DevSecOps

Secure data transactions using AWS Cloud

Company Overview
  • Leading US-based retail firm
  • $46B in revenue
Tech Overview
  • 200m+ Customers
  • 12k+ Transactions per second
  • 10+ Peta bytes - Customer Interactions

Business & Technical Challenges

  • Share sensitive data securely with external vendors and partners
  • Legacy platform was slow, expensive to maintain, faced frequent P1 errors and significantly hampered innovation
  • Data storage architecture was rigid and non-scalable
  • Data pipes were insecure and unreliable
  • Offline, batch data integrations were built using different, legacy platforms

Canterr's Solution

  • Conducted a comprehensive review and developed an enterprise architecture using AWS components
  • Leveraged SFTP from AWS Transfer Family as a fully managed service to ensure secure data transfer across external enterprises
  • Augmented SFTP endpoints with AWS Global Accelerator, AWS Web Application Firewall (WAF) and AWS ShieldAdvanced, following a Defense in Depth strategy to protect against DDoS and other threats
  • Leveraged AWS Lambda serverless mode to leverage existing middle-ware code where possible
  • Established a DevOps model and automated CICD infrastructure to accelerate their digital transformation and innovation

Results

  • Significant improvement in enterprise-wide security posture
  • Automated security checks and adherence to AWS best practices accelerate time-to-market
  • Enabled partner subscription capabilities
  • Enabled partner subscription capabilities
  • Over 10% improvement in partner marketing spend
  • Streamlined CICD process
  • Reduced time on security operations
  • Automated new partner signup and subscription