AWS is introducing the ability to centrally manage root access for accounts in an AWS Organization via AWS Identity and Access Management (IAM). Previously, AWS accounts with root access needed to be secured with layers of protection like multi-factor authentication, which security teams needed to manage manually and involved tasks like routinely rotating credentials, securely … continue reading
AWS is introducing resource control policies (RCPs) to enable organizations to control the maximum available permissions for their company’s AWS resources. According to AWS, RCPs can help organizations be more confident that the resources in their user accounts stay within their company’s access control guidelines. RCPs are similar to service control policies (SCPs), which control … continue reading
AWS has released a new solution designed to make it easier to get started with infrastructure automation. AWS Console-to-Code allows users to record the console actions they are performing and have those actions converted to code for later use. Code can be generated in several different infrastructure-as-code (IaC) formats, like an AWS CloudFormation template (YAML … continue reading
AWS is announcing the launch of AWS Parallel Computing Service (PCS), a new managed service that sets up and manages high performance computing (HPC) clusters. HPC brings together multiple computers or resources to tackle more complex or resource-intensive workloads, like computational fluid dynamics, weather modeling, finite element analysis, electronic design automation, and reservoir simulations. With … continue reading
AWS has just announced that customers can now create pools, or groups, of non-persistent virtual desktops through Amazon WorkSpaces. These pools can then be shared across a group of users, and each user in a pool gets the same applications and experience. According to AWS, users can access the virtual desktops via a browser, desktop … continue reading
AWS has announced the launch of a common control library in AWS Audit Manager, its tool for mapping compliance requirements to AWS usage. The new library provides common controls that are already mapped to AWS data sources, which are based on mapping and reviews conducted by AWS auditors. It also provides the ability to view … continue reading
Kyndryl has announced a new collaboration with AWS to provide its customers better insights into threats in their AWS environments. Kyndryl Threat Insights Managed Service provides a central repository for security data from AWS using Amazon Security Lake. By being able to access security data from a single view, companies will be able to uncover … continue reading
Cloud Console Cartographer is an open-source project that allows IT teams to more easily read and understand cloud logs from AWS. “If you’ve spent any amount of time digging through logs trying to triage activity in an environment, you’ve probably been overwhelmed with the log data that comes from console activity,” explained Daniel Bohannon, principal … continue reading
AWS has announced the general availability of Amazon GuardDuty EC2 Runtime Monitoring. Amazon GuardDuty is a monitoring and threat detection solution for AWS data sources, and the company has already introduced Runtime Monitoring for other AWS services, including EKS, ECS, and AWS Fargate. Now the capability is being expanded to EC2 instances. According to AWS, … continue reading
AWS is launching a new solution aimed at companies operating in the European Union (EU). The new AWS European Sovereign Cloud is separated from the existing AWS Regions in the area and includes more options for deployment. The company launched this new cloud in an effort to help companies meet “data residency, operational autonomy, and … continue reading
The FinOps platform Finout has announced the release of its Cost Optimizer for AWS, which uses AI to reduce bills by up to 60%. To save customers money, it evaluates changes in usage patterns and then identifies the optimal Reserved Instance capacity that a customer needs to meet its targets. Then, if usage drops, Finout … continue reading
Amazon recently announced the general availability of Security Lake, which automatically centralizes an organization’s security data from across their AWS environments, leading SaaS providers, on-premises environments, and cloud sources into a data lake. The tool adapts and standardizes incoming security data to align with the Open Cybersecurity Schema Framework (OCSF), which is a universally accepted … continue reading