Case Study

nClouds AWS Case Study | Fullcast

Fullcast Fuels Go-to-Market Success: nClouds Secures AWS Infrastructure, Optimizes Operations
About Fullcast

Fullcast is a leader in sales performance management. The platform provides territory and quota management, lead routing, and commissions for mid-market and enterprise companies in high-tech, healthcare, and financial industries.

Industry
B2B SaaS
Location
Salt Lake City, UT
The Challenge
Secure and optimize AWS environment and modernize application infrastructure
Featured Services

Improved Security Posture

Increased Operational Efficiency

Simplified Compliance

Cloud Cost Optimization via Amazon App Runner

Enhanced Developer Velocity

CHALLENGE

Fullcast engaged nClouds to address critical challenges in securing and optimizing its AWS environment and modernizing its application infrastructure. This multifaceted engagement focused on four key areas:  

  • A comprehensive audit and remediation of AWS Control Tower to ensure alignment with business objectives and best practices.
  • A thorough review and enhancement of IAM access controls (users, groups, and SCPs) to eliminate security vulnerabilities and streamline permissions.
  • A similar audit and update of MySQL database access controls to achieve comprehensive security across the application stack.  
  • Finally, nClouds migrated Fullcast’s Heroku workloads to Amazon App Runner, simultaneously auditing and updating access controls to align with AWS best practices and ensure seamless integration with existing AWS services.

“Carlos and the team are fantastic. Their engineers are top notch, and the customer experience has been excellent.”
— Bala Balabaskaran, CTO, Fullcast —

THE SOLUTION

Strategy and Solution

The project had a broad scope focusing on maintaining secure and efficient access control and identity management access controls across different services. In most cases, these services were already implemented, but required a reconfiguration and update to ensure alignment with business objectives and best practices.

The engagement began with an exhaustive review of Fullcast’s current AWS infrastructure utilizing AWS’ Well-Architected Framework (WAFR). The WAFR Review is a mechanism used to teach, measure, and improve a workload based upon the customer’s business and technical objectives within its AWS Infrastructure. This is to provide the groundwork necessary to increase the existing infrastructure’s performance, security, and efficiency while optimizing its overall AWS Running Costs.

Following the WAFR review, an assessment and remediation of access controls and identity management was carried out on the following areas:

  • Audit AWS Control Tower implementation, and identify any gaps in services that would align with business objectives or are out of alignment with best practices. Findings were reviewed with Fullcast stakeholders and documented, before changes and updates to Control Tower were implemented.
  • Audit access controls within IAM including users, groups, and SCPs to identify required access and controls. Findings were reviewed with Fullcast stakeholders and documented before changes and updates to IAM including updating users, roles, and SCPs were implemented.
  • Audit access controls within the MySQL database to identify gaps in controls that align with business requirements, and best practices. Findings were reviewed with Fullcast stakeholders and documented before updates to MySQL designed to close gaps and gain better alignment with business requirements and best practices were implemented.

Finally, nClouds completed migration of Heroku workloads to Amazon App Runner. 

  • Fullcast was running two Dynos in pre-production and one in development, and it was consuming approximately 42 Dyno units on Heroku. The applications were stateless and had been deployed on Heroku with build packs, so nClouds designed and implemented best-practice containerization of applications to be deployed to Amazon Apprunner, and ensured seamless integration with other connected AWS services. 

This multifaceted approach aims to establish a strong, secure, and compliant identity and access management system that aligns with industry best practices and meets the evolving requirements of Fullcast’s business, and provides proper containerization of applications to be deployed to Amazon Apprunner.

 

nClouds Services 

Ready to Accelerate?

 

No matter where you are in your cloud journey, we can help you migrate, modernize, and manage your AWS environment. Let’s accelerate your growth and fast-track your business outcomes.