---
title: Federal Contractor Cuts IT Spend with 9-Week Migration from Legacy App to Containerized ISV Solution on AWS GovCloud
description: Shadow-Soft migrated a federal contractor from a legacy app to a containerized ISV solution on AWS GovCloud in 9 weeks, cutting costs, meeting compliance, and enabling full internal ownership.
image: https://shadow-soft.com/hubfs/Featured%20Images/Shadow-Soft%20featured%20image.png
---

[Skip to content](https://shadow-soft.com/content/federal-contractor-cuts-it-spend-govcloud-isv-migration#main-content)

This is a search field with an auto-suggest feature attached.

- There are no suggestions because the search field is empty.

[![](https://shadow-soft.com/hs-fs/hubfs/Shadow-Soft-Logo-1.png?width=1878&height=431&name=Shadow-Soft-Logo-1.png)](https://shadow-soft.com)

- What We Do
  
   Expertise 
  
    - [Modern Infrastructure](https://shadow-soft.com/expertise/modern-infrastructure)
    - [Automation](https://shadow-soft.com/expertise/automation)
    - [Observability & Monitoring](https://shadow-soft.com/expertise/observability-monitoring)
    - [Cloud Engineering](https://shadow-soft.com/expertise/cloud-engineering)
    - [Security & Compliance](https://shadow-soft.com/expertise/security-compliance)
    - [AI Infrastructure](https://shadow-soft.com/expertise/ai-infrastructure)
  
  
   Technologies 
  
    - [Red Hat OpenShift](https://shadow-soft.com/expertise/openshift)
    - [Kubernetes](https://shadow-soft.com/expertise/kubernetes)
    - [Red Hat Ansible](https://shadow-soft.com/expertise/ansible)
    - [HashiCorp Terraform](https://shadow-soft.com/hashicorp-terraform-consulting)
    - [Dynatrace](https://shadow-soft.com/expertise/dynatrace)
    - [Icinga](https://shadow-soft.com/icinga)
  
  
  Solutions
  
  [**VMware to Red Hat Migration**](https://shadow-soft.com/solutions/vmware-migration-program)  
  Need a strategic path forward as VMware licensing costs rise?
  
  [**IT Operations Automation**](https://shadow-soft.com/solutions/it-operations-automation-program)  
  Transform IT operations into a resilient, cost-efficient foundation
  
  [**Unified Observability**](https://shadow-soft.com/solutions/unified-observability-program)  
  Stop firefighting with 6+ monitoring tools that don't talk to each other.<https://shadow-soft.com/services/embedded-staffing-services>
- Who We Serve
  
    - [Enterprises](https://shadow-soft.com/solutions/enterprises)
    - [Software Companies](https://shadow-soft.com/solutions/software-vendors)
    - [IT Solution Providers](https://shadow-soft.com/solutions/it-solution-providers)
- Resources
  
    - [Client Stories](https://shadow-soft.com/client-stories)
    - [Insights](https://shadow-soft.com/content-hub)
    - [Events](https://shadow-soft.com/events)
    - [Platform Pulse Newsletter](https://shadow-soft.com/platform-pulse)
    - [Academy](https://shadow-soft.com/academy-home)
- About
  
    - [About Shadow-Soft](https://shadow-soft.com/about)
    - [Partners](https://shadow-soft.com/partners)
    - [Careers](https://shadow-soft.com/careers)
    - [Newsroom](https://shadow-soft.com/newsroom)
    - [Contact](https://shadow-soft.com/contact)

[Let's Talk](https://shadow-soft.com/contact)

![Search icon](https://5018647.fs1.hubspotusercontent-na1.net/hubfs/5018647/Design/Icons/Font%20Awesome/search.svg)

[Let's Talk](https://shadow-soft.com/contact)

[All posts](https://shadow-soft.com/content/all)

 July 18, 2025

# Federal Contractor Cuts IT Spend with 9-Week Migration from Legacy App to Containerized ISV Solution on AWS GovCloud

    Ross Beard  ·   4 minute read

Summary: A federal business unit inside a major government contractor needed to deploy a new containerized release of a critical ISV platform while moving away from their managed service and avoiding strain on internal IT. Shadow-Soft guided the full AWS GovCloud rollout in just 9 weeks (before their license was renewed).

## The Challenge

A federal business unit responsible for internal automation faced a critical decision: stay on an older version of a managed ISV platform, or bring the new, [containerized release in-house](https://shadow-soft.com/solutions/software-vendors).

Their team wanted more visibility, more flexibility, and a way to control long-term costs. But taking ownership meant deploying in AWS GovCloud, passing an internal architecture review, and managing [Kubernetes infrastructure](https://shadow-soft.com/expertise/kubernetes) they had never run before.

Sticking with the existing setup would have locked them into rising costs and limited flexibility, without solving their long-term scaling needs.

With a contract renewal deadline approaching and limited capacity from central IT, they brought in [Shadow-Soft](https://shadow-soft.com/) to map the options, prepare board-ready documentation, and guide the deployment in under 9 weeks.

## Our Solution

[Before deploying the infrastructure](https://shadow-soft.com/expertise/modern-infrastructure), the client had to evaluate trade-offs, secure approval from an internal architecture board, and show they could manage the platform independently.

We started with a focused advisory phase, mapping architecture scenarios, modeling cost and resiliency trade-offs, and preparing board-ready documentation. Every recommendation had to withstand scrutiny from cloud, security, and business stakeholders.

Once approved, we led the deployment of the new version of a containerized ISV platform on AWS GovCloud using a high-availability Kubernetes setup and a fully open-source toolset. The stack avoided licensing costs while still meeting the client's compliance and availability standards, keeping long-term spend in check.

From day one, our role was to enable (not replace) the client’s team, giving them a platform they could understand and own.

## Our Process

The move to AWS GovCloud wasn’t a copy-paste deployment. 

The client needed to validate architecture, document risk and cost trade-offs, and prepare their internal team to manage a Kubernetes environment for the first time. 

[Our process](https://shadow-soft.com/content/msp-isv-kubernetes-deployment-160-hours) balanced speed with hands-on enablement under a strict deadline and in a sensitive, compliance-driven environment:

1. Ran detailed architecture and cost modeling exercises, comparing storage, DR, and deployment trade-offs
2. Created board-ready documentation to secure internal architecture approval under a tight deadline
3. Rebuilt platform architecture diagrams to explain Kubernetes infrastructure to a non-K8s internal team
4. Recommended a fully open-source stack to meet compliance and cost constraints without adding license overhead
5. Deployed infrastructure in AWS GovCloud using Terraform and [Ansible](https://shadow-soft.com/expertise/ansible) for repeatability and auditability
6. Rolled out test and production environments, adjusting the deployment playbook as new constraints surfaced
7. Used live deployment sessions as hands-on coaching to build internal confidence and [operational knowledge](https://shadow-soft.com/solutions/it-operations-automation-program)
8. Coordinated across internal cloud, security, and PM stakeholders to keep progress unblocked and aligned

## The Roadblocks

Despite a tightly scoped plan, the deployment hit two major infrastructure issues that couldn't have been surfaced in planning. Each introduced real delivery risk under a hard deadline.

Backups broke under the platform’s file volume. The application generated hundreds of thousands of small files. When our team tested restore using Velero’s default file-level backup, it stalled for hours. A full restore would have taken over 24. 

To fix it, the team pivoted to CSI-based snapshots. It was a faster approach, but one that required validating compatibility across the stack and staying within the client's open-source tooling constraints.

The cluster also ran out of storage mid-project. Frequent redeployments triggered full-volume snapshot deltas. Instead of incremental changes, the system was writing 250GB of data per snapshot, overwhelming the persistent volume configuration. 

We reworked storage sizing on the fly, using the opportunity to coach the client’s team on how to manage storage in Kubernetes, a system they were still learning to operate.

## The Toolstack

 

- ![Longhorn](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/Longhorn.png?width=500&height=500&name=Longhorn.png)
- ![Velero](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/Velero.png?width=500&height=500&name=Velero.png)
- ![NGINX Ingress Controller](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/500x%20NGINX%20Ingress%20Controller.png?width=500&height=500&name=500x%20NGINX%20Ingress%20Controller.png)
- ![Prometheus](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/Prometheus.png?width=500&height=500&name=Prometheus.png)
- ![Grafana](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/500x%20Grafana.png?width=500&height=500&name=500x%20Grafana.png)
- ![Red Hat Ansible Mark RGB White](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/500x%20Red%20Hat%20Ansible%20Mark%20RGB%20White.png?width=500&height=500&name=500x%20Red%20Hat%20Ansible%20Mark%20RGB%20White.png)
- ![500px Terraform-vertical](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/500px%20Terraform-vertical.png?width=500&height=500&name=500px%20Terraform-vertical.png)
- ![AWS](https://shadow-soft.com/hs-fs/hubfs/Logo%20-%20Partners/500x500/AWS.png?width=500&height=500&name=AWS.png)

To meet the client’s cost and compliance requirements, we deployed a fully open-source stack designed for high availability and operational control in AWS GovCloud.

Longhorn: Enabled cross-zone volume replication and failover. Critical for high availability in GovCloud’s multi-AZ setup

Velero (CSI-based backup): Delivered fast, reliable snapshots after file-level restores proved too slow

NGINX Ingress Controller: Provided stable load balancing with minimal overhead and full Kubernetes integration

Prometheus + Grafana: Enabled observability and metrics without licensing constraints

Ansible + Terraform: Powered the infrastructure-as-code foundation for consistent provisioning and resets

AWS GovCloud (EKS): Chosen for compliance, control, and proximity to existing federal systems

## The Results

Shadow-Soft delivered a production-ready deployment of the latest containerized release of a third-party ISV platform in AWS GovCloud, replacing a vendor-managed environment that did not support the upgrade.

The client passed internal architecture review, launched a high-availability Kubernetes setup, and gained full operational control, despite having no prior experience running the platform themselves.

The project was completed in just 9 weeks, inside a compliance-sensitive GovCloud environment, using a fully open-source stack to control costs and meet internal security standards.

Shadow-Softs hands-on approach gave the internal team real experience troubleshooting infrastructure failures, scaling Kubernetes storage, and supporting live workloads, setting them up to own future updates without external support.

### Key Results:

- Delivered production deployment in AWS GovCloud within 9 weeks
- Enabled upgrade to ISV platform version previously unsupported by vendor
- Avoided licensing fees by using a fully open-source toolstack
- Passed internal architecture and compliance review under deadline
- Resolved 250GB+ snapshot delta issue during deployment
- Built high-availability Kubernetes environment with test and prod parity
- Gave internal team hands-on experience managing backups, scaling storage, and deploying via GitOps
- Delivered without adding operational load to central IT, enabling the business unit to own the platform independently

## What’s Next?

With the new environment live, the client is preparing for future containerized releases from the ISV and expects additional business units to adopt the platform now that it’s centrally deployed and supported in-house.

Shadow-Soft remains on call to support future scaling, upgrade testing, and environment optimization as usage expands.

## Client Overview:

An enterprise government contractor serving defense, intelligence, and civilian agencies. The firm operates in highly regulated environments with strict data and compliance requirements.

- Industry: Government 
- Size: Enterprise
- Location: United States

Share: [linkedin-in icon](http://www.linkedin.com/shareArticle?mini=true&url=https://shadow-soft.com/content/federal-contractor-cuts-it-spend-govcloud-isv-migration) [twitter icon](https://twitter.com/intent/tweet?url=https://shadow-soft.com/content/federal-contractor-cuts-it-spend-govcloud-isv-migration) [envelope icon](mailto:?body=https://shadow-soft.com/content/federal-contractor-cuts-it-spend-govcloud-isv-migration)

## Is Your Platform Ready for What's Next?

Get unfiltered perspectives on modern platforms, automation, and observability. The Platform Pulse newsletter delivers actionable insights to help you build with confidence.

[Get the insights](https://shadow-soft.com/content/federal-contractor-cuts-it-spend-govcloud-isv-migration#popform_hero)

### Subscribe to Platform Pulse

 One email per month. Unfiltered perspectives on modern platforms, automation, and observability.

[![](https://shadow-soft.com/hs-fs/hubfs/Shadow-Soft-Logo-1.png?width=1878&height=431&name=Shadow-Soft-Logo-1.png)](https://shadow-soft.com)

Shadow-Soft is a Red Hat Specialized Partner and Dynatrace Premier Partner helping mid-to-large enterprises modernize infrastructure through Kubernetes platforms, VMware to OpenShift Virtualization migrations, infrastructure automation, and observability solutions. Headquartered in Atlanta and serving enterprises nationwide.

**Address:** 4501 North Point Pkwy, Suite 110

Alpharetta, GA 30022 USA

🔔 [Subscribe to Platform Pulse Newsletter](https://shadow-soft.com/platform-pulse)

[linkedin-in icon](https://www.linkedin.com/company/shadow-soft/) [Follow us on Facebook](https://www.youtube.com/c/Shadow-soft)

**Company**

<https://shadow-soft.com/about>

 

[About](https://shadow-soft.com/about)

[Contact](https://shadow-soft.com/contact)

[Careers](https://shadow-soft.com/careers)

[Content Hub](https://shadow-soft.com/content-hub)

[Case Studies](https://shadow-soft.com/client-stories)

[Icinga Support](https://shadow-soft.com/icinga)

[Privacy Policy](https://shadow-soft.com/privacy)

**Services**

<https://shadow-soft.com/solutions/it-automation>

[VMware to OpenShift Migration](https://shadow-soft.com/solutions/vmware-red-hat-openshift-virtualization-migration)

[Red Hat Consulting](https://shadow-soft.com/expertise/red-hat)<https://shadow-soft.com/solutions/it-automation><https://shadow-soft.com/expertise/ansible><https://shadow-soft.com/expertise/openshift>

[OpenShift Consulting](https://shadow-soft.com/expertise/openshift)<https://shadow-soft.com/expertise/ansible>

[Kubernetes Consulting](https://shadow-soft.com/expertise/kubernetes)

[Ansible Consulting](https://shadow-soft.com/expertise/ansible)

[Observability Consulting](https://shadow-soft.com/expertise/observability-monitoring)

[Dynatrace Consulting](https://shadow-soft.com/expertise/dynatrace)

[HashiCorp Terraform Consulting](https://shadow-soft.com/hashicorp-terraform-consulting)

**Solutions**

<https://shadow-soft.com/solutions/it-automation>

<https://shadow-soft.com/solutions/it-automation>[VMware Alternative](https://shadow-soft.com/solutions/vmware-migration-program)  
<https://shadow-soft.com/expertise/ansible>

[Automate IT Operations](https://shadow-soft.com/solutions/it-operations-automation-program)

[Unified Observability](https://shadow-soft.com/solutions/unified-observability-program)

 

**Workshops**

[VMware Migration Workshop](https://shadow-soft.com/vmware-migration-workshop)

[Observability Workshop](https://shadow-soft.com/observability-tool-sprawl-assessment)

[Automation Strategy Workshop](https://shadow-soft.com/automation-strategy-workshop)

 

Copyright © 2026, Shadow-Soft

![](https://www.facebook.com/tr?id=433738280336898&ev=PageView&noscript=1)

```json
{
  "@context" : "https://schema.org",
  "@type" : "BlogPosting",
  "author" : {
    "@type" : "Person",
    "name" : "Ross Beard",
    "url" : "https://shadow-soft.com/content/author/ross-beard"
  },
  "dateModified" : "2025-09-26T19:56:57.554Z",
  "datePublished" : "2025-07-18T04:00:00.000Z",
  "headline" : "Federal Contractor Cuts IT Spend with 9-Week Migration from Legacy App to Containerized ISV Solution on AWS GovCloud",
  "image" : [ "https://shadow-soft.com/hubfs/Featured%20Images/Shadow-Soft%20featured%20image.png" ],
  "mainEntityOfPage" : {
    "@id" : "https://shadow-soft.com/content/federal-contractor-cuts-it-spend-govcloud-isv-migration",
    "@type" : "WebPage"
  },
  "publisher" : {
    "@type" : "Organization",
    "logo" : {
      "@type" : "ImageObject",
      "url" : "https://shadow-soft.com/hubfs/Shadow-Soft-Logo-1.png"
    }
  }
}
```