AWS Public Sector Blog
Category: Security, Identity, & Compliance
How the Maritime Cloud Environment accelerates Navy shipbuilding
In this post, you will learn how the Maritime Cloud Environment (MCE) addresses these challenges by offering suppliers a secure, compliant, Navy-provided Amazon Web Services (AWS) Cloud environment for digital engineering collaboration.
Preventive controls for FedRAMP 20x: Using SCPs and guardrails to enforce KSIs
Why preventive controls matter for FedRAMP 20x Organizations strengthen their security posture when Amazon Web Services (AWS) cloud resources consistently align with security and regulatory requirements. Preventive security controls, which are designed to minimize or avoid threat events, help enforce these requirements before misconfigurations are deployed. In this post, we show how service control policies […]
Evaluating ITAR workloads in US commercial AWS Regions
This post distills how one Amazon Web Services (AWS) customer in the defense and aerospace industry interpreted the U.S. International Traffic in Arms Regulations (ITAR) and concluded that U.S. commercial AWS Regions could support their export-controlled workloads, including AI workloads, when configured appropriately.
Introducing AWS Cloud WAN in AWS GovCloud (US) Regions
In this post, we cover the use cases for AWS Cloud WAN in AWS GovCloud (US), walk through the key capabilities now available to government organizations and regulated industries, provide guidance on getting started, and discuss important considerations for deployment.
Why the location of your AI agent is a security decision
Learn how Amazon Web Services (AWS) operates inside a scoped compute environment with an AWS Identity and Access Management (IAM) execution role, network segmentation, and defense-in-depth security meeting FISMA, FedRAMP, and DoD CCSRG standards.
A governance framework for building trustworthy agentic AI for public sector and regulated organizations
This post outlines a practical governance framework for agentic AI systems, with a focus on public sector and other highly regulated environments. It introduces a scope-based model for classifying agent autonomy, identifies core security dimensions, and describes how organizations can align agentic AI governance with existing risk, compliance, and assurance programs.
Transforming federal IT with Datadog’s FedRAMP Class D (High) solution
In this post, we explore how federal agencies can accelerate modernization, improve cybersecurity incident response, and support continuous compliance monitoring using Datadog’s FedRAMP High authorized observability and security platform.
A governance framework for nonprofit agentic AI on AWS
In this post, I outline a governance framework that addresses these problems through features of Amazon Bedrock AgentCore. By following the practices outlined here, you can gain confidence to run your agentic AI workloads in highly demanding situations.
CMMC Level 2 compliance on AWS: Why control ownership is where organizations struggle
This post brings guidance on Customer Responsibility Matrices (CRMs), authorization boundary definitions, and multi-provider control ownership into a single actionable framework for defense contractors preparing for third-party assessment.
Scaling biomedical research on AWS: A cloud-native approach to scientific data management
This post explores how cloud-native architectures built using Amazon Web Services (AWS) help research institutions manage, curate, publish, and analyze complex scientific datasets at scale.









