Case Study
Strengthening Cloud Security And DevOps For A Public Healthcare Provider
Snapshot
A public healthcare organisation in the United Kingdom needed to modernise and secure its cloud infrastructure to better support critical digital health services. Its internal teams had manually created and managed environments, which limited scalability, transparency and adherence to best practice. Amdaris introduced a DevOps focused engagement built around AWS, Azure and Infrastructure as Code to automate infrastructure, remediate security issues and embed structured delivery. By clearing a backlog of business as usual tasks and improving cloud security, the solution enabled key stakeholders to redirect their time towards more innovative work that supports better care for the population.
Challenge
The client had a manually created cloud infrastructure that was difficult to manage, automate and secure. Key issues included:
- Capacity constraints meant the main technical stakeholder could not follow best practice
- No dedicated QA, with releases made directly into live environments, increasing operational risk
- Security scans highlighted issues that needed remediation, but limited time and a lack of structured processes slowed progress
- Previous work with another supplier had failed due to poor communication and lack of progress, leaving a backlog of business as usual tasks and unresolved security concerns
Funding pressures required any partner to demonstrate clear value and cost effective delivery while working within strict internal security regulations and limited stakeholder access.
Solution
Amdaris proposed a structured roadmap aligned with the client's existing JIRA epics, focusing on automating and hardening the cloud estate. The team began transferring manually created cloud resources into Infrastructure as Code using Terraform and Terraform Cloud, ensuring the entire infrastructure is version controlled in GitHub. They addressed security issues identified by the client's security tools, introduced proactive policies to detect and remediate vulnerabilities early and moved towards using AAD credentials for access to AWS services. DevOps work was managed using Kanban to provide transparency and flow, with changes deployed through GitHub Actions. The solution covered AWS services such as RDS Aurora, RDS Postgres, Redshift and QuickSight, alongside Azure Function Apps, Storage, SSO and PowerBI, with monitoring via Datadog. This approach improved cloud security, made changes more transparent and reliable, and cleared the BAU backlog so stakeholders could focus on innovation.
Results
The engagement delivered measurable improvements across cloud security, transparency and team focus:
- Improved cloud security through remediation of penetration test findings and introduction of proactive detection policies
- Infrastructure changes became fully version controlled, increasing transparency and reducing the risk of manual errors
- Cleared the outstanding BAU backlog, enabling the main stakeholder to focus on more innovative AWS work and digital health initiatives
- Greater agility in managing cloud environments and a more reliable foundation for future healthcare innovation
Technical highlights
- DevOps approach using Kanban to manage and track work items, ensuring continuous visibility of progress
- Infrastructure as Code implemented with Terraform and Terraform Cloud, with all cloud resources defined, version controlled and deployed via GitHub and GitHub Actions
- AWS services including RDS Aurora, RDS Postgres, Redshift and QuickSight integrated with Azure components such as Function Apps, Storage, SSO and PowerBI, monitored through Datadog
- Deployment focused on DevOps infrastructure changes, with security remediation and proactive policies embedded into the pipeline
- Detailed reporting and transparency maintained for the primary stakeholder, aligning work with internal NHS security regulations and governance
Why us?
We were chosen because our communication and collaboration approach directly addressed the client's previous challenges with suppliers. Our DevOps expertise and experience with AWS, Azure and Infrastructure as Code allowed us to structure and automate an existing manually built environment while respecting strict healthcare security requirements. We focused on clearing the business as usual backlog, remediating security issues and creating transparent, version controlled infrastructure so the client's key stakeholder could concentrate on innovation. Our ability to adapt to limited stakeholder access, work cost effectively within public sector funding constraints and align with healthcare compliance made us a strong partner for this public healthcare organisation.
Our work
See what we've built for businesses like yours
Accelerating Document Processing Support For Synertec's Prism Platform
Modernising Core Procurement Integrations For A Global Energy Services Provider
Empowering Global Recruitment: Robert Walters Transforms Operations with Zenith CRM
Strengthening Cloud Security And DevOps For A Public Healthcare Provider
Accelerating Digital Learning: Amdaris Empowers Bud Systems' Training Platform
Transforming Online Booking Journeys For Safer, More Accessible Driver Education
Interested in our services?
Get in touch.
Speak with one of our experts today to discover how we can make your impossible challenges a reality.