SlideShare ist ein Scribd-Unternehmen logo
1 von 27
Downloaden Sie, um offline zu lesen
Hendrix Yapputro
certified IT architect
certified ISO 27000 lead auditor – cloud security
Cloud Computing
Strategy & Architecture
Further Reading
1. National Institute of Standards and Technology Special Publication 800-145.
2. CompTia Cloud www.comptia.org
3. Could Computing Explained: the implementation handbook for enterprise.
4. Architecting the Cloud: Design Decision for Cloud Computing Service Model (SaaS,
PaaS, Iaas)
Cloud Computing
Cloud computing is a model for enabling
ubiquitous, convenient, on-demand network
access to a shared pool of configurable
computing resources (e.g., networks, servers,
storage, applications, and services) that can be
rapidly provisioned and released with minimal
management effort or service provider
interaction.
National Institute of Standards and Technology Special Publication 800-145
Essential Characteristics
On-demand self-service
A consumer can unilaterally provision computing capabilities, such as server time and network storage,
as needed automatically without requiring human interaction with each service provider
Broad network access
Capabilities are available over the network and accessed through standard mechanisms that promote
use by heterogeneous thin or thick client platforms (e.g., mobile phones, tablets, laptops, and
workstations).
Rapid elasticity
Capabilities can be elastically provisioned and released, in some cases automatically, to scale rapidly
outward and inward commensurate with demand. To the consumer, the capabilities available for
provisioning often appear to be unlimited and can be appropriated in any quantity at any time.
1
2
3
National Institute of Standards and Technology Special Publication 800-145
Essential Characteristics
Resource pooling
The provider’s computing resources are pooled to serve multiple consumers using a multi-tenant model,
with different physical and virtual resources dynamically assigned and reassigned according to consumer
demand.
Measured service
Cloud systems automatically control and optimize resource use by leveraging a metering capability at
some level of abstraction appropriate to the type of service (e.g., storage, processing, bandwidth, and
active user accounts).
4
5
National Institute of Standards and Technology Special Publication 800-145
BUSINESS VALUE OF
CLOUD COMPUTING
Business Value of Cloud Computing
Business Driver
What???
Mr. Business
Mr. IT
but, this
is the fact
.
.
.
Business costs have to be efficient for winning business competition. It can be achieved by:
1. Reducing costs for gaining efficiency, and
2. Agility
Cost Leadership
Because of its lower cost, the cost
leader is able to charge a lower
price than its competitors yet make
the same level of profit.
If companies in the industry charge
similar prices for their products, the
cost leader still makes higher profit
than its competitors because of its
lower costs.
And, if rivalry within the industry
increases and companies start to
compete on price, the cost leader
will be able to withstand
competition better than the other
companies because of its lower
costs.
Building competitive advantage through Cost Leadership
A company’s goal in pursuing a cost-leadership strategy is to outperform competitors by doing
everything it can to produce goods/service at a cost lower than theirs.
Agility
Cloud ProviderCustomer Modules
Business need to rapidly develop new products (particularly applications or web-based services) without
being limited by the cost of computing hardware or being stalled by long procurement time
Shorten time to market1
Mobility3
Global access to organizational enterprise resources
is required for organizations with a distributed
workforce.
Rapid internal
development & testing
The ability to provision and de-provision development and testing
environments on demand provides organizations with greater
opportunities to improve their business processes by developing
applications internally or testing off-the-shelf software in their
environment.
2
CompTiaCompTia Cloud Essential
MANAGEMENT OF CLOUD –
READY APPLICATION
Management of Cloud-ready Application
Cloud Ready Application
E N D - T O - E N D M a n a g e m e n t o f C l o u d
IaaS vs PaaS SLA
Monitoring
No of Data Center
PricingType of Instance
Certification
Support
Most providers have a set number of servers that can be
used, with a specific number of CPUs, amount of memory,
and operating system. Others have fully customizable
instances.
There are no standards for PaaS-based applications. Each
provider uses different APIs based on its platform. Choosing
a specific provider might force a lock-in with a technology
that cannot be migrated later to a different provider. Use
IaaS unless you are comfortable with the technology used by
a PaaS provider and you do not foresee a change in the
technology used.
CompTiaCompTia CloudCompTia Cloud Essential
Service Level Agreement
Data Ownership Data Loss
Data Location Contract Renewal
Insurance Contractual Protection
CompTiaCompTia CloudCompTia Cloud Essential
Negotiation of SLA
Availability of
Service
LiabilitiesControl of Data
Choice
of Law
Organizations should raise the issue of
contract negotiation with the vendor and
choose the law based on their territory
coverage
The cloud provider should disclose the
list of data centers used to store the data,
including backups. The SLA between the
vendor and the organization must also
specify how backups are handled.
Organizations should specify the
purpose of contracting with the vendor
so that it is clear that, unless the
service adequately addresses this
purpose, it is pointless to enter into the
contract.
Vendors should have documented management systems, processes, and resources. Organizations should be able
to access the average available time provided by the vendors in the different layers of services offered. And
consequences for not meeting the SLA must be clearly identified.
CompTiaCompTia Cloud Essential
SECURITY
Security
Cloud Security Principal
Confidentiality Integrity
Availability
Confidentiality refers to the
sensitivity of data.
Integrity refers to the
reliability of data.
ISO 27000 series
Availability refers to the accessibility of
data. To be available, data needs to be
protected from disruption of service.
Other Security Reference
CompTia CloudCompTia Cloud Essential
Cloud Security Management
Data Security
Application
Security
Network
Security
Physical Security
Security Policy &
Procedure
CompTia CloudCompTia Cloud Essential
Cloud Security Diagram
Traditional firewall Virtual firewall
In/outbound traffic
Internet
CompTiaCompTia CloudCompTia Cloud Essential
DEPLOYMENT
Deployment
Cloud Deployment Model
Private
Cloud
Community
Cloud
Public
Cloud
Hybrid
Cloud
used by a single user or group of users
within an organization, the private cloud is
owned, managed, and operated by the
organization
used by a group of related organizations with
shared concerns, such as a group of
governmental or educational institutions that
choose to share a common cloud of services
not available
to the general public
Used by the general public, public cloud
services represent the most thoroughly
virtualized cloud infrastructural design,
removing data center information
resources partially or completely.
using components of private, community,
or public clouds, the hybrid cloud provides
access to two or more infrastructures
bridged by standardized technologies or
proprietary cloud services.
National Institute of Standards and Technology Special Publication 800-145
Cloud Service Model
‱ The capability provided to the consumer is to use the
provider’s applications running on a cloud infrastructure2.
The applications are accessible from various client devices
through either a thin client interface, such as a web browser
(e.g., web-based email), or a program interface. The
consumer does not manage or control the underlying cloud
infrastructure including network, servers, operating systems,
storage, or even individual application capabilities, with the
possible exception of limited user-specific application
configuration settings.
Software as a Service
‱ The capability provided to the consumer is to deploy onto
the cloud infrastructure consumer-created or acquired
applications created using programming languages, libraries,
services, and tools supported by the provider.
Platform as a Service
‱ The capability provided to the consumer is to provision
processing, storage, networks, and other fundamental
computing resources where the consumer is able to deploy
and run arbitrary software, which can include operating
systems and applications.
Infrastructure as a Service
CompTiaCompTia CloudCompTia Cloud Essential
Cloud Network Architecture
Interconnectivity
‱ For e-mail
SMTP
‱ For file transfer
FTP
‱ For web access
HTTP & HTTPS
Architecture
Physical
Data-Link
Network
Transport
Session
Presentation
Application
send
Physical
Data-Link
Network
Transport
Session
Presentation
Application
receive
media
SaaS
PaaS
IaaS
Open Systems Interconnection (OSI)
Cloud Adoption Strategy
Aligning cloud deployment with
organizational goal
1
Impact of cloud adoption to business
process
2
Understanding the improve of SLA3
Any organization that is considering adoption of cloud services must start by identifying the type of
cloud service components it intends to take advantage of before starting plans for integration with an
existing enterprise network
Prior to adopting cloud computing services, an organization must fully understand the impact they will
have on existing business processes.
Culture & Business Changesa
Management Changesb
Testing & Readinessc
CompTia CloudCompTia Cloud Essential
CLOUD OFFICER
Cloud Officer
Necessary Skill
SaaS
Project Management Vendor Management
Data Integration &
Analytical
Business & Financial
Skill
Security &
Compliance
PaaS & IaaS
Technical Skill
Project Management
CompTia CloudCompTia Cloud Essential
LEGAL ISSUE OF CLOUD
COMPUTING
Legal Issue of Cloud Computing
Jurisdiction of Data Location
▶ The location of the physical servers
▶ The location of the service provider’s headquarters
▶ The location of the data owner
▶ The locations the data passes through between the provider’s servers
Cloud Computing
Provider
Cloud Computing
Customer
Data Center
Data Center
Data Center
This issue can be mitigated by contractually obligating the service provider to keep data
within appropriate geographic locations.
CompTia Cloud Essential
Cloud holdsmore than just rain
the end

Weitere Àhnliche Inhalte

Was ist angesagt?

Cloud Migration Strategy Framework
Cloud Migration Strategy FrameworkCloud Migration Strategy Framework
Cloud Migration Strategy FrameworkPT Datacomm Diangraha
 
Cloud Migration - Cloud Computing Benefits & Issues
Cloud Migration - Cloud Computing Benefits & IssuesCloud Migration - Cloud Computing Benefits & Issues
Cloud Migration - Cloud Computing Benefits & IssuesArtizen, Inc.
 
The Microsoft Well Architected Framework For Data Analytics
The Microsoft Well Architected Framework For Data AnalyticsThe Microsoft Well Architected Framework For Data Analytics
The Microsoft Well Architected Framework For Data AnalyticsStephanie Locke
 
App Modernization with Microsoft Azure
App Modernization with Microsoft AzureApp Modernization with Microsoft Azure
App Modernization with Microsoft AzureMicrosoft Tech Community
 
A Roadmap to Cloud Center of Excellence Adoption
A Roadmap to Cloud Center of Excellence AdoptionA Roadmap to Cloud Center of Excellence Adoption
A Roadmap to Cloud Center of Excellence AdoptionAmazon Web Services
 
Moving to the cloud: cloud strategies and roadmaps
Moving to the cloud: cloud strategies and roadmapsMoving to the cloud: cloud strategies and roadmaps
Moving to the cloud: cloud strategies and roadmapsJisc
 
Cloud Adoption Framework - Overview_partner.pptx
Cloud Adoption Framework - Overview_partner.pptxCloud Adoption Framework - Overview_partner.pptx
Cloud Adoption Framework - Overview_partner.pptxabhishek22611
 
Azure Application Modernization
Azure Application ModernizationAzure Application Modernization
Azure Application ModernizationKarina Matos
 
Building A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation SlidesBuilding A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation SlidesSlideTeam
 
Cloud Migration Checklist | Microsoft Azure Migration
Cloud Migration Checklist | Microsoft Azure MigrationCloud Migration Checklist | Microsoft Azure Migration
Cloud Migration Checklist | Microsoft Azure MigrationIntellika
 
Capgemini Cloud Assessment - A Pathway to Enterprise Cloud Migration
Capgemini Cloud Assessment - A Pathway to Enterprise Cloud MigrationCapgemini Cloud Assessment - A Pathway to Enterprise Cloud Migration
Capgemini Cloud Assessment - A Pathway to Enterprise Cloud MigrationFloyd DCosta
 
Cloud Center of Excellence
Cloud Center of ExcellenceCloud Center of Excellence
Cloud Center of ExcellenceJeremy Canale
 
Migrate to Microsoft Azure with Confidence
Migrate to Microsoft Azure with ConfidenceMigrate to Microsoft Azure with Confidence
Migrate to Microsoft Azure with ConfidenceDavid J Rosenthal
 
Cloud workload migration guidelines
Cloud workload migration guidelinesCloud workload migration guidelines
Cloud workload migration guidelinesJen Wei Lee
 
Business Focused IT Strategy
Business Focused IT StrategyBusiness Focused IT Strategy
Business Focused IT Strategymuhammadsjameel
 
From Business model to Capability Map
From Business model to Capability Map From Business model to Capability Map
From Business model to Capability Map COMPETENSIS
 
Data Center Migration to the AWS Cloud
Data Center Migration to the AWS CloudData Center Migration to the AWS Cloud
Data Center Migration to the AWS CloudTom Laszewski
 
ValueFlowIT: A new IT Operating Model Emerges
ValueFlowIT: A new IT Operating Model EmergesValueFlowIT: A new IT Operating Model Emerges
ValueFlowIT: A new IT Operating Model EmergesDavid Favelle
 

Was ist angesagt? (20)

Cloud Migration Strategy Framework
Cloud Migration Strategy FrameworkCloud Migration Strategy Framework
Cloud Migration Strategy Framework
 
Cloud Migration - Cloud Computing Benefits & Issues
Cloud Migration - Cloud Computing Benefits & IssuesCloud Migration - Cloud Computing Benefits & Issues
Cloud Migration - Cloud Computing Benefits & Issues
 
The Microsoft Well Architected Framework For Data Analytics
The Microsoft Well Architected Framework For Data AnalyticsThe Microsoft Well Architected Framework For Data Analytics
The Microsoft Well Architected Framework For Data Analytics
 
App Modernization with Microsoft Azure
App Modernization with Microsoft AzureApp Modernization with Microsoft Azure
App Modernization with Microsoft Azure
 
A Roadmap to Cloud Center of Excellence Adoption
A Roadmap to Cloud Center of Excellence AdoptionA Roadmap to Cloud Center of Excellence Adoption
A Roadmap to Cloud Center of Excellence Adoption
 
Moving to the cloud: cloud strategies and roadmaps
Moving to the cloud: cloud strategies and roadmapsMoving to the cloud: cloud strategies and roadmaps
Moving to the cloud: cloud strategies and roadmaps
 
Cloud Adoption Framework - Overview_partner.pptx
Cloud Adoption Framework - Overview_partner.pptxCloud Adoption Framework - Overview_partner.pptx
Cloud Adoption Framework - Overview_partner.pptx
 
Azure Application Modernization
Azure Application ModernizationAzure Application Modernization
Azure Application Modernization
 
Building A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation SlidesBuilding A Cloud Strategy PowerPoint Presentation Slides
Building A Cloud Strategy PowerPoint Presentation Slides
 
Cloud Migration Checklist | Microsoft Azure Migration
Cloud Migration Checklist | Microsoft Azure MigrationCloud Migration Checklist | Microsoft Azure Migration
Cloud Migration Checklist | Microsoft Azure Migration
 
Capgemini Cloud Assessment - A Pathway to Enterprise Cloud Migration
Capgemini Cloud Assessment - A Pathway to Enterprise Cloud MigrationCapgemini Cloud Assessment - A Pathway to Enterprise Cloud Migration
Capgemini Cloud Assessment - A Pathway to Enterprise Cloud Migration
 
Cloud Center of Excellence
Cloud Center of ExcellenceCloud Center of Excellence
Cloud Center of Excellence
 
Migrate to Microsoft Azure with Confidence
Migrate to Microsoft Azure with ConfidenceMigrate to Microsoft Azure with Confidence
Migrate to Microsoft Azure with Confidence
 
Cloud workload migration guidelines
Cloud workload migration guidelinesCloud workload migration guidelines
Cloud workload migration guidelines
 
Cloud Migration Strategy - IT Transformation with Cloud
Cloud Migration Strategy - IT Transformation with CloudCloud Migration Strategy - IT Transformation with Cloud
Cloud Migration Strategy - IT Transformation with Cloud
 
Data center
Data centerData center
Data center
 
Business Focused IT Strategy
Business Focused IT StrategyBusiness Focused IT Strategy
Business Focused IT Strategy
 
From Business model to Capability Map
From Business model to Capability Map From Business model to Capability Map
From Business model to Capability Map
 
Data Center Migration to the AWS Cloud
Data Center Migration to the AWS CloudData Center Migration to the AWS Cloud
Data Center Migration to the AWS Cloud
 
ValueFlowIT: A new IT Operating Model Emerges
ValueFlowIT: A new IT Operating Model EmergesValueFlowIT: A new IT Operating Model Emerges
ValueFlowIT: A new IT Operating Model Emerges
 

Ähnlich wie Cloud Computing Strategy and Architecture

Cloud Ecosystems A Perspective
Cloud Ecosystems A PerspectiveCloud Ecosystems A Perspective
Cloud Ecosystems A Perspectivejmcdaniel650
 
Cloud computings
Cloud computingsCloud computings
Cloud computingsGopal Jogdand
 
Cloud computing by Bhavesh
Cloud computing by BhaveshCloud computing by Bhavesh
Cloud computing by BhaveshBhavesh Khandelwal
 
Welcome to the Cloud!
Welcome to the Cloud!Welcome to the Cloud!
Welcome to the Cloud!imogokate
 
The why of a cloud ppt
The why of a cloud pptThe why of a cloud ppt
The why of a cloud pptSana Nasar
 
Cloud Computing for Small & Medium Businesses
Cloud Computing for Small & Medium BusinessesCloud Computing for Small & Medium Businesses
Cloud Computing for Small & Medium BusinessesAl Sabawi
 
Best cloud computing training institute in noida
Best cloud computing training institute in noidaBest cloud computing training institute in noida
Best cloud computing training institute in noidataramandal
 
Cloud computing a services business application challenges
Cloud computing a services business application challengesCloud computing a services business application challenges
Cloud computing a services business application challengesEditor Jacotech
 
IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...
IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...
IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...IRJET Journal
 
Infographic: Benefits of Cloud
Infographic: Benefits of CloudInfographic: Benefits of Cloud
Infographic: Benefits of CloudiMicron by Techwave
 
Cloud as an Enabler for Business Innovation
Cloud as an Enabler for Business InnovationCloud as an Enabler for Business Innovation
Cloud as an Enabler for Business InnovationIBM Danmark
 
Cloud Computing
 Cloud Computing Cloud Computing
Cloud ComputingAbdul Aslam
 

Ähnlich wie Cloud Computing Strategy and Architecture (20)

Cloud Computing
Cloud ComputingCloud Computing
Cloud Computing
 
Securing The Journey To The Cloud
Securing The Journey To The Cloud Securing The Journey To The Cloud
Securing The Journey To The Cloud
 
Cloud Computing
Cloud ComputingCloud Computing
Cloud Computing
 
Cloud Ecosystems A Perspective
Cloud Ecosystems A PerspectiveCloud Ecosystems A Perspective
Cloud Ecosystems A Perspective
 
Cloud
CloudCloud
Cloud
 
Cloud computings
Cloud computingsCloud computings
Cloud computings
 
Cloud computing by Bhavesh
Cloud computing by BhaveshCloud computing by Bhavesh
Cloud computing by Bhavesh
 
Welcome to the Cloud!
Welcome to the Cloud!Welcome to the Cloud!
Welcome to the Cloud!
 
The why of a cloud ppt
The why of a cloud pptThe why of a cloud ppt
The why of a cloud ppt
 
Cloud Computing
Cloud ComputingCloud Computing
Cloud Computing
 
Cloud Computing for Small & Medium Businesses
Cloud Computing for Small & Medium BusinessesCloud Computing for Small & Medium Businesses
Cloud Computing for Small & Medium Businesses
 
Best cloud computing training institute in noida
Best cloud computing training institute in noidaBest cloud computing training institute in noida
Best cloud computing training institute in noida
 
Cloud computing a services business application challenges
Cloud computing a services business application challengesCloud computing a services business application challenges
Cloud computing a services business application challenges
 
IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...
IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...
IRJET- A Detailed Study and Analysis of Cloud Computing Usage with Real-Time ...
 
A Review on Data Protection of Cloud Computing Security, Benefits, Risks and ...
A Review on Data Protection of Cloud Computing Security, Benefits, Risks and ...A Review on Data Protection of Cloud Computing Security, Benefits, Risks and ...
A Review on Data Protection of Cloud Computing Security, Benefits, Risks and ...
 
Cloud Computing Improving Organizational Agility
Cloud Computing Improving Organizational AgilityCloud Computing Improving Organizational Agility
Cloud Computing Improving Organizational Agility
 
Bienvenida
BienvenidaBienvenida
Bienvenida
 
Infographic: Benefits of Cloud
Infographic: Benefits of CloudInfographic: Benefits of Cloud
Infographic: Benefits of Cloud
 
Cloud as an Enabler for Business Innovation
Cloud as an Enabler for Business InnovationCloud as an Enabler for Business Innovation
Cloud as an Enabler for Business Innovation
 
Cloud Computing
 Cloud Computing Cloud Computing
Cloud Computing
 

KĂŒrzlich hochgeladen

AI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by AnitarajAI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by AnitarajAnitaRaj43
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoffsammart93
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistandanishmna97
 
Mcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot ModelDeepika Singh
 
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)Samir Dash
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024The Digital Insurer
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...apidays
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FMESafe Software
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdfSandro Moreira
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...apidays
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherRemote DBA Services
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWERMadyBayot
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDropbox
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Victor Rentea
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesrafiqahmad00786416
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodJuan lago vĂĄzquez
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Victor Rentea
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Orbitshub
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc
 

KĂŒrzlich hochgeladen (20)

AI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by AnitarajAI in Action: Real World Use Cases by Anitaraj
AI in Action: Real World Use Cases by Anitaraj
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
Mcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls đŸ„° 8617370543 Service Offer VIP Hot Model
 
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
AI+A11Y 11MAY2024 HYDERBAD GAAD 2024 - HelloA11Y (11 May 2024)
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
+971581248768>> SAFE AND ORIGINAL ABORTION PILLS FOR SALE IN DUBAI AND ABUDHA...
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024Finding Java's Hidden Performance Traps @ DevoxxUK 2024
Finding Java's Hidden Performance Traps @ DevoxxUK 2024
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
Navigating the Deluge_ Dubai Floods and the Resilience of Dubai International...
 
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data DiscoveryTrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
TrustArc Webinar - Unlock the Power of AI-Driven Data Discovery
 

Cloud Computing Strategy and Architecture

  • 1. Hendrix Yapputro certified IT architect certified ISO 27000 lead auditor – cloud security Cloud Computing Strategy & Architecture
  • 2. Further Reading 1. National Institute of Standards and Technology Special Publication 800-145. 2. CompTia Cloud www.comptia.org 3. Could Computing Explained: the implementation handbook for enterprise. 4. Architecting the Cloud: Design Decision for Cloud Computing Service Model (SaaS, PaaS, Iaas)
  • 3. Cloud Computing Cloud computing is a model for enabling ubiquitous, convenient, on-demand network access to a shared pool of configurable computing resources (e.g., networks, servers, storage, applications, and services) that can be rapidly provisioned and released with minimal management effort or service provider interaction. National Institute of Standards and Technology Special Publication 800-145
  • 4. Essential Characteristics On-demand self-service A consumer can unilaterally provision computing capabilities, such as server time and network storage, as needed automatically without requiring human interaction with each service provider Broad network access Capabilities are available over the network and accessed through standard mechanisms that promote use by heterogeneous thin or thick client platforms (e.g., mobile phones, tablets, laptops, and workstations). Rapid elasticity Capabilities can be elastically provisioned and released, in some cases automatically, to scale rapidly outward and inward commensurate with demand. To the consumer, the capabilities available for provisioning often appear to be unlimited and can be appropriated in any quantity at any time. 1 2 3 National Institute of Standards and Technology Special Publication 800-145
  • 5. Essential Characteristics Resource pooling The provider’s computing resources are pooled to serve multiple consumers using a multi-tenant model, with different physical and virtual resources dynamically assigned and reassigned according to consumer demand. Measured service Cloud systems automatically control and optimize resource use by leveraging a metering capability at some level of abstraction appropriate to the type of service (e.g., storage, processing, bandwidth, and active user accounts). 4 5 National Institute of Standards and Technology Special Publication 800-145
  • 6. BUSINESS VALUE OF CLOUD COMPUTING Business Value of Cloud Computing
  • 7. Business Driver What??? Mr. Business Mr. IT but, this is the fact . . . Business costs have to be efficient for winning business competition. It can be achieved by: 1. Reducing costs for gaining efficiency, and 2. Agility
  • 8. Cost Leadership Because of its lower cost, the cost leader is able to charge a lower price than its competitors yet make the same level of profit. If companies in the industry charge similar prices for their products, the cost leader still makes higher profit than its competitors because of its lower costs. And, if rivalry within the industry increases and companies start to compete on price, the cost leader will be able to withstand competition better than the other companies because of its lower costs. Building competitive advantage through Cost Leadership A company’s goal in pursuing a cost-leadership strategy is to outperform competitors by doing everything it can to produce goods/service at a cost lower than theirs.
  • 9. Agility Cloud ProviderCustomer Modules Business need to rapidly develop new products (particularly applications or web-based services) without being limited by the cost of computing hardware or being stalled by long procurement time Shorten time to market1 Mobility3 Global access to organizational enterprise resources is required for organizations with a distributed workforce. Rapid internal development & testing The ability to provision and de-provision development and testing environments on demand provides organizations with greater opportunities to improve their business processes by developing applications internally or testing off-the-shelf software in their environment. 2 CompTiaCompTia Cloud Essential
  • 10. MANAGEMENT OF CLOUD – READY APPLICATION Management of Cloud-ready Application
  • 11. Cloud Ready Application E N D - T O - E N D M a n a g e m e n t o f C l o u d IaaS vs PaaS SLA Monitoring No of Data Center PricingType of Instance Certification Support Most providers have a set number of servers that can be used, with a specific number of CPUs, amount of memory, and operating system. Others have fully customizable instances. There are no standards for PaaS-based applications. Each provider uses different APIs based on its platform. Choosing a specific provider might force a lock-in with a technology that cannot be migrated later to a different provider. Use IaaS unless you are comfortable with the technology used by a PaaS provider and you do not foresee a change in the technology used. CompTiaCompTia CloudCompTia Cloud Essential
  • 12. Service Level Agreement Data Ownership Data Loss Data Location Contract Renewal Insurance Contractual Protection CompTiaCompTia CloudCompTia Cloud Essential
  • 13. Negotiation of SLA Availability of Service LiabilitiesControl of Data Choice of Law Organizations should raise the issue of contract negotiation with the vendor and choose the law based on their territory coverage The cloud provider should disclose the list of data centers used to store the data, including backups. The SLA between the vendor and the organization must also specify how backups are handled. Organizations should specify the purpose of contracting with the vendor so that it is clear that, unless the service adequately addresses this purpose, it is pointless to enter into the contract. Vendors should have documented management systems, processes, and resources. Organizations should be able to access the average available time provided by the vendors in the different layers of services offered. And consequences for not meeting the SLA must be clearly identified. CompTiaCompTia Cloud Essential
  • 15. Cloud Security Principal Confidentiality Integrity Availability Confidentiality refers to the sensitivity of data. Integrity refers to the reliability of data. ISO 27000 series Availability refers to the accessibility of data. To be available, data needs to be protected from disruption of service. Other Security Reference CompTia CloudCompTia Cloud Essential
  • 16. Cloud Security Management Data Security Application Security Network Security Physical Security Security Policy & Procedure CompTia CloudCompTia Cloud Essential
  • 17. Cloud Security Diagram Traditional firewall Virtual firewall In/outbound traffic Internet CompTiaCompTia CloudCompTia Cloud Essential
  • 19. Cloud Deployment Model Private Cloud Community Cloud Public Cloud Hybrid Cloud used by a single user or group of users within an organization, the private cloud is owned, managed, and operated by the organization used by a group of related organizations with shared concerns, such as a group of governmental or educational institutions that choose to share a common cloud of services not available to the general public Used by the general public, public cloud services represent the most thoroughly virtualized cloud infrastructural design, removing data center information resources partially or completely. using components of private, community, or public clouds, the hybrid cloud provides access to two or more infrastructures bridged by standardized technologies or proprietary cloud services. National Institute of Standards and Technology Special Publication 800-145
  • 20. Cloud Service Model ‱ The capability provided to the consumer is to use the provider’s applications running on a cloud infrastructure2. The applications are accessible from various client devices through either a thin client interface, such as a web browser (e.g., web-based email), or a program interface. The consumer does not manage or control the underlying cloud infrastructure including network, servers, operating systems, storage, or even individual application capabilities, with the possible exception of limited user-specific application configuration settings. Software as a Service ‱ The capability provided to the consumer is to deploy onto the cloud infrastructure consumer-created or acquired applications created using programming languages, libraries, services, and tools supported by the provider. Platform as a Service ‱ The capability provided to the consumer is to provision processing, storage, networks, and other fundamental computing resources where the consumer is able to deploy and run arbitrary software, which can include operating systems and applications. Infrastructure as a Service CompTiaCompTia CloudCompTia Cloud Essential
  • 21. Cloud Network Architecture Interconnectivity ‱ For e-mail SMTP ‱ For file transfer FTP ‱ For web access HTTP & HTTPS Architecture Physical Data-Link Network Transport Session Presentation Application send Physical Data-Link Network Transport Session Presentation Application receive media SaaS PaaS IaaS Open Systems Interconnection (OSI)
  • 22. Cloud Adoption Strategy Aligning cloud deployment with organizational goal 1 Impact of cloud adoption to business process 2 Understanding the improve of SLA3 Any organization that is considering adoption of cloud services must start by identifying the type of cloud service components it intends to take advantage of before starting plans for integration with an existing enterprise network Prior to adopting cloud computing services, an organization must fully understand the impact they will have on existing business processes. Culture & Business Changesa Management Changesb Testing & Readinessc CompTia CloudCompTia Cloud Essential
  • 24. Necessary Skill SaaS Project Management Vendor Management Data Integration & Analytical Business & Financial Skill Security & Compliance PaaS & IaaS Technical Skill Project Management CompTia CloudCompTia Cloud Essential
  • 25. LEGAL ISSUE OF CLOUD COMPUTING Legal Issue of Cloud Computing
  • 26. Jurisdiction of Data Location ▶ The location of the physical servers ▶ The location of the service provider’s headquarters ▶ The location of the data owner ▶ The locations the data passes through between the provider’s servers Cloud Computing Provider Cloud Computing Customer Data Center Data Center Data Center This issue can be mitigated by contractually obligating the service provider to keep data within appropriate geographic locations. CompTia Cloud Essential
  • 27. Cloud holdsmore than just rain the end