Home›Telecom›Non-Functional Architecture›Performance & Scalability← NFR overview
Non-functional architecture
Reference Architecture

Performance & Scalability

Performance, Scalability & Throughput: Latency SLOs · Throughput · HPA/VPA · Auto-scaling · Caching · Technical Debt.

Performance, Scalability & Throughput
Latency SLOs · Throughput · HPA/VPA · Auto-scaling · Caching · Technical Debt
API / OperationP50 SLOP95 SLOP99 SLOThroughput ScaleDesign Notes
Product Catalog QueryVery LowLowSub-100msHigh — scale horizontallyIn-Memory Cache-cached; cache TTL (configurable)
Subscriber Profile APIVery LowLowSub-200msHigh — scale horizontallyDB read replica + In-Memory Cache L1 cache
Order PlacementSub-500msSub-second<1 secModerate — async capableAsync provisioning; sync validation only
Real-time Rating (CDR)Very LowVery LowLowVery High — stream processingIn-memory rate table; no DB on critical path
Invoice Generation<2 sec<5 sec<10 sececBatch — parallel per bill runAsync PDF generation; batch processing
Authentication (Token)Very LowVery LowLowHigh — scale horizontallyJWT validation cached; no DB lookup
Notification DispatchSub-second<2 sec<5 secHigh — scale horizontallyAsync event-driven; SLA is delivery time not dispatch
Auto-Scaling — HPA & VPA
Horizontal · Vertical · Event-driven · Predictive
HPAHorizontal Pod Autoscaler scales replica count based on CPU (target 60%), memory (target 70%), and custom metrics (queue depth, RPS). Scale-out: seconds (configurable). Scale-in: cool-down window (configurable) to prevent thrashing.
VPAVertical Pod Autoscaler recommends optimal resource requests/limits based on observed usage. Applied in "recommend" mode — actual requests set by platform team per sprint. Prevents right-sizing drift.
Event-driven autoscalingAutoscaling driven by event backlog for event-consumer services. Scale to zero when no events. Scale from zero rapidly on first event arrival. Mediation and notification services scale on event-stream consumer lag.
Predictive ScalingScheduled HPA rules pre-scale billing pods 30 min before month-end bill run. CDR ingestion pods pre-scale before known high-traffic windows (month-end, campaigns).
HPA VPA Event-driven autoscaling Scale-to-Zero
Technical Debt Management
Debt Registry · Fitness Functions · Code Quality Platform · DORA
Technical debt is a first-class engineering concern — not a backlog item to be deferred indefinitely. Unmanaged debt compounds: the cost of deferral increases non-linearly as systems scale.
Debt RegistryEvery known technical debt item is recorded with: description, impact assessment, estimated remediation effort, and owner. Registry reviewed in monthly architecture forum.
Fitness FunctionsAutomated architectural tests run on every CI build: no cross-service database calls, no shared libraries with circular dependencies, no deprecated API versions in use, test coverage ≥80%.
Code Quality GatesCode Quality Platform quality gate: 0 new critical bugs, 0 new security hotspots, <5% code duplication on new code, coverage ≥80% on new code. Pipeline fails if gate not met.
DORA MetricsDeploy frequency, Lead time for changes, MTTR and Change failure rate tracked per service. Shared dashboard visible to engineering and leadership. Targets reviewed quarterly.
Remediation BudgetMinimum 20% of each sprint allocated to technical debt remediation. This is non-negotiable — not traded away for feature velocity. Enforced at planning.
Debt Registry Fitness Functions Code Quality Platform DORA Metrics
Non-Functional Requirements — Summary Reference
NFR CategoryRequirementTarget / StandardStatus
AvailabilityPlatform availability SLO99.99% (≈ minutes per year)Mandatory
LatencyAPI P99 latency (tier-1 services)< Sub-second P99Mandatory
ThroughputCDR processing rateVery High — stream processing sustainedMandatory
RTORevenue-critical service recovery<Minutes (Tier 0 — near-zero)Mandatory
RPOMaximum data loss windowNear-zero (Tier 0 — synchronous replication)Mandatory
SecurityEncryption in transitTLS 1.3+ on external traffic, mTLS on all inter-service communicationMandatory
SecurityEncryption at restAES-256-GCM all data storesMandatory
IdentityAuthentication protocolOAuth 2.0 / OIDC + Workload Identity Standard workload identityMandatory
PII ComplianceGDPR — Right to Erasure SLAConfirmed deletion within the regulatory SLA windowMandatory
ResilienceCircuit breaker on all external callsError rate >50% in 10 s window triggers openMandatory
IdempotencyAll financial mutation endpointsIdempotency key + 24 h dedup storeMandatory
ScalabilityHPA on all stateless servicesCPU target 60%, scale within a short cool-down windowMandatory
Anti-AffinityPod distributionRequired: no two replicas on same node; Preferred: spread across AZsMandatory
Technical DebtSprint debt remediation allocationMinimum 20% per sprintRecommended
ObservabilityDistributed tracing coverage100% of requests carry traceId; 10% sampledMandatory
CI/CD SecuritySAST + SCA in every pipelineCritical/High CVEs block mergeMandatory
Non-functional architecturePrevious: Disaster Recovery & Continuity→Non-functional architectureNext: Observability & CI/CD→