Cloudflare already touches Golden 1. Time to finish the job.
Consolidate the Akamai-fronted public and login edge, harden the new digital-banking platform's API/bot surface, and retire overlapping Zero Trust point tools onto one network.
Why now?
Golden 1's brand-new digital banking platform (launched Feb 2026) already resolves through Cloudflare — but the public site, login, and DNS still run on Akamai. Two prior Cloudflare deals went dormant, not dead, and Golden 1's own security team has been actively reconnecting since January 2026.
digitalbanking.golden1.com resolves to cdn.cloudflare.net (verified via two independent resolvers), while www.golden1.com and login.golden1.com resolve to Akamai's edgekey.net.
69 leads since 2018 self-report Palo Alto GlobalProtect, Zscaler, Netskope, Cisco Umbrella/Duo, and "homegrown" tooling as concurrent stack — against $0 in active Cloudflare contracts on file.
KCRA (Feb 23, 2026) reported login, MFA, Zelle, Bill Pay, and External Transfer disruptions during the new digital banking platform's cutover weekend.
What to prove together
Prioritized by business impact and strength of public evidence.
Consolidate the Akamai-fronted public & login edge
Cloudflare WAF + Bot Management + DDoS Protection + CDN What Cloudflare doesReboot the dormant "Akamai Take-Out" opportunity. www.golden1.com and login.golden1.com are DNS-verified on Akamai's edgekey.net; move the edge to Cloudflare without disrupting the origin.
Proxy one low-traffic marketing hostname through Cloudflare with Akamai kept as fallback origin.
p95 latency, WAF/bot blocks, DDoS events absorbed, Akamai run-rate offset.
Harden the new digital banking front door
Cloudflare Bot Management + API Discovery/Security + Turnstile What Cloudflare doesdigitalbanking.golden1.com (the platform that cut over Feb 2026) already resolves through Cloudflare's network but isn't a contracted Golden 1 deployment. The cutover disrupted login, MFA, Zelle, Bill Pay, and transfers — exactly what API discovery and bot management harden against next time.
Run a read-only API discovery scan and pilot Bot Management on the login endpoint.
APIs discovered, credential-stuffing/bot attempts blocked, auth error rate, transfer-flow uptime.
Simplify Zero Trust access, retire point tools
Cloudflare Access + Gateway + WARP (Cloudflare One) What Cloudflare doesReboot the dormant "Zero Trust Q3'25" opportunity. Golden 1 staff have self-reported Palo Alto GlobalProtect, Zscaler, Netskope, and Cisco Umbrella/Duo as concurrent tools since 2021, alongside repeated "homegrown solutions" fatigue.
Migrate one workforce group (e.g. IT contractors) to Access, running alongside GlobalProtect for rollback.
Apps behind Access, GlobalProtect session volume, help-desk access tickets, time-to-provision.
Prove
Scale
overview