SlideShare a Scribd company logo
API Management &
Governance in an
Enterprise
30 March 2015
Principal Architect – Aditi + STC (a Harman company)
13 years of experience.
Architecting Enterprise solutions across retail, healthcare,
finance, e-commerce.
-Leveraging open source stack - Middleware, NoSQL over AWS
-Speaker @ WSo2 conferences, contribute to Java.net projects
Agenda
2
•  ABOUT ADITI_STC
•  APIs/SERVICES IN AN ENTERPRISE
•  CHALLENGES FACED BY MANY
•  GOVERNANCE ASPECTS ACROSS LIFECYCLE
•  API MANAGER - what does it address
•  GOVERNANCE REGISTRY – what does it address
•  DEMO
STC + ADITI Overview
3
We Provide Innovative Software Solutions
4
CLOUDDESIGN MOBILITY ANALYTICS
Member of
Open Handset
Alliance
Android
Device
Certification
Partner
Only Services
Company in
the OAA
Best IoT
partner
Windows
Azure
Partner of
the Year
SYMPHONY TELECA IS YOUR GLOBAL INNOVATION
AND DEVELOPMENT PARTNER
REPRESENTATIVE CLIENT
LIST
Over 600 clients globally
$400M+ in revenue
7,500 employees in 40 offices
Delivery centers in Argentina, China,
India, Poland, Russia, US
AWARDS
GROWING
AT 25% YOY
ü
ü
ü
ü
… at a Global scale
5
APIs in an Enterprise
6
APIs – Integral part of Enterprise
7
They are everywhere…
•  Shared/Utility services
•  Mediation/ Broker
services
•  Identity services
•  Data services
•  Business as a Service
•  Mobile strategy
•  … and many more
Within
Application
Across
applications
(within
enterprise)
Outside
Enterprise
(across
partners)
Maturity
Complexity
APIs – Silos & Un Managed?
8
Silos? Un Managed?
•  Each LOB re-inventing the wheel?
•  Cost savings?
•  Time to market?
•  Maintenance overhead?
•  Catalog of services against functionality?
•  Dependencies & associations within
services
•  Who are the consumers of my service?
•  Versioning? Sharing of assets?
Governance challenges
9
APIs – Lifecycle & Governance aspects
10
Governance across stages… | Design Time & Run Time Governance
Planning
•  Searchable -Catalog,
De-duplication
•  Capture - Consumers &
Providers
•  Capturing requirements
•  NFR (perf., security)
•  Policies & Metadata
Build - Develop
•  Capture Lifecycle
•  Notifications on events
•  Capture dependency &
•  association
•  Re-use & Collaboration
•  Environment Mapping
& deployment across
Run
•  Analyze usage pattern
Of APIs
•  SLA & Performance -
Response times
•  Subscription statistics
•  Monitoring & Metering
•  Security
Share
•  Communication &
Collaboration
•  Artefacts repository
•  Forum & Feedback
•  Documentation
•  Versioning
Solution Aspects
11
Governance Registry
BAM
Monitoring
API Manager
API Manager – what challenges does it address?
12
A single platform to publish APIs, subscribe to them.
Also handles security, documentation & collaboration.
•  Browse/Search for APIs
•  Subscribe to APIs
•  Forum, Feedback & Rating
•  Production & Sandbox
•  API Keys - OAuth
•  Create APIs
•  Publish APIs & Documentation
•  Manage Throttling, Versioning
•  Lifecycle – Prototype/ Publish
•  Contact Info. & Statistics
Publisher
Store
•  Gateway serves all API
invocations
•  Takes care of throttling
•  Key Mgr. handles security
Gateway
&
Key Mgr.
API Manager + BAM – runtime Governance
13
Platform to aggregate, analyze & report on API usage
data. – Who uses my APIs? How & When?
•  Predefined OOTB reports
•  Ability to write custom Hive
queries
•  Create custom visualizations
using Toolbox.
•  Connect API Manager to BAM
•  Push Log data to BAM
•  JSON format
•  API to push data
Collect
data
Inbuilt &
custom
queries
•  Use in Dev for debugging
purposes
•  Single place to analyze logs
•  Prod to measure subscription,
response time, usage pattern
•  End consumer personalization
Dev &
Prod
usage
Governance Registry – what challenges does it address?
14
•  A single platform across the Enterprise to manage
the APIs, Services, Policies and other artefacts.
•  Foster trust, share & re-use, cost savings &
accelerate time to market.
•  Create APIs, Services,
WSDLs
•  Policies & Sequences
•  Share across multiple apps by
mounting Governance registry
•  Registry extension – model
types & their meta data
•  Create consumers, providers
•  Applications & Services
•  Contact Info. & Statistics
Enterpris
e Map
(rxt &
metadata)
Artefacts
(upload &
share)
•  Lifecycle – Prototype/ Publish
•  Handlers for media types
Lifecycle
&
Handlers
Provider
(External)
Seq/URL
Consumer
(Department)
Applicatio
n(s) Service/
WSDL/
API
Governance Registry across Environments
15
Use keys instead of actual URLShared Governance Registry across Env.
Different Mount points.
WSO2 API Management Platform
16
WSO2 API Manager 1.9.0 released !!
17
•  External Key Manager support
•  Pluggable Version Strategy
•  Applications/Subscription sharing
•  Swagger 2.0 support
•  Improved API Analytics toolbox (separate download)
•  API Fraud Detection sample (separate download)
Q&A
18
40
GLOBAL
OFFICES
7500
EMPLOYEES
23
COUNTRIES
Top 10
Mobile Companies
Top 5
Outsourced Product Development Companies
2012 Partner of the year
Windows Azure, Finalist
Excellence Award
Technology Agency of the Year 2015

More Related Content

PPTX
WSO2 Workshop Sydney 2016 - APIs
PPTX
How to Manage APIs in your Enterprise for Maximum Reusability and Governance
PDF
API Management Microservices beyond HIP
PDF
Knowage roadmap-2022 (1)
PDF
WSO2Con USA 2017: Building Platforms for Rapid Application Development
PDF
WSO2Con USA 2017: Cloud as a Delivery Channel
PDF
WSO2 & AAA Ohio Automobile Club
PDF
Edge API BaaS Deep-Dive: Streamline app development
WSO2 Workshop Sydney 2016 - APIs
How to Manage APIs in your Enterprise for Maximum Reusability and Governance
API Management Microservices beyond HIP
Knowage roadmap-2022 (1)
WSO2Con USA 2017: Building Platforms for Rapid Application Development
WSO2Con USA 2017: Cloud as a Delivery Channel
WSO2 & AAA Ohio Automobile Club
Edge API BaaS Deep-Dive: Streamline app development

What's hot (20)

PDF
Event-Driven Architecture (EDA)
PDF
How does an API management strategy support your digital transformation?
PDF
API Design Essentials - Akana Platform Overview
PPTX
Why WSO2 for Digital Transformation
PDF
Customer testimonal API Program Lessons learned
PPTX
APIs: The Gateway to Digital Transformation
PPTX
iPaaS: A platform for Integration technology convergence
PDF
APIdays Paris 2018 - Anatomy of an API Transformation Journey Ali Bouhouch, C...
PPTX
The Four Transformative Forces of the API Management Market
PDF
apidays LIVE New York 2021 - How to productify your data with a GraphQL APIs ...
PPTX
INTERFACE, by apidays - Keeping the link between legacy and new by Vince Pad...
PPTX
What are your APIs Worth?
PDF
[WSO2Con Asia 2018] Qantas APIs Take Flight
PPTX
Realizing Hybrid Cloud: Using IBM Bluemix, APIs, and DataPower
PPTX
Apigee Insights: Data & Context-Driven Actions
PDF
[WSO2Con EU 2018] APIs - Technology That Can Transform Your Business Into a P...
PPTX
Adapt or Die DevJam: San Francisco, Sept 27 2016
PDF
API Days- Why is monitoring critical to API Management
PPTX
APIdays Helsinki 2019 - Impact of Microservices Architecture on API Managemen...
PPTX
Adapt or Die: Serverless Microservices
Event-Driven Architecture (EDA)
How does an API management strategy support your digital transformation?
API Design Essentials - Akana Platform Overview
Why WSO2 for Digital Transformation
Customer testimonal API Program Lessons learned
APIs: The Gateway to Digital Transformation
iPaaS: A platform for Integration technology convergence
APIdays Paris 2018 - Anatomy of an API Transformation Journey Ali Bouhouch, C...
The Four Transformative Forces of the API Management Market
apidays LIVE New York 2021 - How to productify your data with a GraphQL APIs ...
INTERFACE, by apidays - Keeping the link between legacy and new by Vince Pad...
What are your APIs Worth?
[WSO2Con Asia 2018] Qantas APIs Take Flight
Realizing Hybrid Cloud: Using IBM Bluemix, APIs, and DataPower
Apigee Insights: Data & Context-Driven Actions
[WSO2Con EU 2018] APIs - Technology That Can Transform Your Business Into a P...
Adapt or Die DevJam: San Francisco, Sept 27 2016
API Days- Why is monitoring critical to API Management
APIdays Helsinki 2019 - Impact of Microservices Architecture on API Managemen...
Adapt or Die: Serverless Microservices
Ad

Similar to How to Manage APIs in your Enterprise for Maximum Reusability and Governance (20)

PPTX
Extend soa with api management spoug- Madrid
PPTX
Transforming Your Business Through APIs
PDF
João Emilio Santos Bento da Silva - Estratégia de APIs
PDF
Extend soa with api management Sangam18
PPTX
WSO2- OSC Korea - Accelerating Digital Businesses with APIs
PDF
Enabling digital transformation api ecosystems and data virtualization
PDF
Extend soa with api management Doag18
PPTX
Global Azure 2022 - Architecting Modern Serverless APIs with Azure Functions ...
PDF
API Management Building Blocks and Business value
PPTX
OData External Data Integration Strategies for SaaS
PDF
Understanding the WSO2 Platform and Technology
PDF
API and App Ecosystems - Build The Best: a deep dive
PPTX
Platform for Secure Digital Business
PPTX
SAP Cloud Platform API Management Technical Brief
PDF
Hewlett Packard Enterprise View on Going Big with API Management - Applicatio...
PDF
[Workshop] Managing the API lifecycle with Open Source Technologies
PDF
M meijer api management - tech-days 2015
PDF
WSO2Con USA 2017: Brokerage as a Service (BaaS), Transforming Fidelity Broker...
PPTX
Scaling Application Development & Delivery across the Enterprise
PDF
Cloud Customer Architecture for API Management
Extend soa with api management spoug- Madrid
Transforming Your Business Through APIs
João Emilio Santos Bento da Silva - Estratégia de APIs
Extend soa with api management Sangam18
WSO2- OSC Korea - Accelerating Digital Businesses with APIs
Enabling digital transformation api ecosystems and data virtualization
Extend soa with api management Doag18
Global Azure 2022 - Architecting Modern Serverless APIs with Azure Functions ...
API Management Building Blocks and Business value
OData External Data Integration Strategies for SaaS
Understanding the WSO2 Platform and Technology
API and App Ecosystems - Build The Best: a deep dive
Platform for Secure Digital Business
SAP Cloud Platform API Management Technical Brief
Hewlett Packard Enterprise View on Going Big with API Management - Applicatio...
[Workshop] Managing the API lifecycle with Open Source Technologies
M meijer api management - tech-days 2015
WSO2Con USA 2017: Brokerage as a Service (BaaS), Transforming Fidelity Broker...
Scaling Application Development & Delivery across the Enterprise
Cloud Customer Architecture for API Management
Ad

More from WSO2 (20)

PDF
Demystifying CMS-0057-F - Compliance Made Seamless with WSO2
PDF
Quantum Threats Are Closer Than You Think – Act Now to Stay Secure
PDF
Modern Platform Engineering with Choreo - The AI-Native Internal Developer Pl...
PDF
Application Modernization with Choreo - The AI-Native Internal Developer Plat...
PDF
Build Smarter, Deliver Faster with Choreo - An AI Native Internal Developer P...
PDF
Platformless Modernization with Choreo.pdf
PDF
Application Modernization with Choreo for the BFSI Sector
PDF
Choreo - The AI-Native Internal Developer Platform as a Service: Overview
PDF
[Roundtable] Choreo - The AI-Native Internal Developer Platform as a Service
PPTX
WSO2Con 2025 - Building AI Applications in the Enterprise (Part 1)
PPTX
WSO2Con 2025 - Building Secure Business Customer and Partner Experience (B2B)...
PPTX
WSO2Con 2025 - Building Secure Customer Experience Apps
PPTX
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
PPTX
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
PPTX
WSO2Con 2025 - Unified Management of Ingress and Egress Across Multiple API G...
PPTX
WSO2Con 2025 - How an Internal Developer Platform Lets Developers Focus on Code
PPTX
WSO2Con 2025 - Architecting Cloud-Native Applications
PDF
Mastering Intelligent Digital Experiences with Platformless Modernization
PDF
Accelerate Enterprise Software Engineering with Platformless
PDF
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
Demystifying CMS-0057-F - Compliance Made Seamless with WSO2
Quantum Threats Are Closer Than You Think – Act Now to Stay Secure
Modern Platform Engineering with Choreo - The AI-Native Internal Developer Pl...
Application Modernization with Choreo - The AI-Native Internal Developer Plat...
Build Smarter, Deliver Faster with Choreo - An AI Native Internal Developer P...
Platformless Modernization with Choreo.pdf
Application Modernization with Choreo for the BFSI Sector
Choreo - The AI-Native Internal Developer Platform as a Service: Overview
[Roundtable] Choreo - The AI-Native Internal Developer Platform as a Service
WSO2Con 2025 - Building AI Applications in the Enterprise (Part 1)
WSO2Con 2025 - Building Secure Business Customer and Partner Experience (B2B)...
WSO2Con 2025 - Building Secure Customer Experience Apps
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
WSO2Con 2025 - AI-Driven API Design, Development, and Consumption with Enhanc...
WSO2Con 2025 - Unified Management of Ingress and Egress Across Multiple API G...
WSO2Con 2025 - How an Internal Developer Platform Lets Developers Focus on Code
WSO2Con 2025 - Architecting Cloud-Native Applications
Mastering Intelligent Digital Experiences with Platformless Modernization
Accelerate Enterprise Software Engineering with Platformless
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation

Recently uploaded (20)

PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
Assigned Numbers - 2025 - Bluetooth® Document
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PDF
cuic standard and advanced reporting.pdf
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
Machine learning based COVID-19 study performance prediction
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PDF
Empathic Computing: Creating Shared Understanding
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PPTX
Machine Learning_overview_presentation.pptx
PDF
Encapsulation_ Review paper, used for researhc scholars
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PPTX
Cloud computing and distributed systems.
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PDF
Network Security Unit 5.pdf for BCA BBA.
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
“AI and Expert System Decision Support & Business Intelligence Systems”
Assigned Numbers - 2025 - Bluetooth® Document
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
cuic standard and advanced reporting.pdf
Dropbox Q2 2025 Financial Results & Investor Presentation
Machine learning based COVID-19 study performance prediction
Unlocking AI with Model Context Protocol (MCP)
MIND Revenue Release Quarter 2 2025 Press Release
Empathic Computing: Creating Shared Understanding
Chapter 3 Spatial Domain Image Processing.pdf
Machine Learning_overview_presentation.pptx
Encapsulation_ Review paper, used for researhc scholars
Spectral efficient network and resource selection model in 5G networks
Advanced methodologies resolving dimensionality complications for autism neur...
Cloud computing and distributed systems.
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Network Security Unit 5.pdf for BCA BBA.
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Review of recent advances in non-invasive hemoglobin estimation
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton

How to Manage APIs in your Enterprise for Maximum Reusability and Governance

  • 1. API Management & Governance in an Enterprise 30 March 2015 Principal Architect – Aditi + STC (a Harman company) 13 years of experience. Architecting Enterprise solutions across retail, healthcare, finance, e-commerce. -Leveraging open source stack - Middleware, NoSQL over AWS -Speaker @ WSo2 conferences, contribute to Java.net projects
  • 2. Agenda 2 •  ABOUT ADITI_STC •  APIs/SERVICES IN AN ENTERPRISE •  CHALLENGES FACED BY MANY •  GOVERNANCE ASPECTS ACROSS LIFECYCLE •  API MANAGER - what does it address •  GOVERNANCE REGISTRY – what does it address •  DEMO
  • 3. STC + ADITI Overview 3
  • 4. We Provide Innovative Software Solutions 4 CLOUDDESIGN MOBILITY ANALYTICS Member of Open Handset Alliance Android Device Certification Partner Only Services Company in the OAA Best IoT partner Windows Azure Partner of the Year
  • 5. SYMPHONY TELECA IS YOUR GLOBAL INNOVATION AND DEVELOPMENT PARTNER REPRESENTATIVE CLIENT LIST Over 600 clients globally $400M+ in revenue 7,500 employees in 40 offices Delivery centers in Argentina, China, India, Poland, Russia, US AWARDS GROWING AT 25% YOY ü ü ü ü … at a Global scale 5
  • 6. APIs in an Enterprise 6
  • 7. APIs – Integral part of Enterprise 7 They are everywhere… •  Shared/Utility services •  Mediation/ Broker services •  Identity services •  Data services •  Business as a Service •  Mobile strategy •  … and many more Within Application Across applications (within enterprise) Outside Enterprise (across partners) Maturity Complexity
  • 8. APIs – Silos & Un Managed? 8 Silos? Un Managed? •  Each LOB re-inventing the wheel? •  Cost savings? •  Time to market? •  Maintenance overhead? •  Catalog of services against functionality? •  Dependencies & associations within services •  Who are the consumers of my service? •  Versioning? Sharing of assets?
  • 10. APIs – Lifecycle & Governance aspects 10 Governance across stages… | Design Time & Run Time Governance Planning •  Searchable -Catalog, De-duplication •  Capture - Consumers & Providers •  Capturing requirements •  NFR (perf., security) •  Policies & Metadata Build - Develop •  Capture Lifecycle •  Notifications on events •  Capture dependency & •  association •  Re-use & Collaboration •  Environment Mapping & deployment across Run •  Analyze usage pattern Of APIs •  SLA & Performance - Response times •  Subscription statistics •  Monitoring & Metering •  Security Share •  Communication & Collaboration •  Artefacts repository •  Forum & Feedback •  Documentation •  Versioning
  • 12. API Manager – what challenges does it address? 12 A single platform to publish APIs, subscribe to them. Also handles security, documentation & collaboration. •  Browse/Search for APIs •  Subscribe to APIs •  Forum, Feedback & Rating •  Production & Sandbox •  API Keys - OAuth •  Create APIs •  Publish APIs & Documentation •  Manage Throttling, Versioning •  Lifecycle – Prototype/ Publish •  Contact Info. & Statistics Publisher Store •  Gateway serves all API invocations •  Takes care of throttling •  Key Mgr. handles security Gateway & Key Mgr.
  • 13. API Manager + BAM – runtime Governance 13 Platform to aggregate, analyze & report on API usage data. – Who uses my APIs? How & When? •  Predefined OOTB reports •  Ability to write custom Hive queries •  Create custom visualizations using Toolbox. •  Connect API Manager to BAM •  Push Log data to BAM •  JSON format •  API to push data Collect data Inbuilt & custom queries •  Use in Dev for debugging purposes •  Single place to analyze logs •  Prod to measure subscription, response time, usage pattern •  End consumer personalization Dev & Prod usage
  • 14. Governance Registry – what challenges does it address? 14 •  A single platform across the Enterprise to manage the APIs, Services, Policies and other artefacts. •  Foster trust, share & re-use, cost savings & accelerate time to market. •  Create APIs, Services, WSDLs •  Policies & Sequences •  Share across multiple apps by mounting Governance registry •  Registry extension – model types & their meta data •  Create consumers, providers •  Applications & Services •  Contact Info. & Statistics Enterpris e Map (rxt & metadata) Artefacts (upload & share) •  Lifecycle – Prototype/ Publish •  Handlers for media types Lifecycle & Handlers Provider (External) Seq/URL Consumer (Department) Applicatio n(s) Service/ WSDL/ API
  • 15. Governance Registry across Environments 15 Use keys instead of actual URLShared Governance Registry across Env. Different Mount points.
  • 16. WSO2 API Management Platform 16
  • 17. WSO2 API Manager 1.9.0 released !! 17 •  External Key Manager support •  Pluggable Version Strategy •  Applications/Subscription sharing •  Swagger 2.0 support •  Improved API Analytics toolbox (separate download) •  API Fraud Detection sample (separate download)
  • 19. 40 GLOBAL OFFICES 7500 EMPLOYEES 23 COUNTRIES Top 10 Mobile Companies Top 5 Outsourced Product Development Companies 2012 Partner of the year Windows Azure, Finalist Excellence Award Technology Agency of the Year 2015