DevOps & Cloud Architecture for Security Solution – Under NDA
The client focused on building a scalable and flexible infrastructure for a cybersecurity platform. IT Craft’s DevOps specialists helped the client design, deliver, integrate, and maintain 50+ microservices within one ecosystem.
- Team 2 experts
 - Type Cyber security platform
 - Industry Security consulting; IT services
 - Platforms Cloud
 
About the project
IT Craft’s DevOps experts met the client’s need for reliable and extendable cloud-based infrastructure.
The client planned to use the cloud infrastructure while providing cybersecurity services, such as penetration testing, patch management, gateways, data loss prevention, and others.
The client had an extensive product roadmap. He required cloud experts capable of establishing robust architecture and maintaining streamlined delivery processes.
With the help of cloud infrastructure, the client aimed to flexibly meet the high expectations of the growing user base.
Client’s expectations
- Build an efficient infrastructure that would allow for future growth and the ability to add new features and integrations easily
 - Enhance the entire company’s workflow
 - Ensure management of multiple entities within one infrastructure
 - Maintain security standards and compliance as the platform is available worldwide
 - Keep platform infrastructure resilient to emerging cybersecurity threats
 - Meet the limits of implementation and operational budgets
 
Technologies:
                                EKS
                                ArgoCD
                                AWS
                                Lambda
                                DynamoDB
                                SQS
                                MongoDB
                                RMM
                                NATS
                                RabbitMQ
                                Redis
                                Karpenter
                                Prometheus
                                Grafana
                                Loki
                                CloudFlareJenkins
                                Github Actions
                                Terraform
                                Helm
                                API gateway
                                Elasticsearch
                                Kibana
The assigned experts focused on DevOps services & consulting. They went through several consecutive project steps that were required to streamline feature shipments and enhance platform infrastructure, including:
- Designing a scalable and flexible microservices architecture from scratch to meet the client’s requirements for AWS infrastructure
 - Deploying EKS environments for simplified cluster management and scaling
 - Integrating GitHub Actions and Jenkins to streamline CI/CD processes and automate workflows where possible
 - Optimizing application deployment management with ArgoCD-based workflow
 - Using Terraform to align infrastructure across development, testing, and live environments
 - Securing the API from brute-force attacks and unauthorized access by implementing gateways and protecting it with built-in security policies
 - Automating the implementation of security configurations and policies while ensuring consistency at scale
 - Integrating Prometheus, Grafana, and Loki for advanced performance monitoring and logging
 
Results of the collaboration
Our DevOps engineers have helped the client standardize toolsets on the project, integrate them into a unified system, and enhance the entire workflow. These efforts resulted in:
- Fast-paced platform transformation that went unnoticed by end users
 - Resilient and expandable platform infrastructure that is based on cutting-edge technologies
 - Streamlined feature releases under the implemented DevSecOps approach with automated development, testing, and delivery workflows
 - Regulation compliance for the platform infrastructure
 - Decreased maintenance and scaling costs by up to 47% due to optimized consumption of cloud resources
 - Enhanced monitoring and logging system, enabling engineers to detect and respond to incidents immediately
 - Strategically secure infrastructure with a coverage of 99.9%
 - Efficient, 24/7/365 monitoring through a range of implemented and accurately calibrated tools