Path 04Lesson 4 / 10

Define the infrastructure beyond a prototype

Assess identity, networks, data, recovery, and operation. Connect a generated deployment to the company’s actual infrastructure requirements.

Practitioner12 minReviewed

Published by How we write

What you will learn

  • Explain what a container and database do not establish by themselves.
  • Identify ownership across cloud, platform, application, and delivery systems.
  • Define evidence needed before a prototype handles company data.

Start with the generated system

Consider a fictional prototype platform. It creates a web container, a managed PostgreSQL database, and a public URL. The workflow runs correctly with example records. This is a useful result: people can assess the feature before funding a larger implementation.

Now the company wants to store confidential contracts and use its employee identity provider. The required system has changed. A successful container deployment does not establish authorization, approved data handling, recoverability, or service ownership.

Different development platforms provide different capabilities. Inspect the actual service and configuration. Do not assume that every prototype tool has the same limits or that a familiar cloud name satisfies company policy.

Ask seven production questions

AreaQuestionEvidence to request
IdentityWho can sign in, administer, and deploy?Identity integration, role mapping, and offboarding test
NetworkWhich services and data stores can communicate?Network design and verified access rules
DataWhere is each copy processed and retained?Data-flow map, service terms, and configuration
SecretsHow are credentials supplied and rotated?Secret references, access rules, and rotation procedure
DeliveryHow does reviewed code become a release?Protected pipeline and artifact identity
RecoveryWhat can be restored, and within which limits?Recovery objectives and a measured restore exercise
OperationWho responds to failure and funds maintenance?Service owner, monitoring, incident route, and budget

The answers can use existing enterprise services. You do not need to build a new identity system or monitoring platform for every application. Connect to the approved capabilities and record the remaining gaps.

AWS Well-Architected considers operation, security, reliability, performance, cost, and sustainability together. This is a useful reminder that a functioning deployment is only one part of an architecture assessment. Read the framework.

Define boundaries between environments

Identify development, test, and production resources. Define which identities can cross these boundaries. Do not copy production records into a convenient preview environment without an approved handling process.

Inspect outbound connections as well as inbound access. A private database can still feed a public logging service through the application. The coding agent’s model calls are another flow to assess separately.

Record who owns the cloud account, DNS, certificate, encryption keys, and billing relationship. A project that depends on a departing employee’s personal account has an ownership problem even when the application code is available.

Test the responsibility split

A managed database provider may operate the underlying service while your organization controls users, data access, schema changes, and retention settings. The exact split depends on the service and contract. Ask for it explicitly.

For the contract application, run a fictional restore exercise. Measure the actual recovery time and identify possible data loss. Compare the result with the business requirement. A checkbox labelled “backups enabled” is not the same evidence.

Also test offboarding. Remove a fictional employee from the identity source and verify the intended access change. Include active sessions, administrator roles, and automation identities in the design.

Connect infrastructure to the delivery system

Infrastructure definitions, environment configuration, pipelines, and application code need coordinated changes. An agent should plan against the real target environment. Otherwise, it can generate a deployment that conflicts with networking, identity, or ownership requirements.

This is where platform engineering and a software factory meet. The platform supplies supported capabilities and boundaries. The delivery system must use them, produce evidence, and preserve a clear operational handover. Continue with platform engineering.

Do the exercise

A fictional tool creates a public web container and managed PostgreSQL database. The company wants employee access and confidential contract records. Complete the seven production questions in this lesson. Mark each answer as verified, missing, or inapplicable with a reason. Name who closes each gap.

Download worksheet (Markdown)

Check your understanding

A generated application runs correctly with a managed database. Which step is still needed before confidential company use?

Sources & further reading

Related reading from Taiga