Upgrading EKS and Vault for Performance & Security
Enhancing scalability, security, and operational efficiency through infrastructure modernisation.Outdated Amazon EKS clusters and an unsupported HashiCorp Vault created security vulnerabilities, compatibility issues, and performance inefficiencies. The existing setup limited access to new features and hindered platform scalability. To address these challenges, a structured migration plan was implemented, provisioning new EKS clusters and upgrading Vault, ensuring a smooth transition with minimal disruption while improving security, stability, and long-term maintainability.
.jpeg)
Client Overview
The client is a leading ride-hailing platform, connecting millions of users with licensed taxi drivers through a fast and reliable mobile application. The company provides a seamless booking experience, real-time tracking, secure payment options, and optimised routing to improve urban mobility.

Challenge
The infrastructure relied on outdated EKS clusters and an unsupported HashiCorp Vault, leading to security risks, performance inefficiencies, and compatibility issues. Key challenges included:
Outdated EKS Clusters
The existing clusters were running on older versions, posing security risks and limiting compatibility with modern Kubernetes features.
Unsupported HashiCorp Vault
The outdated version of Vault lacked critical security updates, increasing the risk of vulnerabilities in secrets management.
Infrastructure Migration Risks
Upgrading core infrastructure without a structured approach could lead to downtime and service disruptions affecting platform reliability.
Limited Access to New Features
Older versions of EKS and Vault restricted the client from adopting modern features, preventing platform innovation and efficiency improvements.
Solution
To address these challenges, Bion designed and implemented a modern, secure, and efficient infrastructure upgrade strategy, ensuring seamless migration with minimal impact.
EKS Cluster Upgrade
- Assessment and Planning: Conducted a thorough risk assessment to evaluate dependencies and ensure a smooth transition.
- New Cluster Deployment: Provisioned the latest supported EKS versions, ensuring compatibility with BiTaksi’s existing applications.
- Application Migration: Systematically migrated workloads from outdated clusters to the new environment, ensuring minimal downtime.
HashiCorp Vault Upgrade
- Deployment of the Latest Version: Installed the most recent HashiCorp Vault version to improve security and performance.
- Data Migration: Securely transferred existing secrets and configurations, ensuring data integrity and business continuity.
Results

Enhanced Security
Running EKS and Vault on supported versions eliminated vulnerabilities and ensured compliance with security best practices.

Improved Performance
Upgrading the infrastructure optimised resource management, leading to faster response times and increased system reliability.

Access to New Features
The latest EKS and Vault versions enabled the client to leverage advanced functionalities, improving scalability and service innovation.

Minimised Downtime
A structured migration approach ensured seamless transitions with no major disruptions to ride-hailing operations.
Technology Stack
- Cloud Computing: Amazon VPC, IAM, EKS, EC2, ECR, Secrets Manager, RDS, Client VPN, CloudFront, S3
- Infrastructure as Code: Terraform/Terragrunt
By leveraging this modernised technology stack, the client now operates on a secure, scalable, and high-performance infrastructure, ensuring continued growth and innovation in the mobility sector.
