building saas for the enterprise

20
BUILDING SAAS FOR THE ENTERPRISE Beau Christensen Copyright © 2014 Ping Identity Corp. All rights reserved. 1

Upload: beau-christensen

Post on 12-Aug-2015

195 views

Category:

Technology


0 download

TRANSCRIPT

Page 1: Building Saas for the Enterprise

BUILDING SAAS FOR THE ENTERPRISE

Beau Christensen

Copyright © 2014 Ping Identity Corp. All rights reserved. 1

Page 2: Building Saas for the Enterprise

DEVOPS @PING

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 2

Page 3: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 3

Security

Page 4: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 4

Identity on the Perimeter

Embedding Identity into the internet.

Page 5: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 5

http://www.deviantart.com/art/JJ-Enterprise-Cutaway-511151062

Page 6: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 6

& Things will get easier.

Page 7: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 7

Build a Change Process

Page 8: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 8

Diversify your locations. Use the private cloud and public. Don’t put all your eggs in one basket.

Page 9: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 9

Store Configuration Data Globally.

Store User Data Regionally.

Do not shard the application!

Page 10: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 10

You will need to support old, shitty operating systems.

Page 11: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 11

You NEED automated Security Scans, Secure Software Development Process, and yearly 3rd party audits of your software and infrastructure security.

DDoS WAF -> Firewall -> Identity -> Firewall -> WAF -> OS -> Analytics

Page 12: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 12

Use active/active failover and the power of the public cloud to avoid a massive BCP or DR plan. It’s far more efficient &you don’t have to maintain moardocuments!

Page 13: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 13

Public Uptime & Status

+(local!)

Page 14: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 14

Gigantic, 172 page security questionnaires are a favorite.

Maintain a database of them, and makeit a repeatable process that even a salesguy could do.

WTF

Page 15: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 15

They want access to you.(just be confident)

Page 16: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 16

“The Big Game”

Page 17: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 17

Don’t scale until you have to!

Page 18: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 18

Befriend your legal people.

Page 19: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 19

Page 20: Building Saas for the Enterprise

Confidential — do not distributeCopyright © 2014 Ping Identity Corp. All rights

reserved. 20

Worth it.