<h2 style="margin-top: 0px; margin-bottom: 10px;">What is included in Kaspersky Hybrid Cloud Security Server Base?</h2>
<p style="margin-top: 0px; margin-bottom: 0px;"><strong>Server workload protection</strong> – File, process and memory protection for physical and virtual servers.<br /> <strong>Kaspersky Security Center</strong> – Central console manages policies, tasks and reports for every agent.<br /> <strong>Public cloud API</strong> – Inventories AWS, Azure and Google Cloud instances automatically.<br /> <strong>Anti-Cryptor shared folders</strong> – Blocks ransomware encrypting file shares from an infected client.<br /> <strong>Light agent virtualisation</strong> – Offloads scanning to one security virtual machine per host.<br /> <strong>Important</strong> – No EDR, patch management, file integrity monitoring or SIEM connector.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What are the main benefits of Kaspersky Hybrid Cloud Security Server Base?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Kaspersky Hybrid Cloud Security Server Base is the Standard tier of Kaspersky's workload protection product, licensed per server and managed centrally from Kaspersky Security Center. The light-agent virtualisation protection formerly sold as Kaspersky Security for Virtualization is part of this licence, which is why buyers searching for that older name arrive here.<br /><br /> <strong>Licensing object</strong> – One server licence covers physical and virtual server workloads.<br /> <strong>Auto-scaling policies</strong> – Auto-scaling policies protect newly created machines without manual steps.<br /> <strong>Lower host load</strong> – Shared scan cache reduces duplicate scanning across guests.<br /> <strong>Endpoint activation included</strong> – Server licences also activate Kaspersky Endpoint Security for Business.<br /> <strong>Single reporting point</strong> – One console produces incident reports across cloud and datacentre.<br /> <strong>Upgrade path</strong> – Standard licences can be upgraded to the Enterprise tier.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="windows-defender-not-enough"><strong>Best antivirus? Why Windows Defender alone is not enough</strong><br />Explains where built-in operating system protection stops and where a managed security product takes over.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which company size is Kaspersky Hybrid Cloud Security Server Base suitable for?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The deciding factor is not headcount but server count and how mixed the estate is. A company running three physical servers gains little from a central console; a company running forty virtual machines across a hypervisor and a public cloud account gains a lot. Large organisations usually need the Enterprise tier instead, because auditors and SOC teams ask for file integrity monitoring and log forwarding that the Standard tier does not have.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Requirement</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Small business</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Medium-sized company</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Large company</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Reporting obligation Switzerland</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">NIS 2 in the European Union</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">By sector</td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Security questionnaire from large customers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Increasing</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Mixed physical and virtual servers</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">This product fits</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Rarely</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;">Enterprise tier better</td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Hybrid Cloud Security Server Base meet the requirements of Swiss cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The Swiss reporting obligation applies to operators of critical infrastructure, not to every company: since 1 April 2025 the revised Information Security Act (ISG) requires them to report a significant cyberattack to the Federal Office for Cybersecurity (BACS) within 24 hours of discovery, with 14 days to complete the report. This product supports that deadline in one specific way: the console holds detections from every protected server, so whoever files the report can state when the attack was detected and which systems were affected without walking machine to machine. What it does not deliver at the Standard tier is evidence of change: there is no file integrity monitoring and no log inspection, so proof that a configuration file or binary was altered on a server has to come from elsewhere. There is also no SIEM connector at this tier, so detections cannot be forwarded automatically into a central log platform for the 14-day follow-up. The organisational half is entirely outside the product: who reports, through which escalation path, and who signs off is something the company defines. This text is not legal advice; whether your organisation falls under the reporting obligation should be confirmed with your own legal counsel.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Hybrid Cloud Security Server Base meet the requirements of European cybersecurity legislation?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No product makes a company compliant with the NIS 2 Directive, because the directive addresses the organisation and its management, not the software it buys. NIS 2 requires entities in scope to have measures across defined categories: risk analysis and information system security policies, incident handling, business continuity and backup management, supply chain security, security in acquisition and development, vulnerability handling and disclosure, cyber hygiene and training, cryptography, access control and asset management, and multi-factor authentication. This product contributes to two of them: incident handling, through detection and blocking of malware, exploits and network attacks on server workloads with a central record of what was found, and access control on the server itself, through device control and web control. It contributes nothing to business continuity and backup, cryptography, multi-factor authentication, supply chain security or staff training. Vulnerability handling is also outside this tier, because vulnerability assessment and patch management exist only in the Enterprise tier of the same family.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What should you know about official assessments of Kaspersky?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Switzerland has issued no warning. The Federal Office for Cybersecurity (BACS) does not publish product warnings and has stated that no misuse of Kaspersky software has been reported in Switzerland, although Kaspersky software is no longer in use in the federal administration. Germany is different: the Federal Office for Information Security (BSI) warned against the use of Kaspersky antivirus software on 15 March 2022, German courts upheld the warning in interim proceedings the same year, and the BSI confirmed during 2026 that it stands, now issued under Section 13 of the German BSI Act. In the United States, the Bureau of Industry and Security prohibited new sales of Kaspersky products from 20 July 2024 and updates ceased at the end of September 2024. Kaspersky rejects the assessments as politically motivated rather than technical, points to the processing of European customer data in its Zurich data centres and transparency centre, has asked the BSI to withdraw the warning and has reserved the right to take legal action. Independent testing is a separate matter and has continued: Kaspersky's business endpoint products were tested and certified by AV-TEST and by AV-Comparatives through 2026. Practically, this affects three groups of buyers: anyone bidding for public sector contracts, anyone supplying German customers who mirror the BSI position in their own procurement rules, and anyone whose customers ask about vendor country of origin in a supply chain questionnaire. For a Swiss company with none of those constraints, this is a documented risk decision rather than a prohibition.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="norton-vs-kaspersky-2025"><strong>Norton vs. Kaspersky – Which antivirus program offers the best protection in 2025?</strong><br />Compares the detection performance of both vendors for readers weighing a change of supplier.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does Kaspersky Hybrid Cloud Security Server Base help with security questionnaires from large customers?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Partly, and it is worth knowing in advance which lines you can tick. It answers: malware and ransomware protection on servers, centrally enforced by policy rather than configured per machine; host firewall and intrusion prevention; device control; web control; and a console that produces protection-status and detection reports covering the whole estate, which is what auditors usually mean by evidence. It does not answer: patch and vulnerability status, file integrity monitoring, forwarding of security events to a SIEM, detection and response with root-cause analysis, backup and recovery, encryption and key management, multi-factor authentication, or mobile device coverage. Where several of those are blocking a deal, the Enterprise tier of the same family closes four of them at once — patch management, file integrity monitoring, log inspection and SIEM connectors — under the same console and the same agent, which is normally cheaper and far less work than bolting on a second vendor with a second agent to maintain. Backup, encryption and multi-factor authentication sit outside this product family entirely and need separate products whichever tier you choose.</p>
<p style="margin-top: 15px; margin-bottom: 15px;"><a href="#" target="_blank" data-ke-doc="data-loss-backups-avoid-outages"><strong>Data loss is expensive: How backups help you avoid outages</strong><br />Covers the backup and recovery side that server protection does not address, including outage cost.</a></p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">What is the difference between Hybrid Cloud Security Standard and Hybrid Cloud Security Enterprise?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">The decisive difference is evidence, not detection. Both tiers use the same protection engine and stop the same threats; Enterprise adds the components that prove what happened and what state a server is in — file integrity monitoring, log inspection, and application control for server operating systems in default-deny scenarios. Enterprise also adds vulnerability assessment with patch management and SIEM connectors, which is why organisations with an audit obligation or a SOC generally start there. Server Base is the right choice when the requirement is protection and central administration; Enterprise is the right choice when someone external will ask for proof.</p>
<table style="width: 100%; border-collapse: collapse; background-color: #efefef; margin-top: 15px; margin-bottom: 15px; font-size: 14px; line-height: 1.35;">
<tbody>
<tr><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: left; font-weight: bold; background-color: #dedede;">Component</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Server Base (Standard)</th><th style="border: 1px solid #ffffff; padding: 9px 8px; text-align: center; font-weight: bold; background-color: #dedede;">Enterprise, Server</th></tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Cloud API for AWS, Azure, Google Cloud</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Anti-Cryptor for shared folders</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Application control for server OS</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">File integrity monitoring</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Log inspection</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">Vulnerability assessment and patch management</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
<tr>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: left; font-weight: bold; vertical-align: middle;">SIEM connectors</td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #d9534f; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✕</span></td>
<td style="border: 1px solid #ffffff; padding: 8px; text-align: center; vertical-align: middle;"><span style="color: #32a852; font-size: 24px; font-weight: 800; line-height: 1; display: inline-block; transform: translateY(1px);">✓</span></td>
</tr>
</tbody>
</table>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Which limitations should you know before buying?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">There is a hard regional limitation: Kaspersky products may not be sold in the United States, where the Bureau of Industry and Security prohibited new sales from 20 July 2024, so a Swiss or European group cannot extend this rollout to a US subsidiary and will need a second vendor there. On the platform side, the agentless variant of Kaspersky Security for Virtualization reached the end of technical support on 31 July 2026; new licences ship with the light agent only, existing installations receive database updates until 1 February 2027, and no support of any kind is provided from 2 February 2027, so a VMware environment still running agentless needs a migration plan rather than a renewal. The Server licensing object covers physical and virtual servers only, which means virtual desktops require Desktop licences and hypervisor-level coverage requires the separate CPU model. The two follow-up purchases that catch buyers out most often are the Enterprise tier, once an auditor asks for patch status, file integrity or log forwarding, and an EDR or MDR add-on, because no detection and response component is included at this tier at all.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Frequently asked questions about Kaspersky Hybrid Cloud Security Server Base</h3>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Does a Server licence also cover virtual desktops?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. The Server object covers physical servers and virtual servers. Virtual desktops and VDI are covered by the Desktop object, and CPU licensing is the alternative model where you control the hypervisor yourself.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Can this licence activate Kaspersky Endpoint Security for Business?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">Yes. Server licences allow activation of Kaspersky Endpoint Security for Business applications, which is what makes a staged migration from physical machines to virtual workloads workable without running two parallel licence types during the transition.</p>
<h3 style="margin-top: 30px; margin-bottom: 10px;">Is the management console a separate product?</h3>
<p style="margin-top: 0px; margin-bottom: 0px;">No. Kaspersky Security Center is part of the product. You install it on your own Windows-based or Linux-based server, or use the Cloud Console instead if you prefer not to run the administration server yourself.</p>
<div class="ke-block mceNonEditable" data-ke-block="blogteaser" data-topics="sec-server,sec-cloud,sec-console" data-audience="b2b" data-count="3"> </div>