Hybrid IT Governance: Automation is Key

NJVC Platform as a Service to Include Google Geospatial Services for NCOIC Geospatial Community Cloud Project in Support of Disaster Relief Efforts

By G C Network | July 9, 2013

CHANTILLY, Va., July 9, 2013 — NJVC® was selected by Network Centric Operations Industry Consortium (NCOIC) to provide the platform as a service (PaaS) element of a cloud-computing-based humanitarian assistance…

Fathers of Clouds – A Tribute

By G C Network | June 14, 2013

(A guest post from Mr. Ray Holloman, NJVC Digital Communications Manager ) For more than half a century, cloud computing has changed names more often than a Hollywood starlet. Utility…

CNBC Closing Bell: Bob Gourley on NSA Leaker

By G C Network | June 13, 2013

This is clearly off topic, but I couldn’t help myself!  Please take a moment to view this CNBC video where my good friend Bob Gourley addresses this important event. Good…

Guest Blog: Sequestration and the Cloud

By G C Network | May 30, 2013

(This post was provided by Praveen Asthana, Chief Marketing Office of Gravitant, a cloud service brokerage and management company) Sequestration burst out of obscurity and entered our household vocabulary in…

Join Me at the Gartner IT Infrastructure & Operations Management Summit

By G C Network | May 22, 2013

Please  join me at the Gartner IT Infrastructure & Operations Management Summit in Orlando, Florida, June 18-20, 2013, where my session topic will be “Cloud Service Integration: Increasing Business Value…

Five Years of Cloud Musings!!

By G C Network | May 14, 2013

https://kevinljackson.blogspot.com/2008/05/hello-world-april-18-2008.html  “Sunday, April 18, 2008 Hello World ! – April 18, 2008 I’ve been toying with the idea of doing a blog for about six months now. Initially I didn’t…

Global Interoperability Consortium’s Cloud Computing Project Detailed at NATO Conference

By G C Network | April 30, 2013

PRESS RELEASEApril 30, 2013, 2:30 p.m. ET Eric Vollmecke of the Network Centric Operations Industry Consortium reports  the proliferation of geospatial information will pose problems for disaster  responders and describes…

IBM Debate Series – What’s Next in IT?

By G C Network | April 25, 2013

Next week I will be participating in the inaugural session of What’s Next in IT Debate Series, a  new program of authentic debates and conversations on key technology topics. Sponsored…

Lisbon Bound: NATO Network Enabled Capability Conference 2013

By G C Network | April 21, 2013

This week I will have the honor of attending the 2013 NNEC Conference  at the Corinthia Hotel in Lisbon, Portugal. The NNEC conference is an annual event which has been sponsored by HQ…

Demystifying PaaS for Federal Government

By G C Network | April 2, 2013

Join us on April 16, 2013 at 1 PM EDT to remove the mystery surrounding Platform-as-a-Service (PaaS) for Federal Government https://attendee.gotowebinar.com/register/8966264786104832512 The PaaS market is plagued with confusion, and agencies…


As cloud computing continues to grow in importance, enterprises are now facing a new realization.  In their almost rampant embrace of cost savings associated with public cloud, many are just now understanding the information technology governance challenge posed by vastly different traditional and cloud computing operational models.  Often referred to as hybrid IT, supporting both models has left many executives trying to cope with a lack of hybrid IT operational experience.  Challenges can also include security concerns, financial management changes and even dramatic cultural changes.   
This myriad of challenges translate into enterprise risk across multiple levels, namely:

  • Organizational management and governance;
  • Accelerating business process speed and scope;
  • Expanding business partner ecosystem; and
  • Broadening enterprise information system user base.

To be successful, organizations should explicitly address these risks with a focused risk management strategy.  This strategy should not only address holistic activities that integrate across the business, but also on coordinated activities for overseeing and controlling high impact and high probability risks.  Some areas may even warrant organizational policy and governance enhancements include:

  •  Delegation of management decision authority to those responsible for everyday interactions with the organizations business ecosystems and IT supply chain
  • Establishment and communication of cloud ecosystem related risk tolerance through Service-Level Agreements (SLA), including delegated authority on decisions that impact the risk tolerance;
  • Near real-time monitoring, recognition, and understanding, of information security risks arising from the operation and/or use of the information system leveraging the cloud ecosystem; and
  • Organizational accountability around incidents, threats, risk management decisions, and solutions.

Figure 1: Risk Management Framework (NIST SP 800-37 Rev. 1)
Specificity around security processes, business resilience and financial management are paramount.  The dynamic and agile nature of modern business also demands using a relatively high degree of
automation in supporting multiple business functions including:

  • Customer demands for multi-channel and multi-device interaction;
  • Expanding dynamic global IT requirements;
  • Operational business decision support;
  • Enforcement of organizational governance;
  • Operational flexibility through business ecosystem API; and
  • Internal demands to deliver on the promise of IT-as-a-Service.

When automating governance and control, organization should, as much as possible, enhance:

  • The discovery and documentation of existing public cloud resources;
  • The enforcement of data and access management security policies;
  • Monitoring and reporting of all governance processes;
  • Cost controls and budget management processes; and
  • Evaluation and selection of application “cloud readiness”.

Companies that fail to automate these key processes, will not realize the operational efficiencies and agility of hybrid IT platforms.  They will also fall behind their competition, eventually to the point of irrelevance.
Exemplary of a successful transition was when a leading, Fortune 500 nutrition, health and wellness company decided to migrate applications from two end-of-life data centers.  During their initial evaluation, the enterprise found that moving to a Hybrid IT model — a mix of private cloud, public cloud and physical assets — would help them solve problems that were hindering their competitiveness.  With the expertise of a top system integrator, the enterprise transitioned to a cloud brokerage solution. This solution automated their IT governance by tying planning, consumption, delivery, and management seamlessly across public, private, virtual, hosted, and on and off premises resources. Gravitant’s cloudMatrix solution was identified as the only purpose-built solution for Hybrid IT.  Using this solution, the enterprise enhanced IT governance, reduced operational risk and transformed its IT services model from a high-cost, inflexible physical data center model into a next generation, pay-per-use model.
In accomplishing this transformation, cloudMatrix provided:

  • A seeded catalog of the industry’s leading cloud infrastructure providers, out-of-the-box without the overhead of custom integration.
  • A marketplace where consumers can select and compare provider services, or add their own IT-approved services for purchasing and provisioning.  Consumers can use a common workflow with full approval processes that are executed in terms of minutes not weeks.
  • Reporting and Monitoring that includes multi-provider consolidated billing estimates, actuals, and usage projections for accuracy and cost assignment.
  • A visual designer that includes sync-and-discover capabilities to pull all assets (VMs) into a single, architectural view and management standard.
  • Integration with service management and ticketing systems through an API framework.

In only six months, the enterprise was able to move its workloads from the existing data centers, to a Hybrid IT (private, public and physical) delivery model and provide self-service IT to business units with cost and usage transparency.  IT cost, which had previously categorized as a general percentage of overall IT spend assignment, is now available by virtual data center, service/application, and usage — permitting reporting and governance at a “cost-per-business unit” level.

 

( This content is being syndicated through multiple channels. The opinions expressed are solely those of the author and do not represent the views of GovCloud Network, GovCloud Network Partners or any other corporation or organization.)

Cloud Musings

( Thank you. If you enjoyed this article, get free updates by email or RSS – © Copyright Kevin L. Jackson 2015)

Follow me at https://Twitter.com/Kevin_Jackson
Posted in

G C Network