All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Ready Set Cloud
By Ran Ben-ishai
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Enterprise journey to the cloud
Agenda
• AWS Global infrastructure
• CloudZone’s path to AWS
• Customer use cases
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
AWS Global infrastructure
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Regions
AWS Global infrastructure
• Each region contains two or more Availability Zones
• AWS has 16 regions
• Regions are isolated
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Availability Zones
AWS Global infrastructure
• Each AZ is designed for fault isolation
• Interconnected with other AZs in the same region using high-
speed private links.
• We choose AZs for our workloads
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Let’s consider workloads in AWS public cloud. Why?
Cloud
The path to AWS
• Security
• Cost
• Global Reach
• Scalability
• Fast time to market
• Flexibility
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Hand-in-hand journey with CloudZone’s AWS experts
The path to AWS
Assessments
Governance
System reviews
Implementation
Ongoing
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
AWS Cloud adoption framework
The path to AWS
AWS Cloud Adoption Framework (AWS CAF) offers structure to help
organizations develop an efficient and effective plan for their cloud
adoption journey. Guidance and best-practices prescribed within the
framework can help you build a comprehensive approach to cloud
computing across your organization, throughout your IT lifecycle.
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
AWS Cloud adoption framework
The path to AWS
Business People Governance
• IT Finance
• IT strategy
• Risk management
• Benefit realization
• Resource management
• change management
• Training management
• Portfolio management
• Program and project
management
• Performance
measurement
• License management
Business
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
AWS Cloud adoption framework
The path to AWS
Platform SecurityOperations
• Compute provisioning
• Network
• Storage
• Database
• Systems and solutions
architecture
• Application development
• IAM
• Controls
• Infrastructure security
• Data protection
• Incident response
• Monitoring
• Inventory management
• Release/change management
• BCP / DR
• IT Service catalog
Technolog
y
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Assessment
• Inventory
• Services
• Security requirements
• Workloads
• Other organization
constraints/requirements
The path to AWS
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Assessment outcomes
• Recommended workloads for migration
• Highlight constraints
• High-level migration plan
• ROI
The path to AWS
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Governance
• Workshop
• Billing
• Procurement
• Security
• Apply proper controls
• Gain visibility to the cloud
• Establish fully managed remote site
The path to AWS
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Governance outcomes:
The path to AWS
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Workload review
• Workshop sessions
• Technical/hands on training
• List application/service components
• Detailed security requirements
• Network traffic flow
• On-prem connectivity requirements
• Required capacity
• Total cost of ownership (TCO)
The path to AWS
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Workload
review
The path to AWS
MySQL DB
(Master)
DB
(Slave)
Back-ups on
tapes
Web serverWeb server
App serverApp server
Ad serving app
Ad serving and
clickstream log
generation
Ad impression logs
App server
NAS file server
File system
disks
Microsoft AD
server
SAN
Hadoop clusters
Log processing
Pulling logs
down for
processing
3rd party web app
requesting ad
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Implementation
• Side by side implementation
• Ongoing customer training
• Production cut-over
• Risks management
• Create cut-over detailed plan
• Create roll back plan
• Create LLD document
• Create project Gantt
The path to AWS
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
The path to AWS
SAN
Hadoop clusters
Log processing
Pulling logs
down for
processing
ELB Directory
Service with AD
Connector
VPN Connection for
Failover
Direct Connect
connection
Public
Subnet
ELB
Resource monitoring /
ticketing service
Monitoring
company's VPC
Private
Subnet
Availability Zone 1
Web servers
App servers
Internet
Gateway
VPC Peering
Connection
VPC Peering
Connection
(VPC also owned by
customer) Private SubnetPrivate Subnet
Private SubnetPrivate Subnet
Databases with
replication and
backups
Implementation
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
The path to AWS
Ongoing
• Cost optimization
• Managed services
• SOC
• NOC
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
The path to AWS
Ongoing – Cost optimization
• Find and eliminate waste
• Leverage the Cloud abilities
• Plan ahead with discount programs
• Use governance and policies
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Customer Cases
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Advancing and Transforming
Healthcare
Allow researchers* to leverage
wealth of healthcare data in Israel, to
promote health and advance
medicine in Israel and globally
based on Big Data Advanced
Research
* Researchers from health organizations,
academy, pharma & life science companies or
any other health advocate wither local or
global.
While protecting the Interests of
the Citizens of Israel
De-Identify Data, provide a
tightly secured research
environment and regulate the
ethics of data use.*
* Without compromising the analytical value of
data & openness to an infinite number of
researches
The Vision:
Democratizing Research, Transforming Healthcare, Protecting the Data
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
De-Identified Central
Data Lake
The Israeli Health System MOH Isolated Domain on Prem Big Data Health Research Cloud
The Architecture is Security & Privacy Aware
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Solution diagram
Case #1 – Big Data – Ministry of Health
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Manufacturing - Worldwide Migration
Case #2
A leading manufacturing company with a global footprint needed a solution that
would allow for data collection from its different factories for the purpose of
reporting and monitoring activities using a single interface.
CloudZone were able to give the company a robust deployment ability. We were
able to make an adjustment to our code implantation so that the company’s
developers could install and implement code without the help of the system or
DevOps teams, which made their process that much easier. As a result, it gave the
company strong analytical capabilities and real-time performance analysis.
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Solution diagram
Case #2 – Migration: Worldwide Connectivity
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Retail - E-commerce
Case #3
A leading retailer set out to engage with its customer online in a new Web Platform
project which will be a primary business initiative and a major online operation and as
such will be deployed as a production system.
The new Web Platform environment hosted by the Customer is required to provide
the flexibility to perform maintenance and testing operations – such as deployment of
new code, patches and content, with minimal interruptions to the production site
environment.
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Solution diagram
Case #3 – E-commerce
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
On-Demand Demo Product Catalogue
Verint needed a solution that will help improve their sales process and
shorten sale cycles.
Using Amazon Catalog Verint can now upload an entire environment of a
product and run its demo, In less than 30 minutes. Now, each of Sales Reps
can set-up a demo environment for potential customers within minutes, for
any desired product, without the help of the IT team.
Case
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Solution diagram
Case #4 – On-Demand Demo Product Catalogue
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Manufacturing – IoT
A Robot manufacturer wanted to deploy IoT technologies to enhance
user experience. They did so by allowing their customers to control the
using their mobile phones.
Additionally, they wanted to get a better understanding of how their robots
performing (usage, performance, faults) so that they can give their
best possible product.
CloudZone designed and implemented their Cloud architecture to facilitate
IoT connectivity in the cloud using AWS services.
Case #5 – IoT
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Solution diagram
Case #5 – IoT
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
CloudZone’s journey to AWS cloud
All content is the property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited.
Thank You!

Ready.Set.Cloud - Enterprise Cloud Migration Framework

  • 1.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Ready Set Cloud By Ran Ben-ishai
  • 2.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Enterprise journey to the cloud Agenda • AWS Global infrastructure • CloudZone’s path to AWS • Customer use cases
  • 3.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. AWS Global infrastructure
  • 4.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Regions AWS Global infrastructure • Each region contains two or more Availability Zones • AWS has 16 regions • Regions are isolated
  • 5.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Availability Zones AWS Global infrastructure • Each AZ is designed for fault isolation • Interconnected with other AZs in the same region using high- speed private links. • We choose AZs for our workloads
  • 6.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Let’s consider workloads in AWS public cloud. Why? Cloud The path to AWS • Security • Cost • Global Reach • Scalability • Fast time to market • Flexibility
  • 7.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Hand-in-hand journey with CloudZone’s AWS experts The path to AWS Assessments Governance System reviews Implementation Ongoing
  • 8.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. AWS Cloud adoption framework The path to AWS AWS Cloud Adoption Framework (AWS CAF) offers structure to help organizations develop an efficient and effective plan for their cloud adoption journey. Guidance and best-practices prescribed within the framework can help you build a comprehensive approach to cloud computing across your organization, throughout your IT lifecycle.
  • 9.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. AWS Cloud adoption framework The path to AWS Business People Governance • IT Finance • IT strategy • Risk management • Benefit realization • Resource management • change management • Training management • Portfolio management • Program and project management • Performance measurement • License management Business
  • 10.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. AWS Cloud adoption framework The path to AWS Platform SecurityOperations • Compute provisioning • Network • Storage • Database • Systems and solutions architecture • Application development • IAM • Controls • Infrastructure security • Data protection • Incident response • Monitoring • Inventory management • Release/change management • BCP / DR • IT Service catalog Technolog y
  • 11.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Assessment • Inventory • Services • Security requirements • Workloads • Other organization constraints/requirements The path to AWS
  • 12.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Assessment outcomes • Recommended workloads for migration • Highlight constraints • High-level migration plan • ROI The path to AWS
  • 13.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Governance • Workshop • Billing • Procurement • Security • Apply proper controls • Gain visibility to the cloud • Establish fully managed remote site The path to AWS
  • 14.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Governance outcomes: The path to AWS
  • 15.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Workload review • Workshop sessions • Technical/hands on training • List application/service components • Detailed security requirements • Network traffic flow • On-prem connectivity requirements • Required capacity • Total cost of ownership (TCO) The path to AWS
  • 16.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Workload review The path to AWS MySQL DB (Master) DB (Slave) Back-ups on tapes Web serverWeb server App serverApp server Ad serving app Ad serving and clickstream log generation Ad impression logs App server NAS file server File system disks Microsoft AD server SAN Hadoop clusters Log processing Pulling logs down for processing 3rd party web app requesting ad
  • 17.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Implementation • Side by side implementation • Ongoing customer training • Production cut-over • Risks management • Create cut-over detailed plan • Create roll back plan • Create LLD document • Create project Gantt The path to AWS
  • 18.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. The path to AWS SAN Hadoop clusters Log processing Pulling logs down for processing ELB Directory Service with AD Connector VPN Connection for Failover Direct Connect connection Public Subnet ELB Resource monitoring / ticketing service Monitoring company's VPC Private Subnet Availability Zone 1 Web servers App servers Internet Gateway VPC Peering Connection VPC Peering Connection (VPC also owned by customer) Private SubnetPrivate Subnet Private SubnetPrivate Subnet Databases with replication and backups Implementation
  • 19.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. The path to AWS Ongoing • Cost optimization • Managed services • SOC • NOC
  • 20.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. The path to AWS Ongoing – Cost optimization • Find and eliminate waste • Leverage the Cloud abilities • Plan ahead with discount programs • Use governance and policies
  • 21.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Customer Cases
  • 22.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Advancing and Transforming Healthcare Allow researchers* to leverage wealth of healthcare data in Israel, to promote health and advance medicine in Israel and globally based on Big Data Advanced Research * Researchers from health organizations, academy, pharma & life science companies or any other health advocate wither local or global. While protecting the Interests of the Citizens of Israel De-Identify Data, provide a tightly secured research environment and regulate the ethics of data use.* * Without compromising the analytical value of data & openness to an infinite number of researches The Vision: Democratizing Research, Transforming Healthcare, Protecting the Data
  • 23.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. De-Identified Central Data Lake The Israeli Health System MOH Isolated Domain on Prem Big Data Health Research Cloud The Architecture is Security & Privacy Aware
  • 24.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Solution diagram Case #1 – Big Data – Ministry of Health
  • 25.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Manufacturing - Worldwide Migration Case #2 A leading manufacturing company with a global footprint needed a solution that would allow for data collection from its different factories for the purpose of reporting and monitoring activities using a single interface. CloudZone were able to give the company a robust deployment ability. We were able to make an adjustment to our code implantation so that the company’s developers could install and implement code without the help of the system or DevOps teams, which made their process that much easier. As a result, it gave the company strong analytical capabilities and real-time performance analysis.
  • 26.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Solution diagram Case #2 – Migration: Worldwide Connectivity
  • 27.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Retail - E-commerce Case #3 A leading retailer set out to engage with its customer online in a new Web Platform project which will be a primary business initiative and a major online operation and as such will be deployed as a production system. The new Web Platform environment hosted by the Customer is required to provide the flexibility to perform maintenance and testing operations – such as deployment of new code, patches and content, with minimal interruptions to the production site environment.
  • 28.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Solution diagram Case #3 – E-commerce
  • 29.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. On-Demand Demo Product Catalogue Verint needed a solution that will help improve their sales process and shorten sale cycles. Using Amazon Catalog Verint can now upload an entire environment of a product and run its demo, In less than 30 minutes. Now, each of Sales Reps can set-up a demo environment for potential customers within minutes, for any desired product, without the help of the IT team. Case
  • 30.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Solution diagram Case #4 – On-Demand Demo Product Catalogue
  • 31.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Manufacturing – IoT A Robot manufacturer wanted to deploy IoT technologies to enhance user experience. They did so by allowing their customers to control the using their mobile phones. Additionally, they wanted to get a better understanding of how their robots performing (usage, performance, faults) so that they can give their best possible product. CloudZone designed and implemented their Cloud architecture to facilitate IoT connectivity in the cloud using AWS services. Case #5 – IoT
  • 32.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Solution diagram Case #5 – IoT
  • 33.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. CloudZone’s journey to AWS cloud
  • 34.
    All content isthe property and proprietary interest of CloudZone, The removal of any proprietary notices, including attribution information, is strictly prohibited. Thank You!

Editor's Notes

  • #24  ולכן – החזון שלנו עוסק בשני צירים – איך ממצים את הפוטנציאל ואיך מגינים תוך כדי על האינטרסים של האזרחים. כדי למקסם את הפוטנציאל, בבסיס החזון שלנו – הדמוקרטיזציה של המחקר- סביבה פתוחה לחוקרים, לשיתופי פעולה, סביבה שבה גם חוקר קטן או ארגון בריאות קטן יכול לקיים מחקר משלו. האפשר לפתוח את המידע והמחקר חוקרים מארגוני בריאות, אקדמיה, חברות פרמה, מהארץ ומהעולם מכפלת כוח למחקר במקדם בריאות. זה ידוע הבעיות הגדולות מאד של עולם הבריאות נפתרות בדיאלוג מתמיד בין חוקרים שונים במקומות שונים בעולם – ואנחנו יכולים לאפשר לזה לקרות, פה במיקרו קוסמוס שלנו. מצד שני, כדי להגן על האינטרסים של האזרחים, אנחנו מייצרים את ה-Balance בין פרטיות לערך אנליטי של מידע, בין פתיחות לאבטחת מידע, בין הזנב הארוך של המחקר והשמירה האתית על שימוש נכון במידע....
  • #25 כדי שכל זה יעבוד בענן אנחנו מטפלים בכל "שרשרת האספקה" של המידע תוך שמירה מוקפדת על פרטיות ואבטחת מידע. היא יצא מארגוני הבריאות לאחר שעבר טוקניזיה. ייכנס ל-Data Lake מרכזי רק לאחר שעבר התממה מדרג ראשונה. והחוקר יקבל נגזרת של המידע, לפי המחקר שהוא מבצע ולאחר התממה מדרגה שנייה.