AWS Public Sector Blog

Category: Security, Identity, & Compliance

AWS branded background design with text overlay that says "Web filtering for education using AWS Network Firewall"

Web filtering for education using AWS Network Firewall

Managing access to websites and safeguarding users from harmful content is a critical component of a layered cybersecurity approach, especially in educational settings. Schools and institutions of higher learning have a responsibility to provide a secure online experience for their students and staff. Traditionally, this has been accomplished through on-site web filtering appliances. Amazon Web Services ( AWS) Network Firewall allows customers to filter their outbound web traffic from on-premises environments based on fully qualified domain names (FQDN) or Server Name Indication (SNI) for encrypted traffic. This post will use AWS Client VPN to demonstrate routing and filtering traffic from external resources through Network Firewall.

AWS branded background design with text overlay that says "The Department of the Navy adds AWS Marketplace to its Enterprise Software Licensing program"

The Department of the Navy adds AWS Marketplace to its Enterprise Software Licensing program

The Department of the Navy (DoN) modified its blanket purchase agreement (BPA) with Amazon Web Services (AWS) to provide U.S. Navy and Marine Corps Organizations streamlined access to AWS Partners solutions available in AWS Marketplace. AWS Marketplace provides Navy and Marine Corps Organization access to commercial software and services from more than 4,000 trusted providers – accelerating procurement and modernization, improving controls and visibility, and optimizing IT spend.

AWS branded background design with text overlay that says "How to transfer data to the CISA Cloud Log Aggregation Warehouse (CLAW) using Amazon S3"

How to transfer data to the CISA Cloud Log Aggregation Warehouse (CLAW) using Amazon S3

In this post, we show you how you can push or pull your security telemetry data to the National Cybersecurity Protection System (NCPS) Cloud Log Aggregation Warehouse (CLAW) using Amazon Web Services (AWS) Simple Storage Service (Amazon S3) or third-party solutions.

AWS branded background image with text overlay that says "How AWS helps agencies meet OMB AI governance requirements"

How AWS helps agencies meet OMB AI governance requirements

The Amazon Web Services (AWS) commitment to safe, transparent, and responsible artificial intelligence (AI)—including generative AI—is reflected in our endorsement of the White House Voluntary AI Commitments, our participation in the UK AI Safety Summit, and our dedication to providing customers with features that address specific challenges in this space. In this post, we explore how AWS can help agencies address the governance requirements outlined in the Office of Management and Budget (OMB) memo M-2410 as public sector entities look to build internal capacity for AI.

AWS branded background design with text overlay that says "Approaches for creating FedRAMP high/moderate impact workloads solutions OCONUS using AWS"

Approaches for creating FedRAMP high/moderate impact workloads solutions OCONUS using AWS

Numerous US government agencies operate missions outside of the United States. However, they often encounter challenges with limited network bandwidth and unreliable connections from these overseas locations, making it difficult to efficiently use workloads deployed on US soil. To enhance the customer experience and ensure secure access to these workloads, the overseas postings are now exploring hybrid distributed solutions that run closer to the edge. This post delves into the details of these solutions and their potential benefits for federal agencies.

AWS branded background design with text overlay that says "Generative AI for public agencies: 5 best practices for secure implementation"

Generative AI for public agencies: 5 best practices for secure implementation

Generative artificial intelligence (AI) is revolutionizing public agencies by streamlining services and providing valuable insights from large datasets. However, adding generative AI to your agency is not a simple process. SMX, an Amazon Web Services (AWS) Premier Tier Services Partner, helped one nonprofit agency build a robust architecture in the AWS Cloud that provided them the foundation for building and implementing generative AI tools. In this guest post, experts from SMX explain five best practices they used to help this agency prepare for generative AI.

AWS branded background design with text overlay that says "Reimagining customer experience with AI-powered conversational service discovery"

Reimagining customer experience with AI-powered conversational service discovery

In this post, we will explore the use of generative artificial intelligence (AI) chatbots as a natural language alternative to the service catalog approach. We will present an Amazon Web Services (AWS) architecture pattern to deploy an AI chatbot that can understand user requests in natural language and provide interactive responses to user requests, directing them to the specific systems or services they are looking for. Chatbots simplify the content navigation and discovery process while improving the customer experience.

AWS branded background design with text overlay that says "Five need-to-know facts about using the AWS Cloud for K12 cyber-resiliency"

Five need-to-know facts about using the AWS Cloud for K12 cyber-resiliency

K12 leaders need tangible solutions and tactics for improving their school’s or district’s cyber-resilience in the coming school year, and Amazon Web Services (AWS) is committed to supporting schools and districts as they enhance the cybersecurity of their networks. Recently, AWS joined the White House, the Department of Homeland Security, and the Department of Education—among other leaders in the government and education community—to commit to improving the cybersecurity resilience of K12 education. As part of this commitment, AWS created the K12 Cyber Grant Program, offering up to $20 million in AWS Promotional Credits to both new and existing K12 customers.

AWS branded background design with text overlay that says "Building compliant healthcare solutions using Landing Zone Accelerator"

Building compliant healthcare solutions using Landing Zone Accelerator

In this post, we explore the complexities of data privacy and controls on Amazon Web Services (AWS), examine how creating a landing zone within which to contain such data is important, and highlight the differences between creating a landing zone from scratch compared with using the AWS Landing Zone Accelerator (LZA) for Healthcare. To aid explanation, we use a simple healthcare workload as an example. We also explain how LZA for Healthcare codifies HIPAA controls and AWS Security Best Practices to accelerate the creation of an environment to run protective health information workloads in AWS.