00
intro

91% faster response to security threats for Merchant Services CRM

FinTech
4 years, ongoing
DevOps Transformation
Security & Compliance
Sep 28, 2023
2 min
Navigation
01
About
IRIS is a leading independent Merchant Services CRM

It supports businesses in the USA, UK, and Europe, handling over 140 million monthly transactions for more than 400,000 active merchants. Operating in the stringent FIS sector, the company is committed to delivering a highly secure and robust solution to its customers.

Active merchants:
400K+
Payment volume:
$12B+
Secure transactions:
140M+
Technology partners:
3,5K+
02
Trustmarks
5

We're impressed by their consistent level of high-quality work.

COO
Digital Asset Management Platform
03
challenges

The client faced the following challenges in their work

Strict industry requirements

Managing day-to-day financial transactions for thousands of active merchants, IRIS CRM operates under the strict requirements of the FIS industry. Ensuring system reliability, operational resilience, and user confidentiality isn't merely a preference but an absolute necessity.

Limited team capacity

With a small team in charge of the whole infrastructure, the client had absolutely no chance to treat all the issues and unpredictable situations out there with enough attention. Finding a way to optimize the workflow while staying on budget became crucial.

Security compliance

IRIS CRM wanted to gain a few industry-mandatory security compliances to give users even stronger quality guarantees. Getting them required the team and the product to make some changes. Here's where the client also needed help.

Tackle challenges confidently with our DevOps experts

Let our team find the best tech approach for your business scale and scope.

Contact us
04
Tech stack

Technologies we used

//
PHP
//
Laravel
//
React JS
//
Kubernetes
//
KEDA
//
RDS Aurora for MySQL
//
ElasticSearch
//
Elasticache Redis
//
ElasticCache Memcached
//
Amazon EKS
//
Amazon GuardDuty
05
solutions

We found best-fit solutions for client’s infrastructure

//
Threat detection system

Creating another layer of validation for potential security risks, our team adopted the Amazon GuardDuty threat detection system, complemented by its latest EKS Audit Log Monitoring and EKS Runtime Monitoring features. With a tool that uses machine learning, anomaly spotting, and integrated threat intelligence to identify and prioritize potential risks, our team can now proactively manage data flow and address critical threats faster.

//
Automated threat response

With GuardDuty onboard, OpsWorks specialists gained a chance to automate 24/7 system monitoring. Taking it one step further, our team set up an automated incident response. The moment the system identifies malicious activities, it promptly adjusts security parameters and enforces access controls, making it possible to stop and prevent threats without team involvement.

//
Security compliance gaining

System and approach improvement helped the company to gain 4 security compliances, including SOC2, PCI DSS, HIPAA, and Google Certified Developer. By embracing industry-standard regulations, the client transformed security into a competitive advantage.

Indicators confirming
our decisions

Reduced reaction to security threats from 24h to 2h

Handling more with the same team

Overall security improvement

4 security compliances gaining

06 //
Cut your infrastructure costs

Save more, maintain efficiency

Streamline your infrastructure, while reducing expenses. Achieve cost savings of up to 70% without sacrificing performance.
Contact us
07
Why AWS

AWS benefits at a glance

//

Easy to use

AWS is designed to allow application providers, ISVs, and vendors to quickly and securely host your applications – whether an existing application or a new SaaS-based application. You can use the AWS Management Console or well-documented web services APIs to access AWS’s application hosting platform.

//

Cost-Effective

You pay only for the compute power, storage, and other resources you use, with no long-term contracts or up-front commitments. For more information on comparing the costs of other hosting alternatives with AWS, see the AWS Economics Center.

//

Flexible

AWS enables you to select the operating system, programming language, web application platform, database, and other services you need. With AWS, you receive a virtual environment that lets you load the software and services your application requires. This eases the migration process for existing applications while preserving options for building new solutions.

//

Reliable

With AWS, you take advantage of a scalable, reliable, and secure global computing infrastructure, the virtual backbone of Amazon.com’s multi-billion dollar online business that has been honed for over a decade.

//

Secure

AWS utilizes an end-to-end approach to secure and harden our infrastructure, including physical, operational, and software measures. For more information, see the AWS Security Center.

//

Scalable and high-performance

Using AWS tools, Auto Scaling, and Elastic Load Balancing, your application can scale up or down based on demand. Backed by Amazon’s massive infrastructure, you have access to compute and storage resources when you need them.
08
Related case studies

Success stories you may also like

PCI DSS compliance for international money transfer app
Learn more
August 22, 2023
3x scalability increase for European financial service provider
Learn more
June 12, 2023
Zero downtime and resilient infrastructure for a neobank
Learn more
October 4, 2022

Achieve more with OpsWorks Co.

//
Stay in touch
Get pitch deck
Message sent
Oops! Something went wrong while submitting the form.

Contact Us

//
//
Submit
Message sent
Oops! Something went wrong while submitting the form.
//
Stay in touch
Get pitch deck