SlideShare uma empresa Scribd logo
1 de 37
P U B L I C S E C T O R
S U M M I T
Washingt on DC, 11 th-12th June,
2019
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Accelerating Cloud Adoption in Federal Government and
Regulated Sectors with Agile Governance, enabled by AWS
Service Catalog
Speaker Name: Mahdi Sajjadpour
Job Title: Principal BD, AWS Service Catalog & Control
Tower
Company/Org Name: AWS
S e s s i o n I D : 3 2 2 0 7 2
Speaker Name: Kaushik Mohanty
Job Title: Principal BD, WW Public Sector – AWS Service
Catalog & Control Tower
Company/Org Name: AWS
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Agenda
Need for Agile Governance
Agile Governance enabled by AWS Service Catalog
Do It Right: Simplify, Standardize & Automate
Make it Easy: Self-Service via AWS Service Catalog console or ITSM
Wrap-Up and Customer Testimonial
Q&A
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Central IT departments that fall behind in establishing cloud
governance risk security breaches, denial of service (DoS) attack,
loss of control and cloud resources overspend
Agility in the Cloud and Governance Control
Central IT departments that fall behind in establishing cloud
governance risk security breaches, denial of service (DoS) attack, loss
of control and cloud resources overspending. Implementing
automated governance is part of transforming central IT’s role from
fulfilling users’ requests to empowering self-service for teams that
need the agility to use cloud services with native tools.
Source: ‘Implementing Governance for Public Cloud IaaS’, January 2019, Gartner
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Business agility and governance control
GOVERNANCE
—
AGILITY
—
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Business agility and governance control
ꟷ
GOVERNANCE
—
AGILITY
—
Experiment
Be productive
Respond quickly
to change
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Service Catalog: Simplifying Provisioning
End UsersOrganizations
Curation
Compliance
Standardization
Agility
Self-Service
Time to Market
SpeedSecurity
Service Catalog enables organizations to deploy
and manage AWS infrastructure and applications
that reflect the organization’s security and
operational policies
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Amazon EMR
Amazon
DynamoDB
Amazon Kinesis
Data Analytics
AWS Marketplace
Amazon RDS
AWS Lambda AWS IoT Core
AWS
CloudFormation
Amazon Redshift
AWS
Service Catalog
Current state of self-service
AWS console
I Need a
Server
Broad Choices…
 Requires Security Policy
 Time consuming
 Incorrectly tagged
 Cost over runs
Amazon S3 Amazon EC2
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Self-service with preconfigured compliance
 Constrains
 Security controls
 Parameter validation
 IAM assignment
 Tag enforcement
Standardizes best practices
JSON or YAML
AWS Services
AWS Marketplace
third-party products
Customer-Created
AWS-Based Solution
AWS Service
Catalog
Admin
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
User’s product list
 Compliant with polices
 Correctly tagged
 Within budget
AWS Service
Catalog
User
Amazon Redshift
Amazon EC2 Amazon S3
Amazon EC2
New state of self-service
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
• Control AWS Provisioning => CT/LZ/AVM
• Self Service Portal – One Stop Shop => DevOps
• Standardized & Automated Deployments => Multi-Act.
• Version Control for AWS Users => IT LifeCycle Mgmt.
• Enforce Governance & Compliance proactively => G@S
• Integrate with ITSM tools => ServiceNow/BMC
AWS Service Catalog | Key Use Cases
GOV
@
SCALE
RESEARCH
(evolving)
Feature => Use Cases
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Pricing and availability
GovCloud Region (PDT)
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Bristol-Myers Squibb
Web Site Kit: 6 weeks of work <30 min
If you build it yourself: Team can instantiate it:
Maybe miss features /
security
Already Info-Sec
reviewed, ongoing
updates
REST API Kit: 8 weeks of work <30 min
If you build it yourself:
Maybe miss features /
security & Lots of
complexity
Already Info-Sec
reviewed, ongoing
updates
Team can instantiate it:
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
”
“
Wiley Launches Digital Applications in Minutes Using AWS Service Catalog
Wiley is a leading global publisher of
scientific, technical, medical, and scholarly
journals.
• Wanted to move several key applications
to the cloud to support business
innovation
• Uses AWS Service Catalog to enable
developer self-service and automation
• Launches new applications in 5 minutes
instead of many weeks
• Gives developers self-service capabilities
• Enables the creation of new digital
publishing platforms
Meltem Dincer
Vice President of Platform Capabilities, Wiley
Using AWS Service Catalog, we
are truly a cloud-first company.
By using AWS Service Catalog, I can have a new
pipeline ready in 10 minutes, instead of needing
days to build it manually.
– James Martin, Manager of Automation
Engineering, 3M Health Information Systems
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Developer
AWS Service Catalog
CloudFormation
Template
Standardized Patterns
Application Specific Patterns
• Preapproved, verified, secure
• Common application pattern
• Security/governance enforced
• Immediately available
• Requires security checks
• Specific to application needs
• Longer provisioning time
• New application pattern
Automate with a Path to DevOps
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Distribution model for standardized patterns
Shared services
account
AWS Service Catalog admins can import the portfolios (portfolio ID required)
LOB account LOB account LOB account
Share directly with AWS Service
Catalog or via Organizations
Hub & spoke
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Standardize with Well-Architected Service Catalog
product samples
AWS CloudFormation templates have
governance & best practices built in
Amazon EC2
Amazon RDS
Amazon SageMaker
Amazon S3
Amazon EMR
AWS Service Catalog
Reference Architecture
GitHub repository
https://github.com/aws-
samples/aws-service-
catalog-reference-
architectures
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Try it out yourself!
• AWS Service Catalog Reference Architecture GitHub repository
• CodePipeline folder
• https://github.com/aws-samples/aws-service-catalog-reference-
architectures/tree/master/codepipeline
• More labs and sample templates available
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS CloudFormation validation pipeline
Deploy with AWS CloudFormation
Release Automation
1. Commits to master
3. Copy to Amazon S3 and execute AWS CloudFormation
2. TaskCat and cfn_nag
End Users provision
updated Products
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Distribution model: application-specific patterns
Publish AWS Service Catalog product to an Application-Specific
Portfolio in the Application’s LOB AWS Account(s)
LOB Account(s)
Application-Specific Portfolio
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Automate Account Vending
AWS
Service Catalog
Lambda-backed
custom resource
Logging account
Amazon S3
bucket
Master Account
New AWS account
CloudTrail
Stack
Config
Stack
EBS Encryption
Stack
CLv2
Spoke
Admin
RoleAmazon VPC
(default)
Read Only
Role
AWS
Organizations
Existing or New
OU
AWS CloudFormation
StackSets
Try it out yourself @
https://aws.amazon.com/blogs/mt
/automate-account-creation-and-
resource-provisioning-using-aws-
service-catalog-aws-
organizations-and-aws-lambda/
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Service Catalog Brand Your Console
Allows customers to upload their logo, choose primary & accent colors into the AWS Service Catalog
Console!
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Challenges in the Hybrid Organization
• Organizations would like to integrate AWS provisioning and management
with their ITSM system.
• AWS provisioning needs to tie into an organization’s existing ITSM
implementation, processes, and workflows.
• Lengthy time to integrate AWS with ITSM systems.
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Service Catalog Connector for ServiceNow
Self-service for end users:
• Provision AWS resources
• Manage AWS resources
• Integration with existing workflows
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Enabling self-service via ITSM
Users browse and
request AWS services
Administrators procure, publish,
and govern AWS services
Operators monitor and
manage AWS services
1 2 3
Amazon
EC2
Amazon
S3
Amazon
RDS
Amazon
VPC
Amazon
EMR
Amazon
SQS
Amazon ML AWS Mobile
Hub
AWS IoT Amazon
WorkSpaces
3rd Party
ISV Offerings
AWS
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Browse the AWS Service
Catalog products
The AWS SC Connector in ServiceNow
Request and use
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
User experience
Browse Products
3
2
1
Portfolio
End Users
Select Product,
Configure
Parameters,
Request LaunchDeploy
Outputs
4
Service Request
Workflow—RITM
Maps to AWS
Service Catalog
Portfolio
Launch Product
Provisioned
Product
Configuration Item
AWS Service Catalog API
AWS Service Catalog
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Benefits for users
Familiar, easy to use, self-service interface to:
• Provision or request AWS resource(s)
• Manage AWS resource(s):
• Self-service update and terminate
• Stop, start, reboot Amazon WorkSpaces or Amazon EC2
• Snapshot of Amazon EBS storage volumes
• Workflows and approvals automatically triggered
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Benefits for enterprises
• Reduces time to integrate ServiceNow with AWS
• Accelerates AWS onboarding and adoption
• Build and leverage existing workflows, approvals, record keeping, and
auditing (CMDB) within ServiceNow
• Does not require ServiceNow team to learn AWS
• Available now, at no cost, in the ServiceNow store
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
AWS Service Catalog allows Deloitte's ConvergeHEALTH to provision its
solutions in near real-time
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Summary: Outcomes customers accomplish!
Stay agile
Innovate with the
speed
Empower builders
Provide self-service &
developer autonomy
Establish governance
Maintain the security
& compliance posture
Thank you!
© 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R
S U M M I T
Speaker Name: Kaushik Mohanty
Company Name: AWS
Contact Info.: kmohanty@amazon.com
(703) 300 8960

Mais conteúdo relacionado

Mais procurados

AWS Serverless Webinar- Unleash Innovation & Build Modern Application
AWS Serverless Webinar- Unleash Innovation & Build Modern ApplicationAWS Serverless Webinar- Unleash Innovation & Build Modern Application
AWS Serverless Webinar- Unleash Innovation & Build Modern ApplicationAmazon Web Services
 
A Practitioners Guide to Securing Your Cloud
A Practitioners Guide to Securing Your CloudA Practitioners Guide to Securing Your Cloud
A Practitioners Guide to Securing Your CloudAmazon Web Services
 
Orchestrating containers on AWS | AWS Summit Tel Aviv 2019
Orchestrating containers on AWS  | AWS Summit Tel Aviv 2019Orchestrating containers on AWS  | AWS Summit Tel Aviv 2019
Orchestrating containers on AWS | AWS Summit Tel Aviv 2019AWS Summits
 
Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019
Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019
Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019AWS Summits
 
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...Amazon Web Services
 
What can you do with Serverless in 2020
What can you do with Serverless in 2020What can you do with Serverless in 2020
What can you do with Serverless in 2020Boaz Ziniman
 
Creare e gestire Data Lake e Data Warehouses
Creare e gestire Data Lake e Data WarehousesCreare e gestire Data Lake e Data Warehouses
Creare e gestire Data Lake e Data WarehousesAmazon Web Services
 
Connecting your devices at scale, ft. Discovery - SVC205 - New York AWS Summit
Connecting your devices at scale, ft. Discovery - SVC205 - New York AWS SummitConnecting your devices at scale, ft. Discovery - SVC205 - New York AWS Summit
Connecting your devices at scale, ft. Discovery - SVC205 - New York AWS SummitAmazon Web Services
 
Infrastructure is code with the AWS CDK - MAD312 - New York AWS Summit
Infrastructure is code with the AWS CDK - MAD312 - New York AWS SummitInfrastructure is code with the AWS CDK - MAD312 - New York AWS Summit
Infrastructure is code with the AWS CDK - MAD312 - New York AWS SummitAmazon Web Services
 
利用 Fargate - 無伺服器的容器環境建置高可用的系統
利用 Fargate - 無伺服器的容器環境建置高可用的系統利用 Fargate - 無伺服器的容器環境建置高可用的系統
利用 Fargate - 無伺服器的容器環境建置高可用的系統Amazon Web Services
 
Budget management with Cloud Economics | AWS Summit Tel Aviv 2019
Budget management with Cloud Economics | AWS Summit Tel Aviv 2019Budget management with Cloud Economics | AWS Summit Tel Aviv 2019
Budget management with Cloud Economics | AWS Summit Tel Aviv 2019Amazon Web Services
 
Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019
 Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019 Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019
Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019AWS Summits
 
Building-Serverless-Analytics-On-AWS
Building-Serverless-Analytics-On-AWSBuilding-Serverless-Analytics-On-AWS
Building-Serverless-Analytics-On-AWSAmazon Web Services
 
Scalable serverless architectures using event-driven design - MAD301 - Atlant...
Scalable serverless architectures using event-driven design - MAD301 - Atlant...Scalable serverless architectures using event-driven design - MAD301 - Atlant...
Scalable serverless architectures using event-driven design - MAD301 - Atlant...Amazon Web Services
 
利用微服務加速創新的步伐
利用微服務加速創新的步伐利用微服務加速創新的步伐
利用微服務加速創新的步伐Amazon Web Services
 
Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...
Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...
Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...Amazon Web Services
 
Building with AWS Databases: Match Your Workload to the Right Database | AWS ...
Building with AWS Databases: Match Your Workload to the Right Database | AWS ...Building with AWS Databases: Match Your Workload to the Right Database | AWS ...
Building with AWS Databases: Match Your Workload to the Right Database | AWS ...AWS Summits
 

Mais procurados (19)

AWS Serverless Webinar- Unleash Innovation & Build Modern Application
AWS Serverless Webinar- Unleash Innovation & Build Modern ApplicationAWS Serverless Webinar- Unleash Innovation & Build Modern Application
AWS Serverless Webinar- Unleash Innovation & Build Modern Application
 
A Practitioners Guide to Securing Your Cloud
A Practitioners Guide to Securing Your CloudA Practitioners Guide to Securing Your Cloud
A Practitioners Guide to Securing Your Cloud
 
CI/CD for Modern Applications
CI/CD for Modern ApplicationsCI/CD for Modern Applications
CI/CD for Modern Applications
 
Orchestrating containers on AWS | AWS Summit Tel Aviv 2019
Orchestrating containers on AWS  | AWS Summit Tel Aviv 2019Orchestrating containers on AWS  | AWS Summit Tel Aviv 2019
Orchestrating containers on AWS | AWS Summit Tel Aviv 2019
 
.NET on AWS
.NET on AWS.NET on AWS
.NET on AWS
 
Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019
Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019
Twelve-Factor App Methodology and Modern Applications | AWS Summit Tel Aviv 2019
 
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
Next generation intelligent data lakes, powered by GraphQL & AWS AppSync - MA...
 
What can you do with Serverless in 2020
What can you do with Serverless in 2020What can you do with Serverless in 2020
What can you do with Serverless in 2020
 
Creare e gestire Data Lake e Data Warehouses
Creare e gestire Data Lake e Data WarehousesCreare e gestire Data Lake e Data Warehouses
Creare e gestire Data Lake e Data Warehouses
 
Connecting your devices at scale, ft. Discovery - SVC205 - New York AWS Summit
Connecting your devices at scale, ft. Discovery - SVC205 - New York AWS SummitConnecting your devices at scale, ft. Discovery - SVC205 - New York AWS Summit
Connecting your devices at scale, ft. Discovery - SVC205 - New York AWS Summit
 
Infrastructure is code with the AWS CDK - MAD312 - New York AWS Summit
Infrastructure is code with the AWS CDK - MAD312 - New York AWS SummitInfrastructure is code with the AWS CDK - MAD312 - New York AWS Summit
Infrastructure is code with the AWS CDK - MAD312 - New York AWS Summit
 
利用 Fargate - 無伺服器的容器環境建置高可用的系統
利用 Fargate - 無伺服器的容器環境建置高可用的系統利用 Fargate - 無伺服器的容器環境建置高可用的系統
利用 Fargate - 無伺服器的容器環境建置高可用的系統
 
Budget management with Cloud Economics | AWS Summit Tel Aviv 2019
Budget management with Cloud Economics | AWS Summit Tel Aviv 2019Budget management with Cloud Economics | AWS Summit Tel Aviv 2019
Budget management with Cloud Economics | AWS Summit Tel Aviv 2019
 
Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019
 Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019 Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019
Let Your Business Logic go Serverless | AWS Summit Tel Aviv 2019
 
Building-Serverless-Analytics-On-AWS
Building-Serverless-Analytics-On-AWSBuilding-Serverless-Analytics-On-AWS
Building-Serverless-Analytics-On-AWS
 
Scalable serverless architectures using event-driven design - MAD301 - Atlant...
Scalable serverless architectures using event-driven design - MAD301 - Atlant...Scalable serverless architectures using event-driven design - MAD301 - Atlant...
Scalable serverless architectures using event-driven design - MAD301 - Atlant...
 
利用微服務加速創新的步伐
利用微服務加速創新的步伐利用微服務加速創新的步伐
利用微服務加速創新的步伐
 
Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...
Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...
Introduction to AWS OutIntroduction to AWS Outposts - CMP203 - Chicago AWS Su...
 
Building with AWS Databases: Match Your Workload to the Right Database | AWS ...
Building with AWS Databases: Match Your Workload to the Right Database | AWS ...Building with AWS Databases: Match Your Workload to the Right Database | AWS ...
Building with AWS Databases: Match Your Workload to the Right Database | AWS ...
 

Semelhante a Accelerating Cloud Adoption in Federal Government and Regulated Sectors with Agile Governance, Enabled by AWS Service Catalog

AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...
AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...
AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...Amazon Web Services
 
So You've Got ATO - Are You Sure You are Secure?
So You've Got ATO - Are You Sure You are Secure?So You've Got ATO - Are You Sure You are Secure?
So You've Got ATO - Are You Sure You are Secure?Amazon Web Services
 
Control your cloud environment with AWS management tools
Control your cloud environment with AWS management toolsControl your cloud environment with AWS management tools
Control your cloud environment with AWS management toolsAmazon Web Services
 
Is it Up? Operating Effectively in AWS
Is it Up? Operating Effectively in AWSIs it Up? Operating Effectively in AWS
Is it Up? Operating Effectively in AWSAmazon Web Services
 
AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...
AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...
AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...AWS Summits
 
Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...
Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...
Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...Amazon Web Services
 
Security at the Speed of Cloud How to Think About it & How You Can Do it Now
Security at the Speed of Cloud How to Think About it & How You Can Do it NowSecurity at the Speed of Cloud How to Think About it & How You Can Do it Now
Security at the Speed of Cloud How to Think About it & How You Can Do it NowAmazon Web Services
 
Best practices for choosing identity solutions for applications + workloads -...
Best practices for choosing identity solutions for applications + workloads -...Best practices for choosing identity solutions for applications + workloads -...
Best practices for choosing identity solutions for applications + workloads -...Amazon Web Services
 
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...Mani Chandrasekaran
 
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Amazon Web Services
 
Deploy and Govern at Scale with AWS Control Tower
Deploy and Govern at Scale with AWS Control TowerDeploy and Govern at Scale with AWS Control Tower
Deploy and Govern at Scale with AWS Control TowerAmazon Web Services
 
Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...
Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...
Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...Amazon Web Services
 
AWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best PracticesAWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best PracticesAmazon Web Services
 
AWSome Day MODULE 5 - Autoscaling and Next Steps
AWSome Day MODULE 5 - Autoscaling and Next StepsAWSome Day MODULE 5 - Autoscaling and Next Steps
AWSome Day MODULE 5 - Autoscaling and Next StepsAmazon Web Services
 
AWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless Backends
AWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless BackendsAWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless Backends
AWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless BackendsPatrick Sard
 
Serverless Observability Tech Talk
Serverless Observability Tech TalkServerless Observability Tech Talk
Serverless Observability Tech TalkAmazon Web Services
 
AWS re:Invent Comes to London 2019 - Management Tools
AWS re:Invent Comes to London 2019 - Management ToolsAWS re:Invent Comes to London 2019 - Management Tools
AWS re:Invent Comes to London 2019 - Management ToolsAmazon Web Services
 
"Is it Up?" - operating effectively in AWS
"Is it Up?" - operating effectively in AWS"Is it Up?" - operating effectively in AWS
"Is it Up?" - operating effectively in AWSAmazon Web Services
 
Operationalizing Microsoft Workloads
Operationalizing Microsoft WorkloadsOperationalizing Microsoft Workloads
Operationalizing Microsoft WorkloadsAmazon Web Services
 
Cloud Governance and Provisioning Management using AWS Management Tools and S...
Cloud Governance and Provisioning Management using AWS Management Tools and S...Cloud Governance and Provisioning Management using AWS Management Tools and S...
Cloud Governance and Provisioning Management using AWS Management Tools and S...Amazon Web Services
 

Semelhante a Accelerating Cloud Adoption in Federal Government and Regulated Sectors with Agile Governance, Enabled by AWS Service Catalog (20)

AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...
AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...
AWS identity services: Enabling and securing your cloud journey - SEC203 - Ne...
 
So You've Got ATO - Are You Sure You are Secure?
So You've Got ATO - Are You Sure You are Secure?So You've Got ATO - Are You Sure You are Secure?
So You've Got ATO - Are You Sure You are Secure?
 
Control your cloud environment with AWS management tools
Control your cloud environment with AWS management toolsControl your cloud environment with AWS management tools
Control your cloud environment with AWS management tools
 
Is it Up? Operating Effectively in AWS
Is it Up? Operating Effectively in AWSIs it Up? Operating Effectively in AWS
Is it Up? Operating Effectively in AWS
 
AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...
AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...
AWS Summit Singapore 2019 | Next Generation Audit & Compliance - Learn how RH...
 
Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...
Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...
Secure Your Data with Recommended Best Practices Enabled by AWS Security and ...
 
Security at the Speed of Cloud How to Think About it & How You Can Do it Now
Security at the Speed of Cloud How to Think About it & How You Can Do it NowSecurity at the Speed of Cloud How to Think About it & How You Can Do it Now
Security at the Speed of Cloud How to Think About it & How You Can Do it Now
 
Best practices for choosing identity solutions for applications + workloads -...
Best practices for choosing identity solutions for applications + workloads -...Best practices for choosing identity solutions for applications + workloads -...
Best practices for choosing identity solutions for applications + workloads -...
 
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
India cloudsummit Bangalore - Advanced Container Use-cases on AWS Container S...
 
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
 
Deploy and Govern at Scale with AWS Control Tower
Deploy and Govern at Scale with AWS Control TowerDeploy and Govern at Scale with AWS Control Tower
Deploy and Govern at Scale with AWS Control Tower
 
Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...
Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...
Build end-to-end IT lifecycle management on AWS - FND301-R - AWS re:Inforce 2...
 
AWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best PracticesAWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best Practices
 
AWSome Day MODULE 5 - Autoscaling and Next Steps
AWSome Day MODULE 5 - Autoscaling and Next StepsAWSome Day MODULE 5 - Autoscaling and Next Steps
AWSome Day MODULE 5 - Autoscaling and Next Steps
 
AWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless Backends
AWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless BackendsAWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless Backends
AWS Meetup Brussels 3rd Sep 2019 Simplify Frontend Apps with Serverless Backends
 
Serverless Observability Tech Talk
Serverless Observability Tech TalkServerless Observability Tech Talk
Serverless Observability Tech Talk
 
AWS re:Invent Comes to London 2019 - Management Tools
AWS re:Invent Comes to London 2019 - Management ToolsAWS re:Invent Comes to London 2019 - Management Tools
AWS re:Invent Comes to London 2019 - Management Tools
 
"Is it Up?" - operating effectively in AWS
"Is it Up?" - operating effectively in AWS"Is it Up?" - operating effectively in AWS
"Is it Up?" - operating effectively in AWS
 
Operationalizing Microsoft Workloads
Operationalizing Microsoft WorkloadsOperationalizing Microsoft Workloads
Operationalizing Microsoft Workloads
 
Cloud Governance and Provisioning Management using AWS Management Tools and S...
Cloud Governance and Provisioning Management using AWS Management Tools and S...Cloud Governance and Provisioning Management using AWS Management Tools and S...
Cloud Governance and Provisioning Management using AWS Management Tools and S...
 

Mais de Amazon Web Services

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Amazon Web Services
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Amazon Web Services
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateAmazon Web Services
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSAmazon Web Services
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Amazon Web Services
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Amazon Web Services
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...Amazon Web Services
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsAmazon Web Services
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareAmazon Web Services
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSAmazon Web Services
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAmazon Web Services
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareAmazon Web Services
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWSAmazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckAmazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without serversAmazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...Amazon Web Services
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceAmazon Web Services
 

Mais de Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

Accelerating Cloud Adoption in Federal Government and Regulated Sectors with Agile Governance, Enabled by AWS Service Catalog

  • 1. P U B L I C S E C T O R S U M M I T Washingt on DC, 11 th-12th June, 2019
  • 2. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Accelerating Cloud Adoption in Federal Government and Regulated Sectors with Agile Governance, enabled by AWS Service Catalog Speaker Name: Mahdi Sajjadpour Job Title: Principal BD, AWS Service Catalog & Control Tower Company/Org Name: AWS S e s s i o n I D : 3 2 2 0 7 2 Speaker Name: Kaushik Mohanty Job Title: Principal BD, WW Public Sector – AWS Service Catalog & Control Tower Company/Org Name: AWS
  • 3. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Agenda Need for Agile Governance Agile Governance enabled by AWS Service Catalog Do It Right: Simplify, Standardize & Automate Make it Easy: Self-Service via AWS Service Catalog console or ITSM Wrap-Up and Customer Testimonial Q&A
  • 4. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T
  • 5. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Central IT departments that fall behind in establishing cloud governance risk security breaches, denial of service (DoS) attack, loss of control and cloud resources overspend Agility in the Cloud and Governance Control Central IT departments that fall behind in establishing cloud governance risk security breaches, denial of service (DoS) attack, loss of control and cloud resources overspending. Implementing automated governance is part of transforming central IT’s role from fulfilling users’ requests to empowering self-service for teams that need the agility to use cloud services with native tools. Source: ‘Implementing Governance for Public Cloud IaaS’, January 2019, Gartner
  • 6. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Business agility and governance control GOVERNANCE — AGILITY —
  • 7. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Business agility and governance control ꟷ GOVERNANCE — AGILITY — Experiment Be productive Respond quickly to change
  • 8. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T
  • 9. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T AWS Service Catalog: Simplifying Provisioning End UsersOrganizations Curation Compliance Standardization Agility Self-Service Time to Market SpeedSecurity Service Catalog enables organizations to deploy and manage AWS infrastructure and applications that reflect the organization’s security and operational policies
  • 10. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Amazon EMR Amazon DynamoDB Amazon Kinesis Data Analytics AWS Marketplace Amazon RDS AWS Lambda AWS IoT Core AWS CloudFormation Amazon Redshift AWS Service Catalog Current state of self-service AWS console I Need a Server Broad Choices…  Requires Security Policy  Time consuming  Incorrectly tagged  Cost over runs Amazon S3 Amazon EC2
  • 11. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Self-service with preconfigured compliance  Constrains  Security controls  Parameter validation  IAM assignment  Tag enforcement Standardizes best practices JSON or YAML AWS Services AWS Marketplace third-party products Customer-Created AWS-Based Solution AWS Service Catalog Admin
  • 12. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T User’s product list  Compliant with polices  Correctly tagged  Within budget AWS Service Catalog User Amazon Redshift Amazon EC2 Amazon S3 Amazon EC2 New state of self-service
  • 13. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T • Control AWS Provisioning => CT/LZ/AVM • Self Service Portal – One Stop Shop => DevOps • Standardized & Automated Deployments => Multi-Act. • Version Control for AWS Users => IT LifeCycle Mgmt. • Enforce Governance & Compliance proactively => G@S • Integrate with ITSM tools => ServiceNow/BMC AWS Service Catalog | Key Use Cases GOV @ SCALE RESEARCH (evolving) Feature => Use Cases
  • 14. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Pricing and availability GovCloud Region (PDT)
  • 15. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Bristol-Myers Squibb Web Site Kit: 6 weeks of work <30 min If you build it yourself: Team can instantiate it: Maybe miss features / security Already Info-Sec reviewed, ongoing updates REST API Kit: 8 weeks of work <30 min If you build it yourself: Maybe miss features / security & Lots of complexity Already Info-Sec reviewed, ongoing updates Team can instantiate it:
  • 16. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T ” “ Wiley Launches Digital Applications in Minutes Using AWS Service Catalog Wiley is a leading global publisher of scientific, technical, medical, and scholarly journals. • Wanted to move several key applications to the cloud to support business innovation • Uses AWS Service Catalog to enable developer self-service and automation • Launches new applications in 5 minutes instead of many weeks • Gives developers self-service capabilities • Enables the creation of new digital publishing platforms Meltem Dincer Vice President of Platform Capabilities, Wiley Using AWS Service Catalog, we are truly a cloud-first company.
  • 17. By using AWS Service Catalog, I can have a new pipeline ready in 10 minutes, instead of needing days to build it manually. – James Martin, Manager of Automation Engineering, 3M Health Information Systems
  • 18. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T
  • 19. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Developer AWS Service Catalog CloudFormation Template Standardized Patterns Application Specific Patterns • Preapproved, verified, secure • Common application pattern • Security/governance enforced • Immediately available • Requires security checks • Specific to application needs • Longer provisioning time • New application pattern Automate with a Path to DevOps
  • 20. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Distribution model for standardized patterns Shared services account AWS Service Catalog admins can import the portfolios (portfolio ID required) LOB account LOB account LOB account Share directly with AWS Service Catalog or via Organizations Hub & spoke
  • 21. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Standardize with Well-Architected Service Catalog product samples AWS CloudFormation templates have governance & best practices built in Amazon EC2 Amazon RDS Amazon SageMaker Amazon S3 Amazon EMR AWS Service Catalog Reference Architecture GitHub repository https://github.com/aws- samples/aws-service- catalog-reference- architectures
  • 22. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Try it out yourself! • AWS Service Catalog Reference Architecture GitHub repository • CodePipeline folder • https://github.com/aws-samples/aws-service-catalog-reference- architectures/tree/master/codepipeline • More labs and sample templates available
  • 23. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T AWS CloudFormation validation pipeline Deploy with AWS CloudFormation Release Automation 1. Commits to master 3. Copy to Amazon S3 and execute AWS CloudFormation 2. TaskCat and cfn_nag End Users provision updated Products
  • 24. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Distribution model: application-specific patterns Publish AWS Service Catalog product to an Application-Specific Portfolio in the Application’s LOB AWS Account(s) LOB Account(s) Application-Specific Portfolio
  • 25. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Automate Account Vending AWS Service Catalog Lambda-backed custom resource Logging account Amazon S3 bucket Master Account New AWS account CloudTrail Stack Config Stack EBS Encryption Stack CLv2 Spoke Admin RoleAmazon VPC (default) Read Only Role AWS Organizations Existing or New OU AWS CloudFormation StackSets Try it out yourself @ https://aws.amazon.com/blogs/mt /automate-account-creation-and- resource-provisioning-using-aws- service-catalog-aws- organizations-and-aws-lambda/
  • 26. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T
  • 27. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T AWS Service Catalog Brand Your Console Allows customers to upload their logo, choose primary & accent colors into the AWS Service Catalog Console!
  • 28. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Challenges in the Hybrid Organization • Organizations would like to integrate AWS provisioning and management with their ITSM system. • AWS provisioning needs to tie into an organization’s existing ITSM implementation, processes, and workflows. • Lengthy time to integrate AWS with ITSM systems.
  • 29. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T AWS Service Catalog Connector for ServiceNow Self-service for end users: • Provision AWS resources • Manage AWS resources • Integration with existing workflows
  • 30. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Enabling self-service via ITSM Users browse and request AWS services Administrators procure, publish, and govern AWS services Operators monitor and manage AWS services 1 2 3 Amazon EC2 Amazon S3 Amazon RDS Amazon VPC Amazon EMR Amazon SQS Amazon ML AWS Mobile Hub AWS IoT Amazon WorkSpaces 3rd Party ISV Offerings AWS
  • 31. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Browse the AWS Service Catalog products The AWS SC Connector in ServiceNow Request and use
  • 32. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T User experience Browse Products 3 2 1 Portfolio End Users Select Product, Configure Parameters, Request LaunchDeploy Outputs 4 Service Request Workflow—RITM Maps to AWS Service Catalog Portfolio Launch Product Provisioned Product Configuration Item AWS Service Catalog API AWS Service Catalog
  • 33. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Benefits for users Familiar, easy to use, self-service interface to: • Provision or request AWS resource(s) • Manage AWS resource(s): • Self-service update and terminate • Stop, start, reboot Amazon WorkSpaces or Amazon EC2 • Snapshot of Amazon EBS storage volumes • Workflows and approvals automatically triggered
  • 34. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Benefits for enterprises • Reduces time to integrate ServiceNow with AWS • Accelerates AWS onboarding and adoption • Build and leverage existing workflows, approvals, record keeping, and auditing (CMDB) within ServiceNow • Does not require ServiceNow team to learn AWS • Available now, at no cost, in the ServiceNow store
  • 35. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T AWS Service Catalog allows Deloitte's ConvergeHEALTH to provision its solutions in near real-time
  • 36. © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Summary: Outcomes customers accomplish! Stay agile Innovate with the speed Empower builders Provide self-service & developer autonomy Establish governance Maintain the security & compliance posture
  • 37. Thank you! © 2019, Amazon Web Services, Inc. or its affiliates. All rights reserved.P U B L I C S E C T O R S U M M I T Speaker Name: Kaushik Mohanty Company Name: AWS Contact Info.: kmohanty@amazon.com (703) 300 8960