SlideShare a Scribd company logo
1 of 19
LESSONS LEARNED THROUGH
CLOUD TRANSFORMATION
Jim Rutt
Director of IT, Dana Foundation
October 28, 2015
PERSONAL BACKGROUND
• 20 years of client-side practioning in technology
• Primarily in healthcare (payer/managed care) but also significant experience in
financial and pharmaceutical.
• As Director of IT for The Dana Foundation, responsible for all domains
encompassing the use of technology (infrastructure, application development, data,
network, etc.)
• First experience in the non-profit sector
DANA FOUNDATION BACKGROUND
• http://www.dana.org
• Founded in 1950
• Endowment based foundation supporting brain research through grants,
publications and educational programs
• Chief importance centered around scientific inquiry (funding of research into
neuroscience) and the engagement of the general public (publications and
programs)
DECEMBER 2010: FIRST DAY
BEGINNING STATE
• Traditional on-premise infrastructure with a limited amount of IaaS/private cloud
• Limited human resources
• No application lifecycle
• No real strategy around risk, security, compliance
• Traditional problems (too much time spent supporting infrastructure issues and not
enough time developing new features and enhancing end-user experience)
MARCH 2011: TRIGGER EVENT
• Foundation moved to new location
• Opportunities for consolidation as well as re-thinking existing cloud environment,
with an eye towards optimizing from a performance, security, and cost perspective.
• Addressing macro trends affecting everyone in our industry (consumerization of IT,
rise of mobile, demographic trends).
• Time to test the waters with the first application…
OFFICE 365
• Existing Exchange Server environment:
• Total of 15 VM’s, way too complex
• Uptime way below five nines
• All resources (CPU/RAM/storage) reaching 100% utilization
• Active Directory environment supporting Exchange badly neglected with serious
integrity issues.
• Maybe an opportunity to embrace a new security model rather than pour significant
resources into maintaining AD.
OFFICE 365: APRIL 2011-JAN 2012
• Migration considerations specific to governance:
• Ruled out AD Federation due to previously identified issues with AD.
• However, slightly complicating authentication model temporarily (going from AD pass
through authentication to adding an additional Office 365 credential in addition to
existing AD)
• Already risking “password fatigue” with end users.
• Time to look at a possible new solution for cloud-based identity…..
OKTA (ID AS A SERVICE)
• Essentially a single sign on solution primarily for SaaS
• Great leverage with web based SaaS offerings,also integratable with AD
• Also streamlines provisioning/deprovisioning.
• Clean user interface and simple administrative console
• We began to see this model as the future.
SALESFORCE
GREAT PLAINS TO AZURE
ZENDESK
• SaaS based Help Desk solution
COMPLIANCE/GOVERNANCE
CONSIDERATIONS
• No technology audits prior to 2010.
• Using the new technologies and strategies we were able to craft a compliance
structure, along with guiding our external auditors, that truly represented an
actionable governance program, rather than just a checklist of useless items.
NEXT GENERATION SECURITY
SOLUTIONS
• Netskope (CASB)
• Vera (hardening at the actual file level)
• Menlo Security (malware isolation)
• Ensilo (Exfiltration
• Lesser reliance on legacy antivirus solutions
REMAINING IAAS VIRTUAL
ENVIRONMENTS
RETURN ON INVESTMENT
• Signifigant security cost/risk mitigation now transferred to top tier providers
(Microsoft, Salesforce, etc.)
• Trust factor is this case resembles a reverse of the “prisoners dilemma” theory.
LESSONS LEARNED ALONG THE WAY
• Calculated risk moving our most visible application (Exchange) to the cloud first, but
mitigated by existing pain felt.
2016 AND BEYOND
• Eventual retirement of legacy AD
• Harden end-user devices
• Expansion of two factor authentication
• Continue to adopt next generation endpoint security solutions.
THANK YOU
• Questions?

More Related Content

What's hot

Transforming the digital experience of your workforce
Transforming the digital experience of your workforceTransforming the digital experience of your workforce
Transforming the digital experience of your workforceRES
 
Flexible and Secure Workspaces for the Modern Enterprise
Flexible and Secure Workspaces for the Modern EnterpriseFlexible and Secure Workspaces for the Modern Enterprise
Flexible and Secure Workspaces for the Modern EnterpriseRES
 
Human Centred Business Transformation
Human Centred Business TransformationHuman Centred Business Transformation
Human Centred Business TransformationThoughtworks
 
Conquer the Barriers to Self-Service Adoption
Conquer the Barriers to Self-Service AdoptionConquer the Barriers to Self-Service Adoption
Conquer the Barriers to Self-Service AdoptionRES
 
Bt idc event cloud adoption in ireland
Bt  idc event cloud adoption in irelandBt  idc event cloud adoption in ireland
Bt idc event cloud adoption in irelandFiona Sexton
 
Cloud Strategy Methodology
Cloud Strategy MethodologyCloud Strategy Methodology
Cloud Strategy MethodologyCisco Canada
 
Are Your IT Professionals Fire-Fighting When They Should Be Innovating
Are Your IT Professionals Fire-Fighting When They Should Be InnovatingAre Your IT Professionals Fire-Fighting When They Should Be Innovating
Are Your IT Professionals Fire-Fighting When They Should Be InnovatingRES
 
I Need it Right Now! Successfully Equipping and Empowering the Digital Workforce
I Need it Right Now! Successfully Equipping and Empowering the Digital WorkforceI Need it Right Now! Successfully Equipping and Empowering the Digital Workforce
I Need it Right Now! Successfully Equipping and Empowering the Digital WorkforceRES
 
ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...
ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...
ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...ARC Advisory Group
 
Technology for People in Healthcare
Technology for People in HealthcareTechnology for People in Healthcare
Technology for People in HealthcareRES
 
BMC/Forrester Your Cloud Future is Here Webinar
BMC/Forrester Your Cloud Future is Here WebinarBMC/Forrester Your Cloud Future is Here Webinar
BMC/Forrester Your Cloud Future is Here WebinarBMC Software
 
IT in the Cloud
IT in the CloudIT in the Cloud
IT in the CloudIvanti
 
The Top Cloud Experts of 2013
The Top Cloud Experts of 2013The Top Cloud Experts of 2013
The Top Cloud Experts of 2013Xtium
 
How to reduce unplanned work and increase customer value
How to reduce unplanned work and increase customer valueHow to reduce unplanned work and increase customer value
How to reduce unplanned work and increase customer valueAxios Systems
 
Application Portfolio Management Strategies that Accelerate Digital Transform...
Application Portfolio Management Strategies that Accelerate Digital Transform...Application Portfolio Management Strategies that Accelerate Digital Transform...
Application Portfolio Management Strategies that Accelerate Digital Transform...Mendix
 
Money Pitfalls and Failed Expectations: Optimizing Essentials for the Cloud
Money Pitfalls and Failed Expectations: Optimizing Essentials for the CloudMoney Pitfalls and Failed Expectations: Optimizing Essentials for the Cloud
Money Pitfalls and Failed Expectations: Optimizing Essentials for the CloudNicole Maus
 
from shadow IT to empowered IT-asanka 2014 08-gartner catalyst
from shadow IT to empowered IT-asanka 2014 08-gartner catalystfrom shadow IT to empowered IT-asanka 2014 08-gartner catalyst
from shadow IT to empowered IT-asanka 2014 08-gartner catalystWSO2
 
Empower Your Workforce Through Self Service
Empower Your Workforce Through Self ServiceEmpower Your Workforce Through Self Service
Empower Your Workforce Through Self ServiceRES
 
The 2014 AWS Enterprise Summit - Enabling the New IT Org
The 2014 AWS Enterprise Summit - Enabling the New IT Org The 2014 AWS Enterprise Summit - Enabling the New IT Org
The 2014 AWS Enterprise Summit - Enabling the New IT Org Amazon Web Services
 
Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31
Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31
Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31TechSoup
 

What's hot (20)

Transforming the digital experience of your workforce
Transforming the digital experience of your workforceTransforming the digital experience of your workforce
Transforming the digital experience of your workforce
 
Flexible and Secure Workspaces for the Modern Enterprise
Flexible and Secure Workspaces for the Modern EnterpriseFlexible and Secure Workspaces for the Modern Enterprise
Flexible and Secure Workspaces for the Modern Enterprise
 
Human Centred Business Transformation
Human Centred Business TransformationHuman Centred Business Transformation
Human Centred Business Transformation
 
Conquer the Barriers to Self-Service Adoption
Conquer the Barriers to Self-Service AdoptionConquer the Barriers to Self-Service Adoption
Conquer the Barriers to Self-Service Adoption
 
Bt idc event cloud adoption in ireland
Bt  idc event cloud adoption in irelandBt  idc event cloud adoption in ireland
Bt idc event cloud adoption in ireland
 
Cloud Strategy Methodology
Cloud Strategy MethodologyCloud Strategy Methodology
Cloud Strategy Methodology
 
Are Your IT Professionals Fire-Fighting When They Should Be Innovating
Are Your IT Professionals Fire-Fighting When They Should Be InnovatingAre Your IT Professionals Fire-Fighting When They Should Be Innovating
Are Your IT Professionals Fire-Fighting When They Should Be Innovating
 
I Need it Right Now! Successfully Equipping and Empowering the Digital Workforce
I Need it Right Now! Successfully Equipping and Empowering the Digital WorkforceI Need it Right Now! Successfully Equipping and Empowering the Digital Workforce
I Need it Right Now! Successfully Equipping and Empowering the Digital Workforce
 
ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...
ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...
ARC's Bob Mick's and Dick Hill's Dashboard & Role Based Portals Presentation ...
 
Technology for People in Healthcare
Technology for People in HealthcareTechnology for People in Healthcare
Technology for People in Healthcare
 
BMC/Forrester Your Cloud Future is Here Webinar
BMC/Forrester Your Cloud Future is Here WebinarBMC/Forrester Your Cloud Future is Here Webinar
BMC/Forrester Your Cloud Future is Here Webinar
 
IT in the Cloud
IT in the CloudIT in the Cloud
IT in the Cloud
 
The Top Cloud Experts of 2013
The Top Cloud Experts of 2013The Top Cloud Experts of 2013
The Top Cloud Experts of 2013
 
How to reduce unplanned work and increase customer value
How to reduce unplanned work and increase customer valueHow to reduce unplanned work and increase customer value
How to reduce unplanned work and increase customer value
 
Application Portfolio Management Strategies that Accelerate Digital Transform...
Application Portfolio Management Strategies that Accelerate Digital Transform...Application Portfolio Management Strategies that Accelerate Digital Transform...
Application Portfolio Management Strategies that Accelerate Digital Transform...
 
Money Pitfalls and Failed Expectations: Optimizing Essentials for the Cloud
Money Pitfalls and Failed Expectations: Optimizing Essentials for the CloudMoney Pitfalls and Failed Expectations: Optimizing Essentials for the Cloud
Money Pitfalls and Failed Expectations: Optimizing Essentials for the Cloud
 
from shadow IT to empowered IT-asanka 2014 08-gartner catalyst
from shadow IT to empowered IT-asanka 2014 08-gartner catalystfrom shadow IT to empowered IT-asanka 2014 08-gartner catalyst
from shadow IT to empowered IT-asanka 2014 08-gartner catalyst
 
Empower Your Workforce Through Self Service
Empower Your Workforce Through Self ServiceEmpower Your Workforce Through Self Service
Empower Your Workforce Through Self Service
 
The 2014 AWS Enterprise Summit - Enabling the New IT Org
The 2014 AWS Enterprise Summit - Enabling the New IT Org The 2014 AWS Enterprise Summit - Enabling the New IT Org
The 2014 AWS Enterprise Summit - Enabling the New IT Org
 
Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31
Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31
Webinar: 5 Clear Steps to Get Your Nonprofit Cloud Ready - 2018-5-31
 

Viewers also liked

Mexicanos – the spanish frontier ning site #4
Mexicanos – the spanish frontier ning site #4Mexicanos – the spanish frontier ning site #4
Mexicanos – the spanish frontier ning site #4IanTurpen
 
самара космическая верфь россии
самара   космическая верфь россиисамара   космическая верфь россии
самара космическая верфь россииvorsunovain123
 
Dawley High Street Photos May 2012
Dawley High Street   Photos May 2012Dawley High Street   Photos May 2012
Dawley High Street Photos May 2012Pete Jackson
 
Tectonic shifts icdm2012_1_outgoing
Tectonic shifts icdm2012_1_outgoingTectonic shifts icdm2012_1_outgoing
Tectonic shifts icdm2012_1_outgoingbkitts
 
Nieuwe vorm journalistiek - SMC046
Nieuwe vorm journalistiek - SMC046Nieuwe vorm journalistiek - SMC046
Nieuwe vorm journalistiek - SMC046meysjeloesje
 
Олег Волошин, ИМБП РАН. Первые шаги на пути к другим планетам
Олег Волошин, ИМБП РАН. Первые шаги на пути к другим планетамОлег Волошин, ИМБП РАН. Первые шаги на пути к другим планетам
Олег Волошин, ИМБП РАН. Первые шаги на пути к другим планетамОльга Черкашина
 
Ghid de buna practica competenta digitala
Ghid de buna practica   competenta digitalaGhid de buna practica   competenta digitala
Ghid de buna practica competenta digitalaIcesicon
 
Wikipedia in the college classroom
Wikipedia in the college classroomWikipedia in the college classroom
Wikipedia in the college classroomPete Forsyth
 
A digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektek
A digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektekA digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektek
A digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektekEmil Koplányi
 

Viewers also liked (11)

Mexicanos – the spanish frontier ning site #4
Mexicanos – the spanish frontier ning site #4Mexicanos – the spanish frontier ning site #4
Mexicanos – the spanish frontier ning site #4
 
Marianne faithfull slide
Marianne faithfull slideMarianne faithfull slide
Marianne faithfull slide
 
самара космическая верфь россии
самара   космическая верфь россиисамара   космическая верфь россии
самара космическая верфь россии
 
Dawley High Street Photos May 2012
Dawley High Street   Photos May 2012Dawley High Street   Photos May 2012
Dawley High Street Photos May 2012
 
Tectonic shifts icdm2012_1_outgoing
Tectonic shifts icdm2012_1_outgoingTectonic shifts icdm2012_1_outgoing
Tectonic shifts icdm2012_1_outgoing
 
Wiki..
Wiki..Wiki..
Wiki..
 
Nieuwe vorm journalistiek - SMC046
Nieuwe vorm journalistiek - SMC046Nieuwe vorm journalistiek - SMC046
Nieuwe vorm journalistiek - SMC046
 
Олег Волошин, ИМБП РАН. Первые шаги на пути к другим планетам
Олег Волошин, ИМБП РАН. Первые шаги на пути к другим планетамОлег Волошин, ИМБП РАН. Первые шаги на пути к другим планетам
Олег Волошин, ИМБП РАН. Первые шаги на пути к другим планетам
 
Ghid de buna practica competenta digitala
Ghid de buna practica   competenta digitalaGhid de buna practica   competenta digitala
Ghid de buna practica competenta digitala
 
Wikipedia in the college classroom
Wikipedia in the college classroomWikipedia in the college classroom
Wikipedia in the college classroom
 
A digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektek
A digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektekA digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektek
A digitális írástudás fejlesztését elősegítő kutatási-fejlesztési projektek
 

Similar to Lessons Learned Through Cloud Transformation

IT 2.0 and Cloud Computing
IT 2.0 and Cloud ComputingIT 2.0 and Cloud Computing
IT 2.0 and Cloud ComputingEd Byrne
 
Unified approach to analytics
Unified approach to analyticsUnified approach to analytics
Unified approach to analyticsMadhumita Mantri
 
TSPi-Corporate-Presentation-Short-052813
TSPi-Corporate-Presentation-Short-052813TSPi-Corporate-Presentation-Short-052813
TSPi-Corporate-Presentation-Short-052813Ramon F. La Torre
 
5. e20 impact keynote_benefits from e20_as
5. e20 impact keynote_benefits from e20_as5. e20 impact keynote_benefits from e20_as
5. e20 impact keynote_benefits from e20_asDoina Draganescu
 
Data Foundation for Analytics Excellence by Tanimura, cathy from Okta
Data Foundation for Analytics Excellence by Tanimura, cathy from OktaData Foundation for Analytics Excellence by Tanimura, cathy from Okta
Data Foundation for Analytics Excellence by Tanimura, cathy from OktaTin Ho
 
Dennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptxDennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptxFIWARE
 
Webinar: The 5 Most Critical Things to Understand About Modern Data Integration
Webinar: The 5 Most Critical Things to Understand About Modern Data IntegrationWebinar: The 5 Most Critical Things to Understand About Modern Data Integration
Webinar: The 5 Most Critical Things to Understand About Modern Data IntegrationSnapLogic
 
Gov cloud pressclub_29mar2011_final
Gov cloud pressclub_29mar2011_finalGov cloud pressclub_29mar2011_final
Gov cloud pressclub_29mar2011_finalGovCloud Network
 
Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...
Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...
Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...Denodo
 
Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...
Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...
Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...Patrick Van Renterghem
 
Aitp presentation ed holub - october 23 2010
Aitp presentation   ed holub - october 23 2010Aitp presentation   ed holub - october 23 2010
Aitp presentation ed holub - october 23 2010AITPHouston
 
Accelerate Cloud Migrations and Architecture with Data Virtualization
Accelerate Cloud Migrations and Architecture with Data VirtualizationAccelerate Cloud Migrations and Architecture with Data Virtualization
Accelerate Cloud Migrations and Architecture with Data VirtualizationDenodo
 
Power Platform Governance Webinar
Power Platform Governance WebinarPower Platform Governance Webinar
Power Platform Governance WebinarRunpipe
 
Identity Management: Tools, processes & services
Identity Management: Tools, processes & servicesIdentity Management: Tools, processes & services
Identity Management: Tools, processes & servicesJISC Netskills
 
IWMW 2004: Introduction To JISC And The Web Community (1)
IWMW 2004: Introduction To JISC And The Web Community (1)IWMW 2004: Introduction To JISC And The Web Community (1)
IWMW 2004: Introduction To JISC And The Web Community (1)IWMW
 
DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?
DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?
DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?DATAVERSITY
 
IDC-IL Webcast on Enterprise Content Collaboration
IDC-IL Webcast on Enterprise Content Collaboration IDC-IL Webcast on Enterprise Content Collaboration
IDC-IL Webcast on Enterprise Content Collaboration Sri Chilukuri
 
Data-Ed: Data Architecture Requirements
Data-Ed: Data Architecture Requirements Data-Ed: Data Architecture Requirements
Data-Ed: Data Architecture Requirements Data Blueprint
 

Similar to Lessons Learned Through Cloud Transformation (20)

Investment in Technology for non-profit @ Diffusion Pune 2012
Investment in Technology for non-profit @ Diffusion Pune 2012Investment in Technology for non-profit @ Diffusion Pune 2012
Investment in Technology for non-profit @ Diffusion Pune 2012
 
IT 2.0 and Cloud Computing
IT 2.0 and Cloud ComputingIT 2.0 and Cloud Computing
IT 2.0 and Cloud Computing
 
Unified approach to analytics
Unified approach to analyticsUnified approach to analytics
Unified approach to analytics
 
TSPi-Corporate-Presentation-Short-052813
TSPi-Corporate-Presentation-Short-052813TSPi-Corporate-Presentation-Short-052813
TSPi-Corporate-Presentation-Short-052813
 
5. e20 impact keynote_benefits from e20_as
5. e20 impact keynote_benefits from e20_as5. e20 impact keynote_benefits from e20_as
5. e20 impact keynote_benefits from e20_as
 
Data Foundation for Analytics Excellence by Tanimura, cathy from Okta
Data Foundation for Analytics Excellence by Tanimura, cathy from OktaData Foundation for Analytics Excellence by Tanimura, cathy from Okta
Data Foundation for Analytics Excellence by Tanimura, cathy from Okta
 
Dennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptxDennis Wendland_The i4Trust Collaboration Programme.pptx
Dennis Wendland_The i4Trust Collaboration Programme.pptx
 
Intranet content management (webinar)
Intranet content management (webinar)Intranet content management (webinar)
Intranet content management (webinar)
 
Webinar: The 5 Most Critical Things to Understand About Modern Data Integration
Webinar: The 5 Most Critical Things to Understand About Modern Data IntegrationWebinar: The 5 Most Critical Things to Understand About Modern Data Integration
Webinar: The 5 Most Critical Things to Understand About Modern Data Integration
 
Gov cloud pressclub_29mar2011_final
Gov cloud pressclub_29mar2011_finalGov cloud pressclub_29mar2011_final
Gov cloud pressclub_29mar2011_final
 
Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...
Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...
Expert Panel: Overcoming Challenges with Distributed Data to Maximize Busines...
 
Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...
Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...
Presentation by Bart Gielen (DataSense) at the Data Vault Modelling and Data ...
 
Aitp presentation ed holub - october 23 2010
Aitp presentation   ed holub - october 23 2010Aitp presentation   ed holub - october 23 2010
Aitp presentation ed holub - october 23 2010
 
Accelerate Cloud Migrations and Architecture with Data Virtualization
Accelerate Cloud Migrations and Architecture with Data VirtualizationAccelerate Cloud Migrations and Architecture with Data Virtualization
Accelerate Cloud Migrations and Architecture with Data Virtualization
 
Power Platform Governance Webinar
Power Platform Governance WebinarPower Platform Governance Webinar
Power Platform Governance Webinar
 
Identity Management: Tools, processes & services
Identity Management: Tools, processes & servicesIdentity Management: Tools, processes & services
Identity Management: Tools, processes & services
 
IWMW 2004: Introduction To JISC And The Web Community (1)
IWMW 2004: Introduction To JISC And The Web Community (1)IWMW 2004: Introduction To JISC And The Web Community (1)
IWMW 2004: Introduction To JISC And The Web Community (1)
 
DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?
DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?
DAS Slides: Emerging Trends in Data Architecture — What’s the Next Big Thing?
 
IDC-IL Webcast on Enterprise Content Collaboration
IDC-IL Webcast on Enterprise Content Collaboration IDC-IL Webcast on Enterprise Content Collaboration
IDC-IL Webcast on Enterprise Content Collaboration
 
Data-Ed: Data Architecture Requirements
Data-Ed: Data Architecture Requirements Data-Ed: Data Architecture Requirements
Data-Ed: Data Architecture Requirements
 

Lessons Learned Through Cloud Transformation

  • 1. LESSONS LEARNED THROUGH CLOUD TRANSFORMATION Jim Rutt Director of IT, Dana Foundation October 28, 2015
  • 2. PERSONAL BACKGROUND • 20 years of client-side practioning in technology • Primarily in healthcare (payer/managed care) but also significant experience in financial and pharmaceutical. • As Director of IT for The Dana Foundation, responsible for all domains encompassing the use of technology (infrastructure, application development, data, network, etc.) • First experience in the non-profit sector
  • 3. DANA FOUNDATION BACKGROUND • http://www.dana.org • Founded in 1950 • Endowment based foundation supporting brain research through grants, publications and educational programs • Chief importance centered around scientific inquiry (funding of research into neuroscience) and the engagement of the general public (publications and programs)
  • 5. BEGINNING STATE • Traditional on-premise infrastructure with a limited amount of IaaS/private cloud • Limited human resources • No application lifecycle • No real strategy around risk, security, compliance • Traditional problems (too much time spent supporting infrastructure issues and not enough time developing new features and enhancing end-user experience)
  • 6. MARCH 2011: TRIGGER EVENT • Foundation moved to new location • Opportunities for consolidation as well as re-thinking existing cloud environment, with an eye towards optimizing from a performance, security, and cost perspective. • Addressing macro trends affecting everyone in our industry (consumerization of IT, rise of mobile, demographic trends). • Time to test the waters with the first application…
  • 7. OFFICE 365 • Existing Exchange Server environment: • Total of 15 VM’s, way too complex • Uptime way below five nines • All resources (CPU/RAM/storage) reaching 100% utilization • Active Directory environment supporting Exchange badly neglected with serious integrity issues. • Maybe an opportunity to embrace a new security model rather than pour significant resources into maintaining AD.
  • 8. OFFICE 365: APRIL 2011-JAN 2012 • Migration considerations specific to governance: • Ruled out AD Federation due to previously identified issues with AD. • However, slightly complicating authentication model temporarily (going from AD pass through authentication to adding an additional Office 365 credential in addition to existing AD) • Already risking “password fatigue” with end users. • Time to look at a possible new solution for cloud-based identity…..
  • 9. OKTA (ID AS A SERVICE) • Essentially a single sign on solution primarily for SaaS • Great leverage with web based SaaS offerings,also integratable with AD • Also streamlines provisioning/deprovisioning. • Clean user interface and simple administrative console • We began to see this model as the future.
  • 12. ZENDESK • SaaS based Help Desk solution
  • 13. COMPLIANCE/GOVERNANCE CONSIDERATIONS • No technology audits prior to 2010. • Using the new technologies and strategies we were able to craft a compliance structure, along with guiding our external auditors, that truly represented an actionable governance program, rather than just a checklist of useless items.
  • 14. NEXT GENERATION SECURITY SOLUTIONS • Netskope (CASB) • Vera (hardening at the actual file level) • Menlo Security (malware isolation) • Ensilo (Exfiltration • Lesser reliance on legacy antivirus solutions
  • 16. RETURN ON INVESTMENT • Signifigant security cost/risk mitigation now transferred to top tier providers (Microsoft, Salesforce, etc.) • Trust factor is this case resembles a reverse of the “prisoners dilemma” theory.
  • 17. LESSONS LEARNED ALONG THE WAY • Calculated risk moving our most visible application (Exchange) to the cloud first, but mitigated by existing pain felt.
  • 18. 2016 AND BEYOND • Eventual retirement of legacy AD • Harden end-user devices • Expansion of two factor authentication • Continue to adopt next generation endpoint security solutions.