SlideShare uma empresa Scribd logo
1 de 4
By
Ghazanfar Latif (Gabe)
gabe@prebinary.com
*Security Enabling
for Cloud
Availability Zone A
Amazon
S3
VPC
EBS 3
EBS 2
EBS 1
EC2 Server
Kerberos MIT tools
Web EHR App
Apache
X509
PHP
Amazon Management Console Security Setting,
SNS, Elastic IP, MFA
www.abc.com
US West Region
Cloud EHR Deployment Architecture (Basic)
Availability Zone A
Amazon
S3
VPC
EBS 3
EBS 2
EBS 1
EC2 Server
Kerberos MIT tools
Web EHR App
Apache
X509
PHP
Amazon Management Console Security Setting,
SNS, Elastic IP, MFA
www.abc.com
US West Region
MFA: Will use Multi
Factor Authentication
device to Access the AWS
Console in a more
secure way. SNS: We will use SNS
Service to provide
limited rights of the AWS
Management Console to
the different
Developers.
GPO Settings: We
setup the policies
for the different
users of the server
according to their
requirements which
will make server and
data more secure
Instance Security
Settings: We will setup
the limited access of
the EC2 instance to the
users by allowing and
blocking different ports
of the instance.
VPC: We will setup VPC
for the establishment of
local area network within
the different EC2 instance
running in a particular
AWS Region which will
make them one step
secure.
Windows Firewall
Settings: We will
enable windows
firewall to access of
the server resources
externally which will
also make EHR one
step more secure.
S3 Access: We will
setup S3 Permissions for
the limited access of S3
Buckets.
Security Enabling for Cloud
GovCloud: We will use
GovCloud EC2 Instance for the
Cloud HER Deployment which is
more secure and fully comply
HIPAA Regulations.
CloudWatch: We will
setup alarms for the
resources usage.
SSL Certificate: We
will use SSL Certificate
for Secure and
encrypted
communication
between client and
EC2 Server
IAM: This service can
be used to provide
limited access of the
Amazon Management
Console to different
users.
AWS Pricing
Normal EC2 Server (Large Instance)
7.5 GB memory
2 virtual core with 4 ECU Processor
64-bit platform
850 GB of Storage Space
Per Month Charges $345.6
150 GB Storage Space
50 GB Network Out
Cost for S3 $25
Net Cost $370.6
Gov. EC2 Server (Large Instance)
7.5 GB memory
2 virtual core with 4 ECU Processor
64-bit platform
850 GB of Storage Space
Per Month Charges $ 417.6
150 GB Storage Space
50 GB Network Out
Cost for S3 $25
Net Cost $442.6
Benefits:
Comply with HIPAA regulations
Completely.
The Large Instance (6:00 AM, 10:55 PM) $295.8/month
The Instance will remains Live (10:55 PM to 6:00 AM)

Mais conteúdo relacionado

Mais procurados

AWS Re:Invent - Securing HIPAA Compliant Apps in AWS
AWS Re:Invent - Securing HIPAA Compliant Apps in AWSAWS Re:Invent - Securing HIPAA Compliant Apps in AWS
AWS Re:Invent - Securing HIPAA Compliant Apps in AWSControl Group
 
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019Gerd König
 
Localize content Devops
Localize content DevopsLocalize content Devops
Localize content Devopsmitesh_sharma
 
How to connect amazon aws ec2 with key pair – linux
How to connect amazon aws ec2 with key pair – linuxHow to connect amazon aws ec2 with key pair – linux
How to connect amazon aws ec2 with key pair – linuxVCP Muthukrishna
 
Introduction to EKS (AWS User Group Slovakia)
Introduction to EKS (AWS User Group Slovakia)Introduction to EKS (AWS User Group Slovakia)
Introduction to EKS (AWS User Group Slovakia)Vladimir Simek
 
Hands-on with AWS IoT
Hands-on with AWS IoTHands-on with AWS IoT
Hands-on with AWS IoTJulien SIMON
 
K8s on AWS: Introducing Amazon EKS
K8s on AWS: Introducing Amazon EKSK8s on AWS: Introducing Amazon EKS
K8s on AWS: Introducing Amazon EKSAmazon Web Services
 
AWS November Webinar Series - Get Started with Automated Mobile Application T...
AWS November Webinar Series - Get Started with Automated Mobile Application T...AWS November Webinar Series - Get Started with Automated Mobile Application T...
AWS November Webinar Series - Get Started with Automated Mobile Application T...Amazon Web Services
 
Build and deployment with Jenkins and Code Deploy on AWS
Build and deployment with Jenkins and Code Deploy on AWSBuild and deployment with Jenkins and Code Deploy on AWS
Build and deployment with Jenkins and Code Deploy on AWSmitesh_sharma
 
Storing, Managing, and Deploying Docker Container Images with Amazon ECR
Storing, Managing, and Deploying Docker Container Images with Amazon ECRStoring, Managing, and Deploying Docker Container Images with Amazon ECR
Storing, Managing, and Deploying Docker Container Images with Amazon ECRChanaka Lasantha
 
Spark access control on Amazon EMR with AWS Lake Formation
Spark access control on Amazon EMR with AWS Lake FormationSpark access control on Amazon EMR with AWS Lake Formation
Spark access control on Amazon EMR with AWS Lake FormationAnoop Johnson
 
How to launch an aws ec2 instance
How to launch an aws ec2 instanceHow to launch an aws ec2 instance
How to launch an aws ec2 instanceAndrea Cirillo
 
Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...
Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...
Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...Amazon Web Services
 
Developing And Running A Website On Amazon S E
Developing And Running A Website On Amazon S EDeveloping And Running A Website On Amazon S E
Developing And Running A Website On Amazon S Ejaymuntz
 
Admin Least Privilege on Shared Cloud Accounts
Admin Least Privilege on Shared Cloud AccountsAdmin Least Privilege on Shared Cloud Accounts
Admin Least Privilege on Shared Cloud Accountsroundarchuser
 
AWS SSA Webinar 12 - Getting started on AWS with Containers
AWS SSA Webinar 12 - Getting started on AWS with ContainersAWS SSA Webinar 12 - Getting started on AWS with Containers
AWS SSA Webinar 12 - Getting started on AWS with ContainersCobus Bernard
 
Defending your workloads with aws waf and deep security
Defending your workloads with aws waf and deep securityDefending your workloads with aws waf and deep security
Defending your workloads with aws waf and deep securityMark Nunnikhoven
 

Mais procurados (20)

AWS Re:Invent - Securing HIPAA Compliant Apps in AWS
AWS Re:Invent - Securing HIPAA Compliant Apps in AWSAWS Re:Invent - Securing HIPAA Compliant Apps in AWS
AWS Re:Invent - Securing HIPAA Compliant Apps in AWS
 
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019
 
Containers on AWS
Containers on AWSContainers on AWS
Containers on AWS
 
Localize content Devops
Localize content DevopsLocalize content Devops
Localize content Devops
 
How to connect amazon aws ec2 with key pair – linux
How to connect amazon aws ec2 with key pair – linuxHow to connect amazon aws ec2 with key pair – linux
How to connect amazon aws ec2 with key pair – linux
 
Introduction to EKS (AWS User Group Slovakia)
Introduction to EKS (AWS User Group Slovakia)Introduction to EKS (AWS User Group Slovakia)
Introduction to EKS (AWS User Group Slovakia)
 
Hands-on with AWS IoT
Hands-on with AWS IoTHands-on with AWS IoT
Hands-on with AWS IoT
 
K8s on AWS: Introducing Amazon EKS
K8s on AWS: Introducing Amazon EKSK8s on AWS: Introducing Amazon EKS
K8s on AWS: Introducing Amazon EKS
 
Amazon EC2: What is this and what can I do with it?
Amazon EC2: What is this and what can I do with it?Amazon EC2: What is this and what can I do with it?
Amazon EC2: What is this and what can I do with it?
 
AWS November Webinar Series - Get Started with Automated Mobile Application T...
AWS November Webinar Series - Get Started with Automated Mobile Application T...AWS November Webinar Series - Get Started with Automated Mobile Application T...
AWS November Webinar Series - Get Started with Automated Mobile Application T...
 
AWS re:Invent 2015 re:Cap
AWS re:Invent 2015 re:CapAWS re:Invent 2015 re:Cap
AWS re:Invent 2015 re:Cap
 
Build and deployment with Jenkins and Code Deploy on AWS
Build and deployment with Jenkins and Code Deploy on AWSBuild and deployment with Jenkins and Code Deploy on AWS
Build and deployment with Jenkins and Code Deploy on AWS
 
Storing, Managing, and Deploying Docker Container Images with Amazon ECR
Storing, Managing, and Deploying Docker Container Images with Amazon ECRStoring, Managing, and Deploying Docker Container Images with Amazon ECR
Storing, Managing, and Deploying Docker Container Images with Amazon ECR
 
Spark access control on Amazon EMR with AWS Lake Formation
Spark access control on Amazon EMR with AWS Lake FormationSpark access control on Amazon EMR with AWS Lake Formation
Spark access control on Amazon EMR with AWS Lake Formation
 
How to launch an aws ec2 instance
How to launch an aws ec2 instanceHow to launch an aws ec2 instance
How to launch an aws ec2 instance
 
Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...
Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...
Using Amazon Cloudwatch Events, AWS Lambda and Spark Streaming to Process EC2...
 
Developing And Running A Website On Amazon S E
Developing And Running A Website On Amazon S EDeveloping And Running A Website On Amazon S E
Developing And Running A Website On Amazon S E
 
Admin Least Privilege on Shared Cloud Accounts
Admin Least Privilege on Shared Cloud AccountsAdmin Least Privilege on Shared Cloud Accounts
Admin Least Privilege on Shared Cloud Accounts
 
AWS SSA Webinar 12 - Getting started on AWS with Containers
AWS SSA Webinar 12 - Getting started on AWS with ContainersAWS SSA Webinar 12 - Getting started on AWS with Containers
AWS SSA Webinar 12 - Getting started on AWS with Containers
 
Defending your workloads with aws waf and deep security
Defending your workloads with aws waf and deep securityDefending your workloads with aws waf and deep security
Defending your workloads with aws waf and deep security
 

Semelhante a Security enabling at amazon cloud (presntation)

Get Started & Migrate Your Data to AWS (English Session)
Get Started & Migrate Your Data to AWS (English Session)Get Started & Migrate Your Data to AWS (English Session)
Get Started & Migrate Your Data to AWS (English Session)Amazon Web Services
 
Architecting Cloud Apps
Architecting Cloud AppsArchitecting Cloud Apps
Architecting Cloud Appsjineshvaria
 
Get Started and Migrate Your Data to AWS
Get Started and Migrate Your Data to AWSGet Started and Migrate Your Data to AWS
Get Started and Migrate Your Data to AWSAmazon Web Services
 
AWS Security Best Practices and Design Patterns
AWS Security Best Practices and Design PatternsAWS Security Best Practices and Design Patterns
AWS Security Best Practices and Design PatternsAmazon Web Services
 
Get Started & Migrate Your Data to AWS (Thai Session)
Get Started & Migrate Your Data to AWS (Thai Session)Get Started & Migrate Your Data to AWS (Thai Session)
Get Started & Migrate Your Data to AWS (Thai Session)Amazon Web Services
 
Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...
Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...
Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...Amazon Web Services
 
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloud
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloudAptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloud
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloudAptible
 
Amazon EC2 - Masterclass - Pop-up Loft Tel Aviv
Amazon EC2 - Masterclass - Pop-up Loft Tel AvivAmazon EC2 - Masterclass - Pop-up Loft Tel Aviv
Amazon EC2 - Masterclass - Pop-up Loft Tel AvivAmazon Web Services
 
AWS Enterprise Summit - 클라우드에서의 보안 - 양승도
AWS Enterprise Summit - 클라우드에서의 보안 - 양승도AWS Enterprise Summit - 클라우드에서의 보안 - 양승도
AWS Enterprise Summit - 클라우드에서의 보안 - 양승도Amazon Web Services Korea
 
CoSolvent Community Server : Amazon Web Services Hosting ...
CoSolvent Community Server : Amazon Web Services Hosting ...CoSolvent Community Server : Amazon Web Services Hosting ...
CoSolvent Community Server : Amazon Web Services Hosting ...webhostingguy
 
AWS June 2016 Webinar Series - AWS Quarterly Update
AWS June 2016 Webinar Series - AWS Quarterly Update AWS June 2016 Webinar Series - AWS Quarterly Update
AWS June 2016 Webinar Series - AWS Quarterly Update Amazon Web Services
 
Amazon EKS - security best practices - 2022
Amazon EKS - security best practices - 2022 Amazon EKS - security best practices - 2022
Amazon EKS - security best practices - 2022 Jean-François LOMBARDO
 
McrUmbMeetup 22 May 14: Umbraco and Amazon
McrUmbMeetup 22 May 14: Umbraco and AmazonMcrUmbMeetup 22 May 14: Umbraco and Amazon
McrUmbMeetup 22 May 14: Umbraco and AmazonDan Lister
 

Semelhante a Security enabling at amazon cloud (presntation) (20)

Get Started & Migrate Your Data to AWS (English Session)
Get Started & Migrate Your Data to AWS (English Session)Get Started & Migrate Your Data to AWS (English Session)
Get Started & Migrate Your Data to AWS (English Session)
 
Architecting Cloud Apps
Architecting Cloud AppsArchitecting Cloud Apps
Architecting Cloud Apps
 
Get Started and Migrate Your Data to AWS
Get Started and Migrate Your Data to AWSGet Started and Migrate Your Data to AWS
Get Started and Migrate Your Data to AWS
 
AWS Security Best Practices and Design Patterns
AWS Security Best Practices and Design PatternsAWS Security Best Practices and Design Patterns
AWS Security Best Practices and Design Patterns
 
Get Started & Migrate Your Data to AWS (Thai Session)
Get Started & Migrate Your Data to AWS (Thai Session)Get Started & Migrate Your Data to AWS (Thai Session)
Get Started & Migrate Your Data to AWS (Thai Session)
 
AMAZON CLOUD Course Content
AMAZON CLOUD Course ContentAMAZON CLOUD Course Content
AMAZON CLOUD Course Content
 
Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...
Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...
Keeping Secrets: Securing Your Data with AWS Cryptography (SEC353-R1) - AWS r...
 
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloud
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloudAptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloud
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloud
 
Amazon EC2 - Masterclass - Pop-up Loft Tel Aviv
Amazon EC2 - Masterclass - Pop-up Loft Tel AvivAmazon EC2 - Masterclass - Pop-up Loft Tel Aviv
Amazon EC2 - Masterclass - Pop-up Loft Tel Aviv
 
Introduction to Amazon EC2
Introduction to Amazon EC2Introduction to Amazon EC2
Introduction to Amazon EC2
 
AWS Enterprise Summit - 클라우드에서의 보안 - 양승도
AWS Enterprise Summit - 클라우드에서의 보안 - 양승도AWS Enterprise Summit - 클라우드에서의 보안 - 양승도
AWS Enterprise Summit - 클라우드에서의 보안 - 양승도
 
Understanding AWS Security
 Understanding AWS Security  Understanding AWS Security
Understanding AWS Security
 
CoSolvent Community Server : Amazon Web Services Hosting ...
CoSolvent Community Server : Amazon Web Services Hosting ...CoSolvent Community Server : Amazon Web Services Hosting ...
CoSolvent Community Server : Amazon Web Services Hosting ...
 
Advanced Container Security
Advanced Container Security Advanced Container Security
Advanced Container Security
 
AWS June 2016 Webinar Series - AWS Quarterly Update
AWS June 2016 Webinar Series - AWS Quarterly Update AWS June 2016 Webinar Series - AWS Quarterly Update
AWS June 2016 Webinar Series - AWS Quarterly Update
 
Security on AWS
Security on AWSSecurity on AWS
Security on AWS
 
Amazon EKS - security best practices - 2022
Amazon EKS - security best practices - 2022 Amazon EKS - security best practices - 2022
Amazon EKS - security best practices - 2022
 
Amazon Web Service.pdf
Amazon Web Service.pdfAmazon Web Service.pdf
Amazon Web Service.pdf
 
McrUmbMeetup 22 May 14: Umbraco and Amazon
McrUmbMeetup 22 May 14: Umbraco and AmazonMcrUmbMeetup 22 May 14: Umbraco and Amazon
McrUmbMeetup 22 May 14: Umbraco and Amazon
 
Aws class demo
Aws class demoAws class demo
Aws class demo
 

Mais de Ghazanfar Latif (Gabe)

Mais de Ghazanfar Latif (Gabe) (8)

What is Interaction Design?
What is Interaction Design?What is Interaction Design?
What is Interaction Design?
 
Svm on cloud (presntation)
Svm on cloud  (presntation)Svm on cloud  (presntation)
Svm on cloud (presntation)
 
A L A Q S A
A L A Q S AA L A Q S A
A L A Q S A
 
Areyouap
AreyouapAreyouap
Areyouap
 
Attitude Fyh 02 P R E E T R A N J A N
Attitude Fyh 02 P R E E T R A N J A NAttitude Fyh 02 P R E E T R A N J A N
Attitude Fyh 02 P R E E T R A N J A N
 
Technical Report Writing Presentation
Technical Report Writing PresentationTechnical Report Writing Presentation
Technical Report Writing Presentation
 
Outreach Scholarship Program for Hiegher Education in Pakistan
Outreach Scholarship Program for Hiegher Education in PakistanOutreach Scholarship Program for Hiegher Education in Pakistan
Outreach Scholarship Program for Hiegher Education in Pakistan
 
Semantic Web Technologies Presenattion (Topic: TripIt)
Semantic Web Technologies Presenattion (Topic: TripIt)Semantic Web Technologies Presenattion (Topic: TripIt)
Semantic Web Technologies Presenattion (Topic: TripIt)
 

Security enabling at amazon cloud (presntation)

  • 2. Availability Zone A Amazon S3 VPC EBS 3 EBS 2 EBS 1 EC2 Server Kerberos MIT tools Web EHR App Apache X509 PHP Amazon Management Console Security Setting, SNS, Elastic IP, MFA www.abc.com US West Region Cloud EHR Deployment Architecture (Basic)
  • 3. Availability Zone A Amazon S3 VPC EBS 3 EBS 2 EBS 1 EC2 Server Kerberos MIT tools Web EHR App Apache X509 PHP Amazon Management Console Security Setting, SNS, Elastic IP, MFA www.abc.com US West Region MFA: Will use Multi Factor Authentication device to Access the AWS Console in a more secure way. SNS: We will use SNS Service to provide limited rights of the AWS Management Console to the different Developers. GPO Settings: We setup the policies for the different users of the server according to their requirements which will make server and data more secure Instance Security Settings: We will setup the limited access of the EC2 instance to the users by allowing and blocking different ports of the instance. VPC: We will setup VPC for the establishment of local area network within the different EC2 instance running in a particular AWS Region which will make them one step secure. Windows Firewall Settings: We will enable windows firewall to access of the server resources externally which will also make EHR one step more secure. S3 Access: We will setup S3 Permissions for the limited access of S3 Buckets. Security Enabling for Cloud GovCloud: We will use GovCloud EC2 Instance for the Cloud HER Deployment which is more secure and fully comply HIPAA Regulations. CloudWatch: We will setup alarms for the resources usage. SSL Certificate: We will use SSL Certificate for Secure and encrypted communication between client and EC2 Server IAM: This service can be used to provide limited access of the Amazon Management Console to different users.
  • 4. AWS Pricing Normal EC2 Server (Large Instance) 7.5 GB memory 2 virtual core with 4 ECU Processor 64-bit platform 850 GB of Storage Space Per Month Charges $345.6 150 GB Storage Space 50 GB Network Out Cost for S3 $25 Net Cost $370.6 Gov. EC2 Server (Large Instance) 7.5 GB memory 2 virtual core with 4 ECU Processor 64-bit platform 850 GB of Storage Space Per Month Charges $ 417.6 150 GB Storage Space 50 GB Network Out Cost for S3 $25 Net Cost $442.6 Benefits: Comply with HIPAA regulations Completely. The Large Instance (6:00 AM, 10:55 PM) $295.8/month The Instance will remains Live (10:55 PM to 6:00 AM)

Notas do Editor

  1. Design 1, When we go to from Micro instance to Large Instance?