Welcome » Case Studies » Sopiad – Fintech and AWS
AWS CASE STUDY
Executive Summary
SOPIAD engaged AWS Premier Consulting Partner Cloudar to conduct a Well-Architected Review and comprehensive security assessment of their production environment. The customer consulted Cloudar for expert advice on security, risk management, remediating findings, and AWS training. Cloudar installed a Cloud Security Posture Management solution, analyzed and remediated identified issues, and created custom solutions to fulfill SOPIAD’s requirements while educating them on organizational measures aligned with AWS best practices. Following the review, SOPIAD transitioned their infrastructure to AWS managed services under Cloudar’s guidance, optimizing their architecture. Additionally, SOPIAD is transforming from using EC2 instances to an Elastic Container Service (ECS) setup with Cloudar’s support, enabling more scalable and efficient application deployment on AWS.
CUSTOMER:
Sopiad
PROJECT:
FIRST LAUNCH:
April, 2024
Customer Profile
SOPIAD is a fintech company spun off from HEC Liège Management School in 2021, aiming to simplify investment decisions for non-professional investors. Based in Liège and part of fintech ecosystems like Fintech Belgium and LHoFT, SOPIAD believes making investment choices has become overly complex with numerous options, product sophistication, and vast information. The company helps financial intermediaries provide a simplified, personalized investing experience by applying scientific rigor through its “Socrates Portfolio-Investor Adequacy” concept to foster investment knowledge and self-awareness.
The Challenge
SOPIAD faced challenges in ensuring the security, scalability, and efficiency of their production environment on AWS. They required expert guidance to optimize their infrastructure, align with AWS best practices, and transition to a more modern, containerized application deployment model.
Partner Solution
Cloudar addressed SOPIAD’s security concerns by implementing several AWS managed services. They deployed AWS GuardDuty for intelligent threat detection and AWS Config for continuous monitoring and recording of resource configurations. Additionally, Cloudar integrated Trend Micro Cloud Conformity, a Cloud Security Posture Management solution, to identify and remediate misconfigurations and policy violations across SOPIAD’s AWS environment.
To optimize SOPIAD’s infrastructure, Cloudar transitioned their workloads to AWS managed services like Amazon Relational Database Service (Amazon RDS) for scalable and secure database management. They also migrated SOPIAD’s applications to Amazon Elastic Container Service (Amazon ECS) for efficient and scalable container orchestration. With Amazon ECS, SOPIAD can easily deploy and manage containerized applications, ensuring high availability and auto-scaling capabilities.
Furthermore, Cloudar leveraged Amazon Elastic Container Registry (Amazon ECR) for securely storing and scanning SOPIAD’s container images. Amazon ECR automatically scans images for software vulnerabilities upon push, ensuring only secure and compliant images are deployed. This continuous scanning and monitoring process helps maintain a robust security posture for SOPIAD’s containerized applications throughout their lifecycle.
Results and Benefits
By partnering with Cloudar, SOPIAD achieved significant improvements in security, scalability, and operational efficiency across their AWS environment. The implementation of AWS managed services like GuardDuty, Config, and Trend Micro Cloud Conformity provided enhanced threat detection, continuous monitoring, and automated remediation of misconfigurations, strengthening SOPIAD’s overall security posture.
The migration to AWS managed services, including Amazon RDS and Amazon ECS, enabled SOPIAD to offload undifferentiated heavy lifting tasks, allowing their team to focus on core business objectives. With Amazon ECS, SOPIAD can now deploy and scale their containerized applications seamlessly, ensuring high availability and optimal resource utilization based on demand.
Moreover, the integration of Amazon ECR with its automated container image scanning capabilities has significantly streamlined SOPIAD’s application deployment process. By ensuring only secure and compliant container images are deployed, Amazon ECR has minimized the risk of vulnerabilities propagating to production environments, enhancing the overall security and reliability of SOPIAD’s applications.