Zurich Insurance · IT Business & Solution Architect · 2022 – 2025
Compliance-aligned AWS and Azure with sub-24-hour disaster recovery
- -40%enterprise compliance gaps
- ≤24hRTO / RPO, zero data loss
- -50%data-leakage risk
Context
In Business Technology Services at Zurich Insurance, I designed and directed the migration of complex legacy and on-premise systems into cloud architectures that had to satisfy both security and regulatory scrutiny across AWS and Azure.
Challenge
Move legacy systems into the cloud securely, close the gap between the environments and the control frameworks the enterprise is measured against, and prove recoverability rather than assume it.
Approach
- Framework-aligned environments. AWS and Azure environments were architected against NIST, ISO 27002, CIS and COBIT, so controls were part of the design baseline.
- Cloud-native disaster recovery. DR strategies built on native cloud capabilities, targeting sub-24-hour RTO and RPO, and exercised in quarterly drills rather than left on paper.
- Threat modelling of data flows. Azure Data Factory, Lambda and Glue pipelines were threat-modelled and secured to reduce the risk of data leakage through integration paths.
Outcomes
- Enterprise compliance gaps reduced by 40%.
- Sub-24-hour RTO/RPO delivered, with zero data loss in quarterly drills.
- Data-leakage risk across ADF, Lambda and Glue flows cut by 50%.