Leading global engine manufacturer achieves secure cloud transformation
Overview
Global engine and power systems leader modernizes cloud infrastructure
Our client is a leading global provider of engines, generators and power systems — along with engine components such as engine braking and valvetrain technologies, emission solutions, software and electronics. With operations in more than 190 countries and a complex hybrid cloud landscape supporting both global and regional business requirements, the company needed a more secure, scalable and standardized approach to cloud networking and governance. When their cloud network and security environment grew increasingly complex across global and regional cloud deployments, they partnered with HCLTech for a complete transformation.
The Challenge
Cloud strategy hindered by security and connectivity limitations
The client’s existing cloud infrastructure presented several critical challenges that demanded a holistic transformation:
- Their hybrid cloud strategy struggled with the lack of a uniform architecture.
- Security controls for East-West and egress-ingress traffic raised concerns.
- Limited operational visibility into the cloud made troubleshooting a real challenge.
- Connectivity from on-prem to cloud, via private direct connect, express route and fast connect, was unencrypted and suffered from insufficient throughput.
- Network security, policy enforcement and governance challenges emerged within the client’s China cloud environment, which operated as a fully isolated cloud setup to meet local regulatory and compliance requirements.

The Objective
Establish secure, scalable and unified cloud connectivity architecture
To address these issues, our client set out to:
- Implement a consistent cloud architecture across their hybrid environment.
- Strengthen security controls for East-West and egress-ingress traffic.
- Achieve comprehensive operational visibility into cloud infrastructure.
- Secure and optimize connectivity between on-prem and cloud environments.
- Deploy a scalable cloud gateway infrastructure worldwide.
- Extend standardized cloud networking, security and governance frameworks to regional cloud environments while maintaining local compliance requirements.


The Solution
Comprehensive cloud network and security architecture transformation
We delivered a full-spectrum assessment, design and implementation of a new cloud network and security architecture — enabling secure, resilient and scalable cloud connectivity. We deployed more than 350 cloud gateways across the globe.
- Cloud architecture standardization: We helped the client overcome inconsistencies in their hybrid cloud setup.
- Enhanced security controls: We addressed concerns around East-West and egress-ingress traffic, strengthening the client’s security posture.
- Operational visibility enhancement: We introduced tools and processes to give the client clear actionable insights into their cloud operations.
- Secure connectivity optimization: We encrypted and optimized connectivity from on-prem to cloud, improving both security and throughput.
- China cloud architecture expansion: Replicated the proven Aviatrix multi-cloud architecture within the client’s China private cloud environment across AWS and Azure. To support compliance requirements, we established a dedicated cloud boundary tenant for China and deployed ~75 gateways, enabling consistent security, governance and operational standards while maintaining complete isolation from the global cloud tenant.

The Impact
Secure connectivity, unified monitoring and enhanced cloud services
- Secure connectivity from on-prem to cloud — delivered through Aviatrix IPsec tunnel with 10GBPS throughput — resolved accessibility and performance issues.
- Single pane of glass for cloud monitoring, enabled by Aviatrix Co-Pilot and NetFlow, provided unified visibility and control.
- Added value beyond native cloud service providers — including cross-region and cross-cloud dependency management and faster onboarding of secure cloud architecture.
- Extended standardized cloud networking and security controls to the China environment, ensuring regulatory compliance while maintaining architectural consistency, scalability and governance.

Conclusion
By establishing a standardized Aviatrix-powered multi-cloud architecture across both global and China-specific cloud environments, we enabled the client strengthen security, improve visibility and simplify cloud operations at scale. The transformation delivered a consistent framework for network governance and secure connectivity while enabling the flexibility required to meet regional compliance mandates and support future cloud growth.
For more information, write to us at DF-Marketing@hcltech.com
