AWS Public Sector Blog

Category: Security, Identity, & Compliance

https://app.asana.com/1/8442528107068/project/1207199896111772/task/1214439772201800?focus=true

Preventive controls for FedRAMP 20x: Using SCPs and guardrails to enforce KSIs

Why preventive controls matter for FedRAMP 20x Organizations strengthen their security posture when Amazon Web Services (AWS) cloud resources consistently align with security and regulatory requirements. Preventive security controls, which are designed to minimize or avoid threat events, help enforce these requirements before misconfigurations are deployed. In this post, we show how service control policies […]

Evaluating ITAR workloads in US commercial AWS Regions

Evaluating ITAR workloads in US commercial AWS Regions

This post distills how one Amazon Web Services (AWS) customer in the defense and aerospace industry interpreted the U.S. International Traffic in Arms Regulations (ITAR) and concluded that U.S. commercial AWS Regions could support their export-controlled workloads, including AI workloads, when configured appropriately.

Introducing AWS Cloud WAN in AWS GovCloud (US) Regions

Introducing AWS Cloud WAN in AWS GovCloud (US) Regions

In this post, we cover the use cases for AWS Cloud WAN in AWS GovCloud (US), walk through the key capabilities now available to government organizations and regulated industries, provide guidance on getting started, and discuss important considerations for deployment.

Why the location of your AI agent is a security decision

Why the location of your AI agent is a security decision

Learn how Amazon Web Services (AWS) operates inside a scoped compute environment with an AWS Identity and Access Management (IAM) execution role, network segmentation, and defense-in-depth security meeting FISMA, FedRAMP, and DoD CCSRG standards.

A governance framework for building trustworthy agentic AI for public sector and regulated organizations

A governance framework for building trustworthy agentic AI for public sector and regulated organizations

This post outlines a practical governance framework for agentic AI systems, with a focus on public sector and other highly regulated environments. It introduces a scope-based model for classifying agent autonomy, identifies core security dimensions, and describes how organizations can align agentic AI governance with existing risk, compliance, and assurance programs.

Transforming federal IT with Datadog's FedRAMP Class D (High) solution

Transforming federal IT with Datadog’s FedRAMP Class D (High) solution

In this post, we explore how federal agencies can accelerate modernization, improve cybersecurity incident response, and support continuous compliance monitoring using Datadog’s FedRAMP High authorized observability and security platform.

CMMC Level 2 compliance on AWS: Why control ownership is where organizations struggle

CMMC Level 2 compliance on AWS: Why control ownership is where organizations struggle

This post brings guidance on Customer Responsibility Matrices (CRMs), authorization boundary definitions, and multi-provider control ownership into a single actionable framework for defense contractors preparing for third-party assessment.

Scaling biomedical research on AWS: A cloud-native approach to scientific data management

Scaling biomedical research on AWS: A cloud-native approach to scientific data management

This post explores how cloud-native architectures built using Amazon Web Services (AWS) help research institutions manage, curate, publish, and analyze complex scientific datasets at scale.