SlideShare une entreprise Scribd logo
1  sur  13
Compliance and Security
on AWS
AWS Assurance
●

Shared Responsibility
–

●

Certifications & Audits
–

●

AWS has achieved ISO 27001 certification and has been validated as a Level 1 service provider
under the Payment Card Industry (PCI) Data Security Standard (DSS). AWS undergoes annual
SOC 1 audits.

Reports
–

●

AWS Compliance provides assurance related to the underlying infrastructure and your
organization owns the compliance initiatives related to anything placed on the AWS
infrastructure.

Customers can request the reports and certifications produced by AWS' third-party auditors
which attest to the design and operating effectiveness of the AWS environment.

Highly Secure Data Centers
–

AWS utilizes state-of-the-art electronic surveillance and multi-factor access control systems.
Access is authorized strictly on a least privileged basis.
AWS’ Alignment with Regulations and Standards

For more info: http://aws.amazon.com/compliance/
Security Features on AWS
●

Virtual Private Cloud
–

●

Identity & Access Management
–

●

AWS API call history enabling security analysis, resource change tracking, and compliance auditing

Encryption
–

●

extra level of security using an authentication device

Audit Trails (AWS CloudTrail)
–

●

Enable users from an existing directory (eg. Microsoft Active Directory) to access resources within your
AWS account

Multi-Factor Authentication
–

●

Unique security credentials, role separation and least privilege

Identity Federation
–

●

private subnets & IPsec VPN tunnels

Encrypted data storage using AES 256 and secure HTTP access (HTTPS) to API endpoints

Built-in firewalls
–

security groups & access control lists
Security Best Practices for Deployment on AWS
●

Enforce strong password policies

●

Secure Base AMIs

●

Regular Security updates & OS patches

●

Setup Bastion hosts

●

Setup a host based bi-directional firewall

●

Use Intrusion prevention systems

●

Perform regular Vulnerability Assessments

●

Log host level and application level events
A Few Enterprises on AWS

For more info: http://aws.amazon.com/solutions/case-studies/
Gartner’s Magic Quadrant on Cloud IaaS

http://www.gartner.com/technology/reprints.do?id=1-1IMDMZ5&ct=130819&st=sb
About Neev
Web

Mobile

Magento eCommerce
SaaS Applications
Video Streaming Portals

Rich Internet Apps
Custom Development

iPhone
Android
Windows Phone 7
HTML5 Apps

Cloud
AWS Consulting Partner
Rackspace
Joyent
Heroku
Google App Engine

Key Company Highlights
250+ team with
experience in managing
offshore, distributed
development.
Neev Technologies
established in Jan ’05

User Interface Design and User Experience Design

VC Funding in 2009 By
Basil Partners

Performance Consulting Practices

Part of Publicis Groupe

Quality Assurance & Testing
Outsourced Product Development

Member of NASSCOM.
Offices at Bangalore and
Pune.
Neev Cloud Services

Cloud Application
Design &
Development

Cloud
Infrastructure
Management

Architecting & Developing
for the Cloud

Cloud Deployments
& Monitoring

An Official AWS Solution Provider and a premier AWS Consulting partner
Using AWS since the year it was launched
Cloud and AWS Expertise @ Neev
Cloud Expertise
•
•
•
•
•
•
•
•
•
•
•

EC2
Auto-scale,ELB
Route53
S3, CloudFront
RDS
Elasticache
SQS
SES, SNS
IAM
CloudWatch
Elastic Beanstalk

•
•
•
•
•
•

Domains

Retail
eCommerce
Social
Education
Gaming
Video transformation &
delivery
• Custom ERP
• Marketing
A Few Clients
Partnerships
sales@neevtech.com

Neev Information Technologies Pvt. Ltd.
India - Bangalore

India - Pune

The Estate, # 121,6th Floor,

#13 L’Square, 3rd Floor

Dickenson Road

Parihar Chowk, Aundh,

Bangalore-560042

Pune – 411007.

Phone :+91 80 25594416

Phone : +91-64103338

For more info on our offerings, visit www.neevtech.com

Contenu connexe

Plus de Neev Technologies

Hybris Hackathon - Split Payments in Hybris
Hybris Hackathon - Split Payments in HybrisHybris Hackathon - Split Payments in Hybris
Hybris Hackathon - Split Payments in Hybris
Neev Technologies
 

Plus de Neev Technologies (20)

Razorfish India (Neev) Corporate Profile
Razorfish India (Neev) Corporate ProfileRazorfish India (Neev) Corporate Profile
Razorfish India (Neev) Corporate Profile
 
Adobe Experience Manager (Adobe CQ) Capabilities and Experience @ Neev
Adobe Experience Manager (Adobe CQ) Capabilities and Experience @ NeevAdobe Experience Manager (Adobe CQ) Capabilities and Experience @ Neev
Adobe Experience Manager (Adobe CQ) Capabilities and Experience @ Neev
 
Hybris Hackathon - Split Payments in Hybris
Hybris Hackathon - Split Payments in HybrisHybris Hackathon - Split Payments in Hybris
Hybris Hackathon - Split Payments in Hybris
 
Hybris Hackathon - Data Modeling
Hybris Hackathon - Data ModelingHybris Hackathon - Data Modeling
Hybris Hackathon - Data Modeling
 
RazorfishNeev Engagement Process
RazorfishNeev Engagement ProcessRazorfishNeev Engagement Process
RazorfishNeev Engagement Process
 
Gameathon @ Neev
Gameathon @ NeevGameathon @ Neev
Gameathon @ Neev
 
Building A Jewelry e-store - Now, sell your jewelry to the world!
Building A Jewelry e-store - Now, sell your jewelry to the world!Building A Jewelry e-store - Now, sell your jewelry to the world!
Building A Jewelry e-store - Now, sell your jewelry to the world!
 
Neev Load Testing Services
Neev Load Testing ServicesNeev Load Testing Services
Neev Load Testing Services
 
How to add Custom Font to your iOS-based App?
How to add Custom Font to your iOS-based App?How to add Custom Font to your iOS-based App?
How to add Custom Font to your iOS-based App?
 
Our Experience on Google Map Integration with Apps
Our Experience on Google Map Integration with AppsOur Experience on Google Map Integration with Apps
Our Experience on Google Map Integration with Apps
 
Neev Application Performance Management Services
Neev Application Performance Management ServicesNeev Application Performance Management Services
Neev Application Performance Management Services
 
Drupal Capabilities @ Neev
Drupal Capabilities @ NeevDrupal Capabilities @ Neev
Drupal Capabilities @ Neev
 
Neev CakePHP Managed Services Offerings
Neev CakePHP Managed Services OfferingsNeev CakePHP Managed Services Offerings
Neev CakePHP Managed Services Offerings
 
Neev AngularJS Capabilities
Neev AngularJS CapabilitiesNeev AngularJS Capabilities
Neev AngularJS Capabilities
 
Mobile Responsive Design @ Neev
Mobile Responsive Design @ NeevMobile Responsive Design @ Neev
Mobile Responsive Design @ Neev
 
Business Intelligence Capabilities @ Neev
Business Intelligence Capabilities @ NeevBusiness Intelligence Capabilities @ Neev
Business Intelligence Capabilities @ Neev
 
Neev Conversion Strategy Capabilities
Neev Conversion Strategy CapabilitiesNeev Conversion Strategy Capabilities
Neev Conversion Strategy Capabilities
 
RazorfishNeev - An Overview
RazorfishNeev - An OverviewRazorfishNeev - An Overview
RazorfishNeev - An Overview
 
A Digital Mirror for Luxury Jewelry Stores
A Digital Mirror for Luxury Jewelry StoresA Digital Mirror for Luxury Jewelry Stores
A Digital Mirror for Luxury Jewelry Stores
 
Neev Open Source Contributions
Neev Open Source ContributionsNeev Open Source Contributions
Neev Open Source Contributions
 

Dernier

Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Safe Software
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
panagenda
 

Dernier (20)

"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers:  A Deep Dive into Serverless Spatial Data and FMECloud Frontiers:  A Deep Dive into Serverless Spatial Data and FME
Cloud Frontiers: A Deep Dive into Serverless Spatial Data and FME
 
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu SubbuApidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
 
A Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source MilvusA Beginners Guide to Building a RAG App Using Open Source Milvus
A Beginners Guide to Building a RAG App Using Open Source Milvus
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
Connector Corner: Accelerate revenue generation using UiPath API-centric busi...
 
Navi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Navi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot ModelNavi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Navi Mumbai Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Ransomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdfRansomware_Q4_2023. The report. [EN].pdf
Ransomware_Q4_2023. The report. [EN].pdf
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
GenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdfGenAI Risks & Security Meetup 01052024.pdf
GenAI Risks & Security Meetup 01052024.pdf
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024MINDCTI Revenue Release Quarter One 2024
MINDCTI Revenue Release Quarter One 2024
 
ICT role in 21st century education and its challenges
ICT role in 21st century education and its challengesICT role in 21st century education and its challenges
ICT role in 21st century education and its challenges
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
Why Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire businessWhy Teams call analytics are critical to your entire business
Why Teams call analytics are critical to your entire business
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Exploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone ProcessorsExploring the Future Potential of AI-Enabled Smartphone Processors
Exploring the Future Potential of AI-Enabled Smartphone Processors
 

Compliance and Security on AWS

  • 2. AWS Assurance ● Shared Responsibility – ● Certifications & Audits – ● AWS has achieved ISO 27001 certification and has been validated as a Level 1 service provider under the Payment Card Industry (PCI) Data Security Standard (DSS). AWS undergoes annual SOC 1 audits. Reports – ● AWS Compliance provides assurance related to the underlying infrastructure and your organization owns the compliance initiatives related to anything placed on the AWS infrastructure. Customers can request the reports and certifications produced by AWS' third-party auditors which attest to the design and operating effectiveness of the AWS environment. Highly Secure Data Centers – AWS utilizes state-of-the-art electronic surveillance and multi-factor access control systems. Access is authorized strictly on a least privileged basis.
  • 3. AWS’ Alignment with Regulations and Standards For more info: http://aws.amazon.com/compliance/
  • 4. Security Features on AWS ● Virtual Private Cloud – ● Identity & Access Management – ● AWS API call history enabling security analysis, resource change tracking, and compliance auditing Encryption – ● extra level of security using an authentication device Audit Trails (AWS CloudTrail) – ● Enable users from an existing directory (eg. Microsoft Active Directory) to access resources within your AWS account Multi-Factor Authentication – ● Unique security credentials, role separation and least privilege Identity Federation – ● private subnets & IPsec VPN tunnels Encrypted data storage using AES 256 and secure HTTP access (HTTPS) to API endpoints Built-in firewalls – security groups & access control lists
  • 5. Security Best Practices for Deployment on AWS ● Enforce strong password policies ● Secure Base AMIs ● Regular Security updates & OS patches ● Setup Bastion hosts ● Setup a host based bi-directional firewall ● Use Intrusion prevention systems ● Perform regular Vulnerability Assessments ● Log host level and application level events
  • 6. A Few Enterprises on AWS For more info: http://aws.amazon.com/solutions/case-studies/
  • 7. Gartner’s Magic Quadrant on Cloud IaaS http://www.gartner.com/technology/reprints.do?id=1-1IMDMZ5&ct=130819&st=sb
  • 8. About Neev Web Mobile Magento eCommerce SaaS Applications Video Streaming Portals Rich Internet Apps Custom Development iPhone Android Windows Phone 7 HTML5 Apps Cloud AWS Consulting Partner Rackspace Joyent Heroku Google App Engine Key Company Highlights 250+ team with experience in managing offshore, distributed development. Neev Technologies established in Jan ’05 User Interface Design and User Experience Design VC Funding in 2009 By Basil Partners Performance Consulting Practices Part of Publicis Groupe Quality Assurance & Testing Outsourced Product Development Member of NASSCOM. Offices at Bangalore and Pune.
  • 9. Neev Cloud Services Cloud Application Design & Development Cloud Infrastructure Management Architecting & Developing for the Cloud Cloud Deployments & Monitoring An Official AWS Solution Provider and a premier AWS Consulting partner Using AWS since the year it was launched
  • 10. Cloud and AWS Expertise @ Neev Cloud Expertise • • • • • • • • • • • EC2 Auto-scale,ELB Route53 S3, CloudFront RDS Elasticache SQS SES, SNS IAM CloudWatch Elastic Beanstalk • • • • • • Domains Retail eCommerce Social Education Gaming Video transformation & delivery • Custom ERP • Marketing
  • 13. sales@neevtech.com Neev Information Technologies Pvt. Ltd. India - Bangalore India - Pune The Estate, # 121,6th Floor, #13 L’Square, 3rd Floor Dickenson Road Parihar Chowk, Aundh, Bangalore-560042 Pune – 411007. Phone :+91 80 25594416 Phone : +91-64103338 For more info on our offerings, visit www.neevtech.com