AWS Public Sector Blog
Tag: security
Deploying AWS Modular Data Center: From ordering to delivery and installation
The Amazon Web Services (AWS) Modular Data Center (MDC) is a service that enables rapid deployment of AWS managed data centers for running location- or latency-sensitive applications in locations with limited infrastructure. It reduces deployment time in remote areas and supports up to five racks of AWS Outposts or AWS Snow Family devices. In this post, we guide you through the end-to-end process of deploying the MDC at your site.
Using Login.gov as an OIDC IdP with Amazon Cognito user pools
As federal agencies strive to enhance digital services and create a seamless customer experience, integrating robust identity and access management (IAM) solutions has become paramount. Amazon Cognito, a robust user identity management service offered by Amazon Web Services (AWS), provides a secure and scalable solution for managing user authentication and authorization. When combined with Login.gov, a trusted identity platform developed by the U.S. General Services Administration (GSA), federal agencies can unlock a powerful combination that streamlines user access while maintaining the highest levels of security and compliance.
The key components of CISA’s Malcolm on Amazon EKS
Malcolm is a powerful, open source network traffic analysis tool suite created by the Cybersecurity and Infrastructure Security Agency (CISA) to aid public and private sector customers in improving their network security monitoring and incident response. Malcolm is most commonly used for incident response, network monitoring, threat hunting, training, and research, but can be adapted for other use cases. In this post, we introduce you to the key components of Malcolm on Amazon Elastic Kubernetes Service (Amazon EKS).
AWS hosts inaugural Defense Industry Partner Forum
In August 2024, Amazon Web Services (AWS) convened more than 65 Defense Industrial Base (DIB) companies at Amazon’s HQ2 in Arlington, Virginia for the inaugural AWS Defense Industry Forum. The DIB consists of more than 100,000 companies and subcontractors, which support the U.S. Department of Defense (DoD), and AWS joins forces with DIB partners to provide global infrastructure and cutting-edge technology to outpace our adversaries. Read this post to learn more about the two-day event.
Mitigating inadvertent IPv6 prefix advertisement with AWS automation
As federal agencies migrate to the Trusted Internet Connections (TIC) 3.0 framework, they will use Amazon Web Services (AWS) to exit to the internet, bypassing the TIC network. This transition requires agencies to plan and coordinate migration activities to verify seamless IPv6 connectivity. Agencies need to coordinate advertising their IPv6 prefixes with AWS, using mechanisms like Bring your own IP addresses (BYOIP). The migration process could involve changes in routing policies, firewall rules, and security controls to accommodate the IPv6 prefix changes. Read this post to learn more.
University of British Columbia Cloud Innovation Centre: Governing an innovation hub using AWS management services
In January 2020, Amazon Web Services (AWS) inaugurated a Cloud Innovation Centre (CIC) at the University of British Columbia (UBC). The CIC uses emerging technologies to solve real-world problems and has produced more than 50 prototypes in sectors like healthcare, education, and research. The Centre’s work has involved 300-plus AWS accounts across various groups, including external collaborators, UBC staff, students, and researchers. This post discusses the management of AWS in higher education institutions, emphasizing governance to securely foster innovation without compromising security and detailing policies and responsibilities for managing AWS accounts across projects and research.
AWS Canada launches $5 million Provincial and Municipal Cyber Grant Program
On September 11, 2024, Amazon Web Services (AWS) announced the launch of the Provincial and Municipal Cyber Grant Program across Canada at the AWS Summit in Toronto. To help provincial and municipal governments implement cloud-based cybersecurity solutions, AWS is investing $5 million CAD in AWS credits to new and existing AWS customers.
Generative AI as a force for good in facilitating cyber-resiliency in public sector organizations
The Digital Transformation Hub (DxHub) at California Polytechnic State University (Cal Poly) in San Luis Obispo – powered by Amazon Web Services (AWS) and part of the AWS Cloud Innovation Centers (CIC) program – collaborated with the City of San Diego and the San Diego Cyber Center of Excellence (CCOE) to create ‘My eCISO,’ a generative artificial intelligence (AI)-based application that propels public and private organizations on a path to cyber resiliency. This post explores the technology behind My eCISO and its implications for organizations looking to protect against attacks.
Elevating credit unions: Transforming core banking on the AWS Cloud
Credit unions play a crucial role in communities by providing a diverse range of financial services driven by their members’ needs. These services, supported by core banking applications, form the backbone of credit union operations. Traditionally, credit unions use legacy systems for their core banking applications, such as lending, payments, and deposits. But these systems are monolithic, expensive, and lack open architecture, impacting credit unions’ abilities to deploy changes based on market demands. In this digital age, cloud computing offers a transformative solution, and as we will explain in this post, Amazon Web Services (AWS) stands at the forefront.
Dispelling the top 8 cloud myths holding back Canadian public sector IT transformation
This post addresses eight common misconceptions about cloud computing held by Canadian public sector organizations. It covers cloud security, cost savings, value beyond expenses, and cloud providers’ investments in Canada. The insights shared will equip public sector leaders to make informed decisions and leverage cloud computing’s potential.