Customer Case Study

PPI Financial Services is a specialized managed service provider for the European financial sector, operating banking systems in the cloud on behalf of regulated institutions. In 2024, PPI FS assumed full payment operations for Hamburg Commercial Bank (HCOB), underscoring its role as a trusted operator of mission-critical financial infrastructure.
As a cloud provider to banks, PPI FS must simultaneously deliver high availability, reliability, auditability, and strict regulatory compliance — including Germany's C5 cloud security framework and classification as critical infrastructure (KRITIS). The engineering team manages this complexity across multiple data centers, with a strong commitment to infrastructure as code and operational scalability.
Teleport became PPI FS's central Infrastructure Identity platform, providing secure, auditable, and unified access to Kubernetes clusters, middleware, and applications — enabling the team to scale environments and onboard engineers while maintaining their regulatory posture.
Operating banking systems in the cloud places extraordinary demands on identity, access, and auditability. As PPI FS expanded its customer base and infrastructure footprint, the engineering team faced several challenges:
We needed secure access that scales with our infrastructure — without adding complexity for engineers or risk for our customers.
APPI FS selected Teleport as its Infrastructure Identity provider, initially deploying on a virtual machine and subsequently migrating to a fully Kubernetes-native architecture using the Teleport Kubernetes Operator and Terraform provider.
Teleport now provides unified identity and access across PPI FS's cloud environments:
By integrating Teleport with single sign-on, the engineering team eliminated manual certificate management entirely. Engineers authenticate once and receive privileges appropriate to their role — with each session fully audited.
Teleport's infrastructure-as-code compatibility was essential to PPI FS's operational philosophy. All access policies and configurations are managed through Terraform, ensuring consistency, repeatability, and auditability across environments.
Teleport fits naturally into how we operate. The Kubernetes operator and Terraform provider let us manage access the same way we manage everything else — as code.
Simplified Onboarding and Improved Engineer Experience
Teleport dramatically simplified how new engineers gain access to infrastructure:
This eliminated time-consuming token workflows and reduced friction across teams.
People just need to know where to log in, and they have the access they need. The daily user experience is very good.
Operational Reliability
Since deploying the current Kubernetes-based architecture, Teleport has run continuously for over two years with zero platform-attributable downtime. Any service interruptions during that period were caused by surrounding systems — not Teleport itself.
During the entire time we've had it deployed, any downtime was never due to Teleport itself. It's been running continuously for two years.
Strengthened Regulatory and Compliance Posture
Teleport's comprehensive audit logging and identity-driven access controls contributed directly to PPI FS achieving its C5 adequacy assessment — a rigorous German regulatory framework for cloud providers.
Infrastructure-as-Code Alignment
By managing Teleport entirely through the Kubernetes Operator and Terraform provider, PPI FS ensured that access controls are as consistent and version-controlled as the rest of their infrastructure. This alignment reduces operational risk and supports the team's goal of scaling to serve more customers with less effort per iteration.
PPI FS plans to deepen and extend its use of Teleport across the organization:
Teleport remains a foundational component of PPI FS's long-term approach to managing Infrastructure Identity across its regulated, multi-customer cloud platform.
Teleport just works — the infrastructure-as-code support is excellent, the documentation is strong, and the support is the best we've experienced from any vendor.
HQ
Industry