Shared Services Canada and Cloud Computing



Similar documents
Shared Services Canada. Cloud Computing

Shared Services Canada and Cloud Computing Architecture Framework Advisory Committee

Shared Services Canada (SSC)

Shared Services Canada (SSC)

CYBER AND IT SECURITY: CLOUD SECURITY FINAL SESSION. Architecture Framework Advisory Committee November 4, 2014

Expert Reference Series of White Papers. Understanding NIST s Cloud Computing Reference Architecture: Part II

Security Issues in Cloud Computing

An Overview of the Most Important Reference Architectures for Cloud Computing

Cloud Computing Technology

NIST Cloud Computing Reference Architecture & Taxonomy Working Group

NIST Cloud Computing Security Reference Architecture (SP draft)

Web Application Hosting Cloud Solution Architecture.

Improving IT Service Management Architecture in Cloud Environment on Top of Current Frameworks

Cloud Courses Description

Cloudy with Showers of Business Opportunities and a Good Chance of. Security. Transforming the government IT landscape through cloud technology

Cloud SingularLogic:

Public Cloud Workshop Offerings

Cloud Security. Peter Jopling IBM UK Ltd Software Group Hursley Labs. peterjopling IBM Corporation

SESSION 703 Wednesday, November 4, 9:00am - 10:00am Track: Advancing ITSM

Shared Services Canada Converged Communications Session III Architecture Framework Advisory Committee

Emerging Approaches in a Cloud-Connected Enterprise: Containers and Microservices

Cloud Computing. Bringing the Cloud into Focus

Unleash the IaaS Cloud About VMware vcloud Director and more VMUG.BE June 1 st 2012

Converged Infrastructure to Private Cloud

NIST Cloud Computing Reference Architecture

第 9 回 仮 想 政 府 セミナー Introduction Shared Servicesを 考 える ~Old but New Challenge~ 東 京 大 学 公 共 政 策 大 学 院 奥 村 裕 一 2014 年 2 月 21 日

Server & Cloud Management

A Strawman Model. NIST Cloud Computing Reference Architecture and Taxonomy Working Group. January 3, 2011

Cisco Cloud Architecture for the Microsoft Cloud Platform

Managing Cloud Services in the Enterprise The Value of Cloud Services Brokers

Standardizing Cloud Services for Financial Institutions through the provisioning of Service Level Agreements (SLAs)

Hexaware E-book on Q & A for Cloud BI Hexaware Business Intelligence & Analytics Actionable Intelligence Enabled

Cloud Courses Description

List of contributors. Lead Author: Vladimir Baranek, Deloitte

Journey to the Cloud and Application Release Automation Shane Pearson VP, Portfolio & Product Management

Cloud Computing Flying High (or not) Ben Roper IT Director City of College Station

Becoming a Cloud Services Broker. Neelam Chakrabarty Sr. Product Marketing Manager, HP SW Cloud Products, HP April 17, 2013

6 Cloud computing overview

Enterprise Governance and Planning

Infrastructure as a Service (IaaS)

The Need for Service Catalog Design in Cloud Services Development

Cloud Computing: The Next Big Thing?

ABOUT US. Our mission. Our vision

Cloud Computing and Data Center Consolidation

An Introduction to Private Cloud

Hybrid Cloud Computing

Incident Handling in the Cloud and Audit s Role

Cloud Computing A NIST Perspective & Beyond. Robert Bohn, PhD Advanced Network Technologies Division

Applying Business Architecture to the Cloud

Accelerate Your Enterprise Private Cloud Initiative

IT Risk and Security Cloud Computing Mike Thomas Erie Insurance May 2011

Architectural Implications of Cloud Computing

<Insert Picture Here> Cloud Archive Trends and Challenges PASIG Winter 2012

ONE Cloud Services Secure Cloud Applications for E-Health

See Appendix A for the complete definition which includes the five essential characteristics, three service models, and four deployment models.

Cloud Computing; What is it, How long has it been here, and Where is it going?

Data Centre Networks Overview

AMANDA Managed Services Understanding the benefits of moving to the cloud

Cloud Services Overview

Experiences with Transformation to Hybrid Cloud: A Case Study for a Large Financial Enterprise

CLOUD SERVICE LEVEL AGREEMENTS Meeting Customer and Provider needs

The NIST Cloud Computing Program

AZURE / HYBRID SCENARIOS. M a n a g i n g C o n s u l t a n t

Cloud vision and capabilities

Cloud Computing Actionable Standards An Overview of Cloud Specifications

Cloud Computing Architecture: A Survey

Performance Management for Cloud-based Applications STC 2012

CLOUDFORMS Open Hybrid Cloud

Hybrid Cloud Mini Roundtable. April 17, Expect Excellence.

How cloud computing can transform your business landscape.

VMware vcloud Air. Enterprise IT Hybrid Data Center TECHNICAL MARKETING DOCUMENTATION

Integrated Cloud Services & Solutions through Hybrid Cloud using zenterprise

Cloud Security: Evaluating Risks within IAAS/PAAS/SAAS

6 Cloud strategy formation. 6.1 Towards cloud solutions

Architecting and Building a Secure and Compliant Virtual Infrastructure and Private Cloud

Performance Management for Cloudbased STC 2012

Securing the Cloud with IBM Security Systems. IBM Security Systems IBM Corporation IBM IBM Corporation Corporation

Hybrid and Multi Cloud Deployments Via Cloud Exchange

What Cloud computing means in real life

Platform Leadership in Software as a Service: How Platforms Facilitate Innovation

Enforcing End-to-end Application Security in the Cloud

Compliance and the Cloud: What You Can and What You Can t Outsource

Private Compute-as-a-Service

PCI Compliance and the Cloud: What You Can and What You Can t Outsource Presented By:

FINANCIAL SERVICES DEPLOYMENTS. Sari Lafferty, DCIA Yung Chou, Microsoft Pete Manca, Egenera Kevin Nyberg, NaviSite Nicole Nakashian, Agio

A Mainframe Guy and Cloud Computing

WHAT S ON YOUR CLOUD? Workload Deployment Strategies for Private and Hybrid Clouds RESEARCH AND ANALYSIS PROVIDED BY TECHNOLOGY BUSINESS RESEARCH

White Paper. Cloud Vademecum

Transcription:

Shared Services Canada and Cloud Computing Architecture Framework Advisory Committee Transformation, Service Strategy and Design February 21, 2013

Agenda TIME TOPICS PRESENTER(S) 9:30 9:40 Opening Remarks B. Long, Chair 9:40 9:55 Recap: From Cloud Framework to Cloud Service 9:55 10:30 Cloud Deployment Models 10:30 10:40 Health Break 10:40 11:30 SSC s Cloud Platforms: Discussion 11:30 12:20 Challenges In-depth B. Long P. Littlefield All P. Littlefield All B. Long All 12:20 12:30 Closing Remarks B. Long

Recap on Cloud-Computing Discussions December 17, 2012 January 28, 2013 February 21, 2013 March 2013 GCCC architectures and cloudcomputing models examined and discussed with AFAC members Revised GCCC architectures feedback incorporated Discussion of three use cases Platform strategy discussed Focus on platforms Discussion on decision criteria for private versus hybrid versus public cloud services Revised GCCC platform endorsed by AFAC 3

Cloud Computing: Defining Shared Services Canada s Role Internal private cloud and external cloud services should be defined by the same service architecture? Cloud Consumer Cloud Auditor Security Audit Privacy Impact Audit Performance Audit Cloud Orchestration Service Layer IaaS IaaS PaaS SaaS PaaS SaaS Resource Abstraction and Control Layer Physical Resource Layer Hardware Facility Cloud Provider Cloud Carrier Cloud Service Management Business Support Provisioning / Configuration Portability /Interoperability Cross Cutting Concerns: Security, Privacy, etc. Cloud Broker Service Intermediation Service Aggregation Service Arbitrage SSC could be the Cloud Broker and could also be a Cloud Provider. Some private cloud services could be provided by SSC. This would be the Community Cloud. The Cloud Broker would ensure multivendor management. 4

Cloud Deployment Models Directions Use Cases (samples) Private Cloud On-prem Private Cloud Off-prem Virtual Private Cloud Public Cloud Collaboration tools and applications Sensitive data and applications Public-facing websites GC internal websites and applications Public-facing transactional websites and applications Databases GC internal Dev/Test websites and applications 5

Platform Technologies Potential Directions Technologies whose disposition will be determined over the coming months TBD Linux on Z/OS Grow Linux on X/86 Windows Technologies where investments will be made, transformation will focus, and new business and workloads will be directed Technologies which will be phased out over the course of the transformation; workloads will be migrated to Grow platforms Sunset HP/UX MCP AIX Solaris Sustain Z/OS Technologies that will be maintained at current business volumes, with organic current business growth; no new business or workloads will be directed here 6

Platform Technologies Use Cases GROW Use Cases Windows Linux/x86 Z/OS Web Hosting Application Hosting Enterprise Resource Planning Document Management Collaboration Virtual Desktop / Thin Client File Services Database / Data Warehouse 7

Challenges In-depth: Cloud Interconnectivity Challenge: Connecting resources across clouds and customer premises Description: People, process and technology required for multi-csp, internal IT service management (ITSM) orchestration Forward Agenda items: CSB architecture and standards Internal ITSM architecture and standards Mitigations Cloud service broker architecture / standards Internal ITIL / ITSM architecture / standards GC Identity, Credential, Access Management (ICAM) Security and privacy controls 8

Challenges In-depth: Identity / Access Control Challenge 2: Managing identity, federation and access control Description: Transformation, migration to Role-Based Access Control (RBAC) and the ICAM strategy Forward Agenda items: ICAM architecture and standards GC directory architecture and standards Mitigations ICAM implementation schedule GC-wide directory strategy and architecture Migration from departmentalbased security to role-based access control 9

Challenges In-depth: Multi-tenant Client Isolation Challenge 3: Isolating tenants in a multi-tenant environment Description: Security considerations for multitenancy implementations versus the scale economics of sharing Forward Agenda items: ICAM architecture and standards GC directory architecture and standards Mitigations Clear definition / documentation of the various multi-tenant deployment architectures Cross reference / certification against GC security controls Document application compatibility considerations and standards 10

Challenges In-depth: Network Readiness Challenge 4: Network latency and capacity considerations Description: Cloud introduces new challenges for the network both the internal GCNet and the Internet Access strategy Forward Agenda items: GCNet considerations for cloud Internet access architecture and design for cloud Mitigations Understanding the suite of potential latency sensitive cloud applications Data centre and CSP location impact analysis Legal review: impact on contracts, terms and SLAs Develop standards / architecture that meets or exceeds GC security requirements 11

Additional Information 12

AFAC Participants: Cloud Computing First Name Last Name Company/Association Association Representatives Avvey Peters Communitech Evan Fox Corporate Executive Board Jeff Lynt CABiNET Kris Van Riper Corporate Executive Board Linda Oliver ITAC Steve Woodward CATA/Cloud Perspectives Tim Lewis CITPA Observer Industry Representatives Lynn Sutherland Canadian Cloud Council John Cousens Canadian Cloud Council Mario Bernier Northern Micro Peter Fu TeraMach Chris Makkreel Salesforce James Lambe Google John Schouten Dell Mark Godfrey NetApp First Name Last Name Company/Association Industry Representatives Don Powell Enterprise Architect, CABiNET Jean-Olivier Le Brun CGI Corey Glynn IBM Lloyd Switzer Telus Mike Monteith ThoughtWire Edward Cordeiro AT Labs Canada Ron Babin Ryerson University Sasha Lebovic Cisco Stuart MacKay HP Vadim Schvarts VMware Wally Kowal Canadian Cloud Computing Jamie Hart Microsoft Dave Wharry Oracle Sébastien Boire-Lavigne Sagemcom Canada Andy Makowski IBM Mike Cardy OnX Strahan McCarten Bell Brian O'Higgins Invest Ottawa 13