Listing Thumbnail

    Accenture Secure AI Enclave Accelerator for Amazon Bedrock & AgentCore

     Info
    Sold by: Accenture 
    Accenture deploys a security-hardened Amazon Bedrock and AgentCore foundation into your AWS account with IaC, guardrails, and federated identity aligned to NIST AI RMF and OWASP LLM Top 10.

    Overview

    Organizations adopting generative AI on Amazon Bedrock need safety, privacy, and access controls in place before they reach production. The Secure AI Enclave Accelerator from Accenture productizes that work into a repeatable, infrastructure-as-code engagement that deploys a security-hardened Bedrock and Bedrock AgentCore foundation into your own AWS account - then hands it off with full source code, documentation, and knowledge transfer.

    Two Deployment Configurations

    Guardrails + Security Baseline: delivers layered Amazon Bedrock Guardrails that include PII masking and blocking, content filters (including prompt-injection defense), denied topics, and custom word/regex policies. The guardrails are enforced account/organization-wide and can also be customized at the agent-level. AWS Organizations service control policies limit Bedrock foundation model and region access and agentic activity is monitored via a custom CloudWatch logging dashboard.

    Guardrails + AgentCore Gateway: adds the secure-agent platform: a managed gateway for tool/MCP calls, fine-grained access control via JWT scopes (FGAC), federated inbound identity, and request/response interceptors that authorize and apply guardrails to tool calls and tool responses - with model-level guardrails applied on the agent's Bedrock invocations.

    Three Engagement Sizes

    • Basic - Focused single-account deployment for teams ready to stand up guardrails quickly. Ideal for organizations with a defined scope and limited multi-account complexity.
    • Standard - Multi-account environments with broader governance requirements, additional policy customization, and deeper integration with existing identity infrastructure.
    • Advanced - Multi-account, multi-region deployments with full organizational governance, industry overlays, and extended knowledge transfer for large security and platform teams.

    Each tier follows a structured milestone sequence: Discovery and Requirements Baseline, Design Review, IaC Deployment and Guardrail Configuration, Testing and Validation, Knowledge Transfer and Sign-off. Accenture delivers all tiers as fixed-scope engagements with defined deliverables at each milestone.

    Framework-Anchored Security Posture

    Engagements are designed against recognized references - NIST AI RMF and its Generative AI Profile, the OWASP LLM Top 10, and CIS Controls - and align to AWS Foundational Security Best Practices (least-privilege IAM, encryption, auditable logging). The accelerator ships with a structured AI security-requirements baseline used for design review.

    Industry Overlays

    Optional additive guardrail policy packs tuned for Healthcare, Financial Services, Public Sector, Legal, and Pharma/Life Sciences - adding domain-specific PII/identifier handling, denied topics, and (for Public Sector) GovCloud region enforcement plus CUI/classification controls. These packs accelerate your compliance program for regimes such as HIPAA, PCI DSS/GLBA, and GxP/21 CFR Part 11. They are policy accelerators, not a substitute for formal certification or authorization (e.g., a FedRAMP ATO).

    Federated Identity

    Amazon Cognito, Okta, and Microsoft Entra ID are supported as production identity providers. Additional OIDC-compatible providers are integrated per engagement. SAML 2.0 identity providers are supported through federation to an OIDC broker (e.g., Amazon Cognito).

    Delivery Model and Next Steps

    Deployed into client-owned, client-operated AWS accounts as a reference implementation (not a black box). Additional add-ons include inbound identity providers, AgentCore Memory, the Cedar policy engine, and outbound third-party SaaS authentication. An optional Managed Service wraps any configuration with ongoing operations, tuning, monitoring, and compliance maintenance.

    To determine which engagement size and configuration fits your organization, request a scoping assessment through the contact option on this listing. Accenture will conduct a discovery session to evaluate your environment, security requirements, and timeline - then recommend the appropriate tier and any applicable industry overlays.

    Highlights

    • Security-hardened Amazon Bedrock foundation deployed as infrastructure-as-code (AWS CDK), including Bedrock Guardrails with PII masking, content filtering, denied topics, and prompt-injection protections. Enforced organization-wide through AWS Organizations SCPs and resource-based guardrail policies. Implements least-privilege IAM, encryption, and centralized logging aligned to AWS Foundational Security Best Practices. Delivered through discovery, deployment, and knowledge transfer milestones.
    • Secure agent platform on Bedrock AgentCore Gateway: fine-grained JWT-scope tool access control (FGAC), federated inbound identity with Cognito, Microsoft Entra ID, or Okta in production (any modern OIDC/SAML 2.0 IdP per engagement), and request/response guardrail interceptors on every tool call. Full source code, runbooks, and documentation delivered to your team for ongoing ownership and operation.
    • Framework-anchored and industry-ready: security posture mapped to NIST AI RMF, OWASP LLM Top 10, and CIS Controls. Optional vertical overlays for Healthcare, Financial Services, Public Sector, Legal, and Pharma/Life Sciences accelerate compliance for HIPAA, PCI DSS/GLBA, and GxP regimes. Optional Managed Service available for ongoing operations, tuning, monitoring, and compliance maintenance.

    Details

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    Contact Supplier for Support - acn.apn@accenture.com