Customer 360 Enterprise Data Platform — Denodo on Azure · View 15 of 39 · Data
The backup argument
- Only the third box needs a backup strategy. Everything above it is authoritative in a system we do not own, and everything below it is rebuildable on demand.
- That makes the crosswalk, the survivorship rules, the quality exceptions and the Denodo metadata the platform's entire recovery surface — four small stores, not a data lake.
Numbers
- Crosswalk: point-in-time restore, 7 days retained, RPO 5 minutes through geo-replication.
- Lakehouse: rebuildable end to end from source in about 14 hours; not backed up, replicated for availability only.
- Cache and summaries: never backed up. Losing all of them costs latency for one refresh cycle.
Risks
- A 14-hour lakehouse rebuild is acceptable for analytics and not for the 360. The federated path must keep working while it runs, which is what the never-cache rule on the crosswalk protects.