AWS Public Sector Blog

Category: Management Tools

Automate cross-partition AWS GovCloud (US) account bootstrapping

Automate cross-partition AWS GovCloud (US) account bootstrapping

In the post Automate AWS GovCloud (US) account creation using AWS Organizations APIs, we showed how to programmatically create GovCloud (US) accounts using AWS Organizations APIs. That post ends at account creation—the new accounts exist but the standard account remains in the organization root while the GovCloud (US) account remains a standalone account. You must manually complete the steps to join a GovCloud (US) organization and move accounts to the correct organizational units (OUs).

How Pariveda built real-time clinical voice notes for Henry Schein One using Amazon Nova and Amazon Bedrock AgentCore

How Pariveda built real-time clinical voice notes for Henry Schein One using Amazon Nova and Amazon Bedrock AgentCore

In this post, we show how Pariveda and Amazon Web Services (AWS) worked with HS1 to build real-time voice documentation for dental visits. The solution uses Amazon Transcribe for streaming speech recognition and Amazon Bedrock for structured note generation and orchestration. We also explain the architectural choices required to support real-time performance, template-driven output, security controls, and production scale.

Continuous monitoring under FedRAMP 20x: Replacing annual assessments with persistent validation

Continuous monitoring under FedRAMP 20x: Replacing annual assessments with persistent validation

Under legacy Federal Risk and Authorization Management Program (FedRAMP) Rev5, continuous monitoring meant monthly deliverables and annual assessments. Under FedRAMP 20x, it means persistent, automated validation where the status of your security posture is always known. In this post, we operationalize that model using AWS Security Hub, AWS Config conformance packs, Amazon GuardDuty, Amazon Inspector, and Sigma detection rules to build an always-on monitoring architecture.

AWS expands its Defending Digital Campaigns offering for the 2026 election cycle

AWS expands its Defending Digital Campaigns offering for the 2026 election cycle

This post describes the program for the 2026 cycle, the services it covers, and how eligible campaigns and committees can enroll. Since AWS first joined DDC in 2020 and expanded the offering in 2022 and again in 2024, eligible campaigns and committees of any size and on either side of the aisle have used these services to protect the data, identities, and applications they rely on through Election Day.

What HCLS security teams can do this quarter to close the execution gap

What HCLS security teams can do this quarter to close the execution gap

Most security teams know what’s needed to defend their organization. Regulatory guidance is available, threat intelligence sharing has increased, and risks are well-documented. So why are healthcare and life sciences (HCLS) groups, from commercial payors to public health systems, still facing recurring incidents or falling behind in protecting sensitive information? The answer is the execution gap: the space between knowing what to do and the ability to get it done.

Building machine-readable FedRAMP 20x evidence on AWS

In this post, we walk through the evidence pipeline, from Amazon Web Services (AWS) Config evaluations and AWS Security Hub findings through transformation and storage, to producing the dual-format output that satisfies FedRAMP 20x Phase 2 completeness requirements.

The Signal-Activated Agent Pattern: A reference architecture for proactive government AI

The Signal-Activated Agent Pattern: A reference architecture for proactive government AI

In Part 2 of our two-part series, we discuss the architecture of the Signal-Activated Agent Pattern and its application for proactive government AI. For Part 1, see Signal-activated generative AI: How agencies can reach more people and react faster.