Case Study

Eliminating Critical Infrastructure Gaps to Achieve 100% Environment Isolation and Regulatory-Aligned GCP Modernization

Download the Case Study
Industry 

Financial Services

Expertise 

Google Kubernetes Engine, Compute Engine, Cloud DNS, GCP OS Patch Management, Security Command Center (SCC)

Offerings/solutions 

Comprehensive 6-Pillar GCP infrastructure assessment and modernization with environment segregation, security hardening, GitOps automation, and disaster recovery planning.

About the Client

The client is a BSE and NSE-listed, diversified Indian financial services group headquartered in Mumbai with over five decades of experience. Its businesses span Corporate Advisory and Capital Markets, Wealth and Asset Management, Private Markets, and Affordable Home Loans, earning numerous national and international accolades for advisory expertise and execution capabilities.

Highlights

100%

Environment Isolation Achieved

24 hours

Critical SCC vulnerability remediation SLA

90 days

Automated Secret Rotation Cycle

The Challenge

The client faced critical operational and security gaps where UAT and Production workloads were co-hosted on the same VMs, deployments relied on manual Jenkins triggers and informal WhatsApp/Email approvals with no SOPs, and automated OS patching was absent, with critical SCC findings left unresolved. Over-provisioned compute resources masked inefficiencies and inflated costs, while the entire cloud environment was confined to a single region with no disaster recovery mechanism.

Solutions

• Identified and decoupled UAT and Production workloads by establishing dedicated GCP Projects and VM instances to eliminate resource contention and security leaks.
• Transitioned from manual user-based IAM to Role-Based Access Control (RBAC) using Google Workspace groups and implemented Workload Identity for GKE to replace long-lived service account JSON keys.
• Configured GCP OS Patch Management to automate updates and integrated SCC alerts into Slack/Jira to ensure Critical vulnerabilities are remediated within a 24-hour SLA.
• Replaced manual triggers with a modern CI/CD workflow using GitLab webhooks and mandatory automated testing (unit, integration, and security) to block unstable code from reaching Production.
• Designed a Pilot Light DR architecture in the Delhi (asia-south2) region, utilizing Cloud DNS for rapid failover during regional outages.
• Upgraded the network perimeter to an Active/Active Palo Alto firewall configuration to ensure a high-availability posture.

The Results

Achieved 100% environment isolation, real-time compliance visibility, automated secret rotation, cross-region DR readiness, and full SEBI regulatory alignment with standardized SOPs.

Download the Case Study

AWS Partner - Migration Services Competency

Pioneering Migration space by being an AWS Partner – Migration Services Competency.

Learn more

An authorized partner for all major cloud providers

A cloud agnostic organization with the rare distinction of being an authorized partner for AWS, Microsoft, Google and VMware.

Learn more

A house of strong pool of certified consulting experts

150+ cloud certified experts in AWS, Azure, GCP, VMware, etc.; delivered 200+ projects for top 100 fortune 500 companies.

Learn more

Get The Most Out Of Us

Our support doesn't end here. We have monthly newsletters, study guides, practice questions, and more to assist you in upgrading your cloud career. Subscribe to get them all!