Circle
Events
Blog

Download Publication

Microservices Architecture Pattern
Microservices Architecture Pattern
Who it's for:
application developers 
application architects 
system and security administrators 

Microservices Architecture Pattern

Release Date: 08/31/2021

This document serves to propose a repeatable approach to architecting, developing and deploying Microservices as a “MAP” (Microservices Architecture Pattern). The proposed MAP contains all the information necessary for a microservice to operate independently and communicate with other microservices which, in aggregate, become capabilities which, in turn, become the components of an application. This paper describes the key elements of the MAP, how they should be designed and deployed, shifting security & compliance left via a continuous compliance-as-code approach. 


The primary goal of this work effort is to develop a vendor neutral reference architecture foundation that decomposes into software architecture patterns represented in Software and Platform (Enterprise) Planes, and then can be built back up with the addition of security control overlays. This can be demonstrated by the successful decomposition and recomposition of microservice architecture patterns where the integral action is the overlay of security controls.

This publication is part of a larger series, you can find all the papers in the series here.  

Download this Resource

LoginCreate Account

Prefer to access this resource without an account? Download it now.

Acknowledgements

Anil Karmel Headshot
Anil Karmel
Co-founder and CEO, RegSscale

Anil Karmel

Co-founder and CEO, RegSscale

Anil is co-chair of the CSA Application Containers and Microservices working group and has led the development of multiple research artifacts, building off the work started in the NIST Cloud Security working group. He is president of the CSA DC Metro Area Chapter, which he has transformed from a dormant chapter into one of North America’s most a...

Read more

Andrew Wild Headshot
Andrew Wild

Andrew Wild

This person does not have a biography listed with CSA.

Vani Murthy Headshot
Vani Murthy
Senior advisor Security & Compliance at Akamai Technologies

Vani Murthy

Senior advisor Security & Compliance at Akamai Technologies

Vani has 20+ years of IT experience in the areas such as Security, Risk, Compliance, Cloud services (IaaS/PaaS/SaaS) architecture

Read more

Michael Roza Headshot
Michael Roza
Risk, Audit, Control and Compliance Professional

Michael Roza

Risk, Audit, Control and Compliance Professional

Since 2012 Michael has contributed to over 85 CSA projects completed by CSA's Internet of Things, Zero Trust/Software-Defined Perimeter, Top Threats, Cloud Control Matrix, Containers/Microservices, DevSecOps, and other working groups. He has also served as co-chair of CSA's Enterprise Architecture, Top Threats, and Security-as-a-Service working groups while also serving as the Standards Liaison Officer for IoT, ICS, EA, SECaaS, and Cloud Key M...

Read more

Craig Ellrod Headshot
Craig Ellrod
Cloud Security Solutions Architect

Craig Ellrod

Cloud Security Solutions Architect

I hack therefore I am

Read more

Kevin Keane Headshot Missing
Kevin Keane

Kevin Keane

This person does not have a biography listed with CSA.

Alex Rebo Headshot Missing
Alex Rebo

Alex Rebo

This person does not have a biography listed with CSA.

Namrata Kulkarni Headshot Missing
Namrata Kulkarni

Namrata Kulkarni

This person does not have a biography listed with CSA.

Craig Ellrod Headshot
Craig Ellrod
Cloud Security Solutions Architect

Craig Ellrod

Cloud Security Solutions Architect

I hack therefore I am

Read more

John Jiang Headshot Missing
John Jiang

John Jiang

This person does not have a biography listed with CSA.

Mark Yanalitis Headshot Missing
Mark Yanalitis

Mark Yanalitis

This person does not have a biography listed with CSA.

Ankit Sharma Headshot Missing
Ankit Sharma

Ankit Sharma

This person does not have a biography listed with CSA.

Marina Bregkou Headshot Missing
Marina Bregkou
Senior Research Analyst, CSA EMEA

Marina Bregkou

Senior Research Analyst, CSA EMEA

This person does not have a biography listed with CSA.

Ankur Gargi Headshot Missing
Ankur Gargi

Ankur Gargi

This person does not have a biography listed with CSA.

Sean Estrada Headshot
Sean Estrada
Head of Industry Standards Engagement for AWS

Sean Estrada

Head of Industry Standards Engagement for AWS

Sean Estrada is Head of Industry Standards Engagement for AWS, where he is responsible for driving engagement with industry standards organizations and alliances. Building on over 15 years of experience in information security, audit and compliance, Sean is Amazon's internal subject matter expert on security standards design, strategy and implementation, and is Amazon's representative to the PCI Board of Advisors and the Vice President of t...

Read more

Pradeep Nambiar Headshot Missing
Pradeep Nambiar

Pradeep Nambiar

This person does not have a biography listed with CSA.

Vinod Babu Vanjarapu Headshot Missing
Vinod Babu Vanjarapu

Vinod Babu Vanjarapu

This person does not have a biography listed with CSA.

Hillary Baron Headshot
Hillary Baron
Senior Technical Director - Research, CSA

Hillary Baron

Senior Technical Director - Research, CSA

This person does not have a biography listed with CSA.

Michael Holden Headshot Missing
Michael Holden

Michael Holden

This person does not have a biography listed with CSA.

Gustavo Arreaza Headshot Missing
Gustavo Arreaza

Gustavo Arreaza

This person does not have a biography listed with CSA.

Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?