Christopher Derhammer Hill – Metallic DMaaS: Managing and Protecting Your Hybrid Cloud Transformation
From cloud adoption to digital transformation, hybrid is here to stay. But for IT organizations tasked with managing and protecting these environments, it can be easier said than done. In this session, we’ll discuss the importance of dedicated backup and recovery in your digital transformation strategy, key considerations for protecting your hybrid cloud world and how Metallic DMaaS safeguards your data today (and tomorrow) – all from a single pane of glass.
Transcript
Welcome, I'm Christopher Hill senior director of Metallic Sales engineering great to have you here today at Cloud native days. I'm going to spend some time talking this morning briefly about Cloud adoption and what it's done to us from an industry perspective as we work to cope with some of the challenges that arise there. It's 2022.
We're living in a world where cyber crime is increasing exponentially really surface a couple of years ago beginning as you know, something that cropped up out of people's basements, but it's become more complicated. It's become more extensive and we're dealing not with guys in their basements but nation state actors full corporations dedicated to cyber crime, whether that's threat of deletion thread of exposure encryption and Ransom Etc. So that's the context that we're living in we're doing that at the same time that we're engaging in a radical transformation in the industry.
And you're at this conference. So you understand from a devops perspective how pervasive the cloud has become the amount of sprawl that we're working with companies that are engaging with new technologies and corporate data company assets that are spread not just across different data centers and into different clouds, but across a broad range of applications all of that happening at a time when resources are fundamentally constrained. I saw just yesterday on CNN again commentary on the difficulty in the hiring market today and part of the challenge that we've got is those resources those assets that we can bring on board tend to be traditionally focused.
We've got a lot of experts at doing data recovery back up Protection security in a traditional context, but pulling in those skill sets for these new. Fields that we're living in whether it's Amazon or whether it's a Azure or oci Etc is something that's very difficult to do so, it puts us in a position that as we work to defend ourselves from security perspective as we work to engage with high integrity and provide the right reassurances to our customers that we're developing for. We're doing that in a very constrained space and in a very difficult environment.
So how do we cope with that complexity? we could work to do it ourselves, which is complicated is tedious and reliant on a large set of people processes and Technical processes you're engaging with firewalls with networks with server systems with storage systems generally with the csos office that complexity it injects cost it injects additional risk and a number of new threat surfaces. I think of it very very much like making your own very expensive dinner.
It becomes complicated it becomes tedious and really easy to make mistakes on I'd much rather go to a restaurant have someone cook for me and that's what we do metallic data management as a service provides robust data protection traditional backup and Recovery archiving services and Ransomware detection services to put you in a position to engage with high integrity for your customer base protect the assets that you're working. So aggressively to build and ensure that you're doing that in a robust secure way. We provide support for the major SAS applications things like Office 365 Dynamics Salesforce, for example that of all of which have become so pervasive in the market but also for the more traditional workloads what we think of as infrastructure services kubernetes so critical in the devops space virtual machines database file an object.
We're building this framework as metallic in a very cloud consumable cloud oriented way, but build on 25 years of capability for from CommVault itself. So we utilize the power that comes from that 25 years of experience. Bring it into a very cloud-forward space and provide that service in a simple way and that Simplicity engaging with a single provider that's capable of managing a broad set of workloads a broad set of ecosystems and providing a broad set of services that simplification benefits you from an operational perspective from a cost perspective and it reduces the number of threat services at the table.
So really powerful capability there whether you're dealing with infrastructure, whether you're dealing with kubernetes with SAS saps or things like endpoints and active directory. So we've got two types of environments that we work with and it's it's really tempting to think of traditional businesses as traditional businesses. They're on-prem.
They're very weighty. There's a lot of gravity in the data that they've collected over the years and we have the new players where devops is so prevalent that are pure Cloud companies, but realistically that's not the case in most circumstances the vast majority of traditional companies have begun to encroach into the cloud. They are they've moved to o365.
They have adopted other SAS applications. They've begun to experiment with the cloud for for data protection purposes, but also for Bursting workloads. So no one is truly on-prem at this stage of the game.
And by the same token very few of the companies that are in the cloud rely solely on that we end up in a scenario where we've got this broad range of companies that are somewhere on their Cloud journey and are mixing and matching on-prem assets Cloud assets and working to protect both of those and as we mentioned it's very tempting to adopt that approach or take that approach on with a set of applications that are custom designed some for the cloud some for on-prem, but that injection of additional threat service additional management complexity something that we can avoid by having a really robust. Ecosystem from a single product that gives you a single management interface to back up and protect a wide range of assets. So if we're adopting this single vendor approach, it's critical that the vendor we select engages in its own very robust security practices and fundamentally provides this data management space to the state of recovery space in a fully segregated way.
So when we think about ransomware, we think about initial intrusion and then lateral movement that happens over a range of protocols and a range of threat surfaces NFS sifts account management itself, I think about ransomware we think about Bad actors and their ability to undo the backup work or the recovery work that were that that's done in our model. We're isolating your data that we're using to protect you through a full virtual and physical air gap a logical air gap. If you will the connection into our framework happens over a port forth for three TLS encrypted tunnel.
So that we're fully segregated and separated from your production assets. The second piece that we have to do in addition to creating that that fundamental protection against both ransomware and Bad actors is to provide a level of security controls that are as close to bulletproof as possible on our side. That means full ISO protections full sock certifications.
means that we're layering in intrusion detection web application firewalls and a model on our side that is fully based around zero trust methodology ensuring that the people that we communicate Kate with are who they say they are and that they're operating with a set of rights that we believe they should have so engaging a zero trust methodologies providing immutable data backups multi-factor authentication all of these elements come together to provide a robust secure bunker for your data set that protects you not if you engage with ransomware challenges or if you engage with that actors, but when you engage with them, And that's our approach to provide really robust Security in a fully segregated environment to be that ultimate backstop against these security challenges. So how does that work our control plane lives as I mentioned in Azure full robust capability both in the commercial plane where it's appropriate for your business, but also in the FED ramp gov Cloud where it's necessary that control plane, which you attached to a report for three does command and control as you'd expect from our assets that are there to back up restore and protect your data and whether that's data living in SAS applications on your endpoints from in your cloud storage or on premise we're able to protect that it allows us to Deduplicate compress scan that data for for any kind of challenges and shift that to the right location a very well protected bunker ideally in our metallic recoveries are but also, you know able to use your own storage assets whether those are in AWS whether those are in Azure oci or on-prem. We're unique in that we're able to do this not for a single set either in the cloud or on-prem but a blend of those things so think of it as hybrid Cloud whether you're operating across multiple clouds or whether you're operating on-prem and in the cloud itself, So how does this come together for you?
When we look at delivering the SAS flexibility whether it's on cloud or on-prem, we've designed very consumable very simple licensing models to bring this into your business when it comes to the SAS World Office 365 Dynamics Salesforce. Those are all per user licenses that include both the data protection capability, but also, The underlying storage required to protect those assets. So it's a single fee a single license per user very aggressively priced when it comes to Virtual machines in kubernetes under metallic.
We're licensing those on a per VM basis depending on whether you need a standard VM with simple full VM restore potentially Advanced licensing where we might be restoring individual file objects for you tracking specific apps or an Enterprise version where we're doing full robust database style protection for things like Oracle rack, for example In addition to that for database backup and for file and object where licensing on a per terabyte basis based on the just the amount of data that we're protecting on the front end in all of those cases virtual machines kubernetes database and file and object will work carefully with you to determine the amount of backend storage required to host those data sets based on your front end data your change rates your retention periods. And in that scenario, we can certainly provide you with metallic recovery Reserve our most protected most robust offering but you can also leverage your own storage which will help you design too. So, however, you're consuming that licensing is simple design work is simple and we'll work very carefully with you to bring that into your team.
In fact today. We're active with a limited time metallic offer valid through March 31st, 2023 enabling you to get started out very efficiently and easily from a virtual machine. Kubernetes perspective so critical to the devops world and this scenario were offering 10 packs of virtual machine and kubernetes by three get one free and that's true across the board.
There's you know, very little to complexity to that model but it puts you in a position whether you're protecting on Prem or in the cloud whether it's kubernetes virtual machines or some blend of those things to really easily consume this bring it in get a custom to it and ultimately use it both in a tactical and strategic way solving a problem today, but adopting a platform that allows you to handle a wide variety of workloads and then become it can become intrinsic to your business over time. Thank you for joining me for this session. I'd ask that each of you to take the time.
If you're interested to stop by our metallic virtual booth there. You can dig in a little bit deeper to some of the ideas that we discussed today and engage with one of our Representatives who can give you more details about the metallic offering. You're also very welcome to stop by metallic.
IO slash trial where you can engage in a free 30-day trial around the software offering whether it's for SAS applications. Virtual machines kubernetes database file and objects Etc. Lastly.
Enjoy the rest of your sessions here at Cloud native days. I hope everyone has a fantastic day today.





