SlideShare ist ein Scribd-Unternehmen logo
1 von 21
Innovation at Scale
Key drivers and pitfalls to building API driven agile business
platforms
Mifan Careem
Vice President - Solutions Architecture,
WSO2 Inc
1
Start with API
management
IDENTITY & ACCESS
MANAGEMENT
Secure and federated identity
for integration
60M identities managed
ENTERPRISE
INTEGRATION
Quick, iterative integration of
any app, data, or system
6 trillion transactions / yr
Complement APIs with integration, security
and analytics that connect apps and data.
API
MANAGEMENT
API design, creation, reuse,
governance, and analytics
20K APIs for 200K orgs
Common architecture, common code base
WSO2 Open Source API Driven Integration Platform
● Identity management
● Identity federation / SSO
● Identity bridging
● API and microservices security
● Strong and adaptive Auth
● Access control
● Privacy control
● API analytics
● API designer
● API gateway
● API microgateway
● API publisher
● API storefront/marketplace
● API repository/registry
● ESB
● Integration designer
● Message broker
● Workflows
3
The Global Impact of APIs
APIs now account for 25% of the Internet’s traffic.
$1 trillion is up for grabs through the redistribution of
revenue through APIs (McKinsey 2017).
25% of revenue flows through APIs (Vanson Bourne 2018).
Through 2020, integration work will account for 50% of the
time and cost of building a digital platform (Gartner 2018).
The Integration Imperative is Growing
Disaggregated architectures drive 50 billion endpoints, growing >1 trillion
CONSUMER DEMAND
Scale and agility are pushing
app disaggregation...
…that makes hybrid
integration the unspoken
challenge of all cloud services
SUPPLIERS DISAGGREGATE ARCHITECTURE TO MEET DEMAND
1
10
102
103
105
109
MONOLITHIC
BUSINESS APP
ENTERPRISE
APPS
DEPARTME
NTAL APPS
SAAS APPS
PUBLIC /
PRIVATE APIS
SERVERLESS &
MICROSERVICES
1970s
|
MAINFRAME
1980s
|
IT
AWAKENING
1990s
|
INTERNET
2000s
|
MOBILE
2010s
|
IoT/AI
2020+
|
DIGITAL NATIVE
4
“APIs create business agility
that fosters the rapid business
reconfiguration necessary to
continually adapt to an
unknown future of constant
change.”
~ Randy Heffner,
Forrester Research
...And APIs Are The Glue
All integration is becoming hybrid integration
API Driven Business
Platforms
• Every company is a technology company
• Technology assets have to built for reuse
• Reuse compounds return on technology
investments
• APIs are an encapsulation of intellectual
property
• Streamline internal assets AND better customer
reach via APIs
7
1. Align business strategy with API strategy
2. API Marketplace as a
Sustainable Business
Platform
8
An API marketplace is a
platform to effectively
connect API producers and
API consumers -
and as with any marketplace
this provides the tools and
means to do so
3. Sustainability via Feedback Loops, Incentives,
Adoption
9
Source: David Sacks, Yammer on Uber’s
business model valuation
• Social Incentives
• Fun, Fame, Fortune
• No. of Shares, Likes,
Claps, Re-Tweets, View
• Leaderboards
• Rating/Filtering
• Monetization
4. Distributed Platforms vs Centers of Excellence vs Agility
External Developers (Partners)
Other BU Developers
(Inter BU Access)
Internal BU Developers
(Intra BU Access)
BU 1 API Marketplace BU 2 API Marketplace BU 3 API Marketplace BU n API Marketplace
BU 1 API Management
(Dedicated On-prem
Deployment)
BU 2 API Management
(Private Cloud Tenant)
BU 3 API Management
(WSO2 API Cloud
Tenant)
BU n API Management
(Other APIM Platform
Tenant)
Private Cloud Public Cloud
Enterprise
Enterprise API Marketplace
BU 1 BU 2 BU 3 BU n
11
Integration & Middleware Are Bottlenecks to Agility
LAYERED MONOLITH
Coordinated releases, organizational rigor, centralized change control
Compute Network Storage
Ops Infrastructure
Ops
Team
Observability
Scaling HA Resilience Observability
Scaling HA Resilience Observability
HA Resilience
Middleware
& Integration
CoE Teams
HA Resilience ObservabilityScaling
INTEGRATION
HA Resilience ObservabilityScaling
MESSAGING
HA Resilience ObservabilityScaling
DATA
HA Resilience ObservabilityScaling
SECURITY
App Logic
. . .
Centralized
Dev Org
App LogicApp Logic
App 1 App 2 App (n)
Self-contained
Deployable as a unit
Independently elastic
Data plane and control plane
Cells… The New Building Blocks For The Composable
Enterprise
Becoming Integration Agile…
App Logic
. . .
Scaling HA Resilience Observability
Scaling HA Resilience Observability
HA Resilience Observability
Compute Network Storage
Ops Infrastructure
Centralized
Dev Org
Middleware
& Integration
CoE Teams
Ops
Team
LAYERED MONOLITH
Coordinated releases, organizational rigor, centralized change control
HA Resilience ObservabilityScaling
INTEGRATION
HA Resilience ObservabilityScaling
MESSAGING
HA Resilience ObservabilityScaling
DATA
HA Resilience ObservabilityScaling
SECURITY
App LogicApp Logic
App 1 App 2 App (n)
APIs
COMPOSABLE ENTERPRISE
Autonomous releases, CI/CD, self-organization, change-control authority
App (n)
App
Microservice
INTEGRATION
MESSAGING
DATA
SECURITY
App 1
INTEGRATION
MESSAGING
DATA
SECURITY
Microservices
App 2
App
Miniservice
INTEGRATION
MESSAGING
DATA
SECURITY
APIs
Self-
Organizing
Dev Teams
. .
.
Ops
Team
Event-Based Hybrid Integration Platform
Scaling | HA | Resilience | Observability
Orchestration & High-Performance Data Store
Ops Infrastructure
DevOps
<Microgateway> <Microgateway>
<Microgateway>
5. API Security is not an afterthought!
Implementing a Gateway Architecture
15
API
Gateway
Policy
Enforcement
& Security
Lifecycle
Mgt.
Governance Analytics
Threat
Protection
QoS and
Rate
Limiting
• Gateway Patterns act as
the (central) point of
control for incoming and
outgoing data
• Enforce QoS and acts as
a Policy Enforcement
Point
• Utilize an IAM to enable
BYOID via federation
• Follow industry standards
such as Oauth2, OIDC,
SAML
• Be able to extend and
customize as required
using Oauth2 fraud
detection, HMAC, Custom
headers
Identity Federation at the Platform
Identity Federation Hub
Cloud Native ~ Zero Trust Network
“What was once a rich
selection of blogs and
websites has been
compressed under the
powerful weight of a few
dominant platforms. This
concentration of power
creates a new set of
gatekeepers, allowing a
handful of platforms to
control which ideas and
opinions are seen and
shared.”
- Tim Berners-Lee
https://webfoundation.org/2018/03/web-
birthday-29/
https://beta.techcrunch.com/2018/03/12/platfo
rm-power-is-crushing-the-web-warns-
berners-lee/
20
The right API driven
business platform is
key to innovate at
scale
Define
API
Strategy
Define a
Platform
Strategy
Facilitate
Consumer
s
Engage
and
Empower
Producers
Incentives
and
Monetizatio
n
Agility and
Distributio
n
Platform
security
model
Govern
and
Manage
THANK YOU
wso2.com
THANK YOU
wso2.com

Weitere ähnliche Inhalte

Was ist angesagt?

Was ist angesagt? (20)

[WSO2 Summit Americas 2020] Moving to a Value Chain from a Supply Chain
[WSO2 Summit Americas 2020] Moving to a Value Chain from a Supply Chain[WSO2 Summit Americas 2020] Moving to a Value Chain from a Supply Chain
[WSO2 Summit Americas 2020] Moving to a Value Chain from a Supply Chain
 
Which Application Modernization Pattern Is Right For You?
Which Application Modernization Pattern Is Right For You?Which Application Modernization Pattern Is Right For You?
Which Application Modernization Pattern Is Right For You?
 
API Governance in the Enterprise
API Governance in the EnterpriseAPI Governance in the Enterprise
API Governance in the Enterprise
 
APIs: State of the Union - Ross Garrett @ AppsWorld 2014
APIs: State of the Union - Ross Garrett @ AppsWorld 2014APIs: State of the Union - Ross Garrett @ AppsWorld 2014
APIs: State of the Union - Ross Garrett @ AppsWorld 2014
 
Composable data for the composable enterprise
Composable data for the composable enterpriseComposable data for the composable enterprise
Composable data for the composable enterprise
 
5 Tips for Scaling API Governance
5 Tips for Scaling API Governance5 Tips for Scaling API Governance
5 Tips for Scaling API Governance
 
API-led connectivity: How to leverage reusable microservices
 API-led connectivity: How to leverage reusable microservices API-led connectivity: How to leverage reusable microservices
API-led connectivity: How to leverage reusable microservices
 
Vizag Virtual Meetup #7: Trending API Topics for 2022
Vizag Virtual Meetup #7: Trending API Topics for 2022Vizag Virtual Meetup #7: Trending API Topics for 2022
Vizag Virtual Meetup #7: Trending API Topics for 2022
 
Definitive Guide to API Management
Definitive Guide to API ManagementDefinitive Guide to API Management
Definitive Guide to API Management
 
[WSO2 API Day Toronto 2019] Design Principles for Architecting an API-driven ...
[WSO2 API Day Toronto 2019] Design Principles for Architecting an API-driven ...[WSO2 API Day Toronto 2019] Design Principles for Architecting an API-driven ...
[WSO2 API Day Toronto 2019] Design Principles for Architecting an API-driven ...
 
[WSO2 Integration Summit Bern 2019] Composable Enterprise
[WSO2 Integration Summit Bern 2019] Composable Enterprise[WSO2 Integration Summit Bern 2019] Composable Enterprise
[WSO2 Integration Summit Bern 2019] Composable Enterprise
 
Mapping API business models through value exchange
Mapping API business models through value exchangeMapping API business models through value exchange
Mapping API business models through value exchange
 
Using PaaS to run APIs and Microservices in Production
Using PaaS to run APIs and Microservices in ProductionUsing PaaS to run APIs and Microservices in Production
Using PaaS to run APIs and Microservices in Production
 
Microservices: 5 Years In
Microservices: 5 Years InMicroservices: 5 Years In
Microservices: 5 Years In
 
[WSO2 Summit Sydney 2019] Ballerina - Cloud Native Programming Language
[WSO2 Summit Sydney 2019] Ballerina - Cloud Native Programming Language[WSO2 Summit Sydney 2019] Ballerina - Cloud Native Programming Language
[WSO2 Summit Sydney 2019] Ballerina - Cloud Native Programming Language
 
API Governance
API Governance API Governance
API Governance
 
Apinf Open Api Management
Apinf Open Api Management Apinf Open Api Management
Apinf Open Api Management
 
[WSO2 Summit APAC 2020] APIs: The Products of the 21st Century
[WSO2 Summit APAC 2020] APIs: The Products of the 21st Century[WSO2 Summit APAC 2020] APIs: The Products of the 21st Century
[WSO2 Summit APAC 2020] APIs: The Products of the 21st Century
 
[WSO2 Summit EMEA 2020] APIs: The Products of the 21st Century
[WSO2 Summit EMEA 2020] APIs: The Products of the 21st Century[WSO2 Summit EMEA 2020] APIs: The Products of the 21st Century
[WSO2 Summit EMEA 2020] APIs: The Products of the 21st Century
 
API Connect from IBM
API Connect from IBMAPI Connect from IBM
API Connect from IBM
 

Ähnlich wie Innovation at scale - Key drivers and pitfalls to building API driven agile business platforms

WSO2Con Asia 2014 - Building the API-Centric Enterprise
WSO2Con Asia 2014 - Building the API-Centric EnterpriseWSO2Con Asia 2014 - Building the API-Centric Enterprise
WSO2Con Asia 2014 - Building the API-Centric Enterprise
WSO2
 

Ähnlich wie Innovation at scale - Key drivers and pitfalls to building API driven agile business platforms (20)

Innovation at scale - key drivers and pitfalls to building API driven agile b...
Innovation at scale - key drivers and pitfalls to building API driven agile b...Innovation at scale - key drivers and pitfalls to building API driven agile b...
Innovation at scale - key drivers and pitfalls to building API driven agile b...
 
[WSO2 Summit Brazil 2018] The API-driven World
[WSO2 Summit Brazil 2018] The API-driven World[WSO2 Summit Brazil 2018] The API-driven World
[WSO2 Summit Brazil 2018] The API-driven World
 
[WSO2Con EU 2018] Keynote - The API Driven World
[WSO2Con EU 2018] Keynote - The API Driven World[WSO2Con EU 2018] Keynote - The API Driven World
[WSO2Con EU 2018] Keynote - The API Driven World
 
[WSO2 Summit Sydney 2019] API-Driven World
[WSO2 Summit Sydney 2019] API-Driven World[WSO2 Summit Sydney 2019] API-Driven World
[WSO2 Summit Sydney 2019] API-Driven World
 
[WSO2 Integration Summit Johannesburg 2019] API-driven World
[WSO2 Integration Summit Johannesburg 2019] API-driven World[WSO2 Integration Summit Johannesburg 2019] API-driven World
[WSO2 Integration Summit Johannesburg 2019] API-driven World
 
IBM API management Philip Little
IBM API management Philip LittleIBM API management Philip Little
IBM API management Philip Little
 
Meetup 2022 - API Gateway landscape.pdf
Meetup 2022 - API Gateway landscape.pdfMeetup 2022 - API Gateway landscape.pdf
Meetup 2022 - API Gateway landscape.pdf
 
[WSO2 API Day Dallas 2019] API-Driven World
[WSO2 API Day Dallas 2019] API-Driven World[WSO2 API Day Dallas 2019] API-Driven World
[WSO2 API Day Dallas 2019] API-Driven World
 
[WSO2 API Day Chicago 2019] API-driven World
[WSO2 API Day Chicago 2019] API-driven World[WSO2 API Day Chicago 2019] API-driven World
[WSO2 API Day Chicago 2019] API-driven World
 
[WSO2Con Asia 2018] Integration is Sexy
[WSO2Con Asia 2018] Integration is Sexy[WSO2Con Asia 2018] Integration is Sexy
[WSO2Con Asia 2018] Integration is Sexy
 
WSO2Con Asia 2014 - Building the API-Centric Enterprise
WSO2Con Asia 2014 - Building the API-Centric EnterpriseWSO2Con Asia 2014 - Building the API-Centric Enterprise
WSO2Con Asia 2014 - Building the API-Centric Enterprise
 
Webinar: How API Lifecycle Management can help to Accelerate Growth
Webinar: How API Lifecycle Management can help to Accelerate GrowthWebinar: How API Lifecycle Management can help to Accelerate Growth
Webinar: How API Lifecycle Management can help to Accelerate Growth
 
API Integration: Red Hat integration perspective
API Integration: Red Hat integration perspectiveAPI Integration: Red Hat integration perspective
API Integration: Red Hat integration perspective
 
[WSO2 Integration Summit Nairobi 2019] API-Driven World
[WSO2 Integration Summit Nairobi 2019] API-Driven World[WSO2 Integration Summit Nairobi 2019] API-Driven World
[WSO2 Integration Summit Nairobi 2019] API-Driven World
 
[WSO2 Summit Chicago 2018] Welcome Address: Integration Agility
[WSO2 Summit Chicago 2018] Welcome Address: Integration Agility[WSO2 Summit Chicago 2018] Welcome Address: Integration Agility
[WSO2 Summit Chicago 2018] Welcome Address: Integration Agility
 
[WSO2 Summit New York 2018] Integration Agility
[WSO2 Summit New York 2018] Integration Agility[WSO2 Summit New York 2018] Integration Agility
[WSO2 Summit New York 2018] Integration Agility
 
5 pillars of API Management
5 pillars of API Management5 pillars of API Management
5 pillars of API Management
 
AADI Mashery/Coca-Cola Enterprises November 2012
AADI Mashery/Coca-Cola Enterprises November 2012  AADI Mashery/Coca-Cola Enterprises November 2012
AADI Mashery/Coca-Cola Enterprises November 2012
 
Securely expose protected resources as ap is with app42 api gateway
Securely expose protected resources as ap is with app42 api gatewaySecurely expose protected resources as ap is with app42 api gateway
Securely expose protected resources as ap is with app42 api gateway
 
Role of API Management in an API led Digital Economy
Role of API Management in an API led Digital EconomyRole of API Management in an API led Digital Economy
Role of API Management in an API led Digital Economy
 

Kürzlich hochgeladen

Kürzlich hochgeladen (20)

Real Time Object Detection Using Open CV
Real Time Object Detection Using Open CVReal Time Object Detection Using Open CV
Real Time Object Detection Using Open CV
 
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot TakeoffStrategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
Strategize a Smooth Tenant-to-tenant Migration and Copilot Takeoff
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin WoodPolkadot JAM Slides - Token2049 - By Dr. Gavin Wood
Polkadot JAM Slides - Token2049 - By Dr. Gavin Wood
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law DevelopmentsTrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
TrustArc Webinar - Stay Ahead of US State Data Privacy Law Developments
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?A Year of the Servo Reboot: Where Are We Now?
A Year of the Servo Reboot: Where Are We Now?
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...2024: Domino Containers - The Next Step. News from the Domino Container commu...
2024: Domino Containers - The Next Step. News from the Domino Container commu...
 
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdfUnderstanding Discord NSFW Servers A Guide for Responsible Users.pdf
Understanding Discord NSFW Servers A Guide for Responsible Users.pdf
 
Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024Manulife - Insurer Innovation Award 2024
Manulife - Insurer Innovation Award 2024
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
Bajaj Allianz Life Insurance Company - Insurer Innovation Award 2024
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 

Innovation at scale - Key drivers and pitfalls to building API driven agile business platforms

  • 1. Innovation at Scale Key drivers and pitfalls to building API driven agile business platforms Mifan Careem Vice President - Solutions Architecture, WSO2 Inc 1
  • 2. Start with API management IDENTITY & ACCESS MANAGEMENT Secure and federated identity for integration 60M identities managed ENTERPRISE INTEGRATION Quick, iterative integration of any app, data, or system 6 trillion transactions / yr Complement APIs with integration, security and analytics that connect apps and data. API MANAGEMENT API design, creation, reuse, governance, and analytics 20K APIs for 200K orgs Common architecture, common code base WSO2 Open Source API Driven Integration Platform ● Identity management ● Identity federation / SSO ● Identity bridging ● API and microservices security ● Strong and adaptive Auth ● Access control ● Privacy control ● API analytics ● API designer ● API gateway ● API microgateway ● API publisher ● API storefront/marketplace ● API repository/registry ● ESB ● Integration designer ● Message broker ● Workflows
  • 3. 3 The Global Impact of APIs APIs now account for 25% of the Internet’s traffic. $1 trillion is up for grabs through the redistribution of revenue through APIs (McKinsey 2017). 25% of revenue flows through APIs (Vanson Bourne 2018). Through 2020, integration work will account for 50% of the time and cost of building a digital platform (Gartner 2018).
  • 4. The Integration Imperative is Growing Disaggregated architectures drive 50 billion endpoints, growing >1 trillion CONSUMER DEMAND Scale and agility are pushing app disaggregation... …that makes hybrid integration the unspoken challenge of all cloud services SUPPLIERS DISAGGREGATE ARCHITECTURE TO MEET DEMAND 1 10 102 103 105 109 MONOLITHIC BUSINESS APP ENTERPRISE APPS DEPARTME NTAL APPS SAAS APPS PUBLIC / PRIVATE APIS SERVERLESS & MICROSERVICES 1970s | MAINFRAME 1980s | IT AWAKENING 1990s | INTERNET 2000s | MOBILE 2010s | IoT/AI 2020+ | DIGITAL NATIVE 4
  • 5. “APIs create business agility that fosters the rapid business reconfiguration necessary to continually adapt to an unknown future of constant change.” ~ Randy Heffner, Forrester Research ...And APIs Are The Glue All integration is becoming hybrid integration
  • 7. • Every company is a technology company • Technology assets have to built for reuse • Reuse compounds return on technology investments • APIs are an encapsulation of intellectual property • Streamline internal assets AND better customer reach via APIs 7 1. Align business strategy with API strategy
  • 8. 2. API Marketplace as a Sustainable Business Platform 8 An API marketplace is a platform to effectively connect API producers and API consumers - and as with any marketplace this provides the tools and means to do so
  • 9. 3. Sustainability via Feedback Loops, Incentives, Adoption 9 Source: David Sacks, Yammer on Uber’s business model valuation • Social Incentives • Fun, Fame, Fortune • No. of Shares, Likes, Claps, Re-Tweets, View • Leaderboards • Rating/Filtering • Monetization
  • 10. 4. Distributed Platforms vs Centers of Excellence vs Agility External Developers (Partners) Other BU Developers (Inter BU Access) Internal BU Developers (Intra BU Access) BU 1 API Marketplace BU 2 API Marketplace BU 3 API Marketplace BU n API Marketplace BU 1 API Management (Dedicated On-prem Deployment) BU 2 API Management (Private Cloud Tenant) BU 3 API Management (WSO2 API Cloud Tenant) BU n API Management (Other APIM Platform Tenant) Private Cloud Public Cloud Enterprise Enterprise API Marketplace BU 1 BU 2 BU 3 BU n
  • 11. 11 Integration & Middleware Are Bottlenecks to Agility LAYERED MONOLITH Coordinated releases, organizational rigor, centralized change control Compute Network Storage Ops Infrastructure Ops Team Observability Scaling HA Resilience Observability Scaling HA Resilience Observability HA Resilience Middleware & Integration CoE Teams HA Resilience ObservabilityScaling INTEGRATION HA Resilience ObservabilityScaling MESSAGING HA Resilience ObservabilityScaling DATA HA Resilience ObservabilityScaling SECURITY App Logic . . . Centralized Dev Org App LogicApp Logic App 1 App 2 App (n)
  • 12. Self-contained Deployable as a unit Independently elastic Data plane and control plane Cells… The New Building Blocks For The Composable Enterprise
  • 13. Becoming Integration Agile… App Logic . . . Scaling HA Resilience Observability Scaling HA Resilience Observability HA Resilience Observability Compute Network Storage Ops Infrastructure Centralized Dev Org Middleware & Integration CoE Teams Ops Team LAYERED MONOLITH Coordinated releases, organizational rigor, centralized change control HA Resilience ObservabilityScaling INTEGRATION HA Resilience ObservabilityScaling MESSAGING HA Resilience ObservabilityScaling DATA HA Resilience ObservabilityScaling SECURITY App LogicApp Logic App 1 App 2 App (n) APIs COMPOSABLE ENTERPRISE Autonomous releases, CI/CD, self-organization, change-control authority App (n) App Microservice INTEGRATION MESSAGING DATA SECURITY App 1 INTEGRATION MESSAGING DATA SECURITY Microservices App 2 App Miniservice INTEGRATION MESSAGING DATA SECURITY APIs Self- Organizing Dev Teams . . . Ops Team Event-Based Hybrid Integration Platform Scaling | HA | Resilience | Observability Orchestration & High-Performance Data Store Ops Infrastructure DevOps <Microgateway> <Microgateway> <Microgateway>
  • 14. 5. API Security is not an afterthought!
  • 15. Implementing a Gateway Architecture 15 API Gateway Policy Enforcement & Security Lifecycle Mgt. Governance Analytics Threat Protection QoS and Rate Limiting • Gateway Patterns act as the (central) point of control for incoming and outgoing data • Enforce QoS and acts as a Policy Enforcement Point • Utilize an IAM to enable BYOID via federation • Follow industry standards such as Oauth2, OIDC, SAML • Be able to extend and customize as required using Oauth2 fraud detection, HMAC, Custom headers
  • 16. Identity Federation at the Platform
  • 18. Cloud Native ~ Zero Trust Network
  • 19. “What was once a rich selection of blogs and websites has been compressed under the powerful weight of a few dominant platforms. This concentration of power creates a new set of gatekeepers, allowing a handful of platforms to control which ideas and opinions are seen and shared.” - Tim Berners-Lee https://webfoundation.org/2018/03/web- birthday-29/ https://beta.techcrunch.com/2018/03/12/platfo rm-power-is-crushing-the-web-warns- berners-lee/
  • 20. 20 The right API driven business platform is key to innovate at scale Define API Strategy Define a Platform Strategy Facilitate Consumer s Engage and Empower Producers Incentives and Monetizatio n Agility and Distributio n Platform security model Govern and Manage