<?xml version="1.0"?>
<!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.2 20190208//EN" "JATS-journalpublishing1.dtd"[]>
<article xml:lang="en" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns:xlink="http://www.w3.org/1999/xlink" xmlns:mml="http://www.w3.org/1998/Math/MathML" dtd-version="1.2" article-type="research-article">
<front>
<journal-meta>
<journal-id journal-id-type="publisher-id">IJPDS</journal-id>
<journal-title-group>
<journal-title>International Journal of Population Data Science</journal-title>
<abbrev-journal-title>IJPDS</abbrev-journal-title>
</journal-title-group>
<issn pub-type="epub">2399-4908</issn>
<publisher>
<publisher-name>Swansea University</publisher-name>
</publisher>
</journal-meta>
<article-meta>
<article-id pub-id-type="doi">10.23889/ijpds.v11i5.3710</article-id>
<article-id pub-id-type="publisher-id">11:5:3710</article-id>
<article-id pub-id-type="pii">S2399490821037101</article-id>
<article-categories>
<subj-group subj-group-type="heading">
<subject>Population Data Science</subject>
</subj-group>
</article-categories>
<title-group>
<article-title>K8TRE and FRIDGE: Bridging Kubernetes-native Trusted Research Environments with High-Performance Computing for Sensitive Data</article-title>
</title-group>
<contrib-group>
<contrib contrib-type="author"><name><surname>Harding</surname><given-names initials="M">Mike</given-names></name><xref ref-type="aff" rid="affil-1"><sup>1</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Li</surname><given-names initials="S">Simon</given-names></name><xref ref-type="aff" rid="affil-2"><sup>2</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Craddock</surname><given-names initials="M">Matthew</given-names></name><xref ref-type="aff" rid="affil-3"><sup>3</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Bacon</surname><given-names initials="F">Finley</given-names></name><xref ref-type="aff" rid="affil-4"><sup>4</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>de Silva</surname><given-names initials="L">Lakshitha</given-names></name><xref ref-type="aff" rid="affil-4"><sup>4</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Madge</surname><given-names initials="J">Jim</given-names></name><xref ref-type="aff" rid="affil-3"><sup>3</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Milligan</surname><given-names initials="G">Gordon</given-names></name><xref ref-type="aff" rid="affil-2"><sup>2</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Nair Sudhar</surname><given-names initials="S">Saurav</given-names></name><xref ref-type="aff" rid="affil-5"><sup>5</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Svarovsky</surname><given-names initials="G">George</given-names></name><xref ref-type="aff" rid="affil-4"><sup>4</sup></xref></contrib>
<contrib contrib-type="author"><name><surname>Thomas</surname><given-names initials="A">Alwin</given-names></name><xref ref-type="aff" rid="affil-5"><sup>5</sup></xref></contrib>
<aff id="affil-1"><label>1</label><institution>Lancaster University, Lancaster, United Kingdom</institution></aff>
<aff id="affil-2"><label>2</label><institution>University of Dundee, Dundee, United Kingdom</institution></aff>
<aff id="affil-3"><label>3</label><institution>The Alan Turing Institute, London, United Kingdom</institution></aff>
<aff id="affil-4"><label>4</label><institution>University College London, London, United Kingdom</institution></aff>
<aff id="affil-5"><label>5</label><institution>Lancashire Teaching Hospitals NHS Foundation Trust, Preston, United Kingdom</institution></aff>
</contrib-group>
<pub-date date-type="pub" publication-format="electronic"><day></day><month></month><year></year></pub-date>
<pub-date date-type="collection" publication-format="electronic"><year></year></pub-date>
<volume>11</volume>
<issue>5</issue>
<elocation-id>3710</elocation-id>
<permissions>
<license license-type="open-access" xlink:href="https://creativecommons.org/licenses/by-nc-nd/4.0/">
<license-p>This work is licensed under a Creative Commons Attribution-NonCommercial-NoDerivatives 4.0 International License.</license-p>
</license>
</permissions>
<self-uri xlink:href="https://ijpds.org/article/view/3710">This article is available from the IJPDS website at: https://ijpds.org/article/view/3710</self-uri>
<abstract>
<p>Trusted Research Environments (TREs) have become the established way of making sensitive data available to researchers while maintaining public trust. Most TREs have developed organically over the past decade with limited collaboration, confined to single sectors, and provide constrained computational resources. In contrast, high-performance computing (HPC) environments offer significant compute capacity but lack the robust governance capabilities that TREs require. The DARE UK TREvolution programme addresses these limitations by developing foundational technologies that enable federated multi-sector analyses across TREs and HPC infrastructures. K8TRE is an open-source, Kubernetes-native TRE supporting multiple compute infrastructures including public/private clouds. It provides a foundational platform catering for diverse organisational and disciplinary needs whilst enabling easy entry to standardised federated networks. K8TRE also allows efficient cross-sectoral collaboration on platform engineering through its modular, microservices-based architecture and ephemeral development environments. It is being deployed in production at multiple institutions on different host infrastructures. FRIDGE (Federated Research Infrastructure by Data Governance Extension) enables TREs to extend into national HPC facilities, previously unfeasible due to specific data isolation and governance requirements. Through careful mapping of information governance requirements to infrastructure controls – including encryption, network isolation, and identity management, all influenced by public engagement—researchers conducting AI and computationally intensive research are no longer limited to local TRE compute capacity. FRIDGE defines secure tenancy without prescribing what runs within it allowing K8TRE to extend its computational capacity into HPC infrastructure. Together, these technologies deliver enhanced data governance and interoperability and improved support and scalability for compute-intensive research.</p>
</abstract>
</article-meta>
</front>
</article>