SlideShare a Scribd company logo
19 APRILIE 2018 | BUCUREȘTI
Day Zero In A Cloud Project
RADU VUNVULEA
Chief Cloud Strategist / Avaelgo
@RaduVunvulea
http://vunvulearadu.blogspot.ro
19 APRILIE 2018 | BUCUREȘTI
RADU VUNVULEA
Chief Cloud Strategies
@ Avaelgo
Technology Enthusiast
Microsoft Azure MVP
Speaker & Trainer
Writer & Blogger
Idealist Software
Architecture Crafter
19 APRILIE 2018 | BUCUREȘTI
Mulțumiri sponsorilor și partenerilor
SPONSORI
ORGANIZATOR
PARTENER MEDIA
PARTENER DE IMAGINE
SPONSOR PRINCIPAL
NETWORKING PARTNER
19 APRILIE 2018 | BUCUREȘTI
Day 0 – on-premises
Manage User
Access
Define
infrastructure
Request
infrastructure
resources
Manage
security
Manage
access
control
Define
policies
Configure
firewall for
external
systems
19 APRILIE 2018 | BUCUREȘTI
Day 0 - Cloud
Get cloud
subscription
Click Create Click Create Click Create
19 APRILIE 2018 | BUCUREȘTI
Day 0 - Cloud
Flexibility
Self
Service
Fast
provisioning
19 APRILIE 2018 | BUCUREȘTI
Lackofcontrol
Resource
Data
Access
Security
Consumption
19 APRILIE 2018 | BUCUREȘTI
S
Lackofcontrol
Resource
Data
Access
Security
Consumption
$
£
€
19 APRILIE 2018 | BUCUREȘTI
Identify concerns that need to be attacked
when you kick-off a cloud project
Purpose
19 APRILIE 2018 | BUCUREȘTI
ACCESSIBILITY &
ENVIRONMENT ISOLATION
19 APRILIE 2018 | BUCUREȘTI
Accessibility
VM
VM
VM
VM VM VM VM
VM
DB
19 APRILIE 2018 | BUCUREȘTI
Accessibility
VM
VM
VM
VM VM VM VM
VM
DB
19 APRILIE 2018 | BUCUREȘTI
Environments
DEV TEST PRE-PROD PROD
Access Control
Subscription
Storage Storage
Computation Computation Computation
Subscription
19 APRILIE 2018 | BUCUREȘTI
Environments
DEV TEST PRE-PROD PROD
Access Control
Subscription
Storage Storage
Computation Computation ComputationComputation
Storage Storage
Subscription
Access Control Access Control Access Control
Subscription
19 APRILIE 2018 | BUCUREȘTI
Think about
Accessibility &
Environment
Network
isolation
VPN
Firewall & IP
Public
Accessibility
TLS
Location
19 APRILIE 2018 | BUCUREȘTI
ACCESS RIGHTS
19 APRILIE 2018 | BUCUREȘTI
Admin
Classical approach
Cloud Subscription
PM Developer Tester ClientITDevOps
19 APRILIE 2018 | BUCUREȘTI
Admin
Classical approach
Cloud Subscription
PM Developer Tester ClientITDevOps
19 APRILIE 2018 | BUCUREȘTI
Think about
Subscription
Access
Limit full
access rights
Control
access of DEV
& Test
3rd parties shall
not be admin
on client
subscription
3rd parties can
be co-admin
Granular
permissions
Use only
company
emails
19 APRILIE 2018 | BUCUREȘTI
DATA SECURITY
19 APRILIE 2018 | BUCUREȘTI
Data security
Storage
Developer
Tester
Client
DevOps
Full access Relational Database
No-SQL Database
19 APRILIE 2018 | BUCUREȘTI
PRODPRETESTDEV
Data security
Storage
Developer
Tester
Client
DevOps
Full access Relational Database
No-SQL Database
19 APRILIE 2018 | BUCUREȘTI
Country regulations
19 APRILIE 2018 | BUCUREȘTI
Think about
Data
Security
Environment
isolation
Row masking
Data
masking
Token base
access (SAS)
RBAC
19 APRILIE 2018 | BUCUREȘTI
RESOURCE MANAGEMENT
19 APRILIE 2018 | BUCUREȘTI
19 APRILIE 2018 | BUCUREȘTI
VM
VM
VM
DB
19 APRILIE 2018 | BUCUREȘTI
VM
VM
VM
DB
VMDB
VM
VM
VM
DB
VM VM
VM VM
VM VM
VM VM
19 APRILIE 2018 | BUCUREȘTI
VM
VM
VM
DB
VM VM
VMDB
VM VM
VMDB
VM
VM
VM
DB
VM VM
VM VM
VM VM
VM VM
VMDB
VMDB
VMDB
VM VM
19 APRILIE 2018 | BUCUREȘTI
Resource management
Environment definition
New resource
Clean-up
Tear-down
Scripts only
Policy
19 APRILIE 2018 | BUCUREȘTI
COST CONTROL
19 APRILIE 2018 | BUCUREȘTI
What is the value of the bill?
VM
VM
VM
DB
VM VM
VMDB
19 APRILIE 2018 | BUCUREȘTI
Think about
Cost
Control
Estimate
first
Define
budget
Access
control
Limit
consumption
per env
Define
alerts
Empower
the team
19 APRILIE 2018 | BUCUREȘTI
PROCESS DEFINITION
19 APRILIE 2018 | BUCUREȘTI
3535
35
19 APRILIE 2018 | BUCUREȘTI
Process definition
Resource
Control
Access
Management
Cost control
Artifacts Data Sharing Deployment
19 APRILIE 2018 | BUCUREȘTI
Process definition
Resource
Control
Access
Management
Cost control
Artifacts Data Sharing Deployment
Automation
19 APRILIE 2018 | BUCUREȘTI
OVERVIEW
19 APRILIE 2018 | BUCUREȘTI
Overview
Access
control
Data security
Accessibility
Consumtion
Environment
Isolation
Policies
19 APRILIE 2018 | BUCUREȘTI
Q & A
19 APRILIE 2018 | BUCUREȘTI
NEXT STEPS:
CREATE THE CHECKLIST
CONTACT @AVAELGO TEAM
19 APRILIE 2018 | BUCUREȘTI
42
THANK YOU!
@RaduVunvulea
RADU VUNVULEA
radu.vunvulea@avaelgo.ro
CHIEF CLOUD STRATEGIST

More Related Content

PPTX
Gdpr and compliance framework
PDF
24By7Security-SFHHA-Panel-Ppt 9-22-16
PPTX
K8s & cloud native past, present and future
PPTX
K8s & cloud native past, present and future
PPTX
IBM Connections 6 Component Pack
PDF
Thiyagu Palanisamy - Designing Microservices based systems | Codemotion Milan...
PDF
FIWARE Global Summit - Building the “AI Marketplace”
PDF
Partner Awards
Gdpr and compliance framework
24By7Security-SFHHA-Panel-Ppt 9-22-16
K8s & cloud native past, present and future
K8s & cloud native past, present and future
IBM Connections 6 Component Pack
Thiyagu Palanisamy - Designing Microservices based systems | Codemotion Milan...
FIWARE Global Summit - Building the “AI Marketplace”
Partner Awards

Similar to Day Zero in a Cloud Project | Radu VUnvulea (20)

PPTX
Next Generation of Data Integration with Azure Data Factory by Tom Kerkhove
PPTX
Next Generation Data Integration with Azure Data Factory
PPTX
The Future of Integration | Webinar of the 24th of April 2020
PDF
Data Acquisition Automation for NiFi in a Hybrid Cloud environment – the Path...
PDF
Compliance and Zero Trust Ambient Mesh
PDF
Adapting Performance Visibility to New Technology Trends
PDF
apidays Australia 2023 - Transforming Your Network To Secure, Control And Obs...
PPTX
Case Study: Creating a DocOps/Docs-As-Code DevPortal for C3.ai
PPTX
Day zero of a cloud project Radu Vunvulea ITCamp 2018
PPTX
TechEvent DWH Modernization
PDF
Edge patterns in the IIoT
PDF
2018 19 Cloudcomputing
PPTX
What’s Next For AppDynamics and Cisco? AppD Global Tour London
PPTX
Postgres Vision 2018: Taking Postgres Everywhere
 
PDF
Service Mesh meets API Management - Verteilte Services gut im Griff!
PDF
GDG Cloud Southlake #10 Christian Posta: Future of Service Mesh
PPTX
DevSecCon London 2018: Is your supply chain your achille's heel
PPTX
A Journey to a Serverless Business Intelligence, Machine Learning and Big Dat...
PDF
Secure Clouds are Happy Clouds
PPTX
Citrix Analytics - Customer Overview.pptx
Next Generation of Data Integration with Azure Data Factory by Tom Kerkhove
Next Generation Data Integration with Azure Data Factory
The Future of Integration | Webinar of the 24th of April 2020
Data Acquisition Automation for NiFi in a Hybrid Cloud environment – the Path...
Compliance and Zero Trust Ambient Mesh
Adapting Performance Visibility to New Technology Trends
apidays Australia 2023 - Transforming Your Network To Secure, Control And Obs...
Case Study: Creating a DocOps/Docs-As-Code DevPortal for C3.ai
Day zero of a cloud project Radu Vunvulea ITCamp 2018
TechEvent DWH Modernization
Edge patterns in the IIoT
2018 19 Cloudcomputing
What’s Next For AppDynamics and Cisco? AppD Global Tour London
Postgres Vision 2018: Taking Postgres Everywhere
 
Service Mesh meets API Management - Verteilte Services gut im Griff!
GDG Cloud Southlake #10 Christian Posta: Future of Service Mesh
DevSecCon London 2018: Is your supply chain your achille's heel
A Journey to a Serverless Business Intelligence, Machine Learning and Big Dat...
Secure Clouds are Happy Clouds
Citrix Analytics - Customer Overview.pptx
Ad

Recently uploaded (20)

PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PPTX
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
PPTX
Machine Learning_overview_presentation.pptx
PDF
Diabetes mellitus diagnosis method based random forest with bat algorithm
PPTX
Cloud computing and distributed systems.
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PPTX
Programs and apps: productivity, graphics, security and other tools
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PPTX
A Presentation on Artificial Intelligence
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
cuic standard and advanced reporting.pdf
PPT
Teaching material agriculture food technology
PDF
Machine learning based COVID-19 study performance prediction
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
Advanced methodologies resolving dimensionality complications for autism neur...
Dropbox Q2 2025 Financial Results & Investor Presentation
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
Machine Learning_overview_presentation.pptx
Diabetes mellitus diagnosis method based random forest with bat algorithm
Cloud computing and distributed systems.
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
“AI and Expert System Decision Support & Business Intelligence Systems”
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
20250228 LYD VKU AI Blended-Learning.pptx
Programs and apps: productivity, graphics, security and other tools
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Reach Out and Touch Someone: Haptics and Empathic Computing
gpt5_lecture_notes_comprehensive_20250812015547.pdf
A Presentation on Artificial Intelligence
The AUB Centre for AI in Media Proposal.docx
cuic standard and advanced reporting.pdf
Teaching material agriculture food technology
Machine learning based COVID-19 study performance prediction
Ad

Day Zero in a Cloud Project | Radu VUnvulea

  • 1. 19 APRILIE 2018 | BUCUREȘTI Day Zero In A Cloud Project RADU VUNVULEA Chief Cloud Strategist / Avaelgo @RaduVunvulea http://vunvulearadu.blogspot.ro
  • 2. 19 APRILIE 2018 | BUCUREȘTI RADU VUNVULEA Chief Cloud Strategies @ Avaelgo Technology Enthusiast Microsoft Azure MVP Speaker & Trainer Writer & Blogger Idealist Software Architecture Crafter
  • 3. 19 APRILIE 2018 | BUCUREȘTI Mulțumiri sponsorilor și partenerilor SPONSORI ORGANIZATOR PARTENER MEDIA PARTENER DE IMAGINE SPONSOR PRINCIPAL NETWORKING PARTNER
  • 4. 19 APRILIE 2018 | BUCUREȘTI Day 0 – on-premises Manage User Access Define infrastructure Request infrastructure resources Manage security Manage access control Define policies Configure firewall for external systems
  • 5. 19 APRILIE 2018 | BUCUREȘTI Day 0 - Cloud Get cloud subscription Click Create Click Create Click Create
  • 6. 19 APRILIE 2018 | BUCUREȘTI Day 0 - Cloud Flexibility Self Service Fast provisioning
  • 7. 19 APRILIE 2018 | BUCUREȘTI Lackofcontrol Resource Data Access Security Consumption
  • 8. 19 APRILIE 2018 | BUCUREȘTI S Lackofcontrol Resource Data Access Security Consumption $ £ €
  • 9. 19 APRILIE 2018 | BUCUREȘTI Identify concerns that need to be attacked when you kick-off a cloud project Purpose
  • 10. 19 APRILIE 2018 | BUCUREȘTI ACCESSIBILITY & ENVIRONMENT ISOLATION
  • 11. 19 APRILIE 2018 | BUCUREȘTI Accessibility VM VM VM VM VM VM VM VM DB
  • 12. 19 APRILIE 2018 | BUCUREȘTI Accessibility VM VM VM VM VM VM VM VM DB
  • 13. 19 APRILIE 2018 | BUCUREȘTI Environments DEV TEST PRE-PROD PROD Access Control Subscription Storage Storage Computation Computation Computation Subscription
  • 14. 19 APRILIE 2018 | BUCUREȘTI Environments DEV TEST PRE-PROD PROD Access Control Subscription Storage Storage Computation Computation ComputationComputation Storage Storage Subscription Access Control Access Control Access Control Subscription
  • 15. 19 APRILIE 2018 | BUCUREȘTI Think about Accessibility & Environment Network isolation VPN Firewall & IP Public Accessibility TLS Location
  • 16. 19 APRILIE 2018 | BUCUREȘTI ACCESS RIGHTS
  • 17. 19 APRILIE 2018 | BUCUREȘTI Admin Classical approach Cloud Subscription PM Developer Tester ClientITDevOps
  • 18. 19 APRILIE 2018 | BUCUREȘTI Admin Classical approach Cloud Subscription PM Developer Tester ClientITDevOps
  • 19. 19 APRILIE 2018 | BUCUREȘTI Think about Subscription Access Limit full access rights Control access of DEV & Test 3rd parties shall not be admin on client subscription 3rd parties can be co-admin Granular permissions Use only company emails
  • 20. 19 APRILIE 2018 | BUCUREȘTI DATA SECURITY
  • 21. 19 APRILIE 2018 | BUCUREȘTI Data security Storage Developer Tester Client DevOps Full access Relational Database No-SQL Database
  • 22. 19 APRILIE 2018 | BUCUREȘTI PRODPRETESTDEV Data security Storage Developer Tester Client DevOps Full access Relational Database No-SQL Database
  • 23. 19 APRILIE 2018 | BUCUREȘTI Country regulations
  • 24. 19 APRILIE 2018 | BUCUREȘTI Think about Data Security Environment isolation Row masking Data masking Token base access (SAS) RBAC
  • 25. 19 APRILIE 2018 | BUCUREȘTI RESOURCE MANAGEMENT
  • 26. 19 APRILIE 2018 | BUCUREȘTI
  • 27. 19 APRILIE 2018 | BUCUREȘTI VM VM VM DB
  • 28. 19 APRILIE 2018 | BUCUREȘTI VM VM VM DB VMDB VM VM VM DB VM VM VM VM VM VM VM VM
  • 29. 19 APRILIE 2018 | BUCUREȘTI VM VM VM DB VM VM VMDB VM VM VMDB VM VM VM DB VM VM VM VM VM VM VM VM VMDB VMDB VMDB VM VM
  • 30. 19 APRILIE 2018 | BUCUREȘTI Resource management Environment definition New resource Clean-up Tear-down Scripts only Policy
  • 31. 19 APRILIE 2018 | BUCUREȘTI COST CONTROL
  • 32. 19 APRILIE 2018 | BUCUREȘTI What is the value of the bill? VM VM VM DB VM VM VMDB
  • 33. 19 APRILIE 2018 | BUCUREȘTI Think about Cost Control Estimate first Define budget Access control Limit consumption per env Define alerts Empower the team
  • 34. 19 APRILIE 2018 | BUCUREȘTI PROCESS DEFINITION
  • 35. 19 APRILIE 2018 | BUCUREȘTI 3535 35
  • 36. 19 APRILIE 2018 | BUCUREȘTI Process definition Resource Control Access Management Cost control Artifacts Data Sharing Deployment
  • 37. 19 APRILIE 2018 | BUCUREȘTI Process definition Resource Control Access Management Cost control Artifacts Data Sharing Deployment Automation
  • 38. 19 APRILIE 2018 | BUCUREȘTI OVERVIEW
  • 39. 19 APRILIE 2018 | BUCUREȘTI Overview Access control Data security Accessibility Consumtion Environment Isolation Policies
  • 40. 19 APRILIE 2018 | BUCUREȘTI Q & A
  • 41. 19 APRILIE 2018 | BUCUREȘTI NEXT STEPS: CREATE THE CHECKLIST CONTACT @AVAELGO TEAM
  • 42. 19 APRILIE 2018 | BUCUREȘTI 42 THANK YOU! @RaduVunvulea RADU VUNVULEA radu.vunvulea@avaelgo.ro CHIEF CLOUD STRATEGIST