Welcome to Silicon Overdrive!

AWS Case Study: Change Technologies

About the Customer

Change Technologies enables users to invest as little as €1 into cryptocurrencies. Their model means that there are no minimum balances, no commission, and no unfair barriers, meaning that anyone with a Smartphone can invest in cryptocurrency.

The Challenge

Since Change Technologies deals with cryptocurrency and processes card payments, they were required to achieve PCI DSS compliance to ensure the security of the data.

Upon assessing their environment, Change Technologies found that their current environment deviated from best practices and compliance standards. It was decided that the best solution to become PCI DSS compliant would be to bring in a AWS consulting partner (Silicon Overdrive) to assist with the process of re-architecting, rebuilding and migrating their workloads to a secure and compliant AWS environment.

The Solution

Silicon Overdrive met with Change Technologies’ team and architected a solution based on AWS best practices to meet their PCI compliance requirements.

We rearchitected and redeployed the environment with the focus on security and automation.

AWS CDK (Cloud Development Kit) was used for Infrastructure as Code so that changes could be versioned and deployed on demand. AWS Config is used to simplify security analysis, change management and compliance auditing, which reduces operational overheads on their team and time required for and thus reduced the cost of their compliance audit.

All EC2 instances were migrated to serverless services to reduce operational overheads, improve performance, availability, scalability and security. These services include API Gateway, ECS Fargate and AWS Lambda.

DevOps services used: API Gateway, VPC, IAM, S3, ECS Fargate, RDS, SNS, Security Hub, Config, CloudWatch, CloudTrail, Trusted Advisor, Route 53, AWS VPN, AWS Cloud Development Kit, CloudFormation, Certificate Manager, Lambda
Third-party apps used: Circle CI
Project Manager: Charlton Daniels

The Outcome

By utilizing DevOps methodologies, Change Technologies was able to achieve PCI compliance faster than what would otherwise have been possible; allowing them to achieve a faster time to market. PCI DSS Level 1 compliance was achieved within five months after engaging with our AWS DevOps team.

Lessons Learned

Utilizing natively PCI compliant AWS services greatly reduced project timelines and risk. This also enabled the team to change the architecture and technology stack to leverage DevOps practices and serverless services with security best practice standards required to achieve and maintain PCI compliance.

If you liked this, you'll love these...

Vale Technology - Moodle LMS AWS Migration Case Study Feature Image

Vale Technology — Moodle LMS AWS Migration

Vale Technology specializes in various services within Information Technology. They needed to migrate their Moodle LMS from a co-located data center, to their own AWS environment. Read their case study.

We use cookies to track visitors, measure ads, ad campaign effectiveness and analyze site traffic. We may also share information about your use of our site with 3rd parties. For more info, see, our Cookies Policy, our Privacy Notice. By clicking “Accept All” you agree to the storing of all cookies on your device. In case you don’t choose one of these options and use our website, we will treat it as if you have accepted all cookies.

We use cookies to track visitors, measure ads, ad campaign effectiveness and analyze site traffic. We may also share information about your use of our site with 3rd parties. For more info, see, our Cookies Policy, our Privacy Notice. By clicking “Accept All” you agree to the storing of all cookies on your device. In case you don’t choose one of these options and use our website, we will treat it as if you have accepted all cookies.