This thesis describes the internship carried out at Agora Security, a cybersecurity company, during which Resysto — a multi-tenant SaaS platform for cyber resilience and incident management — was developed and deployed to production. The work followed two directions. On the software side, the incident handling module was migrated and reimplemented from a monolithic architecture to a six-crate Rust structure, on a full-stack based on Leptos (SSR and WebAssembly hydration), Axum and SurrealDB; the module comprises seven sub-components (Tracker, Timeline, Playbooks, Notifications, Evidence, Lessons Learned and a multi-taxonomy MISP classification system), together with an engine for the automatic computation of NIS2 regulatory deadlines, all built incrementally under continuous integration. On the infrastructure side, a multi-tenant four-server deployment architecture was designed and delivered, with a clear separation between the edge tier (SafeLine WAF), the application tier (Docker Swarm with Traefik), the database tier (SurrealDB on TiKV) and the control tier (Komodo and a private registry). The document reconstructs the architectural decisions, the operational obstacles encountered and the solutions adopted, focusing on multi-tenant security, CI/CD automation and deployment reproducibility.
Il presente lavoro di tesi descrive il tirocinio svolto presso Agora Security, azienda di cybersecurity, durante il quale è stata sviluppata e portata in produzione Resysto, una piattaforma SaaS multi-tenant per la cyber resilience e la gestione degli incidenti informatici. Il lavoro si è mosso su due fronti. Sul piano dello sviluppo software, il modulo di incident handling è stato migrato e reimplementato da un'architettura monolitica a una struttura a sei crate Rust, su uno stack full-stack basato su Leptos (SSR e idratazione WebAssembly), Axum e SurrealDB; il modulo comprende sette sotto-componenti (Tracker, Timeline, Playbooks, Notifications, Evidence, Lessons Learned e un sistema di classificazione MISP multi-tassonomia), insieme a un motore per il calcolo automatico delle scadenze regolatorie NIS2, realizzati in modo incrementale e con integrazione continua. Sul piano infrastrutturale è stata progettata e realizzata un'architettura di deploy multi-tenant a quattro server, con una separazione netta tra il tier edge (WAF SafeLine), quello applicativo (Docker Swarm con Traefik), quello di database (SurrealDB su TiKV) e quello di controllo (Komodo e registry privato). Il documento ricostruisce le scelte architetturali, gli ostacoli operativi incontrati e le soluzioni adottate, con particolare attenzione alla sicurezza multi-tenant, all'automazione CI/CD e alla ripetibilità del deploy.
Deploy e sviluppo di una piattaforma SaaS multi-tenant per la cyber resilience e la gestione degli incidenti
PEROZZO, SAMUELE
2025/2026
Abstract
This thesis describes the internship carried out at Agora Security, a cybersecurity company, during which Resysto — a multi-tenant SaaS platform for cyber resilience and incident management — was developed and deployed to production. The work followed two directions. On the software side, the incident handling module was migrated and reimplemented from a monolithic architecture to a six-crate Rust structure, on a full-stack based on Leptos (SSR and WebAssembly hydration), Axum and SurrealDB; the module comprises seven sub-components (Tracker, Timeline, Playbooks, Notifications, Evidence, Lessons Learned and a multi-taxonomy MISP classification system), together with an engine for the automatic computation of NIS2 regulatory deadlines, all built incrementally under continuous integration. On the infrastructure side, a multi-tenant four-server deployment architecture was designed and delivered, with a clear separation between the edge tier (SafeLine WAF), the application tier (Docker Swarm with Traefik), the database tier (SurrealDB on TiKV) and the control tier (Komodo and a private registry). The document reconstructs the architectural decisions, the operational obstacles encountered and the solutions adopted, focusing on multi-tenant security, CI/CD automation and deployment reproducibility.| File | Dimensione | Formato | |
|---|---|---|---|
|
Perozzo_Samuele.pdf
Accesso riservato
Dimensione
1.56 MB
Formato
Adobe PDF
|
1.56 MB | Adobe PDF |
The text of this website © Università degli studi di Padova. Full Text are published under a non-exclusive license. Metadata are under a CC0 License
https://hdl.handle.net/20.500.12608/111056