01 Zakres zadań
- Map SOX, BSI C5, and BNetzA requirements to technical controls.
- Verify network capacity for data transfer.
- Migrate infrastructure artifacts from Azure and on-prem environments to GCP.
- Prepare migration of user and service accounts, including listing accounts and privileges.
- Design traffic/PII data separation via VPC-SC.
- Plan customer-managed key (Thales) and Confidential Computing in GCP VMs.
- Define IAM roles, Shared VPCs, and GitOps pipelines.
- Deploy GCP hierarchy and networking via Terraform.
- Activate EKM, Access Transparency, and VPC-SC.
- Deploy Databricks cloud services from GCP Marketplace.
- Enable BigQuery and BigLake integrations, including external table configurations.
- Activate data federation with GCP BigLake and Databricks Lakehouse Federation.
- Run automated compliance scans and CI/CD validation.
