Achieving DevOps maturity, Kubernetes mastery, and lifecycle security
The Challenge
Uphold endeavoured to further strengthen its resilient cloud infrastructure by leveraging open-source and cloud-native tools.
The Approach
YLD has been working closely with Uphold for over 18 months and counting, helping harden their resilient cloud infrastructure leveraging open source and cloud-native tools. Through our partnership, Uphold improved their Kubernetes cluster on EKS, making it much easier for developers to interact with their applications. We've also helped Uphold take a more platform-oriented approach, materially improving engineering collaboration across different teams and functions.
Swift, Efficient Delivery and Optimised Infrastructure
Working together, Uphold and YLD were able to improve automation around deployment processes, increasing efficiency and reducing the risk of human error.
We assisted Uphold in fragmenting their environments and network to more easily isolate issues that could arise. Doing so facilitated more transparent alerting and monitoring on the relevant network stacks with minimal adverse effects on production. Such isolation also helped streamline communication and improved the speed and ease of code deployment to production.
Safety and Security & Disaster Recovery
YLD assisted with the following:
- Restructuring the cloud architecture to better implement various internal security factors
- Implementing a better model of transit gateway usage
- Auditing the platform, achieving fully PCI-compliant status.
- Improving the secrets' management process
The Deliverables
YLD and Uphold enhanced the digital trading platform’s security through targeted measures. Here are some of the ways we’ve accomplished this:
- Restructured the cloud architecture to implement security factors in maintaining the application lifecycle. Implementing this allows a more effortless look at the cost by environment and enforces standards.
- Planned and implemented a new model of network based on transit gateways across the destination accounts.
- Equipped the platform with complex and robust secrets management to protect sensitive personal data and information on the database.
- Restructured and designed a purely cloud-based network topology.
- YLD assisted in adopting DevOps maturity by working with executives to increase their resilience to any security threat significantly. The platform improved its customer experience, instilling enterprise-level support for AWS. In the long run, this saves the client from painfully high costs in case there are any breaches in the platform to compromise the integrity of the platform.
Closing the Engagement
Through YLD’s efforts, the platform has improved its customer experience, the cost efficacy of its AWS services, and improved monitoring and alerting around critical infrastructure.