Web Architecture

about

DevOps Optimisation

DevOps, a fusion of Development and Operations, is a heavy word. It encompasses many concepts and concerns, but in short, it's a philosophy of treating the entire development and delivery process as a well-defined, optimised single structure.

DevOps Concerns
  • Ensuring the development & delivery process is as well oiled as it can be
  • Information Security (DevSec, DevSecOps)
  • Infrastructure Cost Minimisation

C.G. can look into your situation and determine if there is room for improvement. This can be through the lens of one, or any combination of the DevOps Concerns listed above. The cost of these services is contingent on the outcome being favourable, no savings, no charge!

Cloud Impact Study 2022 link

"cloud computing has resulted in higher-than-expected costs for 73% of IT decision-makers,

 a notable increase of 28% from just over half (57%) of companies in 2021. The operating expenditure (OpEx) payment structures of cloud computing allow organizations to pay for the compute and storage they use, while also monitoring monthly usage and spend.
However, 65% of surveyed IT decision-makers reveal they have “wasted significant IT spend due to cloud inefficiencies” and only 20% of respondents have a holistic strategy in place when it comes to their transformation."

Robust architectural design and development practices are key in minimising OpEx of web services of any scale. C.G. can help you get there, at a fee contingent on the savings achieved.

DevSec(Ops) - Development with Security in mind

DevSecOps is a software development approach that integrates security into the development process right from the start. Instead of waiting until the end of the development process to test for security, security is integrated and tested throughout.

This helps to find and fix security problems earlier, make the process more efficient, and make the final product more secure. DevSecOps involves all members of a development team, including those working on design, coding, and testing, to prioritize security in every step.

Most avalanches start as a snowball.

Are Your Ducks In a Row?

Slack Incident
31st December 2022
Slack employee tokens were stolen and misused to gain access to their externally hosted GitHub repository.
Okta Code Repositories
21st December 2022
Early December 2022, GitHub alerted Okta about possible suspicious access to Okta code repositories. Upon investigation, it has been concluded that such access was used to copy Okta code repositories.
900,000 - Virgin Media
5th March 2020
A Virgin Media database containing the personal information of 900,000 people was left unsecured online for ten months. The database was for marketing purposes and contained information such as names, phone numbers, emails, and home addresses.
Hackney Council Attack
October 2020
Hackers had deployed ransomware that severely crippled the IT systems, limiting the council’s ability to look after the people who depend on it.

More than two years later, Hackney Council is still dealing with the aftermath of the attack. While its services are now running, parts of the council are still not operating as they were prior to the attack.

Our DevOps audit service is priced based on the results achieved.