The API Management Playbook
The API Management Playbook
The “How” of Digital Business - - - - - - - - - 7 API Access Control- - - - - - - - - - - - - - - - 23 Secure and Manage- - - - - - - - - - - - - - - - 30
2
Winning at Digital Business
Introduction
Application programming interfaces (APIs) are essential for
executing ideas quickly and seizing new business opportunities.
They are the building blocks of digital transformation, enabling
organizations to deliver exceptional customer experiences, create
new revenue streams and connect employees, partners, apps and
4
Winning at Digital Business
The “Why” of Digital Business
Digital transformation is no longer a new idea—digital business
is now a reality. 89% of organizations are currently in some
phase of implementing a digital-first approach to business
processes, operations and customer engagement.1 When IDG
surveyed 702 IT and business management decision-makers to
What is interesting to note, however, is that the more mature companies that
adopted a modern application architecture grew twice as fast as those with a lower
adoption rate. 2
APIs 52%
Microservices 46%
Containers 49%
DevOps 50%
34% Relatively Low
App Security 58%
Agile Practices 50%
43%
APIs 84%
Microservices 78%
Containers 79%
DevOps 79%
App Security 85% 39% Medium
Agile Practices 81 %
79%
There is a clear connection between the above initiatives and the broader imperatives
Successfully overcoming challenges like integrating apps, eliminating data silos and
providing omnichannel access makes an enterprise far more likely to reach transformative
goals such as creating better customer experiences and increasing differentiation.
External Developers
Your
Data
Digital
Mobile Business
Partners/External
Divisions
IoT Devices
This is where an API management solution comes in—to provide a formal way of
creating, securing, managing and optimizing APIs at enterprise scale throughout the
API lifecycle. With so much riding on APIs, these solutions have become a preferred
strategy for the world’s most effective digital businesses.
5 Frost & Sullivan, What Business Executives are Learning about Software Development and How it is Helping Achieve KPIs, 2018. 9
Winning at Digital Business
The API Management Plays
Your API Management Team
Because digital transformation reaches deep into the enterprise—
affecting every facet of the business and involving every customer
10
Winning at Digital Business
The API Management Plays
Your API Management Team
APIs affect each part of the enterprise differently—and are seen in a unique light by each of
the roles they touch. Business executives perceive them as a source of revenue or cost savings.
Architects see indispensable tools for integration. Security professionals view them as potential
These executives are responsible for meeting business Architects translate the digital business challenges into an
11
Winning at Digital Business
The API Management Plays
Your API Management Team
Line of Business is about providing advanced threat protection and
Titles: V
P App Development, VP Mobile, Director of Apps, authentication capabilities without compromising the overall
Launch Deploy
On the API provisioning side, enterprises are responsible for a Functional coverage within each area is important when
continuous sequence of definition, design, creation, deployment, considering API management because a good solution offers
14
Winning at Digital Business
The API Management Plays
SaaS/cloud solutions
Accelerate Mobile/IoT Development ID/authentication
15
Winning at Digital Business
Integrate and Create APIs
Key Players: Enterprise Architects, API Owners
Digital initiatives based on APIs are all about providing scalable, reliable connectivity
between data, people, apps and devices. To support this mission, experienced
architects look for API management to help them solve the challenge of integrating
• Easily connect SOA, ESB and legacy applications. API management will streamline
integrations across disparate systems such as CRM or databases by providing
protocol adaptation, mediation and transformation.
• Aggregate data including NoSQL up to 10 times faster. API management will
orchestrate both structured and unstructured data from multiple sources at the API
layer to accelerate the development of better, more engaging web and mobile apps.
• Build scalable connections to cloud solutions. API management will enable the
DOWNLOAD NOW
16
Winning at Digital Business
Secure the Open Enterprise
Key Players: Security, Developers
The open enterprise must be secured completely, from the app to the API, while
maintaining a streamlined user experience. Information security professionals
look for API management to identify and neutralize critical threats, enable robust
• Protect against threats and OWASP vulnerabilities. API management will provide
threat detection and neutralization for key OWASP vulnerabilities such as SQL
injections, cross-site scripting and denial-of-service (DDoS) attacks.
• Control access with SSO and identity management. API management will secure
apps and their connections, while maintaining or enhancing user convenience.
• Provide end-to-end security for apps, mobile and IoT. API management will
DOWNLOAD NOW
17
Winning at Digital Business
Accelerate Mobile and IoT
Development
Key Players: Developers, API Owners
• Simplify and control developer access to data. API management will provide
a controlled way to access systems of record that shields developers from
unnecessary complexity. It should aggregate and orchestrate data while ensuring
compliance through authorization, shaping and policy management.
DOWNLOAD NOW
18
Winning at Digital Business
Unlock the Value of Data
Key Players: Line of Business, API Owners
Line of business executives look to API management as a central launch point for
their digital strategies. APIs have a range of capabilities that support efforts to build a
robust digital ecosystem by expanding partnerships, nurturing developer communities,
• Monetize APIs to generate revenue. API management will provide the functionality
needed to package, price and sell data products or services via any combination of
free, freemium, purchase, subscription or consumption models. It should also simplify
integration with analytics and billing services.
• Build digital ecosystems to enhance business value. API management will deliver the
granular control, compliance, security and reporting mechanisms needed to support
the expansion of digital value chains across a wide range of platforms, apps, devices,
LEARN MORE
19
Winning at Digital Business The API Management Plays API Management Capabilities Layers7 API Management
20
API Management Capabilities
Winning at Digital Business
API Management Capabilities
SaaS/cloud solutions
API Ownership API Development ID/authentication
Accelerate
21
Winning at Digital Business
API Management Capabilities
23
Winning at Digital Business
API Management Capabilities
25
Winning at Digital Business
Layer7 API Management Portfolio
Management Capabilities
26
Winning at Digital Business
The Layer7 API Management Portfolio
ID/Authentication
Cloud/cloud solutions
AWS, Google, SFDC …
NoSQL Data
External developers
27
Winning at Digital Business
Design
The API Academy provides insights and practical guidance on strategy, architecture
and design for APIs and microservices. It is a resource for Enterprise Architects and
API Owners to discover how to create the right API strategy for their organization,
and is filled with blogs, podcasts, and articles around API design and thoroughly
covers the emerging microservices market, including downloadable books on how
to implement a microservice architecture and securing microservice APIs.
For any organization that has embraced APIs and is ready to expand the scope of
their lifecycle beyond management and enforcement, Live API Creator offers an
incredible opportunity to shift left and move forward.
Mobile API Gateway adds additional capabilities that simplify the process of
adapting internal data, applications and security to meet the needs of mobile
endpoints and IoT.
APIs by both internal and external resources. It supports the developers themselves
When integrated with the gateway products, the API Developer Portal eliminates
the need to deploy solutions from multiple vendors, greatly reducing acquisition
costs, infrastructure requirements and maintenance overhead.
Runscope prevents slow or broken APIs from affecting your bottom line.
33
Learn more
about the
advantages
of Layer7 API
Management
PLEASE VISIT CA.COM/API
34 34