Likvid Bank Cloud Foundation
Foundation
  • Azure
  • AWS
  • IONOS
  • STACKIT
  • SAP BTP
  • GCP
Concepts
meshStack
Compliance
Foundation
  • Azure
  • AWS
  • IONOS
  • STACKIT
  • SAP BTP
  • GCP
Concepts
meshStack
Compliance
  • Compliance

    • Cloud Foundation Maturity Model

      • Tenant Management

        • Cloud-native Landing Zone
        • Cloud Tenant Database
        • Container Platform Landing Zone
        • Data Science Landing Zone
        • Lift & Shift Landing Zone
        • Link Cloud Tenants to CMDB/EAM
        • Modular Landing Zones
        • Multi-cloud tenant database integrated with lifecycle management
        • Playground / Sandbox Environments
        • Resource Hierarchy
        • Self-Service Multi-Cloud Tenant Database
        • Tenant Deprovisioning / Decommissioning
        • Tenant Inventory Reconciliation
        • Tenant Provisioning
      • Identity and Access Management

        • Federated Identity and Authentication
        • Identity and Access Management Alignment
        • Identity Lifecycle Management
        • Privileged Access Management
        • Resource Authorization Management
        • Service Account Management
      • Security and Compliance

        • Centralized audit logs
        • Centralized workload and infrastructure logs
        • Certified ISMS Compliance
        • Cloud Resource Tagging
        • Cloud SIEM
        • Cloud Tenant Tagging
        • Control Access to Landing Zones
        • Guided Cloud Onboarding
        • Incident Management Process
        • Multi-Cloud Tagging Policy
        • Resource Configuration Policies
        • Resource Configuration Scanning
        • Service and Location Restrictions
        • Shared Responsibility Model Alignment
        • SOC Integration
      • Cost Management

        • Billing to different legal entities
        • Budget Approval Process
        • Chargeback at full cost allocation
        • Chargeback via consumption cost allocation
        • Consumption based pay-per-use for internal Services
        • Global Cost Optimization via Reservations
        • Individual Project Cost Optimization via Reservations
        • Monthly Cloud Project Billing Report
        • Monthly Cloud Project Carbon Footprint Report
        • Monthly cloud tenant billing report
        • Pay-per-Use for internal Services
        • Private Cloud pay-per-use chargeback
        • Quota Management
      • Service Ecosystem

        • 3rd party PaaS Service Integration
        • API Gateway to on-premises APIs
        • Cloud to Cloud interconnects
        • Foundation Service Platform
        • In-house PaaS Service Integration
        • Individual Service Provisioning
        • Internal Service Marketplace
        • Kubernetes Cluster as a Service
        • Managed bastion hosts
        • Managed Cloud Provider Support Contracts
        • Managed Data Lake access
        • Managed DevOps Toolchain
        • Managed DNS Services
        • Managed Internet Egress
        • Managed Key Vault
        • Managed SSL Certificates
        • On-Premise Network Connection
        • Shared container registry
        • Shared VM Image Repository
        • Tenant to Tenant Transit Networks
        • Virtual Machine Service
        • Virtual Network Service

SOC Integration

Virtual machines are integrated into a central Security Operations Center (SOC) solution like tenable.io or Qualys. The cloud inventory of existing machines is reconciled against the SOC to ensure completeness.

Learn more about the SOC Integration Building Block on the Cloud Foundation website.

Prev
Shared Responsibility Model Alignment