AWS Partner Network (APN) Blog
Category: Security, Identity, & Compliance
Federate Single Sign-On Access to Amazon Athena Query Editor with OneLogin
The Amazon Athena web-based query editor enables data consumers to author and run SQL queries on data sources that are registered with the AWS Glue Data Catalog and other data sources such as Amazon S3. This post describes the setup to provide federated access with OneLogin as the identity provider to securely access, author, and run queries in the Athena web-based editor via the AWS console, without the need for users to install a JDBC driver or run a SQL client on their machines.
Access Affordable Policies with New Security Posture Assessment from AWS Cyber Insurance Competency Partners
We’re excited to announce the AWS Cyber Insurance Competency, which makes it easy for customers—particularly Small and Medium Businesses—to find affordable policies from insurers that integrate their security posture assessment through a new, simplified customer experience with AWS Security Hub. AWS Cyber Insurance Competency Partners worked with AWS to digitally transform their assessment and onboarding process, which rewards customers that present a security posture following AWS best practices.
How Vox Media Automates SaaS Security Risk Controls with DoControl
Security leaders face the dual challenge of cost reduction and resource optimization, while mitigating security threats throughout their organization. A SaaS Ecosystem Security (SES) allows you to centralize data across multiple applications to provide end-to-end visibility into your exposure. Learn how DoControl can help provide visibility, monitoring, and automated remediation to risks that can often be overlooked. DoControl enables customers to accelerate SaaS security risk controls with its SaaS Ecosystem Security.
Integrating Amazon Cognito with 1Kosmos BlockID for Enhanced Security and User Experience
Multi-factor authentication (MFA) enhances security for web and mobile applications by requiring additional identification methods other than a password. Providing a frictionless user experience with MFA often requires a variety of authentication options that support a range of users and devices. Learn how 1Kosmos BlockID and Amazon Cognito can help to balance security with usability when building customer facing applications.
Filter and Stream Logs from Amazon S3 Logging Buckets into Splunk Using AWS Lambda
This post showcases a way to filter and stream logs from centralized Amazon S3 logging buckets to Splunk using a push mechanism leveraging AWS Lambda. The push mechanism offers benefits such as lower operational overhead, lower costs, and automated scaling. We’ll provide instructions and a sample Lambda code that filters virtual private cloud (VPC) flow logs with “action” flag set to “REJECT” and pushes it to Splunk via a Splunk HTTP Event Collector (HEC) endpoint.
Using AWS Trusted Advisor to Drive Operational Excellence with Ensono Envision Advisor
AWS Trusted Advisor inspects your AWS environment and provides recommendations to optimize infrastructure, improve security and performance, reduce cost, and monitor service quotas. Ensono Envision Advisor turns AWS Trusted Adviser recommendations into validated, prioritized, actionable insights. It ingests data before enriching it with Ensono IP to contextualize recommendations specific to end customers, making it easier to achieve operational excellence on AWS.
From Idea to Market: AWS Marketplace Vendor Insights for Secure SaaS
In this post, AWS experts provide a step-by-step guide on how to navigate and leverage the AWS Partner Network (APN) and AWS Marketplace, depending on where you are in your development journey. We’ll demonstrate how your security and engineering teams can integrate continuous compliance controls and how to add compliance reports and certifications to your product profile as you obtain them. Finally, we’ll show the AWS customer’s experience of obtaining access to your product’s security information.
BeyondTrust’s Identity Security Insights SaaS Offering, Supported by AWS SaaS Factory
Delve into the BeyondTrust Identity Security Insights solution and its capacity to provide organizations with a comprehensive understanding of all identities, privileges, and access, thereby illuminating their direct influence on security posture. As we navigate through an era where cloud solutions are an indispensable component of business strategies and automation is deeply integrated into daily operations, the focal point has undeniably shifted towards identity security
Navigating Security Challenges and Committing to the Cloud with Axonius and AWS
Starting a cloud migration process without a comprehensive and contextual understanding of your assets can be challening. With all of the advantages a cloud environment can provide, let’s dive into how you can get started. In this post, dive into how Axonius Cybersecurity Asset Management together with AWS migration services can help lay a foundation for a customer’s cloud migration strategy.
Authenticate Kubecost Users with Application Load Balancer and Amazon Cognito
Amazon EKS has a collaboration with Kubecost, a Kubernetes and cloud cost management tool that helps customers monitor, track, optimize, and govern their cloud and Kubernetes spending. Kubecost can be installed easily in a few minutes, but many customers are looking for a cloud-native way to expose Kubecost UI for their internal team to access the costs report. This post describes how to authenticate Kubecost users via Application Load Balancer and Amazon Cognito.