AWS Partner Network (APN) Blog
Category: Security, Identity, & Compliance
Securing 5G Core Applications on AWS Snowball Edge with Palo Alto Networks
The security pillar of the AWS Well-Architected Framework describes how to take advantage of cloud technologies to protect data, systems, and assets in a way that improves security posture. The security pillar doesn’t just apply to AWS regions and Availability Zones but also to hybrid cloud solutions on premises. In this post, we’ll focus on security using AWS Snowball Edge and how Palo Alto Network’s VM-Series firewall is deployed and configured to secure access to a 5G core application providing cellular 5G connectivity.
How to Streamline HITRUST Compliance with AWS and A-LIGN
Originally focused on healthcare, HITRUST is now used by organizations across industries to demonstrate regulatory compliance and risk management to a global audience. Learn how organizations can enhance the efficiency of their HITRUST compliance with A-LIGN’s compliance automation platform. A-SCEND integrates with AWS to automate evidence collection and continuously monitor cloud security in accordance with Center for Internet Security benchmarks.
Automating Secure and Scalable Website Deployment on AWS with Amazon CloudFront and AWS CDK
There is no easier way to run HTTPS-enabled static websites on AWS than by using Amazon CloudFront and Amazon S3. In this post, we’ll look at automating website deployment on AWS using AWS Cloud Development Kit (AWS CDK) and TypeScript. We’ll use the architecture that combines CloudFront as the content delivery network, AWS Certificate Manager for secure certificate provisioning, Amazon S3 for reliable website hosting, and Amazon Route 53 as the domain name system.
Malware Scanning for Regulated Workloads on AWS with Cloud Storage Security
Many of the requirements for meeting and maintaining a secure environment can be met by using AWS FedRAMP-authorized regions and services, which can simplify and reduce costs of the process. Over 2,000 government agencies and other entities that provide services to government agencies are using AWS services today. Learn how Antivirus for Amazon S3 by Cloud Storage Security can be used to automate malware scanning for application workflows or data ingestion pipelines to achieve data security and compliance.
AWS Security Competency Adds DSPM and TEAM Use Cases for ISV Partners
In today’s fast-evolving digital landscape, security remains a concern for organizations of all sizes. As the threat landscape evolves, so do the solutions that address these challenges. The AWS Security Competency for ISVs aligns partner cyber security offerings to the needs of AWS customers, which is why the program now includes the “Data Security Posture Management” use case in the Data Protection category, and the “Temporary Elevated Access Management” use case in the Identity and Access Management category.
Setting Up OpenID Connect with GitLab CI/CD to Provide Secure Access to Environments in AWS Accounts
When building out a CI/CD pipeline, there are ways to proactively harden your pipelines when they need to access environments in AWS accounts. Given that your pipeline will have create and destroy access to critical components of your AWS-based environments, it’s important to evaluate how GitLab Runner authenticates and authorizes for access to your AWS accounts. Learn how the new OpenID Connect (OIDC) for GitLab CI/CD jobs can help you access AWS services using GitLab.
Using Aviatrix Secure Networking to Simplify Multi-Cloud Connectivity and Fully Leverage AWS
As organizations continue to expand their cloud infrastructure, they have ongoing requirements to connect their AWS environments to other cloud providers. However, connecting different cloud networks seamlessly and securely can be a challenge due to varying networking architectures, security models, and operational tools. Learn how Aviatrix Systems simplifies this process and enables businesses to fully leverage AWS while easily connecting to other cloud providers.
Integrating Kasten K10 with Amazon GuardDuty for Security Monitoring
Kasten K10 by Veeam makes backing up and restoring data easy in the event of a security breach or unintended or unauthorized data manipulation. K10’s cloud-native philosophy inherently makes it easy to integrate into security monitoring systems without much effort. Learn about the Kubernetes Audit and how Kasten K10 natively integrates with it, and explore how to configure Amazon GuardDuty and find K10 events in Amazon CloudWatch logs which GuardDuty pulls from.
Importance and Impact of Compliance for SaaS Solutions on AWS
AWS experts break down what SaaS providers should consider in designing and building their compliant solution. We’ll dive into how achieving compliance will be an ongoing process, but regular monitoring and reporting can help make adhering to these frameworks a standard part of business operations. Good security controls, data privacy, and data management should be foundational components of a SaaS application from the beginning.
Accelerate SaaS Delivery onto DoD Networks with Game Warden from Second Front Systems
Software-as-a-service products have revolutionized private sector business operations in recent years, but despite the commercial sector’s demonstrated success with SaaS the U.S. Department of Defense (DoD) has been slow to adopt this new delivery model. Learn how the Game Warden platform, built by Second Front Systems, a DoD-compliant DevSecOps platform as a service that accelerates software delivery onto DoD networks while adhering to stringent cybersecurity controls.