Insight to Action
Visibility, Optimization and Governance for your
Public Cloud and Hybrid Environments
Cloud Policies and Automation
Elise Oertli, Director A/NZ
Confidential
Who is CloudHealth Technologies?
§  Deep Domain Expertise
§  $86 Million in Venture Capital Raised
§  1,000s of Customers
§  85+ Managed Services Partners
•  220+ Employees
•  Headquartered in Boston, MA
•  Offices located in San Francisco,
Washington DC, London, Amsterdam, Tel
Aviv, Sydney, Kuala Lumpur & Singapore
Confidential
Confidential
AWS Meetup – 2017 CloudHealth Sessions
Pla$orm	
Overview	
Cost	
Op2misa2on	
Policies	and	
Automa2on	
March	Meetup	 July	Meetup	 October	Meetup	
•  High	Level	Overview	
•  Repor2ng	and	Dashboards	
•  Cost	Op2misa2on	
•  Security	Recommenda2ons	
•  Automa2on	and	Governance	
•  3rd	Party	Integra2ons	
•  Rightsizing	
•  RI	Modelling	
•  RI	Modifica2ons	
•  RI	Management	
•  Policy-based	No2fica2on	
•  Automa2on	
•  Security	Recommenda2ons
Confidential
Why do you need automation and policies?
§  As you scale your AWS
environment, it becomes
harder and harder to
govern
–  Netflix Simian Army
is a good example
§  Automation and policies
free up employee time
from menial tasks
§  “Manage by exception”
Confidential
Consider this…
trigger
Confidential
CloudHealth Policy Engine
Detailed Billing
Record
Cost and
Usage
Report
Asset API
CloudWatch
Metrics
3rd Party
Metrics
Cloudtrail
Logs
AWSConfig
Rules ...
Confidential
CloudHealth Policy Engine
Confidential
CloudHealth Policy Engine
Confidential
CloudHealth Policy Engine
Confidential
CloudHealth Policy Engine
Confidential
Types of Best Practice Policies to Consider
Financial management
policies
Performance Management
Policies
Security and Incident
Management Policies
Operational Governance
Policies
Asset & Configuration
Management Policies
Cost optimization Policies
Confidential
The Cloud Steward
§  Cross Functional Team Lead for
Stakeholders
§  Defines and Implements Functional
Business Groups
§  Defines and Delivers Reports Across
the Business
§  Manages Policy Definition and
Implementation
§  Performs Analyses, Identifies
Recommendations, and
Optimization Actions
Cloud
Steward
Operations
Finance Engineering
LOBs
OPERATIONS
Confidential
§  Centralized governance through policies
§  Enforce proper tagging governance
through policies
§  Monitors for EC2 instances with less
than 5% utilisation, so they can
investigate terminating them
§  Policy to delete unused EBS volumes
saving ~ $400 a month
§  Centralized governance through policies
§  Implemented lights on/off for non-
production infrastructure
§  Enforced tagging through policy – delete
new instance if not tagged
§  Security best practices enforced
CloudHealth tells us which environments can
be shut off outside of business hours, saving
us more per month.”
Confidential
  Work with key stakeholders to determine
what policies to implement
  Revisit policies frequently to ensure
they are still the right ones for your
organization
  Set unique policies by application or line of business
Key Take Aways
Confidential
Thank You!

Deep Dive on Cloud Policies and Automation

  • 1.
    Insight to Action Visibility,Optimization and Governance for your Public Cloud and Hybrid Environments Cloud Policies and Automation Elise Oertli, Director A/NZ
  • 2.
    Confidential Who is CloudHealthTechnologies? §  Deep Domain Expertise §  $86 Million in Venture Capital Raised §  1,000s of Customers §  85+ Managed Services Partners •  220+ Employees •  Headquartered in Boston, MA •  Offices located in San Francisco, Washington DC, London, Amsterdam, Tel Aviv, Sydney, Kuala Lumpur & Singapore
  • 3.
  • 4.
    Confidential AWS Meetup –2017 CloudHealth Sessions Pla$orm Overview Cost Op2misa2on Policies and Automa2on March Meetup July Meetup October Meetup •  High Level Overview •  Repor2ng and Dashboards •  Cost Op2misa2on •  Security Recommenda2ons •  Automa2on and Governance •  3rd Party Integra2ons •  Rightsizing •  RI Modelling •  RI Modifica2ons •  RI Management •  Policy-based No2fica2on •  Automa2on •  Security Recommenda2ons
  • 5.
    Confidential Why do youneed automation and policies? §  As you scale your AWS environment, it becomes harder and harder to govern –  Netflix Simian Army is a good example §  Automation and policies free up employee time from menial tasks §  “Manage by exception”
  • 6.
  • 7.
    Confidential CloudHealth Policy Engine DetailedBilling Record Cost and Usage Report Asset API CloudWatch Metrics 3rd Party Metrics Cloudtrail Logs AWSConfig Rules ...
  • 8.
  • 9.
  • 10.
  • 11.
  • 12.
    Confidential Types of BestPractice Policies to Consider Financial management policies Performance Management Policies Security and Incident Management Policies Operational Governance Policies Asset & Configuration Management Policies Cost optimization Policies
  • 13.
    Confidential The Cloud Steward § Cross Functional Team Lead for Stakeholders §  Defines and Implements Functional Business Groups §  Defines and Delivers Reports Across the Business §  Manages Policy Definition and Implementation §  Performs Analyses, Identifies Recommendations, and Optimization Actions Cloud Steward Operations Finance Engineering LOBs OPERATIONS
  • 14.
    Confidential §  Centralized governancethrough policies §  Enforce proper tagging governance through policies §  Monitors for EC2 instances with less than 5% utilisation, so they can investigate terminating them §  Policy to delete unused EBS volumes saving ~ $400 a month §  Centralized governance through policies §  Implemented lights on/off for non- production infrastructure §  Enforced tagging through policy – delete new instance if not tagged §  Security best practices enforced CloudHealth tells us which environments can be shut off outside of business hours, saving us more per month.”
  • 15.
    Confidential   Work withkey stakeholders to determine what policies to implement   Revisit policies frequently to ensure they are still the right ones for your organization   Set unique policies by application or line of business Key Take Aways
  • 16.