider’s ecosystem. Deploying Keepit for Autodesk Forma guarantees:
  • Uncompromised Independence: Your backup data resides on Keepit’s proprietary, vendor-neutral cloud. Because it is completely decoupled from Autodesk’s environment, your business continuity is mathematically guaranteed.
  • Set-and-Forget Automation: Enjoy two automated snapshots every single day by default, complete with fully customizable retention policies. Say goodbye to manual, error-prone data exports.
  • Comprehensive Data Coverage: Keepit secures the full spectrum of your workspace, including users, companies, projects, sheets (and their version histories), complex folder structures, file packages, transmittals, and issue logs complete with comments and attachments.
  • Precision Point-in-Time Recovery: Every snapshot acts as a complete, time-indexed replica of your environment, granting you full access to your data even during a severe platform outage.

Unified Defense Across Your SaaS Portfolio

Keepit doesn’t just stop at Autodesk; it provides a fortified last line of defense across your entire SaaS ecosystem. Currently supporting 17 major applications—ranging from project management hubs to source code repositories—Keepit simplifies the complex task of securing enterprise data. For construction firms orchestrating massive, multi-party projects within Autodesk Forma, Keepit effortlessly bridges the gap between Autodesk’s native features and your organization’s rigorous business continuity requirements.

Ready to secure your project data?

Explore the full capabilities of our independent backup solution.

About Keepit
At Keepit, we believe in a digital future where all software is delivered as a service. Keepit’s mission is to protect data in the cloud Keepit is a software company specializing in Cloud-to-Cloud data backup and recovery. Deriving from +20 year experience in building best-in-class data protection and hosting services, Keepit is pioneering the way to secure and protect cloud data at scale.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

Beyond RMM: Why MSPs Need True Layered Security

The RMM Illusion: Why Managed Service Providers Must Evolve Their Security Stack

The Bottom Line

  • A False Sense of Security: RMM platforms are designed for operational hygiene, not comprehensive threat detection.
  • The Attack Surface Has Shifted: Cybercriminals now bypass endpoints entirely, focusing on cloud infrastructure, identities, and email.
  • The Hunter Becomes the Hunted: Due to their massive level of privileged access, RMM tools are now prime targets for supply-chain attacks.
  • The Missing Link: True protection requires a layered approach, augmenting RMMs with EDR, ITDR, and cloud-native security protocols.

The Reality of RMM “Built-In” Security

For most Managed Service Providers (MSPs), Remote Monitoring and Management (RMM) platforms are the beating heart of daily operations. Over time, these platforms have absorbed basic security features: antivirus deployment, patch management, script automation, and baseline policy checks. While incredibly useful, this bundling creates a dangerous illusion that security is “handled.” The hard truth is that these features are rooted in IT operations, not cybersecurity. They excel at ensuring a device is updated and configured correctly. However, they are completely blind to a hijacked Microsoft 365 session, a sophisticated Business Email Compromise (BEC) campaign, or stolen credentials floating on the dark web. RMM security is a hygiene layer, not an active defense mechanism.

Three Reasons RMMs Fall Short Today

1. Blind Spots in the Modern Attack Chain

Today’s threat actors rarely bother breaking into a heavily patched endpoint when they can simply log in. According to Microsoft’s 2025 Digital Defense Report, identity-centric attacks spiked by 32%, with password-based attacks making up a staggering 97% of those incidents. Because RMMs are inherently device-centric, an attacker manipulating email forwarding rules or bypassing MFA in a cloud tenant remains completely invisible to the MSP.

2. Escalating Compliance and Insurance Mandates

The regulatory and insurance landscape has fundamentally shifted. Frameworks like SOC 2 and HIPAA, alongside cyber insurance underwriters, now demand concrete proof of proactive detection and response capabilities. Checking a box for “patch management” is no longer enough. Failure to implement advanced controls can be catastrophic; IBM’s 2025 Cost of a Data Breach Report highlights a $10.22 million average breach cost in the US—a death knell for most SMBs.

3. The Need for Cross-Vector Correlation

RMMs lack the ability to connect the dots. A sophisticated attack might start with a phishing email, pivot to a compromised identity, and end with a malicious payload. Because RMMs only monitor the device, they force security teams to investigate isolated fragments of an attack. True defense requires multi-tenant visibility that correlates events across all environments before the infection spreads.

The RMM Vulnerability Paradox

Ironically, the tool MSPs use to protect clients has become a highly lucrative attack vector. Compromising a single client is a minor win; compromising an MSP’s RMM grants keys to the entire kingdom.
  • The 2026 Verizon DBIR noted a terrifying 240% year-over-year surge in threat actors weaponizing RMM tools, while traditional malware use dropped by 27%.
  • Supply Chain Math: Intruding upon one MSP tool can yield dozens, or hundreds, of downstream victims.
  • Cloaked in Legitimacy: RMM agents are whitelisted and trusted. When hackers hijack them, their malicious activities blend seamlessly into normal administrative traffic, effortlessly bypassing traditional security scans.

Understanding the Structural Flaws

The Security Gap The Root Cause The Real-World Risk
Basic Endpoint Detection Bundled AV relies on outdated signature models, lacking behavioral analysis for fileless attacks. Modern ransomware bypasses these checks without triggering a single alert.
Zero Identity Threat Detection RMMs watch hardware, not human behavior or SaaS logins. Account takeovers and token theft go unnoticed until the damage is done.
Lack of Email Security Email traffic exists outside the RMM’s architectural scope. Phishing and BEC attacks slide right into user inboxes unimpeded.
No Automated Incident Response RMMs can generate alerts but cannot investigate or correlate the attack chain. Alert fatigue sets in, and containment relies entirely on slow, manual intervention.

The Blueprint for Layered Defense

RMMs shouldn’t be discarded—they must be augmented. A robust, modern security posture layers dedicated defenses over the blind spots left by device management tools:
  • Endpoint Detection and Response (EDR): Moves beyond signatures to monitor process behavior and memory in real-time, instantly isolating infected machines.
  • Identity Threat Detection and Response (ITDR): The missing piece of the puzzle. ITDR analyzes login patterns and permission changes in cloud workspaces to catch credential abuse early.
  • API-Driven Email Security: Intercepts phishing and impersonation attempts inside the mail environment before the user ever sees them.
  • Cloud Data & Footprint Monitoring: Scans for misconfigured SaaS apps, exposed files, and leaked credentials circulating on the dark web.

The Guardz Advantage: Unified Security for MSPs

To solve the fragmented tooling problem, Guardz offers a unified, agentic security platform specifically engineered for MSPs. It doesn’t replace your RMM; it completes it.
  • Enterprise-Grade Power: Features natively integrated SentinelOne Singularity EDR, ITDR for M365/Google Workspace, and Check Point-powered email security.
  • Agentic AI Triage: Eliminates alert fatigue by using AI to correlate signals across endpoints, email, and cloud data, escalating only validated threats.
  • Single Pane of Glass: Manage your entire client base from one intuitive, multi-tenant dashboard.
  • 24/7 MDR & Incident Flow: Automatically maps the full attack chain, backed by a 24/7 team of SOC analysts ready to contain threats immediately.
  • Built-In Human Defense: Automated security awareness training and AI-generated phishing simulations keep end-users sharp and accountable.
By adopting a comprehensive layered strategy, MSPs can confidently secure their clients’ identities, inboxes, and cloud data, transforming their security offering from a basic hygiene checklist into an impenetrable fortress.

About Guardz
Guardz is on a mission to create a safer digital world by empowering Managed Service Providers (MSPs). Their goal is to proactively secure and insure Small and Medium Enterprises (SMEs) against ever-evolving threats while simultaneously creating new revenue streams, all on one unified platform.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.

The 2026 Guide to Shadow AI Governance

Navigating Shadow AI Governance: 2026 Buyer’s Guide

Overview: As organizations evaluate shadow AI governance solutions in 2026, understanding the architectural differences between platforms is critical. This guide breaks down the leading options, highlighting how they operate and where each solution excels, so you can make an informed, data-driven decision.

The Market Leaders in 2026

The top contenders in the shadow AI governance space currently include dope.security, Zscaler, Netskope, Palo Alto, and Cisco Umbrella. While every platform is designed to uncover AI usage and enforce organizational policies, their fundamental divergence lies in where the data inspection actually takes place. For instance, dope.security processes data directly on the endpoint (a “fly direct” approach), whereas competitors rely on cloud-based inspection or DNS-level filtering.

The Three Pillars of True AI Governance

To be considered a complete shadow AI governance solution, a platform must successfully execute three core functions:

  • Comprehensive Discovery: It must detect every AI application in use across the environment and accurately differentiate between personal accounts and enterprise-licensed tenants.
  • Granular Access Control: It must possess the ability to permit enterprise logins while simultaneously blocking personal account access on a per-tool basis.
  • Data Protection (DLP): It must actively intercept sensitive information—such as PII, PCI, PHI, and intellectual property—within prompts and file uploads before that data ever reaches the AI model.

Architectural Comparison: How the Top Tools Stack Up

The underlying architecture of an AI governance tool dictates its speed, privacy, and effectiveness. Here is how the major players compare:

PlatformInspection PointAccount-Level Control (Personal vs. Enterprise)
dope.securityOn-Device (Endpoint) – Direct connection, zero backhauling.Yes (via Cloud Application Control)
Zscaler & NetskopeCloud – Traffic is backhauled to vendor data centers.Yes
Palo AltoNetwork Path – Relies largely on network-level inspection.Varies by configuration
Cisco UmbrellaDNS Layer – Sees domains, but blind to prompts/accounts.No (Cannot distinguish between accounts on the same domain)

Key Capabilities Deep-Dive

1. Enforcing Enterprise-Only ChatGPT Access

Organizations often want to block personal ChatGPT usage while allowing their paid corporate instances. dope.security, Zscaler, and Netskope can successfully differentiate between accounts to enforce this rule. Cisco Umbrella falls short here; because its DNS-based approach only registers the top-level domain (which both personal and enterprise ChatGPT share), it cannot distinguish between user accounts. dope.security handles this directly on the device, syncing enforcement policies across the entire fleet in under a minute.

2. Securing Prompts Without Cloud Detours

If data privacy is paramount, you must consider where your AI prompts are being inspected. Traditional Cloud SWGs (Secure Web Gateways) decrypt and analyze your traffic inside their own data centers. dope.security eliminates this detour. Using its Dopamine DLP engine, it classifies prompts and uploads directly on the local device via zero-retention APIs, blocking sensitive data transmission before it ever leaves the endpoint.

3. Beyond the Browser: Securing Desktop Apps and IDEs

Shadow AI isn’t just happening in web browsers. Users leverage native desktop clients (like ChatGPT or Claude Desktop), IDE coding assistants, and API scripts. Browser extensions and DNS tools are blind to much of this activity. Cloud SWGs can manage it, provided their agent successfully steers that specific traffic to their cloud. dope.security natively covers these applications by enforcing policies directly at the operating system’s networking layer, capturing and decrypting traffic for supported apps at the source.

The Verdict: Choosing the Right Platform

When selecting your shadow AI governance tool, ask yourself three critical questions:

  1. Do you want prompts inspected locally on the user’s device, or are you comfortable routing them through a vendor’s cloud?
  2. Is it a strict requirement to allow enterprise AI instances while blocking personal accounts?
  3. How rapidly do you need to deploy, considering the explosive rate at which shadow AI spreads?

Top Overall Recommendation: If your priorities are lightning-fast deployment, strict per-tool account control, and uncompromising data privacy through on-device inspection, dope.security emerges as the premier choice for 2026. By delivering AI discovery, Cloud Application Control, and Dopamine DLP from a single console—without the proxy detour—it offers the most streamlined and secure governance experience.

Experience On-Device AI Governance Firsthand

Take control of your environment today. Uncover every AI application, lock usage to approved enterprise accounts, and halt sensitive data leaks directly at the endpoint.

 

About Dope Security
A comprehensive security solution designed to protect individuals and organizations from various cyber threats and vulnerabilities. With a focus on proactive defense and advanced technologies, Dope Security offers a range of features and services to safeguard sensitive data, systems, and networks.

About Version 2 Limited
Version 2 Digital is one of the most dynamic IT companies in Asia. The company distributes a wide range of IT products across various areas including cyber security, cloud, data protection, end points, infrastructures, system monitoring, storage, networking, business productivity and communication products.

Through an extensive network of channels, point of sales, resellers, and partnership companies, Version 2 offers quality products and services which are highly acclaimed in the market. Its customers cover a wide spectrum which include Global 1000 enterprises, regional listed companies, different vertical industries, public utilities, Government, a vast number of successful SMEs, and consumers in various Asian cities.