AWS Public Sector Blog

Category: AWS Identity and Access Management (IAM)

AWS expands its Defending Digital Campaigns offering for the 2026 election cycle

AWS expands its Defending Digital Campaigns offering for the 2026 election cycle

This post describes the program for the 2026 cycle, the services it covers, and how eligible campaigns and committees can enroll. Since AWS first joined DDC in 2020 and expanded the offering in 2022 and again in 2024, eligible campaigns and committees of any size and on either side of the aisle have used these services to protect the data, identities, and applications they rely on through Election Day.

https://app.asana.com/1/8442528107068/project/1207199896111772/task/1215597699950048?focus=true

How ITHAKA built an on-demand PDF remediation pipeline on AWS

In this post, we describe how ITHAKA and Amazon Web Services (AWS) collaborated to build an on-demand PDF accessibility pipeline that remediates documents when users need them, serving researchers while using nonprofit resources responsibly. For organizations managing a large document collection under accessibility compliance deadlines, this post shows there is an affordable, practical path forward that doesn’t require converting an entire library upfront.

State of Kansas modernizes mainframe file transfer using AWS Transfer Family

State of Kansas modernizes mainframe file transfer using AWS Transfer Family

In this post, we walk through how OSM partnered with Sierra-Cedar, an AWS Premier Consulting Partner, to design, build, and deploy FileVault—a secure file transfer solution powered by AWS Transfer Family and Amazon Simple Storage Service (Amazon S3)—while preserving the user experience that state employees already knew and trusted.

Run SAP workloads at DoD Impact Level 5 with SAP NS2 on AWS GovCloud (US)

Run SAP workloads at DoD Impact Level 5 with SAP NS2 on AWS GovCloud (US)

In this post, we explain what IL5 requires, how AWS GovCloud (US) and SAP NS2 meet those requirements together, and how defense organizations can get started.

https://app.asana.com/1/8442528107068/project/1207199896111772/task/1214563334767899?focus=true

Deploy AI agents in AWS GovCloud (US) using Amazon Bedrock AgentCore

In this blog, learn more about the availability of Amazon Bedrock AgentCore in the AWS GovCloud (US-West) Region, giving government and regulated industries a fully managed solution to build, deploy, and operate AI agents at production scale, without needing to manage the underlying infrastructure. This launch is part of Amazon’s broader commitment to invest more than $50 billion in cloud and AI infrastructure, giving government customers access to the same cutting-edge AI capabilities available in commercial Regions.

Distributed generative AI for government

Distributed generative AI for government

A distributed approach, one that brings generative AI to the data rather than the reverse, is achievable today using Amazon Web Services (AWS) solutions such as Amazon Bedrock for orchestration, Amazon Neptune for data lineage, and AWS Identity and Access Management (IAM) for source-point security enforcement.

Safekeeping your data anywhere: How AWS and Expando help European governments protect data from the edge to the cloud

Safekeeping your data anywhere: How AWS and Expando help European governments protect data from the edge to the cloud

Amazon Web Services (AWS) is collaborating with Expando, a Swedish defense technology company, to help European public sector organizations build exactly that kind of layered, resilient data infrastructure. Together, AWS and Expando offer a connected approach to data protection that spans rugged edge deployments, disconnected field operations, customer-owned secure locations, and the full power of the AWS Cloud.

How eduroam empowers its community through real-time analytics with Amazon Quick Sight

How eduroam empowers its community through real-time analytics with Amazon Quick Sight

For the more than 2,800 administrators across approximately 1,200 participating institutions in the US, that means access to near daily provided to them through Amazon Quick Sight on Amazon Web Services (AWS) by the eduroam team at Internet2. However, this wasn’t always the case. This post walks through how the eduroam team modernized their data reporting pipeline, the architecture behind it, and the impact it’s had on institutional engagement.

TOLAP: Closing the data-object security gap in AI agent architectures

TOLAP: Closing the data-object security gap in AI agent architectures

Every major agent framework has a security model for this. Amazon Web Services (AWS), Microsoft, and Google each ship agent solutions with authentication and credential management built in. Amazon Bedrock Agents, for example, enforces AWS Identity and Access Management (IAM)-based authorization on which AWS Lambda functions, Amazon Simple Storage Service (Amazon S3) buckets, and Amazon Bedrock Knowledge Bases an agent might invoke.

Accelerate IRAP readiness with AWS and Wiz

Accelerate IRAP readiness with AWS and Wiz

As organisations modernise to meet the evolving expectations of the Australian Government, delivering secure, cloud-based services has become a commercial and operational necessity. This transformation brings a critical challenge: maintaining a hardened security posture while aligning to the Information Security Registered Assessors Program (IRAP) assessment requirements and priorities.