← Back to interactive architecture

Source Traceability

How all 60 source sections (plus front matter, diagrams and conclusion) were incorporated, revised, deferred or rejected — and the provenance of every one of the 133 components.

1 · Method & honesty rules

The source document is a 60-section practice guide: broad, thematic, and deliberately organization-neutral. It describes what disciplines exist, not which components an enterprise should build. Reverse-engineering therefore worked at the theme level: each section was inventoried, mapped to architecture views, and either incorporated (theme carried into concrete components/controls), revised (carried with a documented correction), deferred (no requirement identified), or rejected (not usable as architecture input).

Reading the S-references: a node tagged S20 means section 20 motivates the component's existence — it does not mean the source specified that component. Nearly every concrete design element (field values, controls, protocols, failure semantics, runbooks) is this package's proposal layered on the source's themes: assumptions A-01/A-02 apply globally. The 41 embedded diagrams were rejected as authoritative input per the brief — every view here renders from the canonical data model instead.

2 · Source-topic inventory

RefSource sectionDispositionMapped toNote
S1Modern Enterprise Architecture: Introduction & Visionincorporatedexecutive-overviewVision framing carried into objectives and principles.
S2Digital Transformation & Business Modernizationincorporatedbusiness-architecture, roadmapOutcome-first stance became PR-01 and roadmap sequencing.
S3Enterprise Architecture Principlesincorporatedgovernance-finopsSource's principle themes formalized into the 12 testable principles (PR-01..12).
S4Current State Enterprise Assessmentincorporatedroadmap, runbook P1Drives Phase 1 discovery; also the basis for the illustrative baseline (A-01).
S5North Star & Future State ArchitectureincorporatedroadmapTarget-state definition + transition-state discipline.
S6Business Architectureincorporatedbusiness-architectureCapability/value-stream anchoring of all technology nodes.
S7Business Capability Mappingincorporatedbusiness-architectureCapability set + heat-map treatment (maturity values are placeholders).
S8Value Streams & Business Processesincorporatedbusiness-architectureFour generic value streams modeled.
S9Product, Platform & Portfolio Architectureincorporatedportfolio-product-platformProduct/platform/portfolio distinction + reuse relationships.
S10Enterprise Roadmaps & Transformation PlanningincorporatedroadmapWave structure with exit criteria and quick wins.
S11IT Portfolio Management & Technology Investmentincorporatedportfolio-product-platformInvestment-alignment fields on portfolio view.
S12Application Portfolio Management (APM)incorporatedportfolio-product-platform, runbook P1APM inventory + dispositions in init-discovery.
S13Solution Architecturerevisedarchitecture-decisionsNot a separate view: absorbed into the metamodel + ADR discipline so solution designs inherit the canonical model.
S14Application Architectureincorporatedapplication-domainDomain services, BFF, modularity; transactional boundaries via svc-order.
S15Integration Architectureincorporatedintegration-apiFull integration taxonomy modeled with failure semantics the source omits.
S16API-First Enterprise & API Managementincorporatedintegration-apiGateway + APIM + portal + lifecycle (ADR-06).
S17B2B Integration, Partner Ecosystemsincorporatedintegration-apiEDI/AS2/MFT + partner onboarding runbook + reconciliation controls.
S18SaaS Architecture & Vendor Ecosystemsincorporatedapplication-domainSoR discipline (CT-05); SaaS integrated via governed paths only.
S19Data Architecture, Information Strategy & Governanceincorporateddata-analyticsCatalog/classification-driven governance; MDM; quality.
S20Event-Driven Architecture & Enterprise Messagingincorporatedintegration-apiStreams-vs-queues semantics (ADR-07) + DLQ/replay discipline the source implies but doesn't specify.
S21Cloud-Native Architectureincorporatedcloud-infrastructure, platform-engineeringCloud-native principles realized through the platform layer.
S22Hybrid Cloud, Multi-Cloud & Cloud 2.0revisedcloud-infrastructureHybrid carried as TRANSITION posture (ADR-01); multi-cloud gated by justification (ADR-03); 'Cloud 2.0' marketing term not carried into the model.
S23Infrastructure Architecture & Cloud Foundationsincorporatedcloud-infrastructureLanding zones, segmentation, connectivity.
S24Platform Engineering & Internal Developer Platformsincorporatedplatform-engineeringPlatform-as-product + golden paths + IDP.
S25Enterprise Security Architecture & Zero Trustincorporatedsecurity-zero-trustExpanded into the concrete control catalog (source stays at principle level).
S26Enterprise Modernization Assessment Frameworkincorporatedrunbook P1-P2Assessment dimensions embedded in discovery + wave prioritization.
S27Modernization Strategies (7Rs)revisedarchitecture-decisions, runbook P2Source's 7R list (S27) and 5R list (S54) are inconsistent; standardized here on 8 dispositions (adds 'relocate', separates replace/repurchase) - flagged as a revision.
S28Legacy Transformation (Mainframes, ERP, CRM, COTS & SOA)incorporatedapplication-domainACL + facade + incremental strangling; ERP kept as SoR.
S29Enterprise Architecture Patterns & Design Principlesincorporatedarchitecture-decisionsPattern guidance folded into principles + ADR options.
S30Cloud & Distributed System Patternsincorporatedoperations-sre, resilience-drPattern set carried into NFR/scalability requirements with adoption criteria.
S31Microservices Architecture & Service Meshrevisedapplication-domainMicroservices are criteria-gated (ADR-05); service mesh demoted to open decision OD-06 rather than assumed.
S32Containers, Kubernetes & Cloud Orchestrationincorporatedcloud-infrastructureK8s adopted WITH justification criteria (ADR-04) per prompt's anti-fashion rule.
S33Infrastructure as Code, Automation & GitOpsincorporateddevsecops, platform-engineeringIaC-only provisioning; GitOps reconciliation; drift-as-incident.
S34DevSecOps, CI/CD & Continuous DeliveryincorporateddevsecopsExtended with SBOM/signing/provenance which the source does not mention.
S35Software Quality Engineering, Testing & Release Managementincorporateddevsecops, runbook P4/P8Quality gates in pipelines; release + operational-readiness procedures.
S36Technology Operations (ITOps), CloudOps & Platform Operationsincorporatedobservability-sre, runbook P9Day-2 process catalog in runbook Phase 9.
S37Observability, Monitoring, Logging, Tracing & AIOpsincorporatedobservability-sreOTel-first (ADR-11); AIOps optional + hygiene-gated + human-approved.
S38Reliability, Scalability, Performance, HA & DRincorporatedresilience-drTiered recovery + immutable backup + cyber vault; numbers withheld pending BIA.
S39FinOps, Cloud Financial Management & Cost Optimizationincorporatedgovernance-finopsTag-enforced allocation, showback-first (ADR-16), AI cost metering.
S40Data Modernization (Mesh, Fabric, Lakehouse & Streaming)reviseddata-analyticsMesh/fabric/lakehouse disambiguated per prompt: lakehouse=estate, mesh=operating model, fabric=tooling claim treated cautiously (ADR-08).
S41AI Architecture & Enterprise AI Platformsincorporatedai-agenticExpanded into gateway/registry/eval/vector components the source doesn't name.
S42Agentic AI & Autonomous Enterprisesincorporatedai-agenticSource's autonomy vision bounded by tool registry + HITL + kill switch (ADR-14).
S43Digital Experience, Web, Mobile & Omni-Channelincorporatedbusiness-architecture, application-domainChannel set + BFF pattern.
S44Enterprise Application Ecosystemsincorporatedportfolio-product-platformEcosystem relationships modeled as canonical graph.
S45Architecture Governance & Review Boardsincorporatedgovernance-finopsARB + decision rights + exception-with-expiry mechanics.
S46Enterprise Technology Governanceincorporatedgovernance-finopsPer-domain governance bodies + policy-as-code enforcement.
S47Architecture Characteristics & Quality Attributesincorporateddocs/risk-assumption-register (NFRs)Quality attributes became the NFR register with placeholders + measurement methods.
S48Measuring Architecture Success (KPIs, OKRs & Maturity)incorporatedroadmap, runbook P9Exit criteria + Phase-9 metric set.
S49Common Architecture Anti-Patternsincorporatedroadmap (baseline), quality testsAnti-patterns shaped the illustrative baseline AND the package's own quality gates.
S50Innovation, Emerging Tech, Edge & Future Platformsdeferredroadmap wave-3No concrete requirement identified; edge = OD-05; radar cadence carries the theme.
S51Application Rationalization & Technical Debt Reductionincorporatedportfolio-product-platformDepartmental-sprawl node + rationalization dispositions.
S52Domain-Driven Modernizationincorporatedapplication-domainBounded contexts as extraction seams (ADR-05).
S53API Modernization & Integration Transformationincorporatedintegration-apiFacade-first legacy API enablement (init-legacy-facade).
S54Cloud Migration & Application Transformation Strategyrevisedroadmap5R variant reconciled with S27 into the single 8R set (see S27 note).
S55Enterprise Digital Platform Modernizationincorporatedplatform-engineering, portfolioPlatform-first delivery model.
S56Legacy Application Decomposition & Incremental Modernizationincorporatedapplication-domain, roadmapThe strangler waves ARE this section, made concrete.
S57Enterprise Integration Modernizationincorporatedintegration-apiESB-drain-by-flow-class plan.
S58Data Migration & Data Platform Modernizationincorporateddata-analyticsLakehouse migration with parallel-run + variance evidence.
S59Modern Application Delivery Models & Product-Centric Architectureincorporatedportfolio-product-platformProduct-centric ownership on every node (owner fields; platform-as-product).
S60Enterprise Transformation Roadmaps & Continuous ModernizationincorporatedroadmapContinuous-modernization cadence in wave 3 / Phase 9.
S-introFront matter & topic listincorporatedtraceabilityTOC lists ~50 topics vs 60 body sections with title drift (e.g. 'Business Verticals Based Architecture' has no body section) - recorded as a source inconsistency.
S-images41 embedded diagramsrejected-Decorative/unlabeled diagrams not tied to a model; per the brief they are NOT reused as authoritative architecture. All diagrams here derive from the canonical data model instead.
S-conclusionConclusionincorporatedexecutive-overviewContinuous-journey framing carried into Phase 9 cadence.

3 · Source inconsistencies found (and how they were handled)

#InconsistencyWhereResolution in this package
1The "7Rs" list gives seven dispositions in S27 (retain, rehost, replatform, refactor, repurchase, replace, retire) but a five-item variant in S54 (rehost, replatform, refactor, rebuild, replace); 'relocate' never appears; 'replace' vs 'repurchase' overlap is unexplained.S27 vs S54Standardized on eight dispositions (adds relocate; replace and repurchase kept distinct) — recorded as a revision, used in P1 disposition register.
2The front-matter topic list (~50 items) does not match the 60 body sections; e.g. "Business Verticals Based Architecture" appears in the list but has no body section.Front matterBody sections treated as authoritative; vertical-specific architecture is explicitly out of scope pending org input (industry unknown — OQ-03).
341 diagrams are embedded without captions tying them to a model or notation; several appear beside unrelated sections.ThroughoutRejected as architecture input (per brief). All visuals in this package derive from one canonical model with a single legend.
4"Cloud 2.0" is used as a maturity label without definition.S22Not carried into the model; the underlying ideas (platform-integrated AI/automation/FinOps operating model) are represented as concrete components instead.
5Duplicated coverage: modernization strategy appears in S27/S51/S54/S56/S60; integration in S15/S16/S17/S20/S53/S57; data in S19/S40/S58. No cross-references reconcile them.MultipleEach cluster merged into one canonical treatment (dispositions register; integration view + catalog; data view + ADR-08) with all source refs retained on the nodes.
6Agentic AI (S42) promises autonomy without any control model; security section (S25) never mentions AI-specific threats.S42/S25Gap filled by proposal: gateway, guardrails, tool registry, HITL, kill switch, eval/red-team controls (C-AI-01…06) — labeled as extensions, not source content.
7The source names no volumes, SLAs, RTO/RPOs, regulations, vendors-as-requirements, or organization facts anywhere.GlobalAll such values are placeholders bound at P0–P2; registers A-*/OQ-* track them; nothing is presented as fact (A-05/A-10/A-11).

4 · Component → source mapping

Every node's provenance. "Baseline element" = part of the illustrative current state constructed from the source's challenge narrative (A-01); "design proposal" = target/transition component motivated by the cited sections (A-02).

IDComponentLayerSource refsProvenance class
ai-agent-orchAgent Orchestrator & PlanneraiS42source-themed design proposal
ai-embedEmbedding & Chunking PipelineaiS41, S42source-themed design proposal
ai-feature-storeFeature StoreaiS41source-themed design proposal
ai-gatewayAI Gateway & Model Access ControlaiS41, S42source-themed design proposal
ai-guardrailsAI Safety Guardrails & Content FilteringaiS41, S42source-themed design proposal
ai-hitlHuman-in-the-Loop Approval ServiceaiS42source-themed design proposal
ai-mlplatML Platform (training, registry, evaluation)aiS41source-themed design proposal
ai-models-hostedHosted Foundation Model ServicesaiS41source-themed design proposal
ai-models-selfSelf-Managed Model ServingaiS41source-themed design proposal
ai-observeAI Observability & Cost ControlsaiS41, S37source-themed design proposal
ai-promptPrompt Registry & LifecycleaiS41, S42source-themed design proposal
ai-ragRAG Retrieval Service (authorization-aware)aiS41, S42source-themed design proposal
ai-toolsAgent Tool Registry & Execution SandboxaiS42source-themed design proposal
ai-vectorVector Store & IndexaiS41, S42source-themed design proposal
acl-legacyLegacy Anti-Corruption LayerapplicationS28, S56source-themed design proposal
app-bff-customerExperience API - Customer BFFapplicationS14, S16, S43source-themed design proposal
app-bff-partnerExperience API - Partner BFFapplicationS16, S17source-themed design proposal
app-legacy-coreLegacy Core Business System (Monolith)applicationS27, S28, S56source-described baseline element
app-legacy-deptDepartmental Apps & EUC PortfolioapplicationS12, S51source-described baseline element
db-operationalOperational Databases (per-service)applicationS14, S30source-themed design proposal
ext-partnersTrading Partners (EDI / API)applicationS17source-themed design proposal
ext-paymentPayment Service ProviderapplicationS17source-themed design proposal
saas-collabCollaboration & Productivity SuiteapplicationS18source-themed design proposal
saas-crmCRM (Customer Relationship SoR)applicationS18source-themed design proposal
saas-erpERP (Finance & Procurement SoR)applicationS18, S28source-themed design proposal
saas-hrisHRIS (Workforce SoR)applicationS18source-themed design proposal
saas-itsmITSM & CMDBapplicationS18, S36source-themed design proposal
svc-billingBilling & Invoicing ServiceapplicationS14, S18source-themed design proposal
svc-catalogProduct & Catalog ServiceapplicationS14, S52source-themed design proposal
svc-customerCustomer Profile ServiceapplicationS14, S52source-themed design proposal
svc-documentDocument & Content ServiceapplicationS14source-themed design proposal
svc-fulfillmentFulfillment Orchestration ServiceapplicationS14, S20source-themed design proposal
svc-notifyNotification ServiceapplicationS14, S20source-themed design proposal
svc-orderOrder Management ServiceapplicationS14, S52, S56source-themed design proposal
svc-workflowWorkflow & Case ManagementapplicationS8, S43source-themed design proposal
cap-customer-engagementCustomer & Channel EngagementbusinessS7, S43source-themed design proposal
cap-financeFinance & ProcurementbusinessS18, S28source-themed design proposal
cap-insightEnterprise Insight & DecisioningbusinessS19, S40, S41source-themed design proposal
cap-order-fulfillmentOrder & Service FulfillmentbusinessS7, S8source-themed design proposal
cap-partner-supplyPartner & Supply CollaborationbusinessS17source-themed design proposal
cap-product-serviceProduct & Service ManagementbusinessS7, S9source-themed design proposal
cap-technologyTechnology & Platform ServicesbusinessS9, S24source-themed design proposal
cap-workforceWorkforce & TalentbusinessS18source-themed design proposal
obj-agilityFaster, Safer Change DeliverybusinessS1, S2, S10source-themed design proposal
obj-costTechnology Cost Transparency & EfficiencybusinessS39, S11source-themed design proposal
obj-experienceUnified Customer & Partner ExperiencebusinessS43source-themed design proposal
obj-intelligenceData- & AI-Enabled DecisionsbusinessS19, S41source-themed design proposal
obj-resilienceOperational Resilience & ContinuitybusinessS38source-themed design proposal
obj-trustSecurity, Privacy & Compliance ReadinessbusinessS25, S46source-themed design proposal
per-customerCustomerbusinessS6source-themed design proposal
per-developerDeveloper / EngineerbusinessS6source-themed design proposal
per-employeeEmployee / AgentbusinessS6source-themed design proposal
per-executiveExecutive / Portfolio LeaderbusinessS6source-themed design proposal
per-partnerTrading PartnerbusinessS6source-themed design proposal
per-sreSRE / Operations EngineerbusinessS6source-themed design proposal
vs-acquire-onboardProspect-to-CustomerbusinessS8source-themed design proposal
vs-order-to-cashOrder-to-CashbusinessS8source-themed design proposal
vs-procure-to-payProcure-to-PaybusinessS17source-themed design proposal
vs-request-to-resolveRequest-to-ResolutionbusinessS8source-themed design proposal
data-biBI & Analytics ServicedataS19source-themed design proposal
data-catalogData Catalog, Lineage & MetadatadataS19, S40source-themed design proposal
data-cdcBatch & CDC IngestiondataS19, S58source-themed design proposal
data-lakehouseLakehouse (raw / validated / curated / serving)dataS40, S58source-themed design proposal
data-legacy-dwLegacy Reporting DatabasedataS58, S51source-described baseline element
data-mdmMaster & Reference Data ManagementdataS19source-themed design proposal
data-qualityData Quality & ObservabilitydataS19, S58source-themed design proposal
data-stream-procStream ProcessingdataS20, S40source-themed design proposal
data-warehouseSQL Serving WarehousedataS40source-themed design proposal
dp-customer360Customer 360 Data ProductdataS40, S19source-themed design proposal
dp-ordersOrders & Fulfillment Data ProductdataS40source-themed design proposal
ch-contact-centerContact Center & Service ChannelexperienceS43source-themed design proposal
ch-employee-workspaceEmployee WorkspaceexperienceS43, S51source-themed design proposal
ch-mobileCustomer Mobile AppexperienceS43source-themed design proposal
ch-partner-portalPartner PortalexperienceS17, S43source-themed design proposal
ch-webCustomer Web PortalexperienceS43source-themed design proposal
fin-toolingCost Management & Allocation ToolinggovernanceS39source-themed design proposal
gov-aiAI Governance CouncilgovernanceS41, S42source-themed design proposal
gov-apiAPI & Integration GovernancegovernanceS16, S46source-themed design proposal
gov-arbArchitecture Review BoardgovernanceS45source-themed design proposal
gov-dataData Governance CouncilgovernanceS19source-themed design proposal
gov-ea-repoArchitecture Repository & StandardsgovernanceS45, S46source-themed design proposal
gov-finopsFinOps Practice & ReviewgovernanceS39source-themed design proposal
gov-platformCloud & Platform GovernancegovernanceS46source-themed design proposal
gov-reliabilityService Reliability ReviewgovernanceS37, S38source-themed design proposal
gov-secriskSecurity & Risk ReviewgovernanceS45, S25source-themed design proposal
gov-steeringExecutive Technology Steering CommitteegovernanceS45source-themed design proposal
int-apigwAPI Gateway (Edge)integrationS16, S53source-themed design proposal
int-apimAPI Management & Developer PortalintegrationS16source-themed design proposal
int-b2bB2B Gateway (EDI / AS2)integrationS17source-themed design proposal
int-esbLegacy ESB / Point-to-Point MiddlewareintegrationS28, S49, S57source-described baseline element
int-eventsEvent Streaming BackboneintegrationS20, S57source-themed design proposal
int-ipaasiPaaS & Integration OrchestrationintegrationS15, S57source-themed design proposal
int-mftManaged File TransferintegrationS17source-themed design proposal
int-queueMessage Queue BrokerintegrationS20source-themed design proposal
int-schemaSchema & Contract RegistryintegrationS16, S20source-themed design proposal
ops-aiopsAIOps & Event CorrelationoperationsS37source-themed design proposal
ops-backupBackup & Immutable Backup PlatformoperationsS38source-themed design proposal
ops-cyber-vaultCyber Recovery VaultoperationsS38source-themed design proposal
ops-demSynthetic Monitoring, RUM & DEMoperationsS37source-themed design proposal
ops-drDR Orchestration & Recovery RunbooksoperationsS38source-themed design proposal
ops-incidentIncident Management & On-Call PagingoperationsS36, S37source-themed design proposal
ops-observabilityObservability Platform (metrics / logs / traces)operationsS37source-themed design proposal
ops-otelTelemetry Pipeline (OpenTelemetry)operationsS37source-themed design proposal
cf-connectHybrid ConnectivityplatformS22, S23source-themed design proposal
cf-dns-edgeDNS, Traffic Management & CDNplatformS22, S30source-themed design proposal
cf-k8sContainer Platform (managed Kubernetes)platformS32source-themed design proposal
cf-landingCloud Landing Zones & Account StructureplatformS22, S23source-themed design proposal
cf-networkNetwork Hub & SegmentationplatformS22, S23source-themed design proposal
cf-paasManaged PaaS & Serverless RuntimesplatformS21, S30source-themed design proposal
cf-vmVM Estate (rehost landing)platformS27, S54source-themed design proposal
edge-sitesEdge LocationsplatformS50source-themed design proposal
onprem-dcOn-Premises Data CenterplatformS23, S28source-described baseline element
pe-artifactsArtifact & Container RegistryplatformS34source-themed design proposal
pe-cicdCI/CD PipelinesplatformS34source-themed design proposal
pe-goldenGolden Path TemplatesplatformS24source-themed design proposal
pe-iacIaC & Environment Provisioning (GitOps)platformS33source-themed design proposal
pe-idpInternal Developer Portal & Service CatalogplatformS24source-themed design proposal
pe-policyPolicy-as-Code EngineplatformS33, S46source-themed design proposal
pe-scmSource Control & Code ReviewplatformS33, S34source-themed design proposal
sec-ciamCustomer & Partner Identity (CIAM)securityS25, S17source-themed design proposal
sec-edgeWAF, DDoS & Bot ProtectionsecurityS25, S30source-themed design proposal
sec-endpointEDR / XDRsecurityS25source-themed design proposal
sec-idp-workforceWorkforce Identity ProvidersecurityS25source-themed design proposal
sec-igaIdentity Governance & AdministrationsecurityS25source-themed design proposal
sec-kmsKMS / HSM, PKI & Certificate LifecyclesecurityS25source-themed design proposal
sec-pamPrivileged Access ManagementsecurityS25source-themed design proposal
sec-pdpZero-Trust Policy Decision PointsecurityS25source-themed design proposal
sec-postureCNAPP (CSPM / CWPP) & Vulnerability ManagementsecurityS25, S34source-themed design proposal
sec-secretsSecrets ManagementsecurityS25, S33source-themed design proposal
sec-siemSIEM & Security AnalyticssecurityS25, S37source-themed design proposal
sec-soarSOAR & Response AutomationsecurityS25, S37source-themed design proposal
sec-sseSSE (SWG / CASB / DLP)securityS25source-themed design proposal
sec-workload-idWorkload Identity & Service Identity (mTLS)securityS25, S31source-themed design proposal

5 · Requirement → view coverage

The brief's required content per view, restated as each view's coverage checklist (also visible in-app under “About this view”), with the honesty notes that qualify the coverage.

ViewRequired content (checklist)Honesty notes
Executive Enterprise Overview
  • Business outcomes
  • Business capabilities
  • Products and platforms
  • Experience channels
  • Applications and SaaS
  • Integration and data platforms
  • AI capabilities
  • Cloud and infrastructure foundations
  • Security, observability, governance and FinOps as cross-cutting capabilities
Representative nodes only at this altitude; drill into domain views for completeness. Cross-cutting layers (security, observability, governance, FinOps) appear as capability bands.
Business Capability & Value-Stream Architecture
  • Capability hierarchy
  • Capability owners
  • Business importance and maturity
  • Value streams
  • Products and stakeholders
  • Applications and data supporting each capability
  • Modernization heat map
Heat-map values (business_purpose field) are placeholders pending org scoring. Capability maturity requires Phase-1 workshops.
Product, Platform & Portfolio Architecture
  • Difference between products, platforms, shared services, and projects
  • Ownership and funding model
  • Reuse relationships
  • Portfolio health and lifecycle
  • Technology-investment alignment
Disposition field (reuse/new/replace-retire) drives the portfolio color-coding. Funding model = placeholder pending P0; product-vs-project distinction per S9/S59.
Application & Domain Architecture
  • Domains and bounded contexts
  • Modular-monolith and microservice decision criteria
  • Application ownership
  • Systems of record
  • Backend-for-frontend and experience APIs
  • Legacy anti-corruption layers
  • Transactional boundaries
  • Service deployment and versioning
Extraction criteria for module->service decisions live in ADR-05. svc-order owns the order transactional boundary; saga compensation in svc-fulfillment.
Integration, API, B2B, Messaging & Event Architecture
  • Synchronous APIs
  • Asynchronous APIs
  • Event streaming
  • Message queues
  • iPaaS and workflow orchestration
  • EDI and managed file transfer
  • Partner onboarding
  • API lifecycle and developer portal
  • Schema registry and compatibility
  • Idempotency, ordering, deduplication, retries, dead-letter handling, replay, and reconciliation
Every edge carries protocol/auth/failure metadata - click any relationship. Queue-vs-stream selection tree in the integration catalog doc.
Data, Analytics, Lakehouse & Governance Architecture
  • Operational sources
  • Batch, CDC, API, and streaming ingestion
  • Raw, validated, curated, and serving zones
  • Warehouse or lakehouse
  • Domain data products
  • Metadata, catalog, lineage, MDM, reference data, and quality controls
  • BI, analytics, ML, and operational consumption
  • Clear distinction between data mesh, data fabric, and lakehouse
  • Classification, retention, residency, access, masking, tokenization, and legal hold
Mesh = operating model, lakehouse = estate, fabric = tooling claim (ADR-08). Zone promotion requires quality gates. Classification tags drive masking + access.
Enterprise AI, ML, GenAI, RAG & Agentic Architecture
  • AI gateway and model access control
  • Hosted and self-managed model options
  • Prompt registry and prompt lifecycle
  • Embedding and chunking strategy
  • Vector storage and tenant isolation
  • Authorization-aware retrieval
  • Model registry and evaluation
  • Feature store where appropriate
  • Human-in-the-loop approval
  • Agent planner, orchestrator, tools, memory, execution controls, and audit trail
  • Prompt-injection defenses, tool-output sanitization, data-loss prevention, and content safety
  • AI observability, hallucination testing, drift, token and inference cost controls, fallback, and incident response
Agents hold 'transition' status deliberately: production autonomy is gated by gov-ai (phase-6 exit criteria). No component calls model providers directly.
Cloud, Hybrid, Multi-Region, Infrastructure & Edge
  • Logical landing zones
  • Accounts, subscriptions, projects, or equivalent isolation units
  • Regions and availability zones
  • On-premises and edge environments
  • Private and public connectivity
  • DNS, ingress, egress, transit, private endpoints, and segmentation
  • VM, container, serverless, managed PaaS, and SaaS workload placement
  • Shared services and management plane
  • Data sovereignty and workload-placement criteria
  • Documented justification before recommending multi-cloud
Multi-AZ is the baseline; multi-REGION is open decision OD-01 - deliberately not drawn until priced against the BIA. Multi-cloud requires ADR-03 justification. Workload placement criteria in ADR-04.
Platform Engineering & Internal Developer Platform
  • Platform as a product
  • Golden paths
  • Self-service portal or catalog
  • Environment provisioning
  • IaC and GitOps
  • Secrets and workload identity
  • Policy as code
  • Templates and paved roads
  • Platform SLOs and support ownership
  • Developer experience metrics
Platform SLOs + adoption metrics are the team's KPIs (R-08 mitigation). Golden paths make compliance the default, not a gate.
DevSecOps & Software Supply Chain
  • Source control
  • Branch and promotion model
  • CI and automated testing
  • SAST, DAST, SCA, secret, container, IaC, and API security testing
  • SBOM
  • Artifact signing and provenance
  • Artifact registry
  • Deployment approval and separation of duties
  • GitOps or controlled delivery
  • Runtime policy enforcement
  • Vulnerability lifecycle and release gates
Admission verification is the enforcement point (strongest layer): unsigned/unattested images do not schedule. Emergency-release path RB-14 rehearsed.
Enterprise Security & Zero Trust
  • Human, service, workload, device, and partner identities
  • SSO, MFA, federation, SCIM, RBAC, ABAC, PAM, and just-in-time access
  • Policy decision and policy enforcement points
  • Device and workload posture
  • Network, application, API, data, and administrative trust boundaries
  • Secrets, KMS, HSM, PKI, certificate lifecycle, and key rotation
  • Encryption in transit and at rest
  • WAF, DDoS, API threat protection, rate limiting, mTLS, and service identity
  • CNAPP, CSPM, CWPP, EDR, XDR, SIEM, SOAR, DLP, CASB, SSE, and SASE capability placement
  • Security logging, detection, incident response, threat modeling, and control evidence
  • Privacy, records management, legal hold, and regulatory mappings as configurable overlays
Every control maps to assets in controls.json - the Controls tab shows the mapping. Regulatory/privacy overlays are configurable (A-11); trust-zone crossings are the boundary set.
Observability, SRE, Operations & AIOps
  • Metrics, logs, traces, events, profiles, synthetic monitoring, RUM, and DEM
  • OpenTelemetry-compatible instrumentation strategy
  • Correlation identifiers and service maps
  • SLIs, SLOs, error budgets, and alert ownership
  • Incident, problem, change, release, configuration, and capacity management
  • On-call, escalation, runbooks, and post-incident review
  • AIOps confidence, approval, rollback, and audit requirements
  • Telemetry retention, privacy, redaction, and cost controls
AIOps is optional + hygiene-gated: correlation on noisy telemetry automates confusion. Telemetry retention/redaction is a cost AND privacy control.
High Availability, DR, Cyber-Recovery & Continuity
  • Business impact analysis
  • Service tiers
  • RTO and RPO
  • Availability-zone, regional, cloud, dependency, cyberattack, and operator-error scenarios
  • Backup, immutable backup, cyber vault, restore, failover, and failback
  • Recovery sequence and dependency graph
  • Data consistency and reconciliation
  • Recovery testing and evidence
  • Manual workarounds and crisis management
ALL RTO/RPO values are tier-band placeholders pending BIA (A-05/A-07). Scenario coverage: AZ loss (multi-AZ), region loss (OD-01 - open), dependency loss (degradation matrices), cyberattack (vault), operator error (PITR + GitOps revert).
Architecture Governance, Portfolio & FinOps
  • Architecture principles
  • Decision rights
  • Review tiers and approval thresholds
  • Architecture Decision Records
  • Standards and technology radar
  • Exception process and expiration
  • Policy-as-code enforcement
  • Application portfolio management
  • Tagging, allocation, budgets, forecasting, showback or chargeback, unit economics, and anomaly detection
  • Cloud commitments, rightsizing, idle cleanup, storage lifecycle, egress cost, and AI cost controls
Governance bodies connect to what they govern - the edges ARE the operating model. Exception expiry is automated, not aspirational (PR-12).
Current -> Transition -> Target & Roadmap
  • Current-state placeholder based only on known source information
  • Target-state logical architecture
  • Transition-state architecture
  • Dependencies and prerequisites
  • Quick wins
  • Foundation, migration, optimization, and innovation waves
  • Exit criteria, evidence, and rollback considerations
Use Compare mode (toolbar) to diff states. The current state is an ILLUSTRATIVE baseline (A-01) - Phase 1 discovery replaces it with evidence.

6 · Control → source mapping

Controls cite the source sections that motivate them; enforcement detail is proposal. Every control maps to concrete assets (full mapping in the app's security view and data/controls.json).

IDControlSource refsApplies to (first assets)
C-ID-01Workforce SSO with phishing-resistant MFAS25sec-idp-workforce, ch-employee-workspace, pe-idp, ops-observability, saas-collab, saas-itsm …
C-ID-02Customer & partner identity via CIAMS25sec-ciam, ch-web, ch-mobile, ch-partner-portal
C-ID-03Privileged access is JIT, vaulted and recordedS25sec-pam, cf-landing, onprem-dc, cf-k8s, db-operational
C-ID-04Workload identity replaces static service credentialsS25sec-workload-id, cf-k8s, svc-order, svc-billing, ai-tools, pe-cicd
C-ID-05Joiner-mover-leaver automation with access reviewsS25sec-iga, saas-hris, sec-idp-workforce
C-NET-01Edge protection on all internet ingressS25sec-edge, ch-web, ch-mobile, ch-partner-portal, int-apigw
C-NET-02Deny-by-default segmentation with private endpointsS25cf-network, cf-k8s, db-operational, data-lakehouse, ai-vector
C-NET-03Hybrid connectivity redundancyS22, S23cf-connect, onprem-dc
C-APP-01OAuth2/OIDC discipline on every APIS16, S25int-apigw, app-bff-customer, app-bff-partner, svc-order, svc-billing, ai-gateway
C-APP-02Schema validation and input handling at boundariesS25app-bff-customer, app-bff-partner, svc-order, svc-customer, int-apigw
C-APP-03Rate limiting, quotas and abuse monitoringS25int-apigw, app-bff-partner, ai-gateway
C-APP-04mTLS / service identity on sensitive internal pathsS25sec-workload-id, svc-billing, svc-customer, ai-rag, db-operational
C-APP-05Secure session and token handling on channelsS25ch-web, ch-mobile, ch-partner-portal, sec-ciam
C-DP-01Classification drives policyS19data-catalog, data-lakehouse, dp-customer360, dp-orders, ai-vector, svc-document
C-DP-02Encryption at rest with owned keysS25sec-kms, db-operational, data-lakehouse, ai-vector, ops-backup
C-DP-03Masking / tokenization outside production need-to-knowS25data-lakehouse, dp-customer360, ai-embed, db-operational
C-DP-04Retention, deletion and legal hold per record classS25svc-document, data-lakehouse, ops-backup, saas-collab
C-DP-05Data residency overlay (configurable)S25cf-landing, data-lakehouse, ai-models-hosted
C-CLD-01Landing-zone guardrails as codeS22, S33, S46cf-landing, pe-policy
C-CLD-02IaC-only provisioning with drift detectionS33pe-iac, cf-landing, cf-k8s
C-CLD-03Hardened baselines, patching and admission controlS25cf-k8s, cf-vm, pe-artifacts
C-CLD-04Continuous posture and workload protectionS25sec-posture, cf-landing, cf-k8s
C-SC-01Security scanning gates in CIS34pe-cicd, pe-scm
C-SC-02SBOM, signing and provenance verificationS25pe-cicd, pe-artifacts, cf-k8s
C-SC-03Branch protection and deploy separation of dutiesS25pe-scm, pe-cicd
C-SC-04Vulnerability lifecycle with expiring exceptionsS34, S25sec-posture, pe-cicd, saas-itsm
C-INT-01Contract and schema governanceS16, S20int-schema, int-apim, int-events
C-INT-02DLQ, replay and poison-message handlingS20int-events, int-queue, svc-fulfillment, svc-notify, int-b2b
C-INT-03Idempotent consumers and deduplicationS25svc-fulfillment, svc-notify, svc-document, data-stream-proc
C-INT-04Governed file transfer integrityS17int-mft, int-b2b, ext-partners
C-INT-05Reconciliation on financial and partner flowsS17svc-billing, saas-erp, ext-payment, int-b2b
C-AI-01All model access through the AI gatewayS41, S42ai-gateway, ai-models-hosted, ai-models-self, ai-rag, ai-agent-orch
C-AI-02Prompt-injection defense and output validationS42ai-guardrails, ai-gateway, ai-agent-orch
C-AI-03Authorization-aware retrieval with provenanceS41, S42ai-rag, ai-vector, ai-embed, data-catalog
C-AI-04Agent tools are allowlisted, scoped and sandboxedS42ai-tools, ai-agent-orch, int-apigw
C-AI-05Human approval and kill switch for high-impact actionsS42ai-hitl, ai-agent-orch, ai-gateway
C-AI-06AI evaluation, drift and cost monitoringS41, S37, S39ai-observe, ai-mlplat, ai-gateway, fin-tooling
C-OPS-01Standard telemetry with correlation idsS37ops-otel, ops-observability, cf-k8s, int-apigw, svc-order
C-OPS-02Synthetic and real-user monitoring of key journeysS37ops-dem, ch-web, ch-partner-portal
C-OPS-03SIEM onboarding is part of go-liveS25sec-siem, cf-landing, int-apigw, ai-gateway
C-OPS-04Automated response with human gatesS25sec-soar, sec-siem, sec-idp-workforce
C-RES-01Backups with immutability and tested restoresS38ops-backup, db-operational, data-lakehouse, app-legacy-core
C-RES-02Isolated cyber-recovery vaultS38ops-cyber-vault, ops-backup
C-RES-03Tiered DR runbooks, rehearsedS38ops-dr, svc-order, db-operational, int-events
C-RES-04Multi-AZ by default for critical tiersS38, S30cf-k8s, db-operational, int-events, data-lakehouse
C-GOV-01Decisions and exceptions are recorded and expiringS45gov-arb, gov-ea-repo
C-GOV-02Tagging, allocation, budgets and anomaly detectionS39fin-tooling, cf-landing, pe-policy
C-GOV-03Control evidence retentionS25saas-itsm, gov-ea-repo, sec-siem
C-PRV-01Privacy overlay: consent, minimization, DSR readinessS19svc-customer, dp-customer360, ai-embed, svc-document