Featured Insight

Infrastructure as Code


Cary Dym
Head of Business Development, DevOps

Infrastructure as Code (IaC) transforms and automates the manual process of standing up datacenter environments and processes, such as hardware instantiation, networking, run books, and appliance and software configuration, into automated deployment and configuration. The IaC concept has been around for several years in both startups and many tech firms and is gaining wider traction. TechNavio cites the increased adoption of IaC as a major trend across all industries and geographies in their Global DevOps Platform Market 2018-2022 report.

Every industry is challenged by Digital Disrupters: firms that are competing based on enhanced capabilities and lower costs derived from digital innovation. According to the 2018 IDC Whitepaper, Designing Tomorrow, “Over 67% of companies believe a digitally enabled competitor will gain a competitive advantage within the next five years.” Traditional companies must be able to move faster at lower cost, and yet continue to manage risk. Firms willing to undergo digital transformation are able to achieve this with IaC. Infrastructure cost (CAPEX) and human cost (OPEX) can be reduced by leveraging the dynamic and self-service capabilities that IaC provides. Increased velocity means recasting multi-step, multi-hour, manual processes—such as racking servers, loading software patches, installing services and applications, configuring networks, and enabling storage—into automated, repeatable, scalable processes that are performed in minutes. When done properly, IaC reduces risk by addressing traditional IT problems, including configuration drift, human error, inconsistencies, and loss of context.

These additional capabilities – faster delivery of infrastructure, and consistent configuration during the software delivery cycle – allow organizations to make changes faster, with more confidence, and lower risk.

A good place to start Digital Transformation is implementing IaC to facilitate adoption of DevOps practice. Firms starting on this journey are faced with the hard task of assessing whether the organization has skills and know-how to embark on the journey alone or requires collaboration with skilled practitioners. Most “not-born-in-the-cloud” firms realize they need to bring in outside resources (unfortunately, sometimes after first failing internally). Risk Focus has broad industry expertise across Finance, Healthcare and Telecom industries with deep expertise in IaC technologies. We realize that even large journeys start with a single step and have developed a unique Player-Coach engagement model that facilitates new DevOps principles, enabling demonstration of best-practices through quick-win projects.

At Risk Focus, we are agnostic (yet opinionated) about the tools we use. Our choices are informed by a variety of factors and determined by our clients’ needs. However, we do have our favorites. One such tool is Terraform, which is the service provisioner and infrastructure orchestrator in the suite of offerings by HashiCorp. Terraform is cloud-agnostic and supports all major clouds, both public and private. In hybrid environments where there are advantages to a single set of tooling, Terraform allows our practitioners to quickly develop, validate and roll out orchestration templates.

We implement CM with two tools: Salt and Ansible. Ansible focuses on simplicity, and getting going is quick, changes are easy to understand, and organizational adoption tends to be fast. We recommend Salt for organizations with greater infrastructure complexity. Salt has a completely declarative model that includes components to dynamically manage configuration and detect drift, along with the ability to layer buildouts and react to signals from the environment, changing infrastructure dynamically in response to changing conditions. These abilities necessarily require additional complexity and result in a steeper learning curve, but clients with sufficient scale, compliance requirements, or complexity find great benefit from the additional features.

At Risk Focus, our Cloud and DevOps team support transformation initiatives and demonstrate domain expertise in the following areas:

  • Infrastructure as Code Orchestration with tools like HashiCorp’s Terraform, as well as cloudnative Orchestration with CloudFormation, ARM, and HEAT.
  • Configuration automation with technologies including Salt and Ansible.
  • Migrating applications to public cloud, including re-architecting of applications to become more cloud-compatible or cloud-native.
  • Containerization including extensive experience with Docker, Docker Swarm, OpenShift, Kubernetes, EKS, GKE, and Cloud migration and hybrid cloud implementation using VMWare, Openstack, AWS, GCP and Azure.
  • Process and methodology improvements and CI/CD pipeline implementation leveraging tools such as Git, JIRA, Jenkins, and Multi-cloud Monitoring and Log aggregation via Splunk, Elastic, and InfluxDB.

Learn More

Risk Focus is a consultancy solving capital-markets business problems with technology and insight. We combine business domain knowledge, technology expertise, and a disciplined process to ensure the success of the most challenging projects in the industry. Many of the largest exchanges and investment banks operate on systems built by Risk Focus teams. Our practices include Custom Application Development, Regulatory Reporting & Compliance, DevOps & Cloud, Streaming Architectures, and IT Strategy. We’re a Premier Confluent Systems Integrator and an AWS Advanced Consulting Partner with Financial Services, Migration, and DevOps Competencies. Clients count on us to provide outcomes that advance their objectives on time and on budget.