How to Set Up a Cloud Cost Optimization Process for your EnterpriseRightScale
As cloud spend grows, enterprises need to set up internal processes to manage and optimize their cloud costs. This process will help organizations to accurately allocate and report on costs while minimizing wasted spend. In this webinar, experts from RightScale’s Cloud Cost Optimization team will share best practices in how to set up your own internal processes.
Azure Cloud Adoption Framework + Governance - Sana Khan and Jay Kumar Timothy McAliley
The document discusses Microsoft's Cloud Adoption Framework for Azure, which provides guidance to help organizations adopt cloud technologies in a controlled and stable manner while also enabling innovation and growth. The framework is modular and covers key areas of Ready, Plan, Adopt, and Govern to help align business and technology strategies. It provides best practices and blueprints for building cloud foundations, migrating workloads, modernizing applications, and establishing governance policies to manage cloud operations and ensure compliance. The goal is to help customers achieve a balance of control, stability, speed and results in their cloud adoption journey.
1. Azure Governance provides native platform capabilities to ensure compliant use of cloud resources through environment factory, policy-based control, and resource visibility features.
2. Environment factory allows users to deploy and update cloud environments in a repeatable manner using composable artifacts like ARM templates.
3. Policy-based control enables real-time policy evaluation and enforcement as well as periodic and on-demand compliance assessment at scale across management groups.
온디맨드 다시보기: https://www.youtube.com/watch?v=LMBSWl9Uo-4
2021년 1분기에 서울 리전에 출시 예정인 AWS Control Tower는 모범 사례를 기반으로 고객의 다중 AWS 계정 환경을 자동으로 구성해 줍니다. 본 세션에서는 AWS Control Tower를 활용하여 고객의 조직에서 필요로 하는 다중 AWS 계정 구조을 설계 및 구현하고, 각 계정에 포함해야 하는 기본 가드레일을 정의 및 생성하고, 거버넌스 체계를 구현하는 방법에 대해서 다룹니다.
A brief comparison between two cloud platforms AWS vs. Azure. Compare Microsoft Azure services, pricing, customers and more with Amazon AWS through slides.
This webinar covers cloud security fundamentals across AWS, Azure, and GCP. It begins with introductions and an overview of the course, which includes cloud security 101, best practices for each cloud provider, and a discussion of current threats. The presentation covers topics such as the shared responsibility model, cloud security risks and governance models, identity and access management, data security, and techniques for mitigating risks in the cloud. It emphasizes the importance of a data-centric approach to security and controlling access according to the principles of least privilege and separation of duties.
AWS Cloud Adoption Framework and WorkshopsTom Laszewski
The presentation covers the AWS Cloud Adoption Framework (CAF). AWS CAF helps organization accelerate their cloud adoption journey. The framework includes six perspectives - business, people, governance, security, operations, and platform. These six perspectives are used during CAF Envision, Alignment, and Cloud Capability Assessment workshops to enable the art of the possible, identify and mitigate organizational and technology impediments, and score the cloud capabilities of an organization.
This deck is prepared as result of secondary research on Cloud computing market. There is short analysis on Google cloud in it's industry and its advantage over its closest rival Microsoft Azure.
This document provides an overview of Google Cloud Platform (GCP) services. It begins by explaining why GCP is underpinned by Google's infrastructure and innovation. It then outlines GCP's compute, networking, storage, big data, and machine learning services. These include Compute Engine, Container Engine, App Engine, load balancing, Cloud DNS, Cloud Storage, Cloud Datastore, Cloud Bigtable, Cloud SQL, BigQuery, Dataflow, Pub/Sub, Dataproc, and Cloud Datalab. Machine learning services such as Translate API, Prediction API, Cloud Vision API, and Cloud Speech API are also introduced.
영상 다시보기: https://youtu.be/aoQOqhVtdGo
기존 온-프레미스 환경에서 운영 중인 서버들을 AWS 클라우드로 옮겨오기 위한 방법은 무엇일까요? 본 세션에서는 리눅스 서버, 윈도우 서버 그리고 VMWare 등에서 운영되는 기존 서버의 클라우드 이전 방법을 소개합니다. 이를 통해 AWS의 기업 고객이 대량 마이그레이션을 진행했는지 고객 사례도 함께 공유합니다. 뿐만 아니라 VMware on AWS 및 AWS Outpost 같은 하이브리드 옵션을 통해 클라우드 도입을 가속화 하는 신규 서비스 동향도 살펴봅니다.
This is the Lesson 4 of the "Azure Governance - Free training" serie.
This document presents Azure Policy in-depth and lists all key items you should now when designing your Azure Policy Model.
Finally, the document describes all methods/tools (GUI & CLI) you can use to create, manage and assign Policy (Definition and Initiative Definition) to your Azure environment.
Creating and using a Custom Policies is also detailed on this document.
Windows Azure Backup provides a simple and reliable way to backup server data to the cloud. It encrypts backup data stored in Windows Azure storage for security. Backup and recovery is efficient using network and storage resources optimally. Windows Azure Backup integrates with existing Microsoft backup tools and provides offsite data protection in the cloud. To use it, organizations sign up for a Windows Azure account, enable Windows Azure Backup, configure backups and it charges per GB of storage used each month.
The Azure Migration Program provides a step-by-step approach to migrate workloads to Azure over time. It offers prescriptive guidance, tools, skill building, and incentives to accelerate customers' journey to the cloud. Customers first assess their environments and plan migrations. They then build the foundation and complete skill building. With assistance from Microsoft and partners, customers execute migrations, optimize workloads, and establish management and security practices on Azure.
The document discusses Microsoft's Cloud Adoption Framework for Azure. It provides guidance, best practices and tools to help organizations align their business and technology strategies for cloud migration. The framework takes a phased approach including defining strategy, planning, preparing infrastructure with landing zones, adopting workloads, managing and governing resources. It warns against common pitfalls like trying to mirror on-premises environments, not involving stakeholders, and missing critical planning steps.
here's where Microsoft has invested, across these areas: identity and access management, apps and data security, network security, threat protection, and security management.
We’ve put a tremendous amount of investment into these areas and the way it shows up is across a pretty broad array of product areas and features.
Our Identity and Access Management tools enable you to take an identity-based approach to security, and establish truly conditional access policies
Our App and Data Security help you protect your apps and your data as it moves around—both inside and outside your organization
Azure includes a robust networking infrastructure with built-in security controls for your application and service connectivity.
Our Threat Protection capabilities are built in and fully integrated, so you can strengthen both pre-breach protection with deep capabilities across e-mail, collaboration services, and end points including hardware based protection; and post-breach detection that includes memory and kernel based protection and response with automation.
And our Security Management tools give you the visibility and more importantly the guidance to manage policy centrally
The document provides an overview of Azure networking concepts including:
- Virtual networks and subnets that logically separate Azure resources
- Public and private IP addresses and how they are used
- Common networking devices like load balancers, application gateways, and firewalls
- Connectivity options between on-premises and Azure networks like ExpressRoute, VPN Gateway, and VNet peering
- Network security features like network security groups, application security groups and Azure Firewall
The document outlines the key networking services and configurations available in Azure, focusing on logical isolation of resources, secure connectivity, traffic management and security controls. It summarizes the main components involved in architecting and securing network infrastructure on Azure.
금융 X 하이브리드 클라우드 플랫폼 - 한화생명 디지털 트랜스포메이션 전략 - 김나영 AWS 금융부문 사업개발 담당 / 박인규 AWS 금융...Amazon Web Services Korea
금융권의 클라우드 여정과 AWS Outposts를 활용한 하이브리드 환경 구성 방법을 소개합니다. 한화생명은 급변하는 비즈니스와 기술 환경에 민첩하게 대응하고 고객에게 선진 상품을 제공하고자, AWS Outposts 기반의 하이브리드 환경을 통해 100% 컨테이너 기반의 마이크로서비스 아키텍쳐를 구성하였습니다. 금융 클라우드 이용 가이드 준수를 위한 관리 및 통합 거버넌스 체계 구축 방법부터 다양한 AWS 서비스를 활용한 민첩한 서비스 개발 방법까지 폭넓게 알아봅니다.
Introduction to Amazon Web Services (AWS)Garvit Anand
The document provides an introduction to AWS (Amazon Web Services). It discusses cloud computing basics and benefits like scalability, cost savings, and innovation. Major players in the cloud market are mentioned, with AWS identified as the current leader. The document outlines the agenda, including AWS history, current users, and getting started instructions. Key AWS concepts are explained, such as regions, availability zones, and identity and access management (IAM). IAM is described as the mechanism for controlling user permissions to AWS resources. The presentation concludes with an invitation for questions.
Getting started with azure event hubs and stream analytics servicesEastBanc Tachnologies
Author: Vladimir Bychkov, www.eastbanctech.com
The total amount of data in the world almost doubles every 2 years. Storing data for offline processing is no longer a viable business model. In the past few years, new technologies for real-time data processing emerged. Microsoft Azure offers a comprehensive set of tools to ingest and process data in motion. In this presentation we will go over and learn how to collect data from devices, how to process data in real time using Azure Stream Analytic jobs, and how to produce and handle actionable insights.
Azure Cost Management is a native Azure service that helps you analyze costs, create and manage budgets, export data, and review and act on optimization recommendations to save money.
This document discusses how AWS Control Tower can be used to govern multi-account AWS environments at scale. It provides an overview of AWS Control Tower's key capabilities including automated setup of a landing zone with best practice blueprints and guardrails, account factory for provisioning accounts, centralized identity and access management, and built-in monitoring and notifications. Examples are also given of how AWS Control Tower can be used to implement common multi-account architectures and operational models.
AWS 기반 클라우드 아키텍처 모범사례 - 삼성전자 개발자 포털/개발자 워크스페이스 - 정영준 솔루션즈 아키텍트, AWS / 유현성 수석,...Amazon Web Services Korea
AWS 기반 클라우드 아키텍처 모범사례 - 삼성전자 개발자 포털/개발자 워크스페이스
정영준 솔루션즈 아키텍트, AWS
유현성 수석, 삼성전자 클라우드팀
다양한 AWS 아키텍처 적인 요소들을 적용한 구체적인 사례들에 대해서 소개합니다. 삼성전자에서 2년동안 만든 공통 플랫폼 기반 개발자 포털의 아키텍처와 개발 스토리 그리고 SRE(Site Reliability Engineering) 적용 등에 대한 이야기를 직접 들어보며, 수백만 명의 모바일 사용자에게 사진을 공유하는 애플리케이션을 운영하는 서비스, 테라바이트 이상의 데이터가 다양한 소스에서 들어 올 때 실시간으로 분석하기 위한 아키텍처들에 대해서도 알아봅니다. 또한 중단 되면 안되는 중요한 비즈니스 운영을 지원하는 서비스나 금융 데이터 같은 민감한 데이터를 다루는 서비스를 운영하는 다른 베스트 프렉티스 아키텍처도 소개합니다.
This document discusses Google Cloud Platform and how Google powers its own services. It notes that Google is the fourth largest server manufacturer and would be the second largest internet service provider by traffic. It describes how Google builds customized hardware from cheap commodity parts and manages vast numbers of homogeneous servers at scale with software resilience and horizontal layers rather than hardware resilience and vertical stacks. The document also provides an overview of how Google's global data centers, communications network, data storage and distribution, services and APIs, and compute platforms can be utilized to build and scale applications. It includes several customer stories about how companies have used Google Cloud Platform for applications experiencing peak traffic, global data storage, crowd-sourcing weather data, and syncing notes across devices.
Azure Active Directory | Microsoft Azure Tutorial for Beginners | Azure 70-53...Edureka!
** Microsoft Azure Certification Training: https://www.edureka.co/microsoft-azure-training**
This Edureka "Azure Active Directory” tutorial will give you a thorough and insightful overview of Microsoft Azure Active Directory and help you understand other related terms like Tenants, Domain services etc. Following are the offerings of this tutorial:
1. What is Azure Active Directory?
2. Azure AD vs Windows AD
3. Azure AD Audience
4. Azure AD Editions
5. Azure AD Tenants
6. Demo-Creating and using Active Directory
Check out our Playlists: https://goo.gl/A1CJjM
Česko-Slovenský AWS Webinář 07 - Optimalizace nákladů v AWSVladimir Simek
Široká škála služeb a cenových možností, které AWS nabízí, umožnuje flexibilitu efektivního řízení nákladů a udržení výkonu a kapacity, kterou vaše podnikání vyžaduje. Díky AWS cloudu můžete snadno spravovat své zdroje, využívat rezervované instance a používat výkonné nástroje pro správu nákladů, abyste mohli sledovat své náklady.
AWS Cloud Experience CA: Cómo reducir sus costos en AWS (broad cost strategy)Amazon Web Services LATAM
The document discusses optimizing costs when scaling on AWS. It begins by introducing the five pillars of cost optimization: right-sizing instances, choosing the right pricing model, increasing elasticity, measuring and monitoring usage, and matching usage to storage classes. It then covers establishing an account strategy using AWS Organizations, setting up a tagging strategy for visibility and chargebacks, and setting up cost reports in AWS Cost Explorer. The document recommends leveraging partners to accelerate optimization efforts and provides next steps to take, including enabling cost explorer and using cost management partners.
This webinar covers cloud security fundamentals across AWS, Azure, and GCP. It begins with introductions and an overview of the course, which includes cloud security 101, best practices for each cloud provider, and a discussion of current threats. The presentation covers topics such as the shared responsibility model, cloud security risks and governance models, identity and access management, data security, and techniques for mitigating risks in the cloud. It emphasizes the importance of a data-centric approach to security and controlling access according to the principles of least privilege and separation of duties.
AWS Cloud Adoption Framework and WorkshopsTom Laszewski
The presentation covers the AWS Cloud Adoption Framework (CAF). AWS CAF helps organization accelerate their cloud adoption journey. The framework includes six perspectives - business, people, governance, security, operations, and platform. These six perspectives are used during CAF Envision, Alignment, and Cloud Capability Assessment workshops to enable the art of the possible, identify and mitigate organizational and technology impediments, and score the cloud capabilities of an organization.
This deck is prepared as result of secondary research on Cloud computing market. There is short analysis on Google cloud in it's industry and its advantage over its closest rival Microsoft Azure.
This document provides an overview of Google Cloud Platform (GCP) services. It begins by explaining why GCP is underpinned by Google's infrastructure and innovation. It then outlines GCP's compute, networking, storage, big data, and machine learning services. These include Compute Engine, Container Engine, App Engine, load balancing, Cloud DNS, Cloud Storage, Cloud Datastore, Cloud Bigtable, Cloud SQL, BigQuery, Dataflow, Pub/Sub, Dataproc, and Cloud Datalab. Machine learning services such as Translate API, Prediction API, Cloud Vision API, and Cloud Speech API are also introduced.
영상 다시보기: https://youtu.be/aoQOqhVtdGo
기존 온-프레미스 환경에서 운영 중인 서버들을 AWS 클라우드로 옮겨오기 위한 방법은 무엇일까요? 본 세션에서는 리눅스 서버, 윈도우 서버 그리고 VMWare 등에서 운영되는 기존 서버의 클라우드 이전 방법을 소개합니다. 이를 통해 AWS의 기업 고객이 대량 마이그레이션을 진행했는지 고객 사례도 함께 공유합니다. 뿐만 아니라 VMware on AWS 및 AWS Outpost 같은 하이브리드 옵션을 통해 클라우드 도입을 가속화 하는 신규 서비스 동향도 살펴봅니다.
This is the Lesson 4 of the "Azure Governance - Free training" serie.
This document presents Azure Policy in-depth and lists all key items you should now when designing your Azure Policy Model.
Finally, the document describes all methods/tools (GUI & CLI) you can use to create, manage and assign Policy (Definition and Initiative Definition) to your Azure environment.
Creating and using a Custom Policies is also detailed on this document.
Windows Azure Backup provides a simple and reliable way to backup server data to the cloud. It encrypts backup data stored in Windows Azure storage for security. Backup and recovery is efficient using network and storage resources optimally. Windows Azure Backup integrates with existing Microsoft backup tools and provides offsite data protection in the cloud. To use it, organizations sign up for a Windows Azure account, enable Windows Azure Backup, configure backups and it charges per GB of storage used each month.
The Azure Migration Program provides a step-by-step approach to migrate workloads to Azure over time. It offers prescriptive guidance, tools, skill building, and incentives to accelerate customers' journey to the cloud. Customers first assess their environments and plan migrations. They then build the foundation and complete skill building. With assistance from Microsoft and partners, customers execute migrations, optimize workloads, and establish management and security practices on Azure.
The document discusses Microsoft's Cloud Adoption Framework for Azure. It provides guidance, best practices and tools to help organizations align their business and technology strategies for cloud migration. The framework takes a phased approach including defining strategy, planning, preparing infrastructure with landing zones, adopting workloads, managing and governing resources. It warns against common pitfalls like trying to mirror on-premises environments, not involving stakeholders, and missing critical planning steps.
here's where Microsoft has invested, across these areas: identity and access management, apps and data security, network security, threat protection, and security management.
We’ve put a tremendous amount of investment into these areas and the way it shows up is across a pretty broad array of product areas and features.
Our Identity and Access Management tools enable you to take an identity-based approach to security, and establish truly conditional access policies
Our App and Data Security help you protect your apps and your data as it moves around—both inside and outside your organization
Azure includes a robust networking infrastructure with built-in security controls for your application and service connectivity.
Our Threat Protection capabilities are built in and fully integrated, so you can strengthen both pre-breach protection with deep capabilities across e-mail, collaboration services, and end points including hardware based protection; and post-breach detection that includes memory and kernel based protection and response with automation.
And our Security Management tools give you the visibility and more importantly the guidance to manage policy centrally
The document provides an overview of Azure networking concepts including:
- Virtual networks and subnets that logically separate Azure resources
- Public and private IP addresses and how they are used
- Common networking devices like load balancers, application gateways, and firewalls
- Connectivity options between on-premises and Azure networks like ExpressRoute, VPN Gateway, and VNet peering
- Network security features like network security groups, application security groups and Azure Firewall
The document outlines the key networking services and configurations available in Azure, focusing on logical isolation of resources, secure connectivity, traffic management and security controls. It summarizes the main components involved in architecting and securing network infrastructure on Azure.
금융 X 하이브리드 클라우드 플랫폼 - 한화생명 디지털 트랜스포메이션 전략 - 김나영 AWS 금융부문 사업개발 담당 / 박인규 AWS 금융...Amazon Web Services Korea
금융권의 클라우드 여정과 AWS Outposts를 활용한 하이브리드 환경 구성 방법을 소개합니다. 한화생명은 급변하는 비즈니스와 기술 환경에 민첩하게 대응하고 고객에게 선진 상품을 제공하고자, AWS Outposts 기반의 하이브리드 환경을 통해 100% 컨테이너 기반의 마이크로서비스 아키텍쳐를 구성하였습니다. 금융 클라우드 이용 가이드 준수를 위한 관리 및 통합 거버넌스 체계 구축 방법부터 다양한 AWS 서비스를 활용한 민첩한 서비스 개발 방법까지 폭넓게 알아봅니다.
Introduction to Amazon Web Services (AWS)Garvit Anand
The document provides an introduction to AWS (Amazon Web Services). It discusses cloud computing basics and benefits like scalability, cost savings, and innovation. Major players in the cloud market are mentioned, with AWS identified as the current leader. The document outlines the agenda, including AWS history, current users, and getting started instructions. Key AWS concepts are explained, such as regions, availability zones, and identity and access management (IAM). IAM is described as the mechanism for controlling user permissions to AWS resources. The presentation concludes with an invitation for questions.
Getting started with azure event hubs and stream analytics servicesEastBanc Tachnologies
Author: Vladimir Bychkov, www.eastbanctech.com
The total amount of data in the world almost doubles every 2 years. Storing data for offline processing is no longer a viable business model. In the past few years, new technologies for real-time data processing emerged. Microsoft Azure offers a comprehensive set of tools to ingest and process data in motion. In this presentation we will go over and learn how to collect data from devices, how to process data in real time using Azure Stream Analytic jobs, and how to produce and handle actionable insights.
Azure Cost Management is a native Azure service that helps you analyze costs, create and manage budgets, export data, and review and act on optimization recommendations to save money.
This document discusses how AWS Control Tower can be used to govern multi-account AWS environments at scale. It provides an overview of AWS Control Tower's key capabilities including automated setup of a landing zone with best practice blueprints and guardrails, account factory for provisioning accounts, centralized identity and access management, and built-in monitoring and notifications. Examples are also given of how AWS Control Tower can be used to implement common multi-account architectures and operational models.
AWS 기반 클라우드 아키텍처 모범사례 - 삼성전자 개발자 포털/개발자 워크스페이스 - 정영준 솔루션즈 아키텍트, AWS / 유현성 수석,...Amazon Web Services Korea
AWS 기반 클라우드 아키텍처 모범사례 - 삼성전자 개발자 포털/개발자 워크스페이스
정영준 솔루션즈 아키텍트, AWS
유현성 수석, 삼성전자 클라우드팀
다양한 AWS 아키텍처 적인 요소들을 적용한 구체적인 사례들에 대해서 소개합니다. 삼성전자에서 2년동안 만든 공통 플랫폼 기반 개발자 포털의 아키텍처와 개발 스토리 그리고 SRE(Site Reliability Engineering) 적용 등에 대한 이야기를 직접 들어보며, 수백만 명의 모바일 사용자에게 사진을 공유하는 애플리케이션을 운영하는 서비스, 테라바이트 이상의 데이터가 다양한 소스에서 들어 올 때 실시간으로 분석하기 위한 아키텍처들에 대해서도 알아봅니다. 또한 중단 되면 안되는 중요한 비즈니스 운영을 지원하는 서비스나 금융 데이터 같은 민감한 데이터를 다루는 서비스를 운영하는 다른 베스트 프렉티스 아키텍처도 소개합니다.
This document discusses Google Cloud Platform and how Google powers its own services. It notes that Google is the fourth largest server manufacturer and would be the second largest internet service provider by traffic. It describes how Google builds customized hardware from cheap commodity parts and manages vast numbers of homogeneous servers at scale with software resilience and horizontal layers rather than hardware resilience and vertical stacks. The document also provides an overview of how Google's global data centers, communications network, data storage and distribution, services and APIs, and compute platforms can be utilized to build and scale applications. It includes several customer stories about how companies have used Google Cloud Platform for applications experiencing peak traffic, global data storage, crowd-sourcing weather data, and syncing notes across devices.
Azure Active Directory | Microsoft Azure Tutorial for Beginners | Azure 70-53...Edureka!
** Microsoft Azure Certification Training: https://www.edureka.co/microsoft-azure-training**
This Edureka "Azure Active Directory” tutorial will give you a thorough and insightful overview of Microsoft Azure Active Directory and help you understand other related terms like Tenants, Domain services etc. Following are the offerings of this tutorial:
1. What is Azure Active Directory?
2. Azure AD vs Windows AD
3. Azure AD Audience
4. Azure AD Editions
5. Azure AD Tenants
6. Demo-Creating and using Active Directory
Check out our Playlists: https://goo.gl/A1CJjM
Česko-Slovenský AWS Webinář 07 - Optimalizace nákladů v AWSVladimir Simek
Široká škála služeb a cenových možností, které AWS nabízí, umožnuje flexibilitu efektivního řízení nákladů a udržení výkonu a kapacity, kterou vaše podnikání vyžaduje. Díky AWS cloudu můžete snadno spravovat své zdroje, využívat rezervované instance a používat výkonné nástroje pro správu nákladů, abyste mohli sledovat své náklady.
AWS Cloud Experience CA: Cómo reducir sus costos en AWS (broad cost strategy)Amazon Web Services LATAM
The document discusses optimizing costs when scaling on AWS. It begins by introducing the five pillars of cost optimization: right-sizing instances, choosing the right pricing model, increasing elasticity, measuring and monitoring usage, and matching usage to storage classes. It then covers establishing an account strategy using AWS Organizations, setting up a tagging strategy for visibility and chargebacks, and setting up cost reports in AWS Cost Explorer. The document recommends leveraging partners to accelerate optimization efforts and provides next steps to take, including enabling cost explorer and using cost management partners.
This module discusses cloud economics and the total cost of ownership (TCO) of cloud services. It covers the fundamentals of AWS pricing, including pay-as-you-go models and discounts for reserved instances and increased usage. The document also compares the TCO of maintaining infrastructure on-premises versus using AWS, noting that AWS often provides significant savings. Tools like the AWS TCO calculator can help estimate costs and savings. A case study shows how one company eliminated most servers by moving workloads to AWS and achieved goals like faster provisioning and increased efficiency.
The document provides guidance on optimizing costs when scaling applications on AWS. It discusses establishing a cloud financial management framework with pillars around cost optimization, measurement and accountability, and planning and forecasting. Specific recommendations are given around setting up AWS accounts and tagging strategies for visibility, using AWS Cost Explorer for reporting, and leveraging partners for cost management. Tips are also provided like deleting unused resources, right-sizing instances, and using reserved instances and spot instances to reduce costs as usage scales on AWS.
This document provides an overview of cloud computing concepts and Amazon Web Services (AWS). It defines cloud computing as the on-demand delivery of computing resources via the internet. The three main models of cloud computing are Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS). Six key advantages of cloud computing are also outlined: replacing capital expenses with variable expenses, benefiting from economies of scale, eliminating guessing about capacity needs, increasing speed and agility, stopping spending on data centers, and enabling easy global deployment. AWS is then introduced as a cloud platform that provides over 165 services across categories like compute, storage, databases, analytics and more.
Discover how to reduce your AWS cloud costs with our comprehensive guide to AWS cloud cost optimization. Explore cost-saving strategies like Reserved Instance utilization, Right-Sizing, and more. Learn how to audit your cloud spend and optimize for the best value.
This document discusses best practices for using AWS Secrets Manager. It covers an overview of Secrets Manager, security threats related to credentials, compliance with PCI DSS and CIS standards, use cases for secrets with infrastructure as code tools like CloudFormation and Terraform, configuration management with Ansible, auditing secrets usage with CloudTrail, monitoring with CloudWatch, and notifications with SNS. Comparisons are made to other options like SSM Parameter Store and Ansible Vault.
The document discusses cloud security and compliance. It defines cloud computing and outlines the essential characteristics and service models. It then discusses key considerations for cloud security including identity and access management, security threats and countermeasures, application security, operations and maintenance, and compliance. Chief information officer concerns around security, availability, performance and cost are also addressed.
The document describes lessons learned from building a distributed linked list on Amazon S3 to store event data from millions of subscriptions. Initial approaches using a database were unsuccessful due to high read costs. A solution was developed using S3 for storage, batching events for cost efficiency, and an algorithm to order batches without distributed locking. The final system achieved low latency reads of 0.06 seconds on average at high throughput and significant cost savings compared to database-centric approaches. Key lessons included understanding the problem, designing for the capabilities of underlying services, and heeding experienced advice.
Medlife is a telemedicine platform that provides medicine delivery, doctor e-consultations, and labs. The document outlines the 5 stages of Medlife's infrastructure development on AWS:
Stage 1 was the early days with a simple 2-tier monolith architecture. Stage 2 focused on automation and moving to multi-tier. Stage 3 was migrating infrastructure from Singapore to Mumbai. Stage 4 optimized for growth with services like ECS, EMR, Redis. Stage 5 plans to explore data lakes, AI/ML using services like SageMaker and Textract.
This document discusses Slack's transition from using a single AWS account to using multiple accounts organized by team. The key drivers were to assign ownership of services to teams, reduce the blast radius of incidents, reduce service and rate limits, and improve cost management. Tools like Terraform and SSO were used to manage the accounts. While IAM management, migration, and account creation were more difficult than expected, the biggest wins were achieving conformity with Terraform, quick changes, and capturing changes in source control with Terraform and simplifying access for users with SSO. Pain points include deleting accounts, tracking cross-account resources, and access. The future may include more resource and asset sharing between accounts as well as continued
Log Analytics with ELK Stack describes optimizing an ELK stack implementation for a mobile gaming company to reduce costs and scale data ingestion. Key optimizations included moving to spot instances, separating logs into different indexes based on type and retention needs, tuning Elasticsearch and Logstash configurations, and implementing a hot-warm architecture across different EBS volume types. These changes reduced overall costs by an estimated 80% while maintaining high availability and scalability.
- QuizNext is a gamified learning app for CBSE and ICSE students from grades 6-10 with over 100k users and 10 million server calls per month.
- It uses a serverless architecture on AWS with AWS Lambda, Amazon API Gateway, Amazon DynamoDB, Amazon S3, AWS AppSync, Amazon Cognito, and other services.
- This allows the app to scale easily and cost-effectively to support thousands of users with zero downtime and incremental deployments without capacity planning or log cleaning.
The document discusses translating common application architecture patterns to serverless architectures on AWS. It summarizes circuit breakers using Lambda and Step Functions, using SSM Parameter Store for external configuration, asynchronous background tasks using SQS and ECS/Fargate, and implementing real-time capabilities using API Gateway websockets. The presentation provides examples and advantages of these serverless approaches.
This document provides an overview of using Amazon EC2 Spot Instances for compute workloads. It discusses EC2 Spot pricing and purchase options, features like interruptions and orchestration with Auto Scaling Groups and Spot Fleet. Use cases where Spot is well-suited include stateless, fault-tolerant workloads. Integrations with container and big data services like ECS, EKS and EMR are also covered. The presentation emphasizes flexibility, automation and diversification to maximize cost savings from Spot while minimizing risks of interruptions.
Building Efficient, Scalable and Resilient Front-end logging service with AWSAWS User Group Bengaluru
The number of internet users is increasing rapidly and so is the number of mobile/web applications. Processing and analyzing user activity is one of the techniques to observe/monitor mobile/web apps. Much of this user activity is captured by the mobile app as a structured log.
The problem we are trying to solve here is building and operating a processing backend that ingests activity data from millions of devices with availability and SLA guarantees.
This talk was presented at AWS Community Day Bengaluru 2019 by Kokilavani Kathiresan, Ravikumar Kota and Shailja Agarwala - Intuit
We'll be walking through our AWS journey wherein we'll start with our humble beginnings and how we had to scale ourselves in order to cater to our current business needs.
This talk was presented at AWS Community Day Bengaluru 2019 by Pranesh Vittal, Database Architect, Medlife.com and Prasanna Desai, Senior Build And Release Engineer, Medlife.com
CFP - AWS Community Day 2019
CFP - AWS Community Day 2019
100%
10
One of the best practices in Cloud solutions is reliability and consistency is using credentials and this session explains on how to Implement this practice using AWS Secrets Manager
Screen reader support enabled.
One of the best practices in Cloud solutions is reliability and consistency is using credentials and this session explains on how to Implement this practice using AWS Secrets Manager
This talk was presented at AWS Community Day Bengaluru 2019 by Vijayanirmala, Devops Solution lead, Sonata software limited
Exploring opportunities with communities for a successful career
This talk was presented at AWS Community Day Bengaluru 2019 by Shwetha Lakshman Rao, Sr. MTS , VMware software India & City Director - Women Who Code Bangalore and Moderated by Bhuvaneswari Subramani, AWS re:Invent Diversity Scholarship Recipient
In the talk I speak about our year long journey of implementing a distributed system that needed to run on scale, and what mistakes we made and how we learnt from them. Talk also touches on a very interesting problem of ordering writes in a distributed environment without any locking. The takeaway for the audience would be around how to approach a problem when they are solving for scale.
This talk was presented at AWS Community Day Bengaluru 2019 by Manik Jindal, Computer Scientist, Adobe
The document discusses cloud security and compliance. It defines cloud computing and outlines the essential characteristics and service models. It then discusses key considerations for cloud security including identity and access management, security threats and countermeasures, application security, operations and maintenance, and compliance. Chief information officer concerns around security, availability, performance and cost are also addressed.
The document discusses Amazon EC2 Spot Instances, providing an overview of Spot pricing models and best practices. It outlines that Spot Instances provide spare AWS computing capacity at significantly lower prices than On-Demand instances, with the trade-off being potential interruptions with two minutes notice. The document provides guidance on using Spot for fault-tolerant workloads and monitoring Spot prices and usage to optimize costs.
Deep dive session on Cloud Financial Management Fundamentals and Cost Optimization in AWS.
Presented by Spencer Marley, APAC BD at the November 2018 AWSUGBLR Meetup
Big Data Analytics Quick Research Guide by Arthur MorganArthur Morgan
This is a Quick Research Guide (QRG).
QRGs include the following:
- A brief, high-level overview of the QRG topic.
- A milestone timeline for the QRG topic.
- Links to various free online resource materials to provide a deeper dive into the QRG topic.
- Conclusion and a recommendation for at least two books available in the SJPL system on the QRG topic.
QRGs planned for the series:
- Artificial Intelligence QRG
- Quantum Computing QRG
- Big Data Analytics QRG
- Spacecraft Guidance, Navigation & Control QRG (coming 2026)
- UK Home Computing & The Birth of ARM QRG (coming 2027)
Any questions or comments?
- Please contact Arthur Morgan at [email protected].
100% human made.
DevOpsDays Atlanta 2025 - Building 10x Development Organizations.pptxJustin Reock
Building 10x Organizations with Modern Productivity Metrics
10x developers may be a myth, but 10x organizations are very real, as proven by the influential study performed in the 1980s, ‘The Coding War Games.’
Right now, here in early 2025, we seem to be experiencing YAPP (Yet Another Productivity Philosophy), and that philosophy is converging on developer experience. It seems that with every new method we invent for the delivery of products, whether physical or virtual, we reinvent productivity philosophies to go alongside them.
But which of these approaches actually work? DORA? SPACE? DevEx? What should we invest in and create urgency behind today, so that we don’t find ourselves having the same discussion again in a decade?
Procurement Insights Cost To Value Guide.pptxJon Hansen
Procurement Insights integrated Historic Procurement Industry Archives, serves as a powerful complement — not a competitor — to other procurement industry firms. It fills critical gaps in depth, agility, and contextual insight that most traditional analyst and association models overlook.
Learn more about this value- driven proprietary service offering here.
Role of Data Annotation Services in AI-Powered ManufacturingAndrew Leo
From predictive maintenance to robotic automation, AI is driving the future of manufacturing. But without high-quality annotated data, even the smartest models fall short.
Discover how data annotation services are powering accuracy, safety, and efficiency in AI-driven manufacturing systems.
Precision in data labeling = Precision on the production floor.
#StandardsGoals for 2025: Standards & certification roundup - Tech Forum 2025BookNet Canada
Book industry standards are evolving rapidly. In the first part of this session, we’ll share an overview of key developments from 2024 and the early months of 2025. Then, BookNet’s resident standards expert, Tom Richardson, and CEO, Lauren Stewart, have a forward-looking conversation about what’s next.
Link to recording, transcript, and accompanying resource: https://bnctechforum.ca/sessions/standardsgoals-for-2025-standards-certification-roundup/
Presented by BookNet Canada on May 6, 2025 with support from the Department of Canadian Heritage.
Massive Power Outage Hits Spain, Portugal, and France: Causes, Impact, and On...Aqusag Technologies
In late April 2025, a significant portion of Europe, particularly Spain, Portugal, and parts of southern France, experienced widespread, rolling power outages that continue to affect millions of residents, businesses, and infrastructure systems.
Artificial Intelligence is providing benefits in many areas of work within the heritage sector, from image analysis, to ideas generation, and new research tools. However, it is more critical than ever for people, with analogue intelligence, to ensure the integrity and ethical use of AI. Including real people can improve the use of AI by identifying potential biases, cross-checking results, refining workflows, and providing contextual relevance to AI-driven results.
News about the impact of AI often paints a rosy picture. In practice, there are many potential pitfalls. This presentation discusses these issues and looks at the role of analogue intelligence and analogue interfaces in providing the best results to our audiences. How do we deal with factually incorrect results? How do we get content generated that better reflects the diversity of our communities? What roles are there for physical, in-person experiences in the digital world?
AI and Data Privacy in 2025: Global TrendsInData Labs
In this infographic, we explore how businesses can implement effective governance frameworks to address AI data privacy. Understanding it is crucial for developing effective strategies that ensure compliance, safeguard customer trust, and leverage AI responsibly. Equip yourself with insights that can drive informed decision-making and position your organization for success in the future of data privacy.
This infographic contains:
-AI and data privacy: Key findings
-Statistics on AI data privacy in the today’s world
-Tips on how to overcome data privacy challenges
-Benefits of AI data security investments.
Keep up-to-date on how AI is reshaping privacy standards and what this entails for both individuals and organizations.
AI Changes Everything – Talk at Cardiff Metropolitan University, 29th April 2...Alan Dix
Talk at the final event of Data Fusion Dynamics: A Collaborative UK-Saudi Initiative in Cybersecurity and Artificial Intelligence funded by the British Council UK-Saudi Challenge Fund 2024, Cardiff Metropolitan University, 29th April 2025
https://alandix.com/academic/talks/CMet2025-AI-Changes-Everything/
Is AI just another technology, or does it fundamentally change the way we live and think?
Every technology has a direct impact with micro-ethical consequences, some good, some bad. However more profound are the ways in which some technologies reshape the very fabric of society with macro-ethical impacts. The invention of the stirrup revolutionised mounted combat, but as a side effect gave rise to the feudal system, which still shapes politics today. The internal combustion engine offers personal freedom and creates pollution, but has also transformed the nature of urban planning and international trade. When we look at AI the micro-ethical issues, such as bias, are most obvious, but the macro-ethical challenges may be greater.
At a micro-ethical level AI has the potential to deepen social, ethnic and gender bias, issues I have warned about since the early 1990s! It is also being used increasingly on the battlefield. However, it also offers amazing opportunities in health and educations, as the recent Nobel prizes for the developers of AlphaFold illustrate. More radically, the need to encode ethics acts as a mirror to surface essential ethical problems and conflicts.
At the macro-ethical level, by the early 2000s digital technology had already begun to undermine sovereignty (e.g. gambling), market economics (through network effects and emergent monopolies), and the very meaning of money. Modern AI is the child of big data, big computation and ultimately big business, intensifying the inherent tendency of digital technology to concentrate power. AI is already unravelling the fundamentals of the social, political and economic world around us, but this is a world that needs radical reimagining to overcome the global environmental and human challenges that confront us. Our challenge is whether to let the threads fall as they may, or to use them to weave a better future.
Dev Dives: Automate and orchestrate your processes with UiPath MaestroUiPathCommunity
This session is designed to equip developers with the skills needed to build mission-critical, end-to-end processes that seamlessly orchestrate agents, people, and robots.
📕 Here's what you can expect:
- Modeling: Build end-to-end processes using BPMN.
- Implementing: Integrate agentic tasks, RPA, APIs, and advanced decisioning into processes.
- Operating: Control process instances with rewind, replay, pause, and stop functions.
- Monitoring: Use dashboards and embedded analytics for real-time insights into process instances.
This webinar is a must-attend for developers looking to enhance their agentic automation skills and orchestrate robust, mission-critical processes.
👨🏫 Speaker:
Andrei Vintila, Principal Product Manager @UiPath
This session streamed live on April 29, 2025, 16:00 CET.
Check out all our upcoming Dev Dives sessions at https://community.uipath.com/dev-dives-automation-developer-2025/.
AI EngineHost Review: Revolutionary USA Datacenter-Based Hosting with NVIDIA ...SOFTTECHHUB
I started my online journey with several hosting services before stumbling upon Ai EngineHost. At first, the idea of paying one fee and getting lifetime access seemed too good to pass up. The platform is built on reliable US-based servers, ensuring your projects run at high speeds and remain safe. Let me take you step by step through its benefits and features as I explain why this hosting solution is a perfect fit for digital entrepreneurs.
TrsLabs - Fintech Product & Business ConsultingTrs Labs
Hybrid Growth Mandate Model with TrsLabs
Strategic Investments, Inorganic Growth, Business Model Pivoting are critical activities that business don't do/change everyday. In cases like this, it may benefit your business to choose a temporary external consultant.
An unbiased plan driven by clearcut deliverables, market dynamics and without the influence of your internal office equations empower business leaders to make right choices.
Getting things done within a budget within a timeframe is key to Growing Business - No matter whether you are a start-up or a big company
Talk to us & Unlock the competitive advantage
Linux Support for SMARC: How Toradex Empowers Embedded DevelopersToradex
Toradex brings robust Linux support to SMARC (Smart Mobility Architecture), ensuring high performance and long-term reliability for embedded applications. Here’s how:
• Optimized Torizon OS & Yocto Support – Toradex provides Torizon OS, a Debian-based easy-to-use platform, and Yocto BSPs for customized Linux images on SMARC modules.
• Seamless Integration with i.MX 8M Plus and i.MX 95 – Toradex SMARC solutions leverage NXP’s i.MX 8 M Plus and i.MX 95 SoCs, delivering power efficiency and AI-ready performance.
• Secure and Reliable – With Secure Boot, over-the-air (OTA) updates, and LTS kernel support, Toradex ensures industrial-grade security and longevity.
• Containerized Workflows for AI & IoT – Support for Docker, ROS, and real-time Linux enables scalable AI, ML, and IoT applications.
• Strong Ecosystem & Developer Support – Toradex offers comprehensive documentation, developer tools, and dedicated support, accelerating time-to-market.
With Toradex’s Linux support for SMARC, developers get a scalable, secure, and high-performance solution for industrial, medical, and AI-driven applications.
Do you have a specific project or application in mind where you're considering SMARC? We can help with Free Compatibility Check and help you with quick time-to-market
For more information: https://www.toradex.com/computer-on-modules/smarc-arm-family
23. Example – Strike a Balance
§ Set your Spot price > Market < On-Demand
§ Will always give you the market rate
at or under your bid
§ CloudWatch alarm on number of Spot
Instances in group
§ GroupInServiceInstances
§ Scale On-Demand group if #Instances in
Spot group drops below threshold
On-Demand
Auto Scaling
group
Master Node
Spot
Auto Scaling
group
Weather forecast raw data
Compute
Nodes
30. What are Reserved Instances (RIs)?
• RIs are a commitment in exchange for discount
• They behave like discount coupon booklets
• Each hourly RI coupon in the booklet tries to match to a
running instance, if matched it provides its full discount, if not
it expires
• RIs are a financial construct/layer on top of your AWS
infrastructure
RI coupon booklet
31. Convertible RI benefits
Convertible RIs allow changes in:
Instance Families (e.g. m4. -> c5.)
Instance sizes (e.g. .large -> .xlarge)
Operating System (e.g. Linux -> Windows)
Tenancy (e.g. shared -> dedicated)
You can:
Take advantage of newer instance types (e.g. m5)
Adapt your RIs as business needs change
Drastically reduce the likelihood of unused RIs
Take advantage of price reductions (maintain commit $, get more instances)
32. Instance Size Flexibility reduces the need to match RI size to
running instance size for Standard and Convertible RIs
If:
• RI is Regional
• RI and Instance use is Linux/UNIX (incl.
Amazon Linux, CentOS, Ubuntu), and
• RI and Instance is Shared tenancy
RDS size flexibility applies to MySQL, MariaDB,
PostgreSQL, and Amazon Aurora database
engines, as well as the “bring your own license”
(BYOL) edition of the Oracle DB.
m4.4xlarge
(4 units)
m4.2xlarge
(2 units)
m4.2xlarge
(2 units)
m4.8xlarge
(8 units)
One RI
Can apply to
more than 1
smaller
instance
Or part of
a larger
instance
4 units
receive
discounted
RI rate
35. Understand Your EBS Workload Characteristics
Solid State Drives (SSD) Hard Disk Drives (HDD)
Volume Type Provisioned IOPS SSD (io1) General Purpose SSD (gp2) Throughput Optimized HDD (st1) Cold HDD (sc1)
Description
Highest-performance SSD
volume designed for mission-
critical applications
General purpose SSD
volume that balances price
and performance for a wide
variety of transactional
workloads
Low cost HDD volume designed for
frequently accessed, throughput-
intensive workloads
Lowest cost HDD
volume designed for
less frequently
accessed workloads
Use Cases
§ Critical business
applications that require
sustained IOPS
performance, or more than
10,000 IOPS or 160 MiB/s
of throughput per volume
§ Large database workloads,
such as:
§ MongoDB
§ Cassandra
§ Microsoft SQL Server
§ MySQL
§ PostgreSQL
§ Oracle
§ Recommended for most
workloads
§ System boot volumes
§ Virtual desktops
§ Low-latency interactive
apps
§ Development and test
environments
§ Streaming workloads requiring
consistent, fast throughput at a
low price.
§ Big data
§ Data warehouses
§ Log processing
§ Cannot be a boot volume
§ Throughput-oriented
storage for large
volumes of data that
is infrequently
accessed
§ Scenarios where the
lowest storage cost
is important
§ Cannot be a boot
volume
More Expensive Cheaper
36. Use Amazon S3 Storage Tiers
Take advantage of Infrequent Access (IA)
§ No code changes using lifecycle policies* – immediate savings
§ Suitable for cold data (backup, log files, etc.) with requirement for
fast retrieval.
Example
§ Our app stores 100 TB of photos
§ Each photo is about 10 MB
§ Using Standard S3, we pay $2,250 per month [US Standard Region]
* Alternatively, you can directly PUT into Standard – IA by specifying STANDARD_IA in the x-amz-storage-class header.
37. Example – Activate a Policy
Move data after 30 days
Assume we can move 80% of the data
Of which 20% is still accessed regularly < twice per month
38. S3 – IA – Result!
35%
Saving
Same 100 TB (20 TB Standard/80 TB IA)
costs only $1,460 per month (US Standard)
39. Eliminate Your Web Server Tier
How much time do you spend on maintenance?
How secure is your web tier?
What is your capacity planning for your web tier?
40. Example – Using S3 Static Website Hosting
Not so “static”:
§ JavaScript (Client Side)
– (includes AWS SDK)
§ CORS
Plus:
§ No servers
§ No patching
§ No scaling rules
41. S3 Static Website Hosting Reference Architecture
S3 bucket
CloudFront
distribution
Web Tier
Cognito
Identity
CloudFront
logs
www.example.com
static.example.com
Availability Zone A Availability Zone B
Auto Scaling Group
www.example.com
static.example.com
web
servers
web
servers
42. The Cost of Using Your DB as a BLOB Store
Databases (particularly RDBMSs) make poor BLOB stores!
Negative in terms of performance
Negative in terms of management
Negative in terms of cost
43. Example – Storing Your BLOB in the RDBMS
CREATE OR REPLACE TABLE
user_images
(userid int,
imageguid char(36),
image BLOB);
For example
Each Image = 2MB
2,049K per row
3 million rows = 5.862 TB
RDS MySQL cost = $3,279.56
(US Standard) per month (multi-
AZ, Standard Storage) - approx
44. Store BLOB in S3, Metadata in RDS
CREATE OR REPLACE TABLE
user_images
(userid int,
imageguid char(36),
imageURL VARCHAR(1000));
Per row we now store 2K in the RDBMS
3 Million rows = 5.722 GB
S3 Storage = 5.862TB = $194.94 (storage)
+ 3MM Puts, 3MM Gets = $212.93 (inclusive,
GETs, PUTs, Storage)
RDS MySQL cost = $1,663.30 (US Standard)
per Month
Total: $1,876.23
42%
saving
47. Cache for Savings
Elastic Load
Balancing
EC2 App
Instances
Database
Instance
ElastiCache
Database Writes
App
Reads
Clients
Cache
Updates
Database Reads
Example 30,000 reads per second
db.m3.large – 30,000 PIOPS – Single-AZ: $3,889.68
cache.m3.large – 30,000 GETS per second: $355.02
90%
Saving!
48. DynamoDB
Pick the right tool for the job
Key/Value
Scalable
throughput
Low latency
Amazon Aurora
More complex
data/queries
Scalable
storage
Amazon
Redshift
Big (complex)
data
Higher
latency
ElastiCache
for Redis
Key/Value
In-Memory
(very) low
latency
49. Example - No one database to rule out all
MongoDB
Tracking
API
RTB
Engine
User&Stats
API
Tracking
API
RTB
Engine
DynamoDB
Decoupled
Amazon
Aurora
Amazon
Redshift
User&Stats
API
50. Queues – Not Just for Decoupling
SQS gives you tremendous power to decouple your
architecture
However, resilience is only one part of the story
Use queues to manage cost
51. SQS Trigger Auto Scaling Groups Based on Revenue
ApproximateAgeOfOldestMessage > 600
In our example, a single m4.large can process 1,000 images in an hour.
We don’t want paid customers to wait more than 10 minutes for their result.
ASG MIN 1, MAX 10, DESIRED 1
ApproximateNumberOfMessagesVisible >
1000
ASG MIN 0, MAX 1, DESIRED 0Free
Queue
Paid
Queue
Images
Source
mobile client
Auto
Scaling instances
Auto
Scaling instances
Images
Result
52. SQS Trigger Auto Scaling Groups Based on Revenue
In our example, a single m4.large can process 1,000 images in an hour.
We don’t want paid customers to wait more than 10 minutes for their result.
For example:
2,000 TXNs
50/50 free/premium
Free queue TXN cost:
$0.336/1,000 = $0.000336
*One instance
Paid queue TXN cost:
($0.336*6)/1,000 = $0.002016
*Six instances to meet 10 minute SLA
Free
Queue
Paid
Queue
Images
Source
mobile client
Auto
Scaling instances
Auto
Scaling instances
Images
Result
53. Simplify. Less Components. Less Cost.
Image
Source
mobile client
AWS
Lambda
For example:
Each TXN takes 3750ms
Assuming largest Lambda memory size
(1536 MB)
@ $ 0.000002501 per 100ms
Each TXN now costs $0.000937875
Premium queue TXN was $0.002016
S3 Event
Lambda
Result
53%
saving
Image
Result
55. Can Still Use SQS To Keep Free Tier Cheap
Free
Queue
Images
Sourcemobile client
Auto
Scaling
instances
More optimization
Make free tier even cheaper
using EC2 Spot Instances
Paid tier now gets instant
response (remove the 10
minute delay/SLA) at low cost
AWS
Lambda
Prefix-
based
Trigger
Image
Result
56. Public Subnet
Availability Zone A
Private Subnet
Public Subnet
Availability Zone B
Instance A
10.1.1.11 /24
Instance C
10.1.3.33 /24
Instance B
10.1.2.22 /24
Instance D
10.1.4.44 /24
Internet
Gateway
(IGW)
1 GB Data x 20
Intra-AZ by Private, Public or EIP = .01/GB
Elastic IP
205.x.x.27
Elastic IP
205.x.x.29
VPC 1
US-Standard Region
InFrom&OutToS3=0.00/GB
Amazon S3
Private Subnet
How To Save Data Transfer
§ You may use S3 to save on data transfer
between EC2 in different availability zones
(AZ).
§ The data transfer between two EC2 in
different AZ costs $0.01/GB, but S3 is free
to download from any AZ.
§ Consider the scenario where 1 GB data
is transferred 20 times from one EC2
server to another in different availability
zone. It will cost $0.20/GB (20 * 0.01).
§ However, if you are able to upload it to S3,
then you just pay for storage ($0.03 / GB /
month) and the best part is that data
transfer between S3 and EC2 is free.
§ Assuming data is deleted from S3 after a
day , the S3 cost will be $0.001. 99% cost
savings on that data transfer by using S3.
1
2
2
1
3
3
4
4
5
5
58. HA vs. Cost Optimization
Product owners often push for cost optimization
§ Ignoring their availability requirements
§ Until something fails…..
§ How much is your loses if your mobile apps down per
hour/day?
§ What will happen to your customer obsession?
§ Will it affect your company image in the market?
FIRST availability, THEN cost!
59. HA Protection for EC2 – Auto Recovery (Free)
An EC2 instance (virtual machine) is not highly available by default.
At least
100%
Saving
EBS Volume
Elastic IP1
2
§ A hardware or software failure
affects the EC2.
§ CW regular health check
spots that the EC2 has failed.
§ CW starts the recovery of the
EC2 on another EC2 host
server .
§ A new EC2 is launched on a
different EC2 host server
automatically.
§ The new EC2 is assigned the
same ID and IP address as
the old EC2 and linked to the
same EBS.
CloudWatch (CW)
1
EC2 EC2
2
3
3
4
4
5
5
5
EC2 Host Server EC2 Host Server
60. Economical Mitigation For AZ-Level Disruption
Availability Zone A Availability Zone B
Availability Zone A Availability Zone B Availability Zone C
Example Always maintain 12 instances even if one AZ is disrupted
24
Instances
18
Instances
25%
saving
62. Good cost management is about getting the right people to
care about spend and making saving easier
Allocate spend
through Tagging and a
multi-account strategy
Use the Cost Transparency
provided by AWS and
Key Performance Indicators
Use Cost Tools and
Automation
63. Pick the tool that provides the visibility you need
Simple, Static, Small
environment
Complex, Dynamic,
Large environment
1. Monthly AWS Invoice
2. AWS Billing
console
3. AWS Cost Explorer
and AWS Budgets
4. AWS Billing File Analysis,
DIY dashboards, and
3rd party tools
66. AWS Enterprise Support, AWS Professional Services, and
AWS Partners can guide your Cost journey, contact your
AWS Account Manager for more information
AWS Enterprise Support
https://aws.amazon.com/premiumsupport/enterprise-support/
AWS Professional Services
https://aws.amazon.com/professional-services/
AWS Partner Network
https://aws.amazon.com/partners/
68. Suggested next steps
1. Get your teams to use Cost Explorer to
understand where you are spending
2. Pick 1 technical lever of optimisation covered today,
set up a KPI to measure it, and improve it over time.
(e.g. resource scheduling / on-off)
3. Come to a future AWS event about Cost to
find out more about tools, methods, and
discuss the topic with other customers