---
title: "Dedicated Hardware: Single Tenant Offline Storage Drives"
description: "Every Firevault instance runs on dedicated hardware. Named drives are allocated to one verified owner, never shared, never virtualised and never pooled with…"
lang: en-GB
json-ld: |
  [
    {
      "@context": "https://schema.org",
      "@type": "WebPage",
      "@id": "https://fire-vault.com/offline-secure-storage/dedicated-hardware#webpage",
      "url": "https://fire-vault.com/offline-secure-storage/dedicated-hardware",
      "name": "Dedicated Hardware: Single Tenant Offline Storage Drives",
      "description": "Every Firevault instance runs on dedicated hardware. Named drives are allocated to one verified owner, never shared, never virtualised and never pooled with…",
      "isPartOf": {
        "@id": "https://fire-vault.com/#website"
      },
      "about": {
        "@id": "https://fire-vault.com/#organization"
      },
      "primaryImageOfPage": {
        "@type": "ImageObject",
        "url": "https://fire-vault.com/images/og/og-base-platform.jpg"
      },
      "inLanguage": "en-GB",
      "breadcrumb": {
        "@id": "https://fire-vault.com/offline-secure-storage/dedicated-hardware#breadcrumb"
      }
    },
    {
      "@context": "https://schema.org",
      "@type": "BreadcrumbList",
      "@id": "https://fire-vault.com/offline-secure-storage/dedicated-hardware#breadcrumb",
      "itemListElement": [
        {
          "@type": "ListItem",
          "position": 1,
          "name": "Home",
          "item": "https://fire-vault.com"
        },
        {
          "@type": "ListItem",
          "position": 2,
          "name": "Offline Secure Storage",
          "item": "https://fire-vault.com/offline-secure-storage"
        },
        {
          "@type": "ListItem",
          "position": 3,
          "name": "Dedicated Hardware: Single Tenant Offline Storage Drives",
          "item": "https://fire-vault.com/offline-secure-storage/dedicated-hardware"
        }
      ]
    },
    {
      "@context": "https://schema.org",
      "@type": "FAQPage",
      "mainEntity": [
        {
          "@type": "Question",
          "name": "Is my Vault a folder inside a shared platform?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "No. A Vault is an allocation of physical drives. It is not a quota, a bucket or a partition inside capacity shared with other customers."
          }
        },
        {
          "@type": "Question",
          "name": "Do I own the drives?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "With Vault and Storage in a Firevault bunker the hardware is allocated exclusively to you and Firevault holds and maintains it. Enterprise programmes can purchase equipment in your organisation's name."
          }
        },
        {
          "@type": "Question",
          "name": "What happens if a drive fails?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "Every instance is RAID 1 mirrored and backed by a geographically separate Vault Spare copy, so a failure is a hardware replacement rather than a recovery event."
          }
        },
        {
          "@type": "Question",
          "name": "Can Firevault staff read my data?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "No. Access requires your credentials and multi-factor authentication, the drives are physically disconnected by default, and there is no administrative backdoor into the data."
          }
        },
        {
          "@type": "Question",
          "name": "Does dedicated hardware mean the drives are always online?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "No, and this is the point. Dedicated hardware describes tenancy. The drives are physically disconnected when a session is closed."
          }
        },
        {
          "@type": "Question",
          "name": "What happens to the hardware at the end of the contract?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "You renew, or the physical hardware is returned or securely destroyed to certificate. Nothing is left stranded inside a platform."
          }
        },
        {
          "@type": "Question",
          "name": "Can I upgrade capacity later?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "Yes. A larger Vault means new allocated drives and a managed migration of your data onto them."
          }
        },
        {
          "@type": "Question",
          "name": "Is this the same for Storage and Enterprise?",
          "acceptedAnswer": {
            "@type": "Answer",
            "text": "The principle is the same, at larger scale. Storage covers 20TB to 300TB and Enterprise starts at 300TB, both scoped with the team."
          }
        }
      ]
    },
    {
      "@context": "https://schema.org",
      "@type": "Organization",
      "@id": "https://fire-vault.com/#organization",
      "name": "Firevault",
      "legalName": "Firevault Limited",
      "url": "https://fire-vault.com",
      "logo": {
        "@type": "ImageObject",
        "url": "https://fire-vault.com/logo.png",
        "width": 200,
        "height": 60
      },
      "foundingDate": "2025-03",
      "description": "Protect what matters with Offline Secure Storage and control what moves with Control by Firevault. Physically disconnected, always reachable by you.",
      "address": {
        "@type": "PostalAddress",
        "addressCountry": "GB",
        "addressLocality": "United Kingdom"
      },
      "contactPoint": [
        {
          "@type": "ContactPoint",
          "contactType": "customer service",
          "email": "hello@fire-vault.com",
          "availableLanguage": "English",
          "areaServed": [
            "GB",
            "EU",
            "US",
            "AE"
          ]
        }
      ],
      "sameAs": [
        "https://www.linkedin.com/company/firevault",
        "https://x.com/firevaultuk"
      ],
      "slogan": "Disconnect to Protect",
      "knowsAbout": [
        "Offline Secure Storage",
        "Physical Air Gap Data Protection",
        "Ransomware Protection",
        "Data Sovereignty",
        "GDPR Compliance",
        "NIS2 Compliance"
      ]
    },
    {
      "@context": "https://schema.org",
      "@type": "WebSite",
      "@id": "https://fire-vault.com/#website",
      "name": "Firevault",
      "alternateName": [
        "Firevault",
        "Firevault UK",
        "Firevault Limited"
      ],
      "url": "https://fire-vault.com",
      "publisher": {
        "@id": "https://fire-vault.com/#organization"
      },
      "inLanguage": "en-GB",
      "description": "Protect what matters with Offline Secure Storage and control what moves with Control by Firevault. Physically disconnected, always reachable by you.",
      "potentialAction": {
        "@type": "SearchAction",
        "target": {
          "@type": "EntryPoint",
          "urlTemplate": "https://fire-vault.com/learn?q={search_term_string}"
        },
        "query-input": "required name=search_term_string"
      }
    }
  ]
---

Recent Breaches 

Breaches 

[2026 PowerSchool 62.4M records ](/learn/breaches)[2026 DISA Global Solutions 3.3M records ](/learn/breaches)[2026 Globe Life 850K records ](/learn/breaches)[2026 Co-operative Group 6.5M records ](/learn/breaches)[2026 Harrods Attempted intrusion ](/learn/breaches)[2026 Legal Aid Agency (Ministry of Justice) 2.1M records ](/learn/breaches)[2026 Adidas UK Customer contact details ](/learn/breaches)[2026 Peter Green Chilled Order and logistics data ](/learn/breaches)[2026 Jaguar Land Rover Production and IT systems disru... ](/learn/breaches)[2026 Collins Aerospace (RTX) Check-in and boarding disruptio... ](/learn/breaches)[2026 PowerSchool 62.4M records ](/learn/breaches)[2026 DISA Global Solutions 3.3M records ](/learn/breaches)[2026 Globe Life 850K records ](/learn/breaches)[2026 Co-operative Group 6.5M records ](/learn/breaches)[2026 Harrods Attempted intrusion ](/learn/breaches)[2026 Legal Aid Agency (Ministry of Justice) 2.1M records ](/learn/breaches)[2026 Adidas UK Customer contact details ](/learn/breaches)[2026 Peter Green Chilled Order and logistics data ](/learn/breaches)[2026 Jaguar Land Rover Production and IT systems disru... ](/learn/breaches)[2026 Collins Aerospace (RTX) Check-in and boarding disruptio... ](/learn/breaches)

[View All →](/learn/breaches)

[![Firevault - offline secure storage, physically disconnected from the internet](/assets/logo-color-DBVl0KCg.png)](/)

Products

Solutions

[Why OSS](/why-oss)

More

Buy your Vault

Overview

Why it mattersHow it worksThe specificationHow it differsFAQ

Offline Secure Storage® (#OSS) 

# Dedicated hardware 

Cloud storage is a share of a pool. Offline Secure Storage® is not. Named, serial-numbered drives are allocated to one verified owner, mirrored for resilience, and no other customer's data is written to them.

-   Single tenant
-   Named drives
-   RAID 1 mirrored
-   No virtualised partitions

[Buy your Vault](/get-started) [See pricing](/pricing)

![A Firevault Offline Secure Storage drive allocated to a single verified owner](/__l5e/assets-v1/a4d3902c-28a5-42f4-bbfb-c12ddaacce1b/hero-square-drive.png)

What dedicated means in practice 

01 

Customer per set of drives

1 Customer per set of drives 

02 

Shared or pooled capacity

0 Shared or pooled capacity 

03 

Mirrored drives in every instance

RAID 1 Mirrored drives in every instance 

04 

Encryption applied at the hardware layer

AES-256 Encryption applied at the hardware layer 

01 Why it matters 

## Shared infrastructure spreads other people's risk onto your data

In a multi-tenant platform your files sit on the same media as strangers, reached by the same control plane and exposed to the same misconfiguration. Dedicated hardware removes the neighbours from the problem.

### No noisy neighbours

Nothing else is written to your drives, so another tenant's breach, deletion or legal seizure cannot touch your data.

### One verified owner

Drives are allocated against a verified identity or company, so there is a single accountable holder rather than an account inside a pool.

### Something auditors can point at

You can name the equipment, the capacity and the location, which is the level of specificity regulators and insurers keep asking for.

02 How it works 

## How your hardware is allocated

Allocation happens once, at the start, and the record stays with your instance for the life of the contract.

01 

### Identity is verified first

Business or personal verification is completed before any equipment is assigned, so the drives have a named holder from the outset.

02 

### Drives are selected and recorded

Specific drives are chosen for your capacity and their serial numbers are recorded against your instance.

03 

### Mirrored and commissioned

The pair is configured as RAID 1 and commissioned in a Firevault bunker, with hardware level AES-256 applied across the set.

04 

### Locked to your instance

Your capacity is only ever your drives. Capacity changes mean new equipment and a migration, not a larger slice of a shared array.

03 The specification 

## What sits behind an Offline Secure Storage® instance

The same hardware principles apply from a 2TB Vault up to an Enterprise programme. Only the scale changes.

### Enterprise-class drives

Storage rated for continuous duty rather than consumer drives repurposed into a rack.

### RAID 1 mirroring

Every instance is a mirrored pair, so a single drive failure does not become a data loss event.

### Vault Spare

A geographically separate spare copy protects against the loss of a site as well as the loss of a drive.

### Hardware level encryption

AES-256 is applied by the hardware, so protection does not depend on an application staying uncompromised.

### Serial-level record

The equipment holding your data is identifiable, which makes retirement and return verifiable rather than assumed.

### Scales without sharing

Storage and Enterprise instances add arrays, not tenants. Above 8TB the design is scoped with the team.

04 How it differs 

## Related, but not the same thing

Dedicated hardware is about tenancy: whose drives these are. The four physical principles answer different questions, and it is worth keeping them apart.

[

### Physical storage

That your data lives on real media in a known place, rather than as an abstraction in a platform.

How storage works ](/how-it-works/resilience-legacy)[

### Physical ownership

Who holds title to the equipment. Vault is allocated to you; Storage and Enterprise hardware can be purchased in your name.

Ownership models ](/enterprise)[

### Physical control

Who can enable the route to the drives, and for how long. That is the session model, not the hardware.

How access works ](/how-it-works/remote-access)[

### Physical security

The bunker itself: perimeter, power, environment and on-site staffing around the racks.

Inside the bunkers ](/bunkers)

05 FAQ 

## Questions

### Is my Vault a folder inside a shared platform?

No. A Vault is an allocation of physical drives. It is not a quota, a bucket or a partition inside capacity shared with other customers.

### Do I own the drives?

With Vault and Storage in a Firevault bunker the hardware is allocated exclusively to you and Firevault holds and maintains it. Enterprise programmes can purchase equipment in your organisation's name.

### What happens if a drive fails?

Every instance is RAID 1 mirrored and backed by a geographically separate Vault Spare copy, so a failure is a hardware replacement rather than a recovery event.

### Can Firevault staff read my data?

No. Access requires your credentials and multi-factor authentication, the drives are physically disconnected by default, and there is no administrative backdoor into the data.

### Does dedicated hardware mean the drives are always online?

No, and this is the point. Dedicated hardware describes tenancy. The drives are physically disconnected when a session is closed.

### What happens to the hardware at the end of the contract?

You renew, or the physical hardware is returned or securely destroyed to certificate. Nothing is left stranded inside a platform.

### Can I upgrade capacity later?

Yes. A larger Vault means new allocated drives and a managed migration of your data onto them.

### Is this the same for Storage and Enterprise?

The principle is the same, at larger scale. Storage covers 20TB to 300TB and Enterprise starts at 300TB, both scoped with the team.

Next step 

## Choose the capacity you need on hardware that is only yours

Vault is available at 2TB, 4TB and 8TB. Above 8TB the design is scoped with the team.

[Buy your Vault](/get-started) [24/7 on-demand access](/offline-secure-storage/on-demand-access)