TechRadar 2023
TechRadar 2023
TechRadar 2023
Emerging Technologies
2023 Edition
devoteam.com/techradar
Cloud, Cyber, AI*
& Sustainability.
Born in tech, Devoteam has over 25 years
of deep expertise in guiding your business
through the complexity of tech, supporting
your sustainable digital transformation.
*Artificial Intelligence
2 TechRadar
TechRadar
What’s inside
Preface 4
Devoteam’s Perspective: Entering the Cloud Native Era 6
Radar at a Glance 10
The Radar 12
• Digital Business & Products 16
• Hot topic: Product Strategy, a pragmatist’s perspective 17
• Case study: When tech meets massive data monitoring 33
• Data-driven Intelligence 35
• Hot topic: Starting fresh with Data Mesh 36
• Case study: When tech meets data factory 52
• Distributed Cloud 56
• Hot topic: Managing foreign access with Sovereign Cloud 57
• Case study: When tech meets unlimited potential 73
• Business Automation 75
• Hot topic: From Robotic Process Automation to Business Automation 76
• Case study: When tech meets IT infrastructure revolution 90
• Trust & Cybersecurity 92
• Hot topic: Prepare & protect against the Post-quantum threat 93
• Case study: When tech meets massive security management
in the financial sector 111
• Sustainability enabled by Digital 113
• Hot topic: Eco-Efficient IT: Saving Green by Going Green 114
• Case study: When tech meets ESG strategy effectiveness 124
Contributors 126
About Devoteam 130
TechRadar
Preface
The Devoteam TechRadar, a
rendez-vous with technology
L
ast year, Devoteam published its first TechRadar, an overview of
the leading technologies established by our experts. This initiative
was a huge success, revealing the great thirst for information on
the most important technologies in the market.
For the past three years, companies have been confronted with an
accumulation of challenges of all kinds, and they know that it will be
impossible to meet them without technology. However, due to a lack
of resources and skills, they sometimes feel helpless in the face of
abundant offerings and surging innovation. Cutting through this noise
and selecting the technologies with highest potential is a difficult task. It
is the job and the passion of Devoteam’s employees to be on the lookout
for the latest technological innovations in order to evaluate, test and
assimilate the most advanced innovations in the fields of cloud, data,
application development, cybersecurity, automation and environmental
sustainability. Technological expertise is our DNA and providing our
customers with the benefits of this expertise is our vocation.
To keep up with the rapid pace of innovation, it quickly became obvious
that we need to make the TechRadar a recurring “rendez-vous.” Our
objective: to provide a comprehensive overview of what’s happening
across a technological landscape in perpetual motion, and assess the
potential impact it can have on businesses and society. As in the first
edition, the technologies featured here have been independently
selected by our experts. Some have been around for a long time, others
are only just emerging, but they all deserve special attention as they
address major business and technological issues in the current economy.
4 TechRadar
As proof of the rapidity of the digital ecosystem, of the 150 technologies
presented in this edition of the TechRadar, half of them are new.
Among those that have disappeared, some are the result of mergers
and acquisitions, others because they are no longer required to be
introduced due to their popularity, and others because they have not
experienced the expected boom. Above all, it is about making room
for the promotion of new technologies that are as exciting as they are
promising in the context of “Cloud Native,” which is undoubtedly the
keyword of this 2023 vintage.
We hope that you will enjoy reading this new publication and that the
monitoring, analysis and popularisation work of our experts will usefully
enrich your thoughts.
Karen Auffret
Publication Director
devoteam.com/techradar 5
TechRadar
Devoteam’s
Perspective
Entering the Cloud Native Era
I
nflation and economic slowdown, surging energy and resource
prices, geopolitical tensions, supply chain disruptions, skills shortages,
climate and health hazards, regulatory and societal demands:
for the past several months, companies have been faced
with a succession of challenges of all kinds. In spite of this,
they have to find the path to a profitable and sustainable
transformation amidst these roadblocks. On this path,
they have only one certainty: no matter what happens,
their salvation will come through the cloud.
Cloud is no longer, as it was in its early days, just
a way to streamline IT infrastructures in the face
of business fluctuations. It is even more than the
limitless pool of digital resources that it later
became. Today, the cloud is the essential tool
for business innovation and adaptation. It’s
the cloud that drives productivity, accelerates
time-to-market, and scales success. It is the
place where business activities are reinvented
and new models are created - more sober, more
resilient, more aligned with the demands of
society and the constraints of the world. These
new disruptive models are built with the cloud,
in the cloud, for the cloud. They are cloud native,
and almost all of the technologies presented in this
TechRadar 2023 are participating in this movement.
Gartner predicts that by 2025, 95% of all new digital
initiatives will be built on cloud native platforms!
Cloud native is therefore becoming a strategic topic and
companies must prepare for this new era where technology
and businesses are more interconnected than ever.
6 TechRadar
Being prepared means first of all building a technological ecosystem.
Given the plethora of technologies available, the first risk would be to lose
focus. To rationalise investments, to ensure the interoperability and
security of systems, to accelerate developments and to develop
skills, it is necessary to choose a stable and coherent set of
tools and vendors. Around the hyperscalers, which are
essential mainstream partners, the company will rely
on a certain number of preferred solutions, possibly
differentiated by geography, business or criticality:
regional, sovereign or industrial clouds, data, AI/
ML, automation, infrastructure, security, etc. This
technological set, in which open-source and
cloud native technologies such as Kubernetes or
severless will predominate, will form the basis of
the information system.
devoteam.com/techradar 7
native will give birth to composite architectures. As in a construction
game, the elementary bricks will be used to build specialised functional
modules, which can themselves be combined to create complex
applications for end users. Based on identical technologies and
principles, the modules will be compatible with each other. Managed as
products under the authority of a global governance, they can then be
used as a foundation for future developments.
By redistributing the roles within IT, but also outside, this assembly logic
should enable the business to become more involved in application
development. At a time when technology and business have become
one, this is the wish of CEOs. According to a Gartner survey, 67%
of CEOs would like to see the business take a greater role in the
implementation of technology. Cloud native will accelerate the
creation of multidisciplinary development teams, known as Fusion
Teams. Composed of different specialists (business, data, UX, security,
etc.), they will mostly rely on no-code tools, which are more accessible
and accelerate innovation through the assembly of components.
Philippe Bournhonesque
VP Innovative Development
8 TechRadar
devoteam.com/techradar 9
TechRadar
Radar at a Glance
The Devoteam TechRadar is designed to help you
stay up-to-date with what Devoteam considers to
be the latest and most interesting technologies,
whether they’re just emerging or have already proven
themselves in the market. The technologies included
in the TechRadar have been carefully selected by our
experts and classified within two different categories:
strategic domains and rings. The strategic domains
represent the topics that we believe are essential
for organisations to focus on if they want to become
leading digital companies.
Ring levels are a way to classify the maturity of a
technology, helping you decide on which technologies
you need to hold out on, assess, start a trial with,
or adopt completely. The idea is that as new and
emerging technologies mature, they will move up the
ring levels as time goes on.
10 TechRadar
Hold Assess Trial Adopt
devoteam.com/techradar 11
The Radar
Open to reveal ›
ts Sust
duc ain
a
& Pro bili
ty
s E
es na
in bl
Bus ed
l by
i ta 29
D
ig 28
147
ig
D 27 148
144
i ta
26
l
25 145 149
141
24 22
21 139 142 146
23 20 150
Ho
ld ld
140 143 Ho
As 19 18
s 15 s
es
s
17
14 s es
16
13 10
137 As
Tri 12 9 138
al al
Tri
11 8 6
7 5 132
ce
4 3
54 2
iven Intelligen
Trust &
Ad 1 128
49 o pt o pt 122
40 Ad 117 133
50 45 36 113 123
55 41 33 110 118 129
Cybersecurity
46 37 31 108 114 124
51 42 34 30 107 111 119 134
47 38 32 109 115 125
43 35 112 120 130
56 52 48 39 116
Data-dr
126
44 121
Ad 135
53 o pt o pt 127
131
Ad 58 87
57 59 89
61 60 88 92
64 62 91 96 136
Tri
al 68 65 63 90 95 al
Tri 69 66 94 100
70 67 93 99
s 71 98 As
s es 74 73 72
s es
As 78
97
103
s
Ho
Hold 75 ld
83 79 76 102 106
80 77
101
84 81
82
105
85
n
D io
ist at
rib om
ut
ed Aut
C s s
lou
si ne
d Bu
Digital Business Data-driven Distributed Cloud
& Products Intelligence
Assess
132. CrowdSec N
133. Devo
134. Lacework
135. Trivy N
136. Wazuh N
Digital Business
& Products
Accelerate your business by adopting the new
rules of digital. Shape innovative digital businesses,
performant products and remarkable experiences
enabled by technology.
HOT TOPIC
Product Strategy:
A pragmatist’s
perspective
The product strategy sets the
ambition, trajectory, and ensures that your
product and service offering evolves continuously.
However, many companies are struggling to find
the right way to implement their product strategies.
So how do you create a winning strategy?
devoteam.com/techradar 18
Digital Business & Products
at a Glance
Caught up in the economic crisis, companies
are reviewing their digital investments with the
intention of optimising their project portfolios and
prioritising those that promise a quick return on
investment. They also hope to finally reap the benefits
of their innovation efforts of the past few years by
accelerating deployments and scaling up. Everywhere
there is an effort to do better with less, with a focus
on not spending in vain and seeing every initiative
through to completion.
In these tough times, value creation therefore depends above all on
impeccable execution, and technological developments are both
the instrument and the reflection of this desire. This is reflected in
the projects by four strong trends, each embodied by key technologies
present in this TechRadar 2023: collaboration through sharing and
sourcing of resources and skills (with Github); agility, which involves
in particular the appropriation by the business of modular API-based
architectures (with Apigee); resilience and robustness of applications,
which must no longer be produced only quickly but also well (with
Cypress, for example); customer orientation, to take greater account of
the expectations and needs of end users (with Storybook).
Digital investments are therefore not frozen, but redirected to where
they will have the greatest impact. From this perspective, Gartner
believes that two themes in particular should continue to receive
attention: improving the user experience and improving employee
productivity. In fact, both are part of the same issue, the “total experience”
(TE), which is becoming the primary focus of the most digitally mature
companies. The total experience considers that the customer’s experience
is indissociable throughout the customer’s journey and the actors
involved; and that all aspects – user experience, omnichannel, employee
experience, among others – must therefore be addressed with the same
attention in order to leave no room for dissatisfaction.
25
24 22
21
Ho 23 20
ld
As 19 18
s es 17 15
s 16 14
13 10
Tri 12 9
al 11 8 6
7 5
4 3
2
Ad 1
o pt
devoteam.com/techradar 20
Apache Kafka Apigee
Adopt Adopt
devoteam.com/techradar 22
CAST Highlight Cloud Run portable and thus
Adopt avoiding vendor lock-in. With
Cloud Run, you can build and
CAST Highlight is a solution deploy scalable containerised
that does source code analysis apps written in any language,
of a portfolio of applications. including .NET, Java, Go, Python,
It allows users to categorise Node.js or Ruby. There are two
applications for potential cloud ways to run the code: as a service,
migration through insights responding to web requests or
of business impact vs. cloud events, or as a job, performing
readiness. Organisations can then a task, and quitting when that
understand where their legacy/ task is done. Standard service
on-premises technologies stand features include fast request-
in cloud migration readiness. based auto-scaling, built-in traffic
CAST also fits in perfectly as a management, access restriction,
component within an automation and unique HTTP(S) endpoint for
pipeline, continuously assessing every service. Cloud Run is a good
and monitoring cloud readiness choice for code that handles
evolution throughout the requests or events, such as
complete software lifecycle. websites, APIs, microservices, and
Additionally, the tool provides streaming data processing.
information on vulnerabilities,
checking licensing violations,
GDPR compliance and more. Cypress
Compared to competitors Adopt
CAST supports an enormous
amount of technologies (PHP, Marketed as a “complete end-to-
C#, C++, java and much more) end testing experience,” Cypress
and functions with AWS, Google is an open-source tool for testing
Cloud and Microsoft Azure. In web applications. Based on front-
fact, Microsoft now includes CAST end frameworks like Angular, Vue,
in their portfolio of solutions in and Reach, it’s completely free
helping companies migrate their to use and allows users to easily
applications from on-premises and quickly set up, write, run, and
to Azure. debug tests. It has several key
features that set it apart from
competitors including direct
Cloud Run debugging from tools like Chrome
Adopt DevTools, real-time reloads after
test alterations, and automatic
Cloud Run is a fully managed waiting, in addition to the time
compute environment that allows travel feature in which Cypress
developers to deploy and scale takes snapshots during tests so
serverless HTTP containers. It users can see what is happening
implements Kubernetes KNative, during each testing stage. 2022
making the applications using has seen Cypress’ start-up and test
devoteam.com/techradar 24
Deno.js the costs, bugs and inconveniences
Assess of all kinds that result from the
coexistence of the two platforms.
Deno.js is a JavaScript and But Flutter also owes its success
TypeScript runtime that was to its performance, its ease of use
created by Ryan Dahl to tackle and its compatibility with the
some challenges that his former usual development environments.
JavaScript runtime, Node.js, These are assets that appeal
couldn’t handle. Built on top of to developers, but also to their
the high-performing V8 JavaScript employers, because they contribute
engine, Deno is lightweight and to simplifying, accelerating, and
easy to use, coming with a rich set therefore reducing the costs and
of built-in libraries and tools that deadlines of projects.
can be used to build numerous
types of applications, such as
web servers, command-line tools, Flux CD
and serverless functions. Deno is Trial
designed with security in mind,
and it includes features such as file Flux CD is a Continuous Delivery
and network access controls that tool that provides GitOps for
are designed to prevent accidental both apps and infrastructure,
or malicious access to system enabling users to keep Kubernetes
resources. Ultimately, Deno is best- clusters in sync with configuration
suited for developers who want an sources (such as Git repositories)
advanced runtime environment and automate configuration
they can use to build modern, updates when there is new code
secure, and scalable applications to deploy. Built from the ground
using JavaScript and TypeScript. up to utilise the Kubernetes’ API
extension system, Flux integrates
seamlessly with core tooling within
Flutter the Kubernetes ecosystem like
Adopt Prometheus Kustomize, Helm,
RBAC, etc., and includes multi-
Just four years after its launch tenancy capability, in addition to
by Google in 2017, Flutter has syncing an arbitrary number of
surpassed React Native to become Git repositories. While this may
the most widely used cross- seem like a tool with limited
platform mobile development capabilities, seasoned developers
framework. It must be said that can use multiple instances of Flux
this open source SDK fulfills one CD to create intricate scenarios,
of the most cherished wishes of with each instance having specific
app developers: to only have to RBAC permissions. Initially
write one code for both Android developed by Weaveworks, Flux
and iOS environments. What’s was made open-source in 2016
more, its rendering engine is also and later donated to CNCF as an
agnostic. Flutter thus eliminates incubation project in 2019.
devoteam.com/techradar 26
Easy to learn for anyone with queries to be grouped to call
programming experience, Go only the desired data. In this
is gaining in popularity and its way, GraphQL limits superfluous
ecosystem is growing. It is now exchanges, which improves
used in many major open-source performance and facilitates the
projects, such as Docker and evolution of APIs. REST, on the
Kubernetes, which ensures its other hand, still has the simplicity
visibility and, above all, its durability. of its unit calls and the resulting
cache pooling. Although it is
steadily gaining ground, GraphQL
GraphQL is probably still under-utilised
Adopt compared to its potential. In
particular, it is a very relevant
Developed by Facebook in solution when data is organised
2012 and open source since in the form of graphs or trees,
2015, GraphQL is an API query a situation for which it was
language. An alternative to REST designed, which is increasingly
(Representational State Transfer) common, and is exceedingly
architectures, GraphQL allows difficult to manage in REST.
devoteam.com/techradar 28
Kotlin collaborative, cross-platform apps
Hold more quickly. Users can join the
virtual world with a holographic
Created in 2011 by the presence, share across space,
development tools specialist and collaborate on persistent
JetBrains, Kotlin is a programming 3D content, regardless of their
language based on the JVM physical locations. The scenarios
(Java Virtual Machine). Designed in which Microsoft Mesh could
to meet the requirements of bring benefits are virtual meetings,
current developments, Kotlin training & learning, remote
does not lack assets: it is a assistance, or 3D design. Because
modern language, concise, Mesh is based on Azure, Microsoft’s
natively secure, and portable on cloud computing platform, it
all platforms thanks to the Kotlin/ has access to Azure’s extensive
Native compilation technology. computational resources, data, AI,
Kotlin can be used for any kind and mixed reality capabilities, as
of development, especially for well as its enterprise-grade security
Android mobile (it is the official and privacy features.
language of the Android platform).
Interoperable with Java and
compatible with its ecosystem of MuleSoft
resources, Kotlin was intended to Adopt
gradually replace it. However, as
the community and the portfolio MuleSoft is a platform that enables
of projects are slow to reach a organisations to integrate data and
critical mass, this possibility seems systems and automate workflows
to be receding, and the next few and processes. Robotic Process
years will be decisive for its future. Automation (RPA) replaces manual,
repetitive tasks with bots that can
take action on a user’s behalf. The
Microsoft Mesh platform offers pre-built templates
Assess and activity steps to make the
automation cycle easier. Processes
Microsoft Mesh is a platform that can be evaluated, designed,
enables presence and shared deployed, and monitored in a
experiences through mixed- single place. MuleSoft Composer
reality applications. Organisations is a no-code product for business
can design persistent virtual teams and helps automate larger
environments called metaverses, processes that span across multiple
which use avatars of real-world actors, apps and systems. Anypoint
objects, places, and people. The platform sits at the heart of the
Microsoft Mesh SDK provides systems integration for IT teams.
AI-powered tools for avatars, This platform enables users to
holoportation, spatial rendering, manage, govern and monitor
and other mixed-reality features, automations and integration flows
enabling developers to create across the organisation. Teams
devoteam.com/techradar 30
control that eliminates allocation Kubernetes applications.
and call errors – major sources of Skaffold provides declarative,
vulnerabilities. The only language portable configuration with
with C accepted for the Linux a pluggable architecture that
kernel, Rust is mostly known handles the complete workflow
for system programming and for building, pushing, and
critical software, but its lightness deploying applications, allowing
and its integrated concurrency developers to focus their efforts on
management make it suitable implementing code changes and
for distributed applications. see them rapidly reflected on their
Demanding at first sight, but very cluster. The tool further enables
much appreciated by developers, DevOps practitioners to easily
Rust is supported and used by all configure a local development
the biggest names in tech and is workspace, streamline their
growing in popularity as a possible inner development loop, and
successor to C++. integrate with other tools such
as Kustomize and Helm for
simplified Kubernetes manifests
Skaffold management, and provides
Trial the building blocks for CI/CD
pipelines. Developed by Google
Skaffold is a lightweight as an open-source project in
command-line tool purpose- 2019, Skaffold stands as a robust
built to accelerate application solution for organisations looking
development and delivery by to accelerate and standardise their
automating repetitive, and time- development workflow, leading
consuming manual operational to faster time-to-market for
tasks for developers creating Kubernetes applications.
devoteam.com/techradar 32
CASE STUDY | Sector: Non financial Services | Employees: 6,000
devoteam.com/techradar 34
TechRadar
Data-driven
Intelligence
INTELLIGENCE
DATA-DRIVEN
Drive tangible business outcomes with data and
analytics at every opportunity. Differentiate your
products, services and customer experiences
to surpass your competition with an
insight-based approach.
HOT TOPIC
INTELLIGENCE
DATA-DRIVEN
The implementation of data mesh should be a long term goal and not
all components of each pillar must be implemented immediately, but
eventually. This will enable all employees to have access to the data
whenever they need it. But, merely adhering to the pillars does not
guarantee its implementation. Many organisations are deploying
step-by-step practices according to Data Mesh pillars.
Data Mesh has many potential uses, including:
• Agility and scalability comes hand-in-hand through the use of data
mesh as it works to support decentralised data operations to aid in
the reduction of the amount of time needed to bring a product to
market, increase scalability, and improve business domain agility.
• Adoption of a product mindset with a large variety of outputs
(AI, data streaming, APIs, data apps, etc.) no longer limited to
reporting and analytics.
• Introduction of a universal, domain-agnostic, automated approach
for data standardisation by data teams.
• Cross-team transparency that is fostered by decentralised data
ownership and shared across specialised groups working in
different areas.
devoteam.com/techradar 37
Data-driven Intelligence
at a Glance
Data continues to be a top concern for organisations.
In the public sector, this trend is fueled by regulatory
changes and the need to decompartmentalise
information. In the private sector, the drivers are the
search for new revenue streams and the ongoing aim
to improve operational efficiency. Newer, however, is the
recognition that data is sensitive material that cannot
be used effectively without taking certain precautions.
The concept that data must be treated as a valuable
asset, or “assetisation,” is now the primary focus.
Assetisation refers to the objectives of data quality, reliability,
homogeneity and security, which require the implementation of an
enterprise-level data operating model, governance, skills and specific
tools. Building this foundation is a vast undertaking, and is, above all,
based on a data strategy that is in alignment with the new challenges
of data, such as monetisation, sharing and compliance. This strategic
clarity also gives the guidance for the deep cultural change needed for
any organisation to be truly data-driven.
Tooling is also an essential part of the picture. Many of the technologies
presented in this TechRadar 2023 show that software vendors have
taken note of the needs induced by data automation. Facilitating the
use of data remains a major concern, but many solutions now also
focus on the upstream processes of data integration and preparation
(DataOps, MLOps, etc.), on their industrialisation and on their
automation through AI.
There is sometimes a reluctance to make investments where there
is not an immediate return; however, with regards to data, it is
increasingly necessary. Many organisations have realised that data is a
prerequisite for achieving business objectives, whether it be improving
operational efficiency, supporting decision-making, reducing costs and
environmental footprints, developing new business, understanding
and mitigating risk, or meeting regulatory requirements.
al
Tri
s
ses
As
ld
Ho
devoteam.com/techradar 39
Airbyte native data wrangling company.
Adopt This acquisition gave rise to
Designer Cloud, a cloud-based
A flexible open-source data data engineering tool for data
integration platform, Airbyte uses profiling, preparation, and pipeline
pre-built and custom connectors management running on all major
to replicate data in minutes. It cloud platforms. With collaboration
allows users to combine data and AI-based features like
integration platforms under Auto Insights or Predictive
one reliable and fully managed Transformation, Designer Cloud
platform. Users can edit over 300 makes data transformation and
pre-built connectors or build insight even faster and more
new ones in hours, negating intuitive. With the addition of cloud
the need for separate systems. capabilities, Alteryx offers even
Airbyte can also integrate to your more flexible deployment options,
data stack (Kubernetes, Airflow, providing an end-to-end solution
dbt), while their transparent, at the intersection of data science,
volume-based pricing structure process automation, and employee
is predictable and easy to empowerment.
understand, allowing companies
to plan budgets accordingly. And
with their community of over 600 Apache Airflow
contributors to build and update Adopt
their connectors when source
APIs and schemas change, the Apache Airflow is an open-source
organisation can focus on insights platform to design, orchestrate
and innovation. With Airbyte, and monitor workflows. Created
extracting data from various in 2014 at Airbnb, it has today
sources is quick and easy, which is reached significant maturity
why it’s moved from ‘Trial’ in 2022 and has been widely adopted
to ‘Adopt’ in 2023. by companies of all sizes to
manage complex workflows at
scale. While the tool allows users
Alteryx to run workflows of all types,
Adopt it is particularly well-suited for
managing data engineering
Thanks to Alteryx’s intuitive and pipelines. The key strengths of
low-code graphical interface, Airflow lie in its flexibility – by
business users are able to prepare designing workflows dynamically
their data themselves, build their through Python code (DAGs);
analytical processes and automate its extensibility – with a rich
them so that they can immediately ecosystem of integrations with
exploit the results, without any other technologies; and its strong
prior coding knowledge. In 2022, and active community – allowing
Alteryx took a step forward with users to work on an ever-evolving
the acquisition of Trifacta, a cloud platform for which help is always
INTELLIGENCE
DATA-DRIVEN
and data retention policies, which
Apache Iceberg can make it easier to manage
Assess and query large datasets over
time (as simply as a SQL query).
Created by Netflix, Apache Iceberg Apache Iceberg has been adopted
is an open-source data format by all the cloud hyper scalers as
for large-scale, immutable data well as big players like Snowflake
sets that allows the storage of and BigQuery, who are all
petabytes of data. Tailored for high implementing Iceberg capabilities
performance, Iceberg provides a into their products.
devoteam.com/techradar 41
Apache Spark process and retrieve massive
Adopt volumes (petabytes!) of data
instantly around the world has
As an open-source, multi- given rise to high-performance
language engine, Apache Spark cloud-based databases that scale
builds on the foundations of automatically and minimise
technologies like Databricks latency. Cosmos DB, Microsoft
and Hadoop to enable users to Azure’s fully managed NoSQL
quickly process massive, petabyte database, is a newer kid on the
levels of data. The most widely block, competing with Amazon
used engine for large-scale DynamoDB. For companies
data analytics has transformed already using Azure, Cosmos is
the world of Big Data, being the obvious enterprise-ready
utilised by 1000s of companies choice, as it integrates seamlessly
worldwide, including around with other Azure services. Cosmos
80% of Fortune 500 companies. DB also supports popular open-
Key features such as ANSI SQL source PostgreSQL, MongoDB,
queries for dashboarding and and Apache Cassandra. It
reporting, analysing large-scale boasts SLA-backed single-digit
data, scalable machine learning, millisecond reads & writes, and
and processing massive data 99.999% availability. But users
streams using most programming get more than speed, availability,
languages (Python, Scala, Java, throughput, and consistency—
SQL, or R) make Apache Spark the they also get Microsoft’s
most diverse, agile, and developer- commitment to security.
friendly engine of its kind. Recent
improvements include more
scalable state processing, row- Azure Synapse Analytics
level runtime filtering, and Pandas Adopt
API for unifying small and big data
API. Although requiring advanced As an enterprise analytics service,
skill sets and infrastructure, Azure Synapse Analytics combines
Apache Spark is a must for any pipelines for data integration, SQL
large organisation. technologies used in enterprise
data warehousing, and big
data analytics. Synapse SQL
Azure Cosmos DB facilitates data warehousing and
Adopt virtualisation scenarios across
both serverless and dedicated
Big data has become the fabric resource models, allowing for
of everyday life. Whether it’s predictable performance and
online gaming, global retail, or cost, while Apache Spark for
IoT-driven manufacturing and Azure Synapse offers a simplified
logistics, big data powers our resource model that makes
personal lives and drives entire managing clusters quick and
business models. The need to easy. Synapse also has the same
INTELLIGENCE
DATA-DRIVEN
in an infrastructure that is agile, name for itself for being “blazing
scalable, and ideal for medium fast.” It was designed for online
and large businesses. analytical processing (OLAP)
and performs SQL queries
anywhere between 100 and 1,000
C3 AI Platform times faster than traditional
Adopt database management systems.
Companies running business-
C3 AI is a software-as-a-service critical applications that process
(SaaS) solution that delivers and query huge volumes of
a comprehensive, low-code/ data are turning their attention
no-code platform for the to ClickHouse for its speed (of
development, deployment, course!), reliability, fault tolerance,
provisioning, and operation of and ease of use. Uber, eBay,
enterprise-scale AI analytics and Spotify, Deutsche Bank, and
IoT applications, in addition to Cloudflare are among notable
a portfolio of over 40 industry- enterprises with interesting use
specific, turnkey enterprise AI cases showing promising results.
applications. The C3 AI platform For example, ClickHouse can be
stands out for its revolutionary used to monitor millions of real-
model-driven AI architecture time web or app performance data
that allows developers to use points. It works out of the box and
conceptual models (rather offers enterprise-grade security
than programming code) for features and fail-safe mechanisms
rapid, simple development against human errors.
and deployment of AI and
IoT applications. Additional
capabilities include polyglot Collibra Data
cloud deployment for application Intelligence Cloud
portability between cloud vendors, Assess
simultaneous runtime of AI and
IoT applications across multiple Collibra is focused on easing the
clouds, and interoperability shift of their clients toward a data-
with third-party IDEs, tools, and centric culture – a mission they
frameworks. Adopted by a wide accomplish by enabling data for all
range of global enterprises, C3 AI stakeholders of the organisation
stands as a powerful and highly through Collibra Data Intelligence
versatile solution for Enterprise AI Cloud. The platform is one of the
and digital transformation. leading solutions to support data
devoteam.com/techradar 43
governance and data acculturation Dataiku
and covers multiple facets: data Adopt
cataloguing, data quality &
observability, data governance Founded in Paris in 2013 and
process & workflow automation, now based in New York, Dataiku
data lineage, data privacy and was one of the pioneers of data
security management. Although science and artificial intelligence
Collibra Data Intelligence Cloud tools. Considered by Gartner and
platform is an end-to-end and Forrester as one of the leaders in
state-of-the-art solution, it requires this field, the publisher continues
having a first-hand experience to grow despite very strong
and a clear vision regarding data competition. Dataiku offers a
governance and alignment with platform that enables end-to-
data strategy and data quality end management of the design,
goals before implementing and deployment and maintenance of
adopting such a solution. Machine Learning and predictive
analysis applications. This solution
owes its success to its focus on
Databricks Lakehouse features that accelerate the
Platform spread of controlled, accepted and
Adopt responsible AI in the enterprise:
collaboration (between data
Due to the explosion of data scientists, data engineers, data
volumes and diversity, as well analysts, business users, etc.),
as the explosion of analytical governance (of projects, models,
needs, organisations sometimes etc.), explainability (transparency,
hesitate between the robustness detection of bias, documentation,
of a data warehouse and the etc.) and performance at scale,
flexibility of a data lake. By using particularly thanks to the cloud.
the Databricks analytics engine,
created by the developers of Spark,
they no longer have to choose dbt
between the two. Lakehouse’s Adopt
cloud platform combines both
approaches, providing the dbt (Data Build Tool) is an
performance, flexibility and open-source tool for transforming
scalability necessary for analytics data before its analytical
and artificial intelligence at exploitation. This essential step
scale, and promoting the (the T of ELT processes), generally
decompartmentalisation of carried out by data engineers
data and organisations to bring using relatively heavy tools, is
together all data stakeholders. often a bottleneck. With dbt
This comprehensive platform has users build reusable data models
recently added Unity Catalog, for that get pulled into subsequent
data governance, and Delta Live models and analysis. Change a
Tables, for data engineering. model once and that change will
INTELLIGENCE
DATA-DRIVEN
data players like Databricks, new connections and releasing
Snowflake and Salesforce, who new features (dashboard updates,
are all among the investors notifications to any email address,
of dbt Labs, dbt is enjoying an optimised consumption-based
meteoric success with over 16,000 pricing model) on an impressively
enterprise users just five years consistent basis. Furthermore, their
after its launch in 2017. acquisition of HVR – a software that
enables real-time data replication
– means companies will soon
Fivetran have a single vendor to integrate
Adopt and replicate data across multiple
platforms and enterprise-grade
Fivetran is a cloud-based ELT databases. For these reasons, we’ve
(Extract, Load, Transform) platform recategorised Fivetran from ‘Assess’
that facilitates the quick and easy to ‘Adopt’ in the space of a year.
devoteam.com/techradar 45
Immuta quality, master data management,
Trial data catalogue and data
governance (among others) from
A true leader in data technology, the same platform. As a market
Immuta ensures data access leader in data management,
and security at scale with its Informatica remains at the
Data Security platform, where forefront of emerging methods,
data is identified, secured and such as data mesh, and new issues,
monitored within organisations such as data governance. With the
to ensure users have access to help of its partners, Informatica
the right data at the right time. has also launched a new business
Its capabilities allow users to strategy to bring its expensive
seamlessly improve data security data integration, management,
and compliance, streamline data and governance solutions to all
access flows or approvals, reduce types of customers. Informatica
the volume of policies required continues to be a solid choice for
with attribute-based access control, organisations that want to leverage
and support new data products large, disparate, and siloed data.
and data-sharing initiatives.
While implementing an effective,
centralised data access and security Kubeflow
solution is critical for organisations, Adopt
Immuta clearly stands out for its
speed of deployment and ability to As Machine Learning (ML)
integrate with leading cloud data becomes more widespread,
platforms, interoperating with any methods are becoming more
data catalogue solution already in streamlined and the development
place and being integrated with cycle now follows a well-
major SaaS platforms. established process, from data
collection and preparation to
training, validation, deployment
Informatica Intelligent and maintenance of the model.
Data Platform Kubeflow is an open-source
Adopt tool for managing this “ML
pipeline,” which industrialises
Since its inception in 1993, the model lifecycle and facilitates
Informatica has continued to collaboration between the
innovate to meet the changing different actors (data scientists,
data needs of enterprises. data engineers, ML engineers). To
Currently, it offers a robust cloud achieve this, Kubeflow relies on
services platform that allows the richness of the Kubernetes
company information to be ecosystem, which offers tools and
managed and governed in a an execution environment that
centralised, scalable and secure are both known and robust. In
way. This allows clients to have addition, the use of Kubernetes
solutions for data integration, data containers for the models as well
INTELLIGENCE
LOGIQ.AI
DATA-DRIVEN
Assess Large companies have more data
to extract, transform, and load
LOGIQ.AI is a full-stack observability (ETL) than ever—but are also facing
data fabric that enables users to a shortage of data engineers.
manage the entire observability Furthermore, enterprise users
data lifecycle by unifying metrics, need fresh data quickly, because
events, logs, and traces (MELT data) in many contexts, data that takes
on a single, cloud native platform 30 hours to load is old news.
with infinite storage scale. Using Enter Matillion. The Matillion Data
aggregated log data, performance Loader is a no-code, drag-and-
metrics, indexing data for search, drop solution that integrates 70+
stream processing, and API data sources. It replaces weeks and
interactions, LOGIQ.AI enables months of coding and debugging
users to unlock real-time health with a few simple clicks. And
monitoring of infrastructure and taking the burden of ingestion
application environments with and tedious “hand-coding” off
single-click simplicity. Furthermore, engineers’ shoulders means they
the platform allows users to can devote their attention to other
connect databases (Elastic, Mongo, important (and more exciting)
Druid, MySQL, etc.), to be queried, operations. For enterprise-level
analysed, and visualised, and can organisations, the cost–benefit
be deployed within the major cloud analysis is clear. However, with only
environments – AWS, Azure, and a handful of competitors in this
GCP. Since its founding in 2018, category, keep your finger on the
LOGIQ.AI has amassed over $2.55 M pulse to make sure you’re getting
in funding and stands as one of the the best solution for your needs.
devoteam.com/techradar 47
MongoDB Monte Carlo Data
Adopt Observability Platform
Adopt
MongoDB is a transactional,
NoSQL, document-oriented A new data governance tool
database that can scale called Monte Carlo Data
horizontally to handle large Observability Platform has been
volumes of data without bringing observability to data.
sacrificing performance. As an Unprecedented volumes and
operational database, MongoDB sources of data are being used to
isn’t designed for advanced drive everyday business decisions,
analytics, but its elasticity which means that data downtime
makes database evolution easy, due to broken dashboards,
allowing developers to rapidly ineffective ML, or inaccurate
build products. With real-time analytics can translate into millions
ingestion, big data capabilities of dollars of lost revenue for large
and model flexibility, MongoDB companies. So it has become
is a great technology to handle imperative for data to be accurate,
IoT data and data-intensive current, reliable, accessible, and
transactional applications. easily monitored. Monte Carlo Data
Thanks to the technology’s quick Observability Platform offers end-
ingestion and response time as to-end data observability delivered
dashboard capabilities, users in a user-friendly product. Notable
might employ MongoDB for features include ML-enabled data
real-time integration use cases, anomaly detection, data lineage for
such as cockpit monitoring. The getting to the root of the problem,
Community version of MongoDB data quality insights, as well as
is widely adopted as the preferred integrations and interoperability
backend for open-source websites. with other data tools. It is
In 2022, MongoDB entered a proving to be a great solution for
partnership with Google Big monitoring the health of data
Query to create a unified data through its entire life cycle.
warehouse offer to address
both analytics and operational
data in one combined system.
INTELLIGENCE
DATA-DRIVEN
rapid, large-scale interactive been added), the Snowflake
analytic queries against data sets platform remains one single
of all sizes in various siloed data product that is easy to use and
systems in near real-time. Using scalable, making it suitable for both
a simple ANSI SQL interface, small organisations, which lack IT
Presto enables users to query and data skills, and large accounts,
both relational and non-relational which can exploit its full potential.
data where it is stored, including
Hadoop, Cassandra, Kafka, AWS
S3, Alluxio, MySQL, MongoDB, Starburst
and Teradata, and allows the use Trial
of multiple data sources within a
single query. Originally developed Any medium-to-large business
by Meta (formerly known as relying on large volumes of siloed
Facebook) to scale data size and data will need a data virtualisation
performance, Presto was released tool. A good contender is Starburst.
under the Apache License in It allows users to query data in situ,
2013 and has since been widely which means users don’t need
adopted by multiple international to migrate their data to a single
enterprises including Airbnb, platform. It lets users across the
Netflix, Alibaba, and Uber. entire organisation access data
quickly and easily. However, a solid
architecture strategy is needed to
Snowflake Data Cloud implement this technology to avoid
Adopt potential issues, such as going
decades back and connecting
While data has become the fuel data directly from where it resides
of business, we often overlook – since legacy systems will not
the multitude of technical and support at a good scale. Therefore,
organisational obstacles that connecting Starburst to any data
stand between this statement and lake/data warehouse is still the
reality. Snowflake offers a solution best approach. This tool offers
to remove these obstacles and incredible value for abstracting
enable every organisation to be all those systems and connecting
data-driven. Built from the ground all the information in one place
up for the cloud, Snowflake’s without requiring significant
platform aims to cover the entire engineering expertise. Starburst is
data lifetime cycle, from source to already part of the new data-mesh
end-user, facilitating collaboration paradigm shift.
devoteam.com/techradar 49
Tableau data products, Talend has now
Adopt built a fully comprehensive data
fabric that can manage the full
A visual data exploration tool data lifecycle ensuring smooth
that enables data discovery, cloud migration and access to
preparation, analysis, presentation a range of features that make
and sharing of results with data integration tasks easy, for
tremendous ease, Tableau has Cloud, multi-cloud and hybrid
been ranked among the leaders cloud environments. A key
in analytics and BI platforms component of the Talend Data
for years by Gartner. Since its Fabric platform is TrustCore,
acquisition by Salesforce in 2019, which helps organisations secure
Tableau has been investing their data and keep it compliant,
heavily to adopt a “cloud first” enabling them to meet industry
approach, which will be realised in or regulatory standards.
2022 with the launch of Tableau
Cloud (formerly Tableau Online),
available with all major cloud Transform.co
providers. Artificial intelligence Assess
is also at the heart of several
recent features such as Data As companies scale and create
Stories, which explains results in massive data lakes, managing
an editorial format, Explain Data, KPIs becomes an enormous
which details the origins of a piece headache. When you have
of data, and the predictive tool thousands of KPIs to manage,
Einstein Discovery. All of these traditional approaches are too
innovations aim to take data out disjointed and inefficient for the
of the hands of specialists and job, especially since the KPIs
make it available to as many are dispersed across multiple
people as possible. analytics platforms. For this
reason, many enterprise-level
organisations find “metric stores”
Talend Data Fabric appealing. A metric store allows
Adopt companies to centralise all their
KPIs onto one single-source-of-
Talend Data Fabric is a complete truth platform where they can
platform for data integration, design, manage, deploy, version,
data management, and data and communicate all these
quality. Talend allows users to KPIs. While there are a couple of
build, deploy, and manage data other purpose-built tools on the
pipelines to extract, transform, and market, Transform.co deserves
load data from various sources some attention. Co-founded by a
(databases, cloud applications, former Airbnb product manager
big data platforms, etc.) into for all infrastructure, Transform.
multiple target systems. Originally co shows promise in its ability
comprised of several different to provide customers with the
INTELLIGENCE
DATA-DRIVEN
a single environment for data
Vertex AI is a Google Cloud engineers, data scientists, and
product for building, deploying, machine learning engineers,
and scaling ML (machine learning) allowing teams to work together
models and AI applications using a single set of tools. Vertex
faster, with fully managed tools AI includes AutoML and custom
for any use case. It covers the full training in one unified data and
MLOps life cycle with a Unified AI platform. Vertex AI provides
UI for the entire ML workflow an easy-to-use, drag-and-drop
including metadata tracking, interface and a library of pre-
identifying the best model for trained APIs for natural language,
a use case, model versioning, vision, video, and more.
devoteam.com/techradar 51
CASE STUDY | Sector: Retail | Employees: 5,000
INTELLIGENCE
DATA-DRIVEN
simplify collaboration and self- greater agility
service: the segmentation of data • Creation of 50+ use cases
– by business, product, service, allowing the different business
etc. – allows to get out of a central lines to save time and reinforce
Data Lake logic. Instead, the the use of data
Data Mesh allows each domain
to take charge of its own data • Creation of data products and
pipeline and manages a large data catalogues in a data factory
volume of data sources to process fed by almost 40 different
them quickly. The creation of sources of data
a freshly organised Data Lab • Facilitation and elasticity of data
team based on use cases could processing
ease the deployment of a Data • Reinforce the maturity of
Catalog, thus facilitating the information sharing
understanding of new data assets
and the decision making process.
“Setting up a Data
Factory operating
in agile mode with
squads in charge of
delivering and evolving
Data Products is key
to getting the business
on board, gaining their
trust and taking the
Data culture to scale.”
CTO at the organisation
devoteam.com/techradar 53
54 TechRadar
ChatGPT,
What’s the Hype about?
The AI tool that’s been creating now offers a similar GPT service,
the most buzz recently is though users are currently
ChatGPT, an open-source required to submit requests with
generative AI chatbot. Generative their use case for approval before
AI refers to algorithms capable receiving access. GPT is also used
of producing new content by GitHub in its copilot service of
such as audio, code, images, AI pair programming, that is, code
text, simulations, and videos. In generation. Additionally, Google
particular, ChatGPT is capable of plans to release, in 2023, its own
understanding and generating AI service based on transformer
human-like natural language with models, Bard, in answer
unprecedented accuracy and to – and in direct competition
fluency. In fact, here’s a description with – ChatGPT.
generated by ChatGPT itself:
What’s Next for Generative AI?
“ChatGPT is an advanced
language AI model created by The field of generative AI based
OpenAI. It generates human- on transformer models is growing
like text based on input data at an expeditious rate, and we
and prompts, making it ideal expect to see more exciting
for customer service, language developments in the near future,
translation, and content creation. particularly in 2023, which is
Its ability to understand context expected to be the year that GPT
and produce coherent responses becomes enterprise-ready – be
sets it apart in the field of it ChatGPT, Microsoft, or Google.
generative AI.” In line with this prediction, we
hope to feature one or more of
Who Will Win the Race to Market? these cutting-edge technologies
Though still in its beta phase, as they mature and become
ChatGPT has proven to be a available for enterprise use in the
powerful tool for text 2024 TechRadar.
generation/processing. However,
this development is just one
aspect of the larger emerging Put forward by
trend toward generative AI, with Philippe Bournhonesque,
new contenders preparing to VP Innovative Development
enter the field. Microsoft Azure
devoteam.com/techradar 55
TechRadar
Distributed
Cloud
Harness the power of your decentralised
infrastructure to unlock a limitless future.
Embrace cloud as your foundation
for becoming a “digital company.”
DISTRIBUTED
CLOUD
HOT TOPIC
DISTRIBUTED
CLOUD
• Assess your data and manage all risks: including data sovereignty
and foreign access threats.
• Assign a Chief Data Privacy Officer or Data Guardian.
• Adopt the Cloud Smart approach.
• Consult with an expert for multi-cloud strategy advice.
devoteam.com/techradar 58
Distributed Cloud
at a Glance
At the opening keynote of a recent conference
of a major analyst firm, the word “cloud” was not
mentioned once. That’s no accident. The cloud is now
so ubiquitous, so inevitable, that there is no need to
mention it. Doing so would bring focus to technology
and infrastructure, when it is now more crucial to
target business model transformation. After disrupting
technology, the cloud is about to disrupt business.
This does not mean that nothing is happening on the technology
side, as this TechRadar 2023 amply demonstrates, but it is a sign of a
certain maturity that allows it to regain its place in the background.
This cloud maturity is mainly due to the maturity of one technology in
particular, Kubernetes, which, despite its complexity, is emerging as
the cornerstone of all cloud native systems. Most of the technologies
in these pages are either based on Kubernetes or are intended to make
it more manageable for enterprises. In general, there is a widespread
desire to make cloud technologies easier to implement and to make
them the answer to today’s major challenges. The offer is becoming
more and more refined, with ready-to-use, standard components and
a verticalisation logic that will culminate in the appearance of industrial
clouds and business-oriented platforms.
However, it is at the very moment when the cloud is coming of age that
the next stage is already taking shape. The need to bring intelligence
closer to objects to relieve network congestion and minimise response
time will accelerate the rise of edge computing. But in many ways,
the Edge is the exact opposite of the cloud: one is decentralised, the
other centralised; for one, resources are fixed and limited; for the other,
extensible and virtually unlimited; the data of one is ephemeral, the
data of the other is durable. In short, Cloud and Edge are based on
very different technologies, concepts and methods. Yet they must
work in close symbiosis, and we are already seeing the emergence of
technologies that seek to bring about this fusion.
84 81
82
DISTRIBUTED
CLOUD
85
86
devoteam.com/techradar 60
Ansible as Istio and Ingress. Anthos
Adopt is particularly well-suited for
organisations that want to leverage
Ansible is an open-source the benefits of the cloud, such
community project supported by as scalability, flexibility, and cost-
Red Hat. It is also the most popular efficiency, while still maintaining
tool for configuring, orchestrating, complete control over their
managing and automating IT applications and infrastructure.
infrastructures. As its market share It is also great for organisations
continues to grow in a context of that want to adopt a cloud native
strong demand for IT Automation development approach, and build
and Infrastructure as Code (IaC), and deploy modern, containerised
Ansible Automation Platform 2, applications and microservices.
launched at the end of 2021, which Recently, Google has extended
could allow Ansible to consolidate Anthos to include support for virtual
its position against its competitors machines (VMs), called Anthos VM
Puppet, Chef and Salt. Replacing Runtime, allowing users to run VMs
the former Ansible Engine and on top of Kubernetes in the same
Ansible Tower, Ansible Automation way that they run containers.
Platform 2 is a complete and
enhanced suite of tools and
components to build, deploy, and AWS Application Composer
manage end-to-end enterprise Assess
automation solutions at scale. As
the de facto solution for enterprise It is so much easier to build an
IT automation, it provides a application when users can see
flexible and stable foundation what they’re building. That’s
for automation from the hybrid the premise behind Amazon’s
cloud, to container environments, new service, AWS Application
security and networks. Composer. It’s a visual drag-
and-drop builder that lets users
design an application consisting of
Anthos multiple AWS services. This allows
Adopt developers to focus on functionality
first without getting buried in lines
Anthos is a hybrid cloud platform of code. Application Composer
created by Google in 2019 to allow offers this visual-first approach
organisations to build, deploy, and without sacrificing infrastructure-
manage applications, clusters and as-code (IaC) best practices. In fact,
infrastructure across a variety of the service translates the entire
environments. It includes features architecture into IaC definitions in
such as deployment automation, the visual editor, or enables it to be
container orchestration, and exported to perform tests, reviews,
infrastructure management, as version control, and more. AWS
well as integrations with numerous Application Composer fulfils the
popular tools and services, such DevOps philosophy of “You build
DISTRIBUTED
as network-attached storage with allows containers to be mounted,
CLOUD
industry-leading bandwidth and modified, or deleted, and
innovative hardware root of trust. images to be saved based on the
The Nitro Security Chip has built- updated containers, can be easily
in security that is mathematically incorporated into scripts and build
proven to be unattackable. In fact, pipelines, and features a rootless
this chip has been designed with mode for enhanced security.
AWS’ “Verifiable/Provable Security”
approach, which provides an
unforeseen level of security through Crossplane
automated reasoning and built-in Trial
security processes. The hypervisor
provides strong resource isolation Crossplane allows users to
and offers a level of performance provision, compose, and consume
that is incredibly close to a bare infrastructure in any cloud service
metal server. Together, this system provider using the Kubernetes
provides unprecedented reliability, API, making it possible to create
performance, and security, while resources on the cloud using
also removing complexities and simple YAML manifests, and
room for human error. integrate with CI/CD or GitOps
pipelines. Unlike most competitors,
Crossplane is a control plane
Buildah that both solves scaling issues
Adopt with multiple teams, projects,
and infrastructure assets, and
Buildah is an open-source, ensures consistent collaboration/
Linux-based command-line tool loose coupling across large agile
developed by RedHat that is used organisations in SAFe model with
to build Open Container Initiative multiple independent feature
devoteam.com/techradar 62
teams. In the Crossplane Resource which includes datacenters delivery
Model, each infrastructure element on premises, hardware setup
is an API endpoint that supports and full client support (storage,
all types of operations, with no network, data base, etc.). Unlike
need to compute a dependency the majority of market players,
graph to make changes, allowing OVHcloud is based in France and
users to easily operate on a on a human scale, which allows
single database, even if they their DCaaS solution to address
manage their entire production major French companies’ data
environment. While Crossplane challenges (CAC40) in complete
remains limited to managing reliability and confidentiality, and in
K8s infrastructures, there is a real respect of governance and network
opportunity for large organisations sovereignty. While securing the
that are seeking to evolve their clients’ datacenters in a sovereign,
monolithic terraforming model to green and trusted environment,
a distributed model. DCaaS enables the transformation
of clients’ CAPEX investments
into predictable costs of reversible
DCaaS services (OPEX), the capitalisation
Trial on investments by taking
advantage of the OVHcloud IaaS
Datacenter as a Service (DCaaS) and PaaS catalogue, and ensures
is a prepackaged solution of the clients’ benefit from the latest
cloud services, providing a pooled technological improvements and a
OVHcloud resource to their clients, fully optimised equipment lifecycle.
DISTRIBUTED
additional modules. eBPF works be customised to meet different
CLOUD
by allowing sandboxed programs organisational needs and use
to run within the operating cases. Backed by a robust
system, which in turn allows ecosystem, EdgeX is currently
application developers running at its 11th community release,
eBPF programs to add additional and is considered to be a
capabilities to the operating mature technology, suitable for
system at runtime. Then, with deployment at scale.
the aid of a Just-In-Time (JIT)
compiler and verification engine,
the operating system ensures Fluentd
safety and execution efficiency as Adopt
if natively compiled. Common use
cases of eBPF include full stack Fluentd is an open-source
observability, container security, log collector, processor, and
image assurance, runtime aggregator developed by
threat defense, performance Treasure Data to solve common
troubleshooting, and much more. logging challenges such as
formatting unstructured data,
aggregation from multiple data
EdgeX Foundry sources, resiliency, etc. Written
Assess in Ruby, Fluentd creates a
unified logging layer capable of
EdgeX Foundry is an open- aggregating data from multiple
source software from the Linux sources, unifying the differently
Foundation that provides a formatted data into JSON objects,
common framework for building, and then routing it to different
deploying, and managing output destinations to build
edge computing systems centralised, reliable, and efficient
devoteam.com/techradar 64
logging pipelines. Designed for HashiCorp Consul
performance and scalability, a Adopt
Fluentd deployment runs on
40 MB of memory, is capable of Heterogeneity is probably the
processing over 18,000 events/ term that best characterizes
second, and is considered the modern distributed environments.
log aggregator of choice for With Consul, HashiCorp addresses
Kubernetes. Since its release, the need to know and interact
Fluentd has developed a rich with the myriad of services that
ecosystem of over 650 built-in run locally on virtual machines
and community-contributed or as containers in the cloud.
plugins, and is currently trusted HashiCorp Consul maintains a
by more than 5,000 data-driven centralised dynamic registry (i.e.,
enterprises worldwide. a service catalogue) of all services
in real-time in an automated
fashion, allowing them to be
GKE Autopilot discovered, located, and their
Trial availability and health status to
be known at all times. HashiCorp
The Autopilot mode in Consul also controls access
Kubernetes Engine (GKE) to services and secures their
removes the complexity from interconnections (Secure Consul
the time-consuming process of Agent Communication with TLS
managing Kubernetes clusters. Encryption). Finally, HashiCorp
Via Autopilot, Google manages Consul allows users to automate
cluster configuration, including certain network tasks such as
nodes, scaling, security, and load balancing (Automate load
pre-settings. As GKE manages balancers). Open source and
infrastructure, time can be agnostic, HashiCorp Consul can
freed up for the building and be deployed on any platform or on
deploying of applications. At the cloud platform of the editor,
the same time, security patches HashiCorp Cloud Platform (HCP).
are applied to nodes when
available and adhere to already
configured maintenance HashiCorp Terraform
schedules. Additionally, because Adopt
GKE manages them, users aren’t
billed for unused capacity on their HashiCorp Terraform is an open-
nodes. The same goes for system source infrastructure as code
Pods, OS costs, and unscheduled (IaC) tool that enables developers
workloads. Some customisability to define, modify and version
is lost through GKE Autopilot, infrastructure in a safe, efficient,
but recent updates have made and reusable manner. Using
it possible to run specialised the HashiCorp Configuration
workloads using GPUs and fault- Language (HCL), developers can
tolerant workloads via Spot Pods. define their desired infrastructure,
DISTRIBUTED
than 8400 modules and, with the
CLOUD
release of version 1.3 in September The more distributed
2022, has further improved the architectures expand, the more
extensibility and maintainability of difficult it becomes to know and
Terraform modules. manage the exchanges between
microservices. A service mesh
is a dedicated infrastructure
Helm layer, directly implemented in
Adopt the application. By intercepting
incoming and outgoing packets,
Helm is an open-source package it provides observability, traffic
manager that simplifies the management, regulation and
defining, deploying, and security capabilities. Thus,
managing of applications on the technical aspects are
Kubernetes across their entire decentralised at the application
lifecycle. With Helm, users level and can be managed by
can easily create and manage developers without strong skills,
all resources attached to a or even automated thanks to
Kubernetes cluster using a templates established by the
package of pre-configured architects. A pioneer in service
templates known as a Chart, mesh, Istio is a robust and
which can be easily versioned, proven open-source solution
shared, and managed in integrated with Red Hat’s
repositories, enhancing OpenShift. Facing competition
collaboration and efficiency. from Cilium in particular, Istio
Additionally, Helm provides continues to innovate, with, for
a command-line interface example, the possibility of using
(CLI) for managing charts and eBPF technology for better
performing common tasks such performance.
devoteam.com/techradar 66
Kasten K10 is to bring this dual benefit to
Adopt Kubernetes environments. To do
this, Knative adds components
Acquired by Veeam Software in to Kubernetes that enable the
2020, Kasten is a leader in data deployment, management
backup, disaster recovery, and and execution of containerised
mobility for Kubernetes, and applications, in particular
the developer of the Kasten K10 Serving and Eventing. Knative
platform. Kasten K10 is a Cloud eliminates server provisioning
Native data management platform and management tasks, allowing
for Day 2 operations, that provides a developers to focus exclusively on
simple, scalable and secure system the business side of their code.
for backup/restore, disaster recovery, Accepted by the Cloud Native
application migration, application Computing Foundation in March
copy management, and mobility 2022 and supported by many
for Kubernetes applications companies (Google, VMware,
whether public cloud or on- IBM...), Knative is one of the most
premise. The platform provides popular and promising
a native Kubernetes API and open-source projects today.
includes features such as database
integrations, automatic application
discovery, multi-cloud mobility, Kubernetes
integrated observability and Adopt
monitoring, and comprehensive
end-to-end security including Does Kubernetes still need to
enterprise-grade encryption, be introduced? In just a few
identity, and access management years, the open-source container
roles, role-based access controls, orchestration platform has
and more. Distinguished for its become so essential that it has
operational simplicity, Kasten been dubbed the “OS of the
K10 stands out as a policy-driven cloud.” Born in the fold of Google
and extensible solution capable and now overseen by the Cloud
of delivering consistent backups Native Computing Foundation,
across microservices, while Kubernetes (K8S) automates
eliminating the need to write and the deployment, management
maintain time-intensive scripts. and scaling of containerised
applications, independent of the
underlying cloud infrastructure.
Knative Kubernetes therefore plays a key
Adopt role in the widespread use of cloud
and microservices architectures.
The serverless cloud model This is why the platform is
relieves developers of technical now supported and offered
concerns and reduces computing by the vast majority of cloud
resources, and their cost, to the providers and software vendors.
bare essentials. Knative’s goal This enthusiasm ensures that
DISTRIBUTED
Kubernetes to provision, manage, that clusters are configured using
CLOUD
and control Virtual Machines (VM) proper production-environment
alongside container resources. parameters. KuboScore is
Using Kubernetes’ Custom especially helpful for configuring
Resource Definitions (CRD) API, clusters according to best practices
KubeVirt allows Virtual Machines for security, performance, and
(VMs) to be run and managed resiliency. To name just one
as pods inside a Kubernetes use case, companies can use
cluster and features the same KuboScore to configure role-
native constructs of Kubernetes – based access control (RBAC) and
scheduling, storage, networking, detect misconfigurations, so that
monitoring, and tooling – using the right users have the right
kubectl. As a result, KubeVirt not privileges – which is crucial to
only enables developers to use security. KuboScore can connect to
their existing Kubernetes toolset any type of Kubernetes cluster in
to natively manage VMs, it also all major public or private clouds. It
ensures that organisations and offers high-level analyses for free,
DevOps teams have the space and more detailed ones for a fee.
devoteam.com/techradar 68
Kyverno Linkerd
Assess Adopt
DISTRIBUTED
Kubernetes cluster. In addition to military defence.
CLOUD
persistent block storage, Longhorn
delivers features like incremental
snapshots and backups for data Portainer.io
safety and cross-cluster disaster Adopt
recovery. Known for its ease of use
and scalability, Longhorn can be Portainer is an easy-to-use
easily deployed and upgraded centralised platform that allows
using Helm Charts or CLI (kubectl). for the efficient deployment and
Longhorn was initially developed management of containerised
by Rancher Labs and SUSE applications and services. The
Development until it was donated beauty of Portainer is in its
to the CNCF in 2017. simplicity, allowing for container
management without in-depth
knowledge of the command
MinIO line. Key features include a user-
Assess friendly interface, simplification
of single and multi-cluster
Object storage is an approach container deployments, and
to managing data that differs standard templates and default
from traditional file or block configurations. Portainer supports
storage systems. Because the Docker, Swarm, Nomad and
architecture is flat, highly scalable, Kubernetes, allowing for hybrid,
and highly available, it is critical multi-cloud, multi-cluster,
to business cases that handle and multi-device container
massive volumes of data. Cloud- management. As the most
based object storage, such as feature-rich and user-friendly
the popular AWS Simple Storage container management GUI on
Service (S3), has been around for the market, any organisation
devoteam.com/techradar 70
working towards large-scale multi- popular cloud platforms, such
cloud containerised environments as Amazon Web Services (AWS),
should seriously consider adding Microsoft Azure, and Google Cloud
Portainer to its arsenal. Platform. It also includes features
such as version control, team
collaboration, and integrations
Pulumi with popular tools and services.
Trial With Pulumi, users can even
define policies using code that
Pulumi is an Infrastructure-as- can help enforce standards and
Code platform (IaC) that allows best practices for the deployment
users to build cloud-based and management of cloud-based
applications and infrastructure resources. Recently, Pulumi has
in the programming language added a service option to their
of their choice and even allows offering called Deployment-
for deployment on any major as-a-Service (DaaS) that allows
cloud platform or Kubernetes. developers to automate the
Pulumi provides a set of APIs deployment and management
and libraries that can be used to of cloud-based applications and
create and manage resources on infrastructure using code.
DISTRIBUTED
Scheduling, Application Catalog, from a single, API-driven platform.
CLOUD
and Enterprise-Grade Control.
Furthermore, the solution
consolidates all clusters into a VMware Cloud Foundation
single, managed Kubernetes Cloud Trial
with centralised authentication,
access control, and observability, VMware Cloud Foundation
in addition to delivering security, solutions such as VMware Cloud
lifecycle management, cluster (VMC) on AWS, Azure VMware
templates, specific CLI, and Solution (AVS), and Google
continuous delivery. As an open- Cloud VMware Engine (GCVE)
source solution with zero lock-in, implemented within the major
SUSE Rancher stands as a versatile cloud providers have clearly
and cost-effective solution for any enjoyed a significant adoption
multi-cluster, hybrid, or multi-cloud curve in 2022. The capabilities of
container orchestration strategy. these solutions to enable seamless
extension or migration to the
public cloud have attracted many
Talos Linux clients. These solutions are now
Trial enhanced by the implementation
of VMware Aria’s multi-cloud and
Talos is an open-source, container- hybrid cloud offers, which focus
optimised distribution of Linux on three key areas: operations,
purpose-built to excel at one automation, and pricing. This
thing: maintaining Kubernetes strongly enhances the appeal and
clusters. Talos is considered to be adoption of this type of technology
an effective alternative to CoreOS by enabling a cross-functional
provided by RedHat on Openshift view and management of all these
Kubernetes distribution, and cloud capabilities.
devoteam.com/techradar 72
CASE STUDY | Sector: Financial Services | Employees: 1,500
DISTRIBUTED
for their customers: Because teams to share techniques and
CLOUD
automation and delegation knowledge
of control was key to become • Huge improvements in speed
fully self-reliant, the company and scalability lead to more
implemented Azure to address controllable environments,
the issues of agility and speed moving part of the delivery to
of access to data. Coupling Microsoft Azure and mapping
with ACE GitOps enabled their security and compliance
full lifecycle support of IaC requirements to actionable
code for governance, policy policies
control, workload deployments,
• Implementation of Microsoft
and operations in Azure,
Sentinel (SIEM)
effectively strengthening the
completeness of security.
devoteam.com/techradar 74
TechRadar
Business
Automation
Scale your digital transformation mandates with
mix of modern automation capabilities to drive
customer focused agility, employee efficiency
and digital innovation.
AUTOMATION
BUSINESS
HOT TOPIC
AUTOMATION
BUSINESS
increased efficiency are:
• Accounts Payable to receive, classify, process, and pay out invoices
(RPA + IDP)
• Customer Service to answer customer questions and deal with
claims (chatbot/callbot + RPA)
• Customer onboarding to help with screening, compliance, processing
documents and creation of accounts (RPA + IDP + Chatbot)
• IT migration for transfer of data and backup (RPA)
devoteam.com/techradar 77
Business Automation
at a Glance
Despite the nuances, the terms “Hyperautomation,”
“Intelligent Automation,” or “Business Automation,”
which we prefer at Devoteam, cover the same reality:
the end-to-end automation of business and IT
processes through the combined and orchestrated use
of a multiplicity of efficient tools or smarter platform,
including low-code oriented development, RPA
(Robotic Process Automation), BPM (Business Process
Management) process mining, chatbots, intelligent
document processing, workflow orchestration, etc., that
accelerates business transformation.
The offer is rapidly being structured in this direction, as this 2023 edition of
our TechRadar clearly shows. Leveraging acquisitions and/or partnerships,
the mega-vendors are weaving their platforms with one or more business
automation-enabled technologies to deliver data-driven end-to-end process
orchestration across any system for service, sales, industries and more in
one package. In essence, these vendors are filling out their own offerings
and entering new markets with the converged platforms that share the
common long-term vision of creating a modern agile environment which
will continue to accelerate and mature through 2023 and beyond.
This technological convergence is an additional catalyst for a strong-
growth market that Gartner now estimates hyper-automation enabling
technologies spending to reach 720 billion dollars in 2023. It is true
that these platforms, which enable substantial savings by eliminating
operational inefficiencies and attaining faster time to value, are
particularly welcomed in the current economic climate, especially as the
returns on investment can be quite rapid.
On the other hand, the stage is set in 2023 for organisations to embrace
a composable enterprise model (i.e. doing more, faster and with
less), where organisations will resort to business automation-enabled
technologies more than before. This will result in displacing some
employees, especially middle managers, as these platforms take up
the orchestration role. Despite this, it will actually create more new
roles than it displaces, making it essential to take employees’ fears
into account, and to evolve their roles through an effective re-skilling
program to make the most of Business Automation initiatives.
101
105
104
AUTOMATION
BUSINESS
Adopt 93. Celonis Trial
87. ABBYY Vantage N 94. Elastic 101. Lightstep N
88. AppSheet ↑ Observabilty N 102. MuleSoft RPA N
89. Automation 95. Microsoft Power 103. Rasa ↑
Anywhere Platform
90. AWS EventBridge N 96. OutSystems Assess
91. AWS Step 97. ServiceNow 104. Dydu
Functions Platform N 105. Kryon
92. Azure Logic 98. SS&C Blue Prism 106. Moveworks N
Apps N 99. UiPath
100. Workato ↑
devoteam.com/techradar 79
ABBYY Vantage AppSheet
Adopt Adopt
AUTOMATION
BUSINESS
rich, complex and robust workflows,
AWS EventBridge all while allowing users to manage
Adopt each microservice component
independently. AWS Step Functions
Released in 2019, AWS is a cost-effective way to quickly
EventBridge is an enterprise-level build scalable, distributed workflows
serverless, fully-managed bus. using simplified code. The service
It lets users build event-driven is also capable of handling errors
applications at scale and is highly and giving supreme visibility by
interoperable with services providing a visualisation of the
outside AWS, including popular workflow execution, as well as
SaaS applications like Datadog, integration with CloudWatch to
Zendesk, Salesforce, Auth0, or even help users monitor and debug
custom applications. An “event” their application. Finally, Step
is a record of an action that has Functions enables the creation of
taken place (e.g., a file being saved more complex yet reliable Serverless
in an Amazon S3 bucket). The bus applications, therefore freeing
ingests event data from various up resources associated with
sources and takes further action build time, computing costs and
based on the rules that the user maintenance of infrastructure.
devoteam.com/techradar 81
Azure Logic Apps With nearly a hundred off-the-
Adopt shelf connectors, it also offers the
ability to create inter-application
Azure Logic Apps is a platform integration paths to implement
that allows you to create and these recommendations without
run automated workflows for development. This dual dimension
integrating various types of of analysis and implementation
apps or data across the Cloud or is what makes Celonis unique.
on-premise. Azure Logic Apps Celonis is actively developing
has an extensive list of pre- through partnerships, most
built connectors and a visual notably with ServiceNow and
designer that makes it easy to Accenture in 2021, and has since
use for developing highly scalable acquired tech companies, which
integrations with little to no code. developed real-time streaming
A workflow starts with a trigger data tools and analytics process
and can include one or more mining tools, in order to widen
actions to process the data that their platform’s capabilities. Celonis
goes through that workflow or is now valued at $13B following a
move the workflow to the next new investment in early 2022.
step. An existing app can be
saved as a template and reused
to automate deployments across Dydu
other environments. Azure Logic Assess
Apps can be used by medium
to large enterprises because it Dydu is a French software editor
supports hundreds of integrations for Conversational agents such
out of the box and it can connect as chatbot, voicebot and callbots.
modern apps to legacy apps that The solution features an algorithm
are still in production. for natural language processing
and is naturally integrated with all
popular communication channels
Celonis (WhatsApp, Microsoft Teams,
Adopt Google Chat, etc.). Compared to
competitors, the build cycle with
Celonis is a software company Dydu is much shorter because it is
that specialises in the exploration, a license-based, low-code solution
analysis, and diagnosis of business with drag-and-drop functionality
process efficiency. Based on that allows users to effortlessly
artificial intelligence machine create and manage their bots.
learning algorithms, its EMS Dydu comes with two of its own
(Execution Management System) standard knowledge bases that
solution analyses processes are a large reason the technology
during high-volume transactions is successful. One knowledge
and identifies patterns and base covers HR services and
anomalies in the data, providing payment, while the other is used
key insights for improvement. for customer service purposes.
AUTOMATION
BUSINESS
devoteam.com/techradar 83
84 TechRadar | Business Automation
Kryon cloud native resources in the
Assess mix, getting to the root cause of
complex issues can get tricky. An
Kryon is a Robotic Process application might be down, and
Automation (RPA) platform yet the legacy diagnostics appear
designed to support the full “green.” To detect anomalies, a
lifecycle of automation projects. dedicated observability platform
Kryon works by automatically is needed. Lightstep, which
discovering and mapping an was acquired by ServiceNow in
organisation’s systems, workflows, 2021, is a mature observability
and processes, highlighting platform that provides developers
opportunities for optimisation. and site reliability teams with a
From there, users can utilise a powerful and convenient way
low-code tool and library of pre- to monitor the health of cloud
defined actions to create “bots” native applications. For example,
to perform a range of manual users can utilise it to trace
tasks like data entry, document latency between microservice
processing, customer service, transactions—data that wouldn’t
etc., allowing for the automation otherwise be easily accessible.
of both human-assisted and Lightstep uses a distributed
autonomous processes. In tracing technology built on
addition, Kryon offers features OpenTelemetry, which was
for scheduling, monitoring co-founded by Lightstep,
and reporting, analysis, and that is an industry-standard
management, as well as widely adopted by most cloud
integration with other tools and environment vendors.
AUTOMATION
BUSINESS
platforms, all from a centralised
console. Acquired by Nintex in
early 2022, Kryon continues to Microsoft Power Platform
expand the possibilities and Adopt
benefits of RPA and remains a
strong asset for organisations Microsoft Power Platform is a
wanting to enhance process collection of software services,
optimisation, efficiency, and apps, and connectors that enable
productivity. organisations to analyse, build
solutions and automate processes
by bringing together four key
Lightstep components: Power BI, Power
Trial Apps, Power Automate, and Power
Virtual Agents. Power BI is a suite
Regardless of size, organisations of business analytics tools for
running workloads in the data visualisation and reporting;
cloud will face difficulties Power Apps, a low-code platform
with troubleshooting if they that allows users to build custom
limit themselves to traditional business applications for data
approaches to monitoring. With collection, process automation,
devoteam.com/techradar 85
and customer relationship HR, finance, and more. Where
management; Power Automate, similar tools simply provide
which enables users to create and recommendations for common
automate workflows; and Power issues, Moveworks uses advanced
Virtual Agents, which allows users natural language understanding
to build chatbots for customer (NLU), machine learning (ML),
service, employee onboarding, and conversational AI for full-scale
and other purposes, using problem resolution including
natural language processing and intent classification, conversation
machine learning to understand handling, real-time decision-
and respond to user inputs. making, automatic resource
Overall, the Microsoft Power ingestion, and multilingual
Platform is a dynamic end-to-end support – with little to no human
solution for organisations looking intervention. The platform features
to maximise efficiency, streamline a built-in database of over 30
business processes, and make million pre-trained tickets and can
data-driven decisions. be integrated as an automated
assistant on popular business
applications such as Slack,
Moveworks Salesforce, Servicenow, etc. Since
Assess its founding in 2016, Moveworks
has grown into a market leader,
Moveworks is an innovative AI reaching a valuation of $2.1 Billion
platform that delivers automatic, and earning recognition as the
intelligent chatbot support for Best Chatbot Solution at the AI
common requests across IT, Breakthrough Awards in 2021.
AUTOMATION
BUSINESS
RPA lifecycle. MuleSoft RPA can be Trial
used across all business areas and
is a particularly valuable addition Rasa is a business automation
to large organisations pursuing solution that allows users to build
hyperautomation for improved AI-driven chatbots, call bots, and
productivity, quality, and user virtual assistants. Rasa is built on a
satisfaction. Python framework that is divided
into two engines: Rasa NLU
(natural language understanding)
OutSystems and Rasa Core, which handles
Adopt the flow and actions. Bots built
via Rasa can be deployed on
OutSystems is a high- standard platforms such as Slack,
performance/low-code Facebook Messenger and more.
development platform for So far, Rasa’s open-source version
building and deploying custom has over 25 million downloads,
applications quickly and and they continue to invest in
efficiently, throughout the entire themselves with the creation of
dev lifecycle. It provides a visual a new offering called Rasa-as-
development environment and a-service. This premium service
devoteam.com/techradar 87
connects businesses with Rasa become the leading enterprise
professionals and offers quicker service management platform,
project building and less overall adopted by more than 21,000
time commitment. For those enterprises worldwide.
not ready to invest in the most
premium option, there is also Rasa
Pro, a step above the open-source SS&C Blue Prism
version, which allows access to Adopt
more features, extra services and
additional APIs. Founded in 2001 and coining
the term Robotic Process
Automation (RPA) in 2012, Blue
ServiceNow Platform Prism publishes a mature RPA
Adopt solution with a reputation for
robustness. Capable of handling
ServiceNow is a scalable cloud- complex processes and very
based platform that offers a large numbers of bots, offering
range of modules, workflows, an intuitive user experience and
and processes powered by valuable features like dynamic
machine learning (ML) to debugging and an unparalleled
deliver workflow automation. overview, the platform is cut out
With its comprehensive for robotic process automation
development environment and at scale. Since its acquisition in
no-code/low-code capabilities, spring 2022 by the American
the ServiceNow platform holding company SS&C, Blue
enables even non-technical Prism is also accelerating its
users to easily build, test, and development in multiple areas.
implement automated workflow Ranked again among the leaders
applications for challenges such in RPA by all analyst firms
as case management, operations (Gartner, Everest Group, IDC...),
management, and services Blue Prism claims more than
management. ServiceNow stands 2,800 customers worldwide.
out for its highly responsive
native mobile design, which
provides a versatile and intuitive UiPath
self-service experience, and an Adopt
extensible networked system for
IT and beyond (Customer Service The rise of low-code/no-code
Management, Field Service technologies has allowed people
Management, HR, etc.), that with non-technical backgrounds
enables real-time communication, to create digital products and
collaboration, and resource automate repetitive tasks
sharing, in addition to providing without the need for a full team
insightful, productivity-boosting of developers. UiPath, still the
performance analytics. Since its market leader in Robotic Process
founding in 2004, ServiceNow has Automation, allows end users in a
AUTOMATION
BUSINESS
secure, code-free integration of retail, healthcare, e-commerce,
popular business applications, logistics, and more.
devoteam.com/techradar 89
CASE STUDY | Sector: Logistics/Transportation | Employees: 25,000
AUTOMATION
BUSINESS
cooperation with several different people, and is
not a matter of writing a lot of code. The can-do
attitude and willingness from everybody made
the implementation possible and successful.”
IT Director at the Airport
devoteam.com/techradar 91
TechRadar
Trust &
Cybersecurity
Inspire trust with a “cybersecurity at scale” strategy.
Understand your evolving threat landscape and
swiftly address business risks to evolve with
adequate measures and ultimate security features.
CYBERSECURITY
TRUST &
HOT TOPIC
devoteam.com/techradar 94
Trust & Cybersecurity
at a Glance
When the cloud first emerged, hosting systems in the
cloud rather than a data centre was considered less
secure. Recently, this concept has radically reversed;
the cloud now appears to offer superior security,
while on-premise systems become targets of a new
wave of ransomware. Experts are sparse, and most
organisations lack the resources to attract, recruit and
utilise their talent like major cloud players. This is what
keeps hyperscalers on top of ever-increasing threats.
Cybercriminal organisations grow increasingly sophisticated. They recruit,
innovate and reinvest their gains to continually increase their leverage.
It is estimated that it now takes less than an hour from the discovery of
a vulnerability to its malicious exploitation. Faced with such formidable
efficiency, small and medium-sized businesses, local authorities and critical
infrastructure institutions are facing a tough challenge.
Cloud services may be highly secure, however, they are still vulnerable
to administrative mistakes, negligence in access control, or bad
code introduced by its users, and therefore subject to security risks.
That is why TechRadar 2023 strives to prioritise cloud native security
technologies which aim to improve security posture and cyber
resilience, promote more rigorous practices, such as DevSecOps, and
compensate for skill gaps by automating incident prevention, detection
and remediation, and by implementing state-of-the-art processes for
identity and access management.
Moving forward, companies must ideally integrate two new aspects into
their cybersecurity strategy. First, a sharp increase in regulations and
compliance standards; second, are the lessons learned from the war in
Ukraine. After months of conflict, direct cyberattacks on infrastructure
were less frequent and less destructive than feared. Conversely, social
networks and deep fakes, disinformation, manipulation, harassment
and destabilisation offer attackers an excellent cost/impact ratio for
industrialisation of fraud and propaganda, with devastating effects
across our society.
128
122 133
117
113 123
110 118 129
108 114 124
107 111 119 134
109 115 125
112 120 130
116 126
121
Ad 135
o pt 127
131
136
Tri
al
As
ses
s
Ho
ld
devoteam.com/techradar 96
Aviatrix (AppSec), Checkmarx continues to
Adopt expand its Checkmarx One cloud
platform to cover all dimensions
For large international groups as of the application lifecycle: static
well as for digital startups, which code analysis (SAST), open-source
are increasingly diversifying component analysis (SCA), supply
their cloud providers, mastering chain security (SCS), API, container
multi-cloud architectures is and infrastructure code security
becoming crucial. It is necessary (IaC) and dynamic analysis (DAST).
to be able to control and monitor To bring these tools closer to
service levels (SLAs), performance developers, who are sometimes
and security policies across reluctant to use them, Checkmarx
different zones, independently also offers a self-training platform,
of the disparate tools provided Codebashing, as well as a tool that
by the providers. This explains illuminates test results, Fusion.
the growing interest in MCNS
(Multicloud Network Software)
such as Aviatrix, which overcome Chronicle
the limitations of the usual tools Adopt
in the face of this heterogeneity.
Now fully automated with Chronicle Security Operations
Terraform, Aviatrix integrates is a cloud native security
with CI/CD pipelines and enables analytics platform that enables
the deployment of an advanced detection, investigation, and
and homogeneous network and threat hunting at Google
security functionalities on different speed and scale. It provides an
clouds. In particular, Aviatrix can integrated experience with its
be the foundation for a Zero Trust three components: Chronicle
approach based on harmonised SIEM (Security Information and
security controls and governance. Event Management), Chronicle
SOAR (Security Automation
Orchestration and Response),
Checkmarx and Threat Intelligence. SecOps
Adopt teams can detect, investigate,
and respond to cyber threats
While applications remain the by leveraging Google’s cyber
primary vector for cyberattacks, intelligence. Chronicle SIEM
OWASP recently created an helps answer the usual SIEM
“insecure design” category in its legacy architecture issues, makes
Top 10 application vulnerabilities, threat hunting efficient, extends
highlighting the importance detection capabilities and limits
of integrating security into cost based on the pricing model
the development process and the log retention period.
#SecuritybyDesign. Recognised Chronicle SOAR enables SecOps
for several years by Gartner as teams to respond to cyber threats
the leader in application security in minutes, and track real-time
CYBERSECURITY
TRUST &
devoteam.com/techradar 98
99 TechRadar | Trust & Cybersecurity
CryptoNext apps, distributed workforces,
Adopt hybrid cloud workloads, and the
entire DevOps lifecycle. There
It will be a few more years before are six core products, covering
quantum computers arrive, identity security from end to end:
but the threat they represent identity management, secrets
is already here. Indeed, thanks management, privileged access,
to quantum machines, it will endpoint privilege security, cloud
be possible to break the usual privilege security, and workforce
public key encryption (RSA-2048). & customer access. Over half of
Hackers can therefore collect the Fortune 500 organisations
data today that will retain their use CyberArk to secure their
value for a long time (health most valuable assets. Having 248
data, bank data, property titles, patents and pending applications
plans...), and then wait until they worldwide and many third-party
have the ability to decrypt them. integrations, CyberArk innovates
To protect against this “harvest constantly and helps organisations
now, decrypt later” tactic, the with continuous identity threat
French startup CryptoNext has detection and protection.
developed a hybrid post-quantum
cryptographic library that allows
users to protect their data now Devo
against all types of threats. To Assess
achieve this, the CryptoNext
solution combines classical Until recently, Devo was best
and post-quantum encryption known for its main reference,
algorithms, similar to those the US Air Force, but in 2022, the
predicted by NIST for its future American publisher changed
cryptographic standard. dimension. In addition to being
ranked by Gartner as a major
player in the SIEM (Security
CyberArk Information Event Management)
Adopt field, Devo has acquired Kognos,
which automates threat hunting
CYBERSECURITY
devoteam.com/techradar 100
performance and ergonomics, the Ermetic offers SaaS solutions for
Devo platform allows the analysis better security practices. It allows
of all data sources and logs of the you to remediate access risks
company’s systems to provide and vulnerabilities, often in an
real-time visibility. automated fashion. With Ermetic,
you get granular visibility into all
cloud assets—in AWS, Azure, and
Elastic Security Google Cloud—and a way to grant
Adopt the right access to the right cloud
resources to the right entities. It
Elastic Security is an open platform even detects anomalies and has
that enables organisations to built-in remediation capabilities
prevent, detect, and respond to to enforce the principle of least
threats at speed and scale. Elastic privilege (PoLP) so that privileges
is a known player in search and reflect actual use. It is an identity-
observability, so this platform first solution that secures cloud
includes powerful features like infrastructure and entitlement
search & discovery based on management (CIEM) and cloud
natural language processing and security posture management
full-stack visibility in complex (CSPM), with a full lifecycle
environments. One key benefit approach. While all existing
of Elastic Security is its ability to solutions in this emerging market
provide real-time threat detection, are new, Ermetic offers a mature,
as well as threat hunting by industry-leading product.
leveraging machine learning. It
can detect anomalies, analyse logs
and traces, highlight correlations ForgeRock
across metrics, and make Adopt
predictions with classifications and
forecasting. Elastic Security is easy ForgeRock is an Identity and
to deploy, either on Cloud or on- Access Management (IAM)
premise. It features a user-friendly software with global reach across
interface, custom connectors, one- industries as diverse as retail,
click integrators, and community- healthcare, financial services, and
built plugins. The pricing is based government. A true leader in the
on the resources used and it’s field, it’s the industry’s only end-
independent of the deployment to-end, AI-driven platform for all
model or use case. identities (workforce, clients, etc.).
With ForgeRock, organisations
of all sizes can securely access
Ermetic their infrastructure through a
Adopt platform that’s robust, flexible,
compliant, scalable, and user-
Increased public cloud use means friendly. With ForgeRock, end-
the attack surface is growing and users benefit from multiple
new security risks are on the rise. layers of personalisable security
devoteam.com/techradar 102
and CI/CD pipelines for enhanced event: why it was picked up, who
software supply chain security. did it, what, where, and when it
KubeClarity works by utilising happened. Deployment is flexible,
multiple content analysers agent or agentless, leaving no
and vulnerability scanners in gaps in coverage or visibility.
parallel and then combines The agent handles HIDS, FIM,
their output into a unified host vulnerability assessment,
result using the KubeClarity Kubernetes, containers, and
CLI. Finally, KubeClarity groups workloads security. Agentless
scanned resources (images/ handles coverage for AWS,
directories) under defined Google Cloud, and Microsoft
applications to navigate the Azure, continuous monitoring of
object tree dependencies cloud configuration, and runtime
(applications, resources, packages, threat defense.
vulnerabilities), generating a
comprehensive analysis for the
sources scanned. With its simple Microsoft Entra
and intuitive UI, users can easily Adopt
access a comprehensive list of
application-specific vulnerabilities Microsoft Entra is an Identity and
and remediations that will provide Access Management solution
insight into an organisation’s that ensures flexible access
current security posture and the and secure authentication,
steps needed to plug any leaks. regardless of location or device
type, across hybrid or multi-cloud
environments. Microsoft’s solution
Lacework offers a seamless experience
Assess and gives organisations a single
unified platform to manage
Lacework is a data-driven cloud employee, customer, or partner
native application protection access to digital assets. It
platform (CNAPP) that learns integrates with a wide range
how an environment is supposed of third-party applications and
to run and raises alerts when services, making it easy for users
it deviates. Lacework uses to access the resources they need
patented data mining and without having to remember
machine learning techniques to multiple login credentials. Entra
collect and analyse data about expands beyond traditional
the organisation’s clouds. The identity and access management
platform learns what’s normal solutions with five products:
first. Then it provides security Azure Active Directory, Microsoft
by automatically giving precise, Entra Permissions Management,
high-fidelity alerts on unusual Microsoft Entra Verified ID,
activities without relying on Microsoft Entra Workload
manual rules. Lacework has full Identities, and Microsoft Entra
context and history for every Identity Governance. Microsoft
CYBERSECURITY
TRUST &
devoteam.com/techradar 104
Netskope across a single identity platform.
Adopt Okta’s technology is designed
to be neutral, meaning that
Netskope is a leader in cloud it is not tied to any specific
security, focused on SASE (Secure technology or application.
Access Service Edge) and adaptive This allows organisations to
Zero Trust, based on AI and ML. use Okta’s services with their
SASE combines security and existing systems and processes,
networking services in a cloud- rather than having to adopt
based architecture to protect new technologies or change
data and ensure reliable user their workflow. It has more
access, regardless of data and user than 7,000 integrations in the
location. Inside the global SASE Integration Network and the
offer, Netskope provides a range Auth0 Marketplace, 14 SDKs with
of security products, including language-specific libraries, and 31
Intelligent Security Service Edge API endpoints to customise user
(SSE) like Nextgen firewalling, authentication, configuration, and
Secure Web Gateway Threat access control. Okta has two main
protection, Cloud Access Security products: customer identity and
Broker (CASB) to protect against workforce identity. Key features
Shadow IT and unexpected usage include universal login, single
of unmanaged applications and sign-on, passwordless, adaptive
Private Access for Zero Trust multi-factor authentication,
Network Access (ZTNA) – a next- attack protection, and automated
gen VPN to securely connect lifecycle management.
each application individually
without any incoming flows. In
2023, Zero Trust architectures One Identity Manager
from the Cloud Security Alliance Adopt
and NIST frameworks will get
their first concrete applications, One Identity Manager is a
as customers are willing to full-stack Identity and Access
harmonise their security policies Management (IAM) platform that
for any usage (insiders and helps organisations manage and
outsiders) and for any Cloud- secure access to data, systems, and
oriented or legacy applications. applications. One Identity Manager
ensures holistic governance on
every digital identity through
Okta automated, dynamic & role-
Adopt based privilege administration,
full audit & traceability and deep
Okta is one of the world’s most integration of target systems.
trusted brands that puts identity People have access only to the
at the heart of the organisation, resources they need, and only
enabling secure apps and multi- when needed, regardless of the
cloud environments management environment: on-premise, cloud,
CYBERSECURITY
TRUST &
devoteam.com/techradar 106
Prowler identities and their respective
Trial accounts based on the Principle of
Least Privilege (PoLP), where the
Prowler is an open-source goal is to avoid giving excessive
security tool designed for best use access to any of the identities.
with AWS services. It performs IdentityNow is a mature cloud-
assessments and audits against based SaaS solution perfectly
more than 240 established suited for companies with a
controls and security frameworks, cloud-first approach and a robust
from CIS and ISO27001 to HIPAA security strategy. An exciting part
and GDPR, as well as AWS of this technology is that it offers
Foundational Technical Review advanced machine learning and
(FTR). As such, Prowler is key to a artificial intelligence capabilities
robust and comprehensive AWS to improve internal “Join, Move,
cloud security strategy. With Leave” lifecycle processes.
Prowler’s scans, users get visibility SailPoint also has a strong,
into the security status of all AWS efficient partner ecosystem.
services in one place. They can also
integrate it with AWS Security Hub,
Amazon’s native security posture ServiceNow Integrated Risk
management service, and take Management
advantage of the best of both tools. Adopt
The reports generated in Prowler
can be filtered by standard, type The ServiceNow platform brings
of service, region, and more – processes across all business
showing clearly if and which units – from IT operations and
resources have any compliance finance to HR and security – under
gaps. But more than that, the tool one roof. To leverage end-to-end
provides detailed information on data on the platform, ServiceNow
how to remediate them. has also expanded its original
governance, risk, and compliance
management (GRC) module into
SailPoint IdentityNow an integrated risk management
Adopt (IRM) tool that covers additional
vectors: vendor risk management,
SailPoint is the leader in the business continuity management,
Identity Governance and and continuous monitoring. It
Administration (IGA) space, which allows organisations to monitor,
is part of the larger umbrella of manage, and communicate
Identity and Access Management risks in real-time, run audits, and
(IAM) initiatives. SailPoint maintain compliance. Importantly,
IdentityNow takes care of the like the rest of the suite, the
authorisation side (as opposed to IRM is loved for its UX/UI. It can
simply authentication). It allows be deployed in as little as six
companies to automate the to eight weeks. It is enterprise-
process of creating and managing grade and used by many global
devoteam.com/techradar 108
domain, reduces exposure, and Usercube
offers step-by-step remediation Adopt
guidance. What’s great is that
users can integrate it with Usercube is an IGA (Identity
existing SIEM and SOAR tools, Governance and Administration)
enabling them to feed real-time solution that enables
monitoring data to their security organisations to manage digital
team, sharpen incident response identities and automate the
initiatives, and improve security identity lifecycle management
posture as an organisation. process, including tasks such as
user onboarding, offboarding, and
role changes. Usercube creates
Trivy a repository of the organisation’s
Assess users and assets, by pulling data
from various sources, becoming
Popular among DevOps and the centralised location for
security teams, Trivy is an open- accurate and reliable information.
source scanning tool that checks This repository is powered by the
for misconfigurations and real-time movement of people
vulnerabilities in cloud native and it communicates with
infrastructures and application other programs to exchange
stacks. Trivy is maintained by organisational and hierarchical
Aqua Security and can be used to knowledge. Usercube integrates
scan Git repositories, filesystems, with HR systems and numerous
virtual machine and container third-party applications, like
images, Kubernetes clusters, AWS CRM, ERP, DMS, ITSM, or PLM.
accounts, and more. It supports Optional modules that manage
Infrastructure-as-Code (IaC) granular access to SharePoint
security scanning covering Docker, and network-shared files are
Kubernetes, and Terraform. The also available. Usercube can be
Trivy K8s CLI allows users to scan used in the Cloud or installed
Kubernetes cluster resources and on-premise, on Windows
generate an NSA/CISA Kubernetes virtual servers, allowing for easy
compliance report to quickly integration with cloud services, as
harden the environment. Trivy also well as legacy applications.
fits the DevSecOps methodology
as it can be integrated into
CI systems. Trivy is versatile, Wazuh
reliable, fast, user-friendly, and its Assess
vulnerability database is updated
every six hours via the associated Wazuh is a free, open-source
Aqua Security GitHub repository. security information and event
It is Red Hat certified and the management (SIEM) solution
integrated default scanner for for public and private clouds
Harbor and GitLab’s Container and on-premise data centres.
Scanning functionality. A great selling point is that it
devoteam.com/techradar 110
CASE STUDY | Sector: Financial Services | Employees: 10,000
devoteam.com/techradar 112
TechRadar
Sustainability
Enabled
by Digital
Accelerate your Environmental, Social and
Governance impact with digital technologies.
Build and power your ESG strategy to secure
growth and resilience in a changing
world economy.
ENABLED BY DIGITAL
SUSTAINABILITY
HOT TOPIC
devoteam.com/techradar 115
Sustainability Enabled by
Digital at a Glance
From the year 2025, covering the 2024 financial year,
approximately 50,000 European companies will be
required to publish their negative environmental and
social impact and the governance put in place to reduce
them. The report will include 84 key metrics including
climate change, diversity in leadership, and human
rights, while providing a detailed carbon footprint
analysis of emissions, including their supply chain.
This so-called “non-financial reporting” is increasingly relevant and
technologies like AI, data visualisation, business automation and
business intelligence are now vital. With compliance becoming
increasingly competitive and the spotlight on Corporate Sustainability,
many tech companies stand ready with an arsenal of new systems
to collect and consolidate data, and support reporting against
international standards.
The new standard of compliance will mean setting up processes
to automate the collection, validation and analysis of data, specific
to each business area. This will require new skills from staff, but
also specialised tools at the enterprise level. Major digital players are
positioning themselves with increasingly mature solutions. Their
presence in the 2023 TechRadar indicates that they have identified a
market, and therefore that companies are determined to act. However,
choosing and implementing such solutions requires a thorough
understanding of corporate sustainability itself.
Companies must be careful not to drown in manual reporting, but
rather focus on impact as the end goal. This necessitates putting data
into action to build new solutions, where each department is setting its
objectives and operating independently. One of the major leadership
challenges will therefore be to balance between the use of digital tools
that are specific to a department, and the centralised reporting and
disclosure of progress. New ‘sustainability enabled by digital’ tools
emerge daily, and while many of them will be gone in a few years, some
are on their way to becoming an integrated part of enterprise IT systems.
145 149
141
o pt
Ad
devoteam.com/techradar 117
Aguaro Cloud Custodian
Trial Assess
devoteam.com/techradar 119
a focus on user experience and Infracost
devices used, but does not take Assess
into account carbon footprint on
the server side. Developed in 2021, Infracost is an open-source tool
Fruggr is a young technology with that estimates cloud cost for
the potential to be a valuable asset Terraform. One of the issues we
to enterprises looking to improve see with cloud cost is that it’s
sustainability efforts. being managed after the money
is spent. Infracost sits in the CI/
CD workflow and shows the
Google Carbon Assessment engineering teams how their code
Adopt changes are going to affect cloud
costs by leaving a comment and
No longer a buzzword for providing a detailed breakdown of
companies to use in marketing all the resources and their financial
campaigns, sustainability impact. At the same time that
practices are now a key users perform a code review for
cornerstone of any sizable quality and security, they can also
organisation’s operations. With analyse the cost of code changes.
Google’s Carbon Assessment tool, With Infracost, organisations
companies can measure, assess, can be proactive about cloud
and improve upon the carbon cost instead of reactive. It doesn’t
footprint of their Google Cloud need cloud credentials because
usage. The tool allows companies it reviews the Terraform code.
to view the gross, location-based Infracost can be integrated into
emissions from their Google any CI/CD system (GitHub Actions,
Cloud usage. Users can also GitLab, Azure DevOps, etc.).
monitor their usage over time by
project, product and even region
to help CIOs identify where they Kubecost
can become more eco-friendly. Trial
Google will even publish their
detailed calculation methodology, Controlling costs and, if possible,
enabling users to confirm that reducing them, remains a
their emissions data meet GHG fundamental issue for enterprise
(Greenhouse Gas) protocols. So, for systems. Yet, this financial aspect
any organisation that’s embarking is often a blind spot in Kubernetes
on a sustainability drive, this clusters because it is difficult
non-intrusive platform is a must. to assess and take into account
Google also offers a Google during development. Created in
Carbon Assessment tool that 2019 to meet this need, Kubecost
allows users to assess the Carbon provides a centralised, real-time
Footprint of on-premise data view of the operating costs of
centres and estimate the Carbon the various clusters. To facilitate
and cost reduction of migrating to management and billing, these
Google Cloud Platform. costs can be aggregated by
ENABLED BY DIGITAL
SUSTAINABILITY
devoteam.com/techradar 121
ServiceNow ESG Sopht
Trial Assess
devoteam.com/techradar 123
CASE STUDY | Sector: Healthcare | Employees: 40,000
devoteam.com/techradar 125
TechRadar
Contributors
126 TechRadar
Florian Franck Franck Franz-Josef Frédéric
Meyer Besnard Wolff Leick Fleury
devoteam.com/techradar 127
Laurent Laurent Laurent Luc Magali
Lajugie Letourmy Schoonheere Germain Regnault
128 TechRadar
Thank you
Devoteam is a
Ruben Rune Saleh learning company
Pairan Wittchen Samaneh and our talent is the
spark that lights our
way. The Devoteam
TechRadar is the result
of a collective effort
from our talented
team of Tech Experts
Samir Sébastien Sébastien from across EMEA
Daoudi Aubriot Bergougnoux who helped gather
information for this
guide. We want to
thank them for their
integral role in helping
us create this useful
resource and hope
Sif Sylvain Tako
that it will also inspire
Neldeborg Duché Grijpma
other talents to join us.
Want to explore your
infinite possiblities
and participate in the
next TechRadar?
Zaher
Yousuf
devoteam.com/techradar 129
About Devoteam
Devoteam is a leading tech consulting firm focused
on digital strategy, tech platforms, data and
cybersecurity. By combining creativity, tech and data
insights, we empower our customers to transform
their business and unlock the future.
130 TechRadar
Published by Devoteam
73 rue Anatole France
92300 Levallois Perret
France
www.devoteam.com
LinkedIn: YouTube:
linkedin.com/company/devoteam @Devoteam
132 TechRadar