Pentagon names Microsoft and Amazon as $10B cloud contract finalists
techcrunch.com
techcrunch.com
It was so strange to me to sit in meetings and talk about how we could make them so much more efficient and they would talk about having the problem solved in 5 or 10 year timelines. Having spent most of my career at Microsoft and Netflix where a year feels like an eternity, it's just a completely different world.
Add that to relative technical aptitude, regulatory compliance, etc. and it doesn't surprise me Government is going to take longer.
This is actually Elon Musk’s greatest triumph; almost all of his post-PayPal businesses are based on exploiting weaknesses in government regulatory (Tesla, PayPal) or procurement processes (SpaceX, boring company).
SpaceX was legitimate innovation in a broken government contracting process, but Tesla is starting to look like it was only a viable business with the subsidies — I would anticipate their business model to shift away from vehicles soon and turn towards large-scale grid infrastructure (aka government contracting).
Separate from the political issues at the top level of funding, the entire FAR (Federal Acquisition Regulations) is a steaming pile of reactionary bullshit, grown by accretion to minimize risk to bureaucrats at the expense of serving the tax payer efficiently.
The whole "bribing and political connections" side is sexy and interesting and headline grabbing, but the bulk of the issue is just far more banal and depressing.
The sad part about it is that the state of the FAR is such that our government, even if you are a person that wants it to play a bigger role, isn't really capable of executing on big things anymore. Combine that with the inept and apathetic staffing of (typically) mediocre at best clock punchers, and you end up with an organization that has a deep, deep spending efficiency issue.
The two political parties are both clueless. One thinks a massive, bloated organization with a track record of spending inefficiencies needs more revenue. The other thinks that a nation of 350 million just doesn't need a funded federal government.
I don't think people understand just how much of the procurement system has been built out of risk aversion.
A thing needs doing, politicians / government workers procure a solution to that, and that solution ends up going wrong somehow. Lots of egg on the relevant politician's faces, and plenty of ammo for anyone running against them. "$foo wasted millions of taxpayers money on solutions that don't even work!" So they put in a new mechanism to try to ensure that mistake never happens again. Each individual mechanism on its own generally makes sense.
But over decades and decades it becomes such a complete mess that if you take a step back and look at it, it's all kinds of absurdity (There's a fun parallel there to the infrastructure and systems we tend to make as developers and sysadmins). Worse, the kind of absurdity it has become actually ends up costing taxpayers more money than if a bunch of the regulations didn't exist, cheaper things were tried and failed, and replaced with one that does work.
Failure is great when there is oversight and feedback mechanisms that help the organization learn from those failures. Less good when repeated failure is profitable.
Every requirement is designed to protect against arbitrary decision making, especially corruption but also just general "I like the vendor/product".
Corruption is self-explanatory, so let's focus on the second:
Instead of buying a Toyota because you liked the last one you drove, or because they offer a fancy color you like, you have to create a 500-item checklist of features you want in a car, and a scheme to evaluate and weigh all possible options.
If you forget a single important criterion, say "available in colors other than pink", the police department will now be driving in pink cars.
Yes, the sales cycles in government are a lot longer (2 years is at the extreme end though, 3 to 6 months is more average but with a lot of caveats) and yes, there are a lot of rules and regulations that don't exist in commercial deals (FAR, DFARS, etc. etc.) - but at the end of the day, you're talking about business-changing scale when you get awarded a decent sized government contract (millions of dollars over a period of 3-5 years on average or longer). You're talking about being able to grow to 100's of employees with just a half dozen or so government customers.
The problem here really is that people need to invest the time and energy into understanding the government market and they can't expect it to be like the commercial one. If you do this, then the payout is very much worth it (and, no, it doesn't require "deep pockets" but it DOES require relationship building, a strong commitment, and a lot of learning).
If you give up in frustration because "it's too convoluted" compared to the commercial market, then, yeah, it will never pay off and it will feel like everything is stacked against you. But if you stick it out you'll find yourself with some incredibly stable and predictable long-term revenue streams.
I'm not sure you're understanding really how the system works, which is exactly what I was pointing out in my statement. I never said "guaranteed" - I said "stable". There is ALWAYS risk of losing the customer and the government can terminate at any time for almost any reason. But if you perform, then you can maintain the same customer for a decade or more.
This is how the system works and it works this way for a reason. There is more accountability in the government market than people realize - moreso than in most commercial transactions even.
And it is indeed independent bureaucracies that are responsible for making agencies and institutions run. Bureaucracy gets a bad name in many places, but the alternative to bureaucracy isn't just automatic improvement, it's most often politicization. Which is significantly worse.
This is why the heavy-handed regulations exist in US contracting (along with massive risk aversion and other things). The Government uniquely cannot be subject to market forces and punishment for bad actions.
There are NUMEROUS mechanisms for oversight and redress at every level - but the typical commercial-focused company doesn't understand them, so they don't research or learn what they are and just give up thereby developing a very misguided interpretation of the system akin to what you believe it is like.
(I bootstrapped a US government contractor and have worked for several others.)
The bar is much higher for government procurement, though. As an example, if I decide to use Codacy as my static analysis tool at work because I know the founder, nobody would bat an eyelid. If that same dynamic were reproduced at the government level, it would amount to corruption.
One example my attention was drawn to is that a government employee overspent by $1.50 for a drink that was misassigned an expense code for the amount they spent. If they'd used the correct expense code or spent $1.50 less, no eyebrows would have been raised. Instead everything was processed and the person was pulled into a tribunal in front of other government employees who were being paid to oversee spending. Lord knows what those employees were paid to investigate this miss-spend. On top of the fact this employee was paid to attend the tribunal. This kind of behaviour is a gross waste of time and money... for $1.50 at a cost of many thousands of dollars to reclaim - or more likely re-assign to the correct expense code... and for what?
If you want to see your tax dollars at work, it's right here, making sure none of your hard earned money gets miss-spent.
It also doesn't really help that a majority of the politicians and a majority of voters foam at the mouth about government waste, no matter how minuscule and how much it would actually cost to eliminate. If we implemented more efficient algorithms and saved 90% of administration but some waste slipped through they'd say the government was getting sloppy. You see this a lot when people rail against, say, fare evasion on public transit; people would rather have 10x of a bunch of highly paid employees to manually check every ticket, instead of having proof-of-payment and random inspections with fines, because it feels like the right thing to do.
https://www.youtube.com/watch?v=4JkcrtvN60s
That's an experimental YF-22A crashing due to a software glitch. That's a $300-400M hand-crafted state-of-the-art-on-a-hundred-dimensions supersonic jet, almost killing the test pilot (an engineer who flies planes) 50 feet off the ground at 150 mph. Just the cost of training that pilot is easily in the millions of dollars.
Everyone agrees the budget process is nuts, right up until something like that happens. And then everyone who ever signed any document related to that airplane is able to sleep at night. Except the software teams that wrote or approved the code. They're going to loose sleep, and they know why.
Oh, and the DoD is a rounding error compared to CMS. They have routine fraud complaints that would sink a major defense contractor.
If we didn't spend so much money on fraud detection via immense bureaucracy, that would increase the amount of money available to provision services.
Reading it as - you need enough money to make it two years without payment - is fair, but I would argue not how most people read that statement.
This can involve making "contingent offers" to get people interested, which to my knowledge carry no actual legal weight and is really just an informal agreement.
This way, you get a reasonable pool of candidates without actually having to hire anyone.
Maybe their experiences or observations with "VC backed startup[s] that [sell] a SaaS product" has shown them again and again that you cannot trust those in any way to be even around for 2 years.
Another thing that surprised me when it came to selling to the government is that it seemed like most employees had no idea how to purchase something, even if they had budget and authority.
As a startup your best bet is partnership with the big guys, meaning you'll have to craft your solutions in a way that it can piggy-back on all the checklists (things like FeDRAMP) the big guys already have checked.
Don't even get me started on the bureaucracy full of people whose sole purpose for existence is to ensure nothing can get done:)
There are loads of "small business" entities out there who get government business merely by being in existence and meeting the sizing requirements.
I however wouldn't quit my job to start one of these because these are really just people grazing on the federal acquisition process and provide in most cases little to no value, it is not much money either.
I know this because I have experience with working on government projects where you can easily have 20+ contractors involved and it is not clear what their roles or input are to the project.
are most of those small businesses partnered with larger entities on RFPs to win those contracts/money?
Some contracts require the prime contractor to be a small business. Often when this is the case and the contract is large the small business acts almost purely as a pass through to a larger contractor. Taking a percentage off the top and filling a couple of slots on the contract while the larger contractor does fills most of the slots and takes the majority of the money.
1. Speed is an order (or three) of magnitude lower. On anything - from macro-scale items such as signing a contract, designing the solution, creating the plan; to micro-scale items such as opening a port (2weeks-2months), creating a VMWare VM (2weeks-2years), obtaining a standardized laptop for new team members (2-weeks-3months). (Yes - you read that right - there is a set of two well defined VMWare windows VMs we have literally been waiting on for two years)
1b. After my first project, I reviewed the openly available "lessons learned" from variety of Gov't IT projects, and in the top three, uniformly, you'll find a sentence like "External vendor did not have sufficient appreciation for nature, complexity and speed of government processes". Truer words never said. We became faster when we slowed down to the oragnizational level: if we tried to do something in 2 days that government does in 2 weeks, it'd take us 4 weeks of hitting our head against the wall and causing havoc. Once we understood the 2 weeks it takes and built it into our plans, then 2 weeks it took.
3. As a citizen, I think of "The Government" - a single, big, overarching entity. Forget about it - it's really a lose and overly-formalized set of practically-independent organizations. IT integration of Department of Agriculture to Ministry of Labour is like integrating Walmart to Tesla. Different standards, processes, networks, firewalls, etc. It can take couple of years to agree and consume standardaized webservices across departments
4. Like many large organizations with variety of responsibilities and products, stability and predictability are much, much more important than speed. They need a solution that will last 20 years and a vendor that will exist and support it for that long. They can't change frameworks across 42 datacentres and 300,000 employees every 2 months. When their budget works at best on yearly basis, they cannot change their CIO roadplans quarterly.
5. This is a personal revelation and people may disagree: we want, or rather demand government to be that way. Due to requirement on transparency, fairness, documentation, we the public end up pushing government in the corner. They cannot just pick the easy right choice in two weeks - that'd be in the Globe & Mail (think Washington Post;) as unfair process, favouritism, lack of transparency... other companies would outright sue. So you get a two year procurement process that ultimately WE demand. Same for every decision at every level - it must be examined, discussed, commented, documented, covered. Everything has to be supported at an order of magnitude higher level than in commercial world (and note it has to be a well-supported, not necessarily right decision). Government procurement and processes have documentation and checkpoints which in some ways can be wonderfully stable and structured, in other ways immensely frustrating.
My mentor told me early on: think of everything you do in the context of front page headline: "Consultant does X on public money" So I can't buy lunch to my colleague I've worked with for years ("Vendor tries to bribe public servants"), cannot have a kick-off dinner for the project ("Consultants eat and cavort on tax-payers' money!!!"), etc.
My personal fear/nightmare is how I'll integrate back into the market having adapted to the public sector way and speed of doing things. Reading about neck-breaking speed of JavaScript frameworks and public cloud changes out there "in the real world", doesn't help my sense of peace :P :P :P
This is something so many people miss. So much of the endless red tape is a direct result of public concern over wasting taxpayer dollars. The irony of the situation is the government would be able to save a lot of money if taxpayers stopped caring about where their money was going.
Just like the war on drugs, you're fighting a moral crusade against the basest part of human nature. You're always going to lose - better to just accept it and do what's needed to minimize net loss.
So government operations and contracts can work fast. Until you meet a certain amount of cost that is. We have laws that govern how we buy software, and once they kick in, the process is long, tiresome and really, really, ineffective.
Because often the company who wins a bidding war, underbids, and end up delivering a lot less than promised unless you pay ridiculous extra money, and nothing in those laws protect us from this, not really.
The big issue is that government isn’t similar, so you have to govern in for the lowest common denominator. My ciry has technical competences on staff, this allows us to actually utilise SaaS products that require integration into our business processes and 300 existing systems. Our neighbouring municipality doesn’t, and as a result, they don’t even really know what the word SaaS means. The government has to write laws that work for both of us.
I think the real issue is lack of technical competences in the public sector, and the reason is really beyond me. Sure I have a vested interest, but I think I can defend it by my ability to write software in a few weeks that would cost us half a million on the private market. That’s not the primary importance of technical staff though, I don’t think we should build all those 300 systems ourselves, but we need to know how to cooperate with the private sector, and we need to build an enterprise architecture to support that, and to do that, we need technical staff.
The fact that this isn’t obvious in the political command structure in 2019 is just silly. Especially in Denmark where we’re competing with Estonia for having the most digitised public sector in the world. But to add some numbers to it, we have 7000 employees, they use a digital device or a computer for an average of 5 hours a day. We have 245 physical locations with network (schools, libraries, child care institutions and so on). We have more than 300 different systems, some major some minor. We’re expected to operate this with 5 people in operations, two people in development and architecture and 3 people in support.
I think I know why though. We don’t have a single elected official in my entire country who knows how to program.
If you are trying to sell to government for a “need” they aren't actively seeking solutions for, which your description sounds like, that seems plausible. Then again, a major purpose of the safeguards in the procurement process is to prevent sales going in that direction in the first place. The intent is for the government to identify a need, and then solicit solutions, not to have a vendor with a vested interest in the government perceiving a need in a way which favors their solution sell the government on the need.
We have some government contracts pending and we decided to give them services free of charge rather than going through the procurement hell.
To truly succeed in Gov contracts, solutions must be aligned with the retirement and pension goals of procurement officials who want to "ride out" long-term projects to the sunset.
Rather, sell to someone (or partner someone) who is experienced and let them do the talking
Also don't do it as the 1st thing you do, you'll have much more success selling it to people/(small) business first.
I would only advise selling to gov first if 1) you absolutely know what you're doing and it is something that only them can buy and 2) you have money for someone to walk in the higher circles (as in both salary + "extras")
[0]: https://www.iqt.org/
[2]: https://www.diu.mil/
This then leads into third parties acting as procurement contractors, where their only job is to win government contracts for others.
There are other middlemen taxes like this. Ever seen a proposal that says that it must go to a small business or a certain percentage of the award must go to a small business? Just find a small business to bid on the contract, take their cut, and then sell your product as the solution.
Government procurement is a dark place.
At least with AWS’s custom Aurora/MySQL and Aurora/Postgres offering they are able to rewrite parts of it to take advantage of their other technologies, but when you look at their RDS offerings, it doesn’t really buy you as much if you need to run third party commercial databases at scale.
Oracle made a complaint to the Government Accountability Office last year that was essentially "it is unfair to award ALL $10B to just one company." The GAO disagreed with the following reasoning:
> the Defense Department’s decision to pursue a single-award approach to obtain these cloud services is consistent with applicable statutes (and regulations) because the agency reasonably determined that a single-award approach is in the government’s best interests for various reasons, including national security concerns, as the statute allows
So now Oracle is suing the US Government with exactly the same complaint.
Oracle Senior Vice President Ken Glueck is a statement claimed that they're worried the DoD is going to be "locked into" another cloud vendor and that a single vendor "is out of sync with industry’s multi-cloud strategy" Make of that as you will.
Having multiple vendors is great, but here they are just talking their book. Do they pitch multiple database strategies too?
Oracle hasn't been next generation ANYTHING since the 90s.
https://www.oracle.com/database/what-is-autonomous-database....
I suppose you could automatically identify slow queries and identify what indexes would be useful, sort of how a JIT identifies hotspots in code and optimises them.
Personally it sounds like a play to keep lucrative enterprise customers on side by allowing them to cut the DBA role that is a necessity for a decent sized Oracle install.
A multi-platform approach destroys most of the cloud's value proposition in the name of avoiding vendor lock-in. At that point you're essentially only using the provider as a glorified data center manager, and I'm pretty sure the DOD has more than enough money to run their own data centers.
1. Surely there is no way for any "multi-cloud" company to keep up with the constant changes and growth of products at all these companies that they can abstract between them in any meaningful way without constantly falling behind.
2. And if there is some purpose right now, is that purpose sustainable? Why would Amazon not have every incentive at some point to make it as easy as possible for an existing Microsoft customer to migrate workloads over to their platform, and vice versa. And if/when they get into the game, isn't that essentially game over for any independent product?
This is the appeal of kubernetes.
And yes, it does make cloud providers glorified datacenters. I think k8s is an existential threat to aws long term. They're not going to be able to maintain their profit margins on ec2.
If you’re only using the cloud to do VMs at scale, you’re probably spending more than baremetal and spending just as much on maintenance. Kubernetes adds yet another level of complexity.
I'm hoping the same thing happens with Knative.
This is what flies in the face of multicloud efforts for me.
Now, most of the big cloud provider's new revenue comes from enabling migrations to cloud infrastructure. But that's a finite amount of work.
At some future point, everyone who will has already been migrated to the cloud. At that point, all the cloud provider's new business will be in the form of enabling migrations from existing clouds.
And then you'll have the resources of Amazon / Microsoft / Google working to enable migrations. Which seems a lot more successful resource match.
(That said, at that point cloud vendors could also really start actively turning the screws on making that difficult. But in a three-party world, where two parties don't, it seems unlikely that would succeed in the long run.)
But single-sourcing your cloud destroys any remaining value proposition: If you become dependent on a single cloud provider's services, they can charge you as much as they want once the current contract is up, and your lock-in means you're going to end up paying it. (Or we all are, since it's the DOD and we pay taxes.) The ten billion dollar contract is nice to have now, but I'm sure Microsoft and Amazon are both really licking their lips for the forty billion dollar renewal ten years later.
The concern over vendor lock-in and pricing is one that gets thrown around often, but doesn't really make sense to me. When has Amazon, Microsoft, et al gouged one of their larger customers in the past? Why would they do that when it would destroy their reputation and scare away business?
A large customer working with a large company is like any other negotiation, both have leverage and there isn't any feasible scenario where Amazon or Microsoft go completely crazy and start gouging their customers for some short-term gain.
Companies that get screwed are those who aren't big enough to negotiate that kind of deal up front.
But no, a Top 50 or large government type contract is never going to be at the mercy of unexpected price hikes.
I don't have enough eyes to roll at the cluelessness of your comment.
https://www.usatoday.com/story/opinion/2013/01/28/revolving-...
Would like that anyone that ever worked for the government forever be banned to work in their domain of expertise for a private company?
Dunno, I try to be sympathetic to concerns, but don't work for a business that is willing to do government contracts (or have the government as a customer, for that matter) if you don't want anything you work on to be used by the government.
Is this the work of some kind of extremist libertarian branch inside of Microsoft?
I don't know how you can work on a cloud provider ANYWHERE and not have this issue. I don't know how you can work on any open infrastructure, honestly.
There are worse actors than the government already in the cloud, if you ask me.
AWS vs Azure is about like Java vs C# in the enterprise. AWS is twice as popular, but you won’t go wanting if you’re good with Azure technologies. No GCP is so far behind in adoption and mindshare it’s just not worth it to me.
https://www.nytimes.com/2018/04/04/technology/google-letter-...
https://techcrunch.com/2018/10/08/google-will-not-bid-for-th...
I suspect a few people from both companies will complain but it won't be enough to dictate change. MSFT employees complained about the company working with ICE and while that did get a response, it didn't get the contract canceled.
Or perhaps the employees are the same, but the corporate executives and culture encourages or discouraged certain behaviors?
A large percentage of the technology we use daily found its roots in projects funded by DARPA and related entities.
Businesses need customers to pay the bills, the salaries, and perks enjoyed by those employed by these companies. Someone is going to provide services to the government, so it Makes sense to compete for the business.
Coordinating with the Chinese (a foreign) Government to implement spying and censorship as Google (and Cisco prior) did, at least for me, is completely different than competing for hosting contracts with the government.
It is not black and white at all, which makes some of the hoo-haa about this all a bit strange to me (with people saying "... but this is helping our military keep us safe!..." neglecting to consider the other side of the coin of the citizens of another country on the receiving end etc etc)
Also, having had a relative that was high up in one of the services and dealt with logistics. Not every contract involved with the Pentagon is specific to a direct conflict effort. It could be HR/Personnel systems, inventory tracking, etc.
During my undergrad/grad years, I worked under a DARPA grant around weather prediction leveraging GOES imagery. Money coming under the auspices of the DoD, but related to research not specific to a military usage. Amusingly, some campus individuals who were anti-DoD put up wanted posters of the professors involved with work under this same grant. (I know different than providing cloud services, but just an example of government military budget going towards efforts that dovetail into civilian uses)
With respect I disagree.
I don't think it is contradictory at all - you are not obliged to have unwavering and unquestioning support for whatever the company you happen to work for, or the country you happen to live in, decides to do. It is 100% ok to disagree with what your employer or country is doing.
Just because someone is on a visa, you think that they suddenly are not allowed to have an opinion or any morals? Please - take a step back and think this through from different perspectives than your own. Many people on a Visa/dual-nationals/US-natives etc still have full and complete lives outside of the US - friends, family, colleagues, property, cultural, etc. You cannot expect people to abandon all that and just go along with the US military killing innocent men, women and children outside in their home countries/near-by countries just because they have a job and/or are living in the US. [1]
1 - https://www.washingtonpost.com/world/national-security/after...
If Bezos says they're going forward with it, they're going forward with it. If a couple hundred AWS engineers mutiny, Bezos will gladly show them the door and replace them. That's how it would work at Amazon for better or worse.
At least, to me
If there were to be protests in Amazon, it would have happened already.