00
intro

PCI DSS compliance for international money transfer app

FinTech
4 years
Security & Compliance
Aug 22, 2023
2 min
Navigation
01
About
Fin.do is a groundbreaking international money transfer app that empowers people to instantly send and receive money

The platform operates with 160 currencies and covers 150 countries. Serving hundreds of thousands of users with existing debit, credit, or prepaid cards, it facilitates direct bank-to-recipient money transfers without requiring a new e-wallet.

Countries covered:
150+
Supported currencies:
160+
Downloads on Google Play:
100K+
Years on the market:
4+
02
Trustmarks
5

We're impressed by their consistent level of high-quality work.

COO
Digital Asset Management Platform
03
challenges

Fin.do faced the following challenges in their work

Limited team capacity

With a small team onboard, the client's capacity was restricted. The engineering team could only handle a specific, limited range of tasks, which fell short of the product's demands. So enhancing the system's capabilities to achieve more with less could help a lot.

Customer commitments

Covering financial transactions and dealing with sensitive information, the client had strong commitments to its app users. Keeping all the data confidential and private no matter what was non-negotiable to reinforce the trust and confidence people placed in the platform.

Security compliance

Taking the security to the next level, the client wanted to gain PCI DSS compliance. In order to reach the standards and bypass the inspection, both the approaches and the system itself required some improvements, which were only possible with expert assistance.

Tackle challenges confidently with our DevOps experts

Let our team find the best tech approach for your business scale and scope.

Contact us
04
Tech stack

Technologies we used

//
Google Cloud
//
Grafana
//
GKE
//
Prometheus
//
Suricata
//
OSSEC
05
solutions

We found best-fit solutions for Fin.do’s infrastructure

//
Workload optimization

Embracing the client's small team challenges, we orchestrated a comprehensive approach to enhance system security. With more understanding of alerts' severity, they can prioritize critical notifications effectively and act more strategically now.

//
System monitoring

Ensuring a smooth customer experience, the OpsWorks team implemented proactive system monitoring. Now every week, all instances and applications are scanned with the help of OpenVAS. At the same time, all the security alerts are configured through Wazuh and Suricata. Moreover, the code is analyzed for vulnerabilities during each deployment, and the process is blocked, if any.

//
PCI DSS security compliance

Assisting the client and their app in meeting the core pillars of PCI Security Standards, our team optimized both approaches and the system. By setting up a Web Application Firewall, segregating the network into task-specific subnets, implementing intra-cluster traffic segmentation through NetworkPolicy, and taking other necessary actions, we have ensured PCI DSS compliance and made passing inspections a seamless process.

Indicators confirming
our decisions

Optimized infrastructure

Overall security improvement

PCI DSS compliance gaining

In-depth system monitoring

06 //
Cut your infrastructure costs

Save more, maintain efficiency

Streamline your infrastructure, while reducing expenses. Achieve cost savings of up to 70% without sacrificing performance.
Contact us
07
Why AWS

AWS benefits at a glance

//

Easy to use

AWS is designed to allow application providers, ISVs, and vendors to quickly and securely host your applications – whether an existing application or a new SaaS-based application. You can use the AWS Management Console or well-documented web services APIs to access AWS’s application hosting platform.

//

Cost-Effective

You pay only for the compute power, storage, and other resources you use, with no long-term contracts or up-front commitments. For more information on comparing the costs of other hosting alternatives with AWS, see the AWS Economics Center.

//

Flexible

AWS enables you to select the operating system, programming language, web application platform, database, and other services you need. With AWS, you receive a virtual environment that lets you load the software and services your application requires. This eases the migration process for existing applications while preserving options for building new solutions.

//

Reliable

With AWS, you take advantage of a scalable, reliable, and secure global computing infrastructure, the virtual backbone of Amazon.com’s multi-billion dollar online business that has been honed for over a decade.

//

Secure

AWS utilizes an end-to-end approach to secure and harden our infrastructure, including physical, operational, and software measures. For more information, see the AWS Security Center.

//

Scalable and high-performance

Using AWS tools, Auto Scaling, and Elastic Load Balancing, your application can scale up or down based on demand. Backed by Amazon’s massive infrastructure, you have access to compute and storage resources when you need them.
08
Related case studies

Success stories you may also like

50% infrastructure cost redaction by migrating to the Cloud
Learn more
April 29, 2024
Zero downtime and resilient infrastructure for a neobank
Learn more
October 4, 2022
20% faster Time-to-Market for global trading technology leader
Learn more
April 25, 2022

Achieve more with OpsWorks Co.

//
Stay in touch
Get pitch deck
Message sent
Oops! Something went wrong while submitting the form.

Contact Us

//
//
Submit
Message sent
Oops! Something went wrong while submitting the form.
//
Stay in touch
Get pitch deck