SlideShare a Scribd company logo
By
Ghazanfar Latif (Gabe)
gabe@prebinary.com
*Security Enabling
for Cloud
Availability Zone A
Amazon
S3
VPC
EBS 3
EBS 2
EBS 1
EC2 Server
Kerberos MIT tools
Web EHR App
Apache
X509
PHP
Amazon Management Console Security Setting,
SNS, Elastic IP, MFA
www.abc.com
US West Region
Cloud EHR Deployment Architecture (Basic)
Availability Zone A
Amazon
S3
VPC
EBS 3
EBS 2
EBS 1
EC2 Server
Kerberos MIT tools
Web EHR App
Apache
X509
PHP
Amazon Management Console Security Setting,
SNS, Elastic IP, MFA
www.abc.com
US West Region
MFA: Will use Multi
Factor Authentication
device to Access the AWS
Console in a more
secure way. SNS: We will use SNS
Service to provide
limited rights of the AWS
Management Console to
the different
Developers.
GPO Settings: We
setup the policies
for the different
users of the server
according to their
requirements which
will make server and
data more secure
Instance Security
Settings: We will setup
the limited access of
the EC2 instance to the
users by allowing and
blocking different ports
of the instance.
VPC: We will setup VPC
for the establishment of
local area network within
the different EC2 instance
running in a particular
AWS Region which will
make them one step
secure.
Windows Firewall
Settings: We will
enable windows
firewall to access of
the server resources
externally which will
also make EHR one
step more secure.
S3 Access: We will
setup S3 Permissions for
the limited access of S3
Buckets.
Security Enabling for Cloud
GovCloud: We will use
GovCloud EC2 Instance for the
Cloud HER Deployment which is
more secure and fully comply
HIPAA Regulations.
CloudWatch: We will
setup alarms for the
resources usage.
SSL Certificate: We
will use SSL Certificate
for Secure and
encrypted
communication
between client and
EC2 Server
IAM: This service can
be used to provide
limited access of the
Amazon Management
Console to different
users.
AWS Pricing
Normal EC2 Server (Large Instance)
7.5 GB memory
2 virtual core with 4 ECU Processor
64-bit platform
850 GB of Storage Space
Per Month Charges $345.6
150 GB Storage Space
50 GB Network Out
Cost for S3 $25
Net Cost $370.6
Gov. EC2 Server (Large Instance)
7.5 GB memory
2 virtual core with 4 ECU Processor
64-bit platform
850 GB of Storage Space
Per Month Charges $ 417.6
150 GB Storage Space
50 GB Network Out
Cost for S3 $25
Net Cost $442.6
Benefits:
Comply with HIPAA regulations
Completely.
The Large Instance (6:00 AM, 10:55 PM) $295.8/month
The Instance will remains Live (10:55 PM to 6:00 AM)

More Related Content

What's hot (16)

PPTX
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019
Gerd König
 
PPTX
Localize content Devops
mitesh_sharma
 
DOCX
How to connect amazon aws ec2 with key pair – linux
VCP Muthukrishna
 
PDF
Introduction to EKS (AWS User Group Slovakia)
Vladimir Simek
 
PDF
Hands-on with AWS IoT
Julien SIMON
 
ODP
Amazon EC2: What is this and what can I do with it?
Juan Vicente Herrera Ruiz de Alejo
 
PDF
AWS re:Invent 2015 re:Cap
Mark Nunnikhoven
 
PPTX
Build and deployment with Jenkins and Code Deploy on AWS
mitesh_sharma
 
PDF
Storing, Managing, and Deploying Docker Container Images with Amazon ECR
Chanaka Lasantha
 
PDF
Spark access control on Amazon EMR with AWS Lake Formation
Anoop Johnson
 
PDF
How to launch an aws ec2 instance
Andrea Cirillo
 
PPT
Developing And Running A Website On Amazon S E
jaymuntz
 
PPTX
Admin Least Privilege on Shared Cloud Accounts
roundarchuser
 
PPTX
AWS SSA Webinar 12 - Getting started on AWS with Containers
Cobus Bernard
 
PDF
Defending your workloads with aws waf and deep security
Mark Nunnikhoven
 
PPTX
AWS Monitoring & Logging
Jason Poley
 
Kubernetes on AWS => EKS || CNCF Meetup Zurich, Feb 2019
Gerd König
 
Localize content Devops
mitesh_sharma
 
How to connect amazon aws ec2 with key pair – linux
VCP Muthukrishna
 
Introduction to EKS (AWS User Group Slovakia)
Vladimir Simek
 
Hands-on with AWS IoT
Julien SIMON
 
Amazon EC2: What is this and what can I do with it?
Juan Vicente Herrera Ruiz de Alejo
 
AWS re:Invent 2015 re:Cap
Mark Nunnikhoven
 
Build and deployment with Jenkins and Code Deploy on AWS
mitesh_sharma
 
Storing, Managing, and Deploying Docker Container Images with Amazon ECR
Chanaka Lasantha
 
Spark access control on Amazon EMR with AWS Lake Formation
Anoop Johnson
 
How to launch an aws ec2 instance
Andrea Cirillo
 
Developing And Running A Website On Amazon S E
jaymuntz
 
Admin Least Privilege on Shared Cloud Accounts
roundarchuser
 
AWS SSA Webinar 12 - Getting started on AWS with Containers
Cobus Bernard
 
Defending your workloads with aws waf and deep security
Mark Nunnikhoven
 
AWS Monitoring & Logging
Jason Poley
 

Similar to Security enabling at amazon cloud (presntation) (20)

PPTX
HIPAA Compliance in the Cloud
DataWorks Summit/Hadoop Summit
 
PPTX
AWS SSA Webinar 7 - Getting Started on AWS
Cobus Bernard
 
PPTX
Amazon Web Services Federation Integration Governance Workshop with Layer 7
CA API Management
 
PPTX
Cloudifying your Security Operations on AWS
CloudHesive
 
PDF
AWS BaseCamp: AWS Architecture Fundamentals
Nicole Maus
 
DOCX
Basic understanding of aws
Pinto Das
 
PDF
How to build a Citrix infrastructure on AWS
Denis Gundarev
 
PPTX
Building Bulletproof Infrastructure on AWS
2nd Watch
 
PDF
Aws Architecture Fundamentals
2nd Watch
 
PDF
Introduction to EC2 (AWS)
NodeXperts
 
PDF
002 AWSSlides.pdf
DrBashirMSaad
 
PPTX
Securing AWS environments by Ankit Giri
OWASP Delhi
 
PDF
Practical AWS Security - Scott Hogg
Trish McGinity, CCSK
 
PDF
AWS Certified Solutions Architect Associate Notes.pdf
fayoyiwababajide
 
PPTX
Introduction to EC2
Mark Squires
 
PDF
Building a Bigdata Architecture on AWS
Arun Sirimalla
 
PDF
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloud
Aptible
 
PDF
Aws Architecture Fundamentals
2nd Watch
 
PPTX
AWS AWSome Day 2018 - Technical Track
Tom Woodyer
 
PDF
gkkAwscloudpractitioneressentialstraining
Anne Starr
 
HIPAA Compliance in the Cloud
DataWorks Summit/Hadoop Summit
 
AWS SSA Webinar 7 - Getting Started on AWS
Cobus Bernard
 
Amazon Web Services Federation Integration Governance Workshop with Layer 7
CA API Management
 
Cloudifying your Security Operations on AWS
CloudHesive
 
AWS BaseCamp: AWS Architecture Fundamentals
Nicole Maus
 
Basic understanding of aws
Pinto Das
 
How to build a Citrix infrastructure on AWS
Denis Gundarev
 
Building Bulletproof Infrastructure on AWS
2nd Watch
 
Aws Architecture Fundamentals
2nd Watch
 
Introduction to EC2 (AWS)
NodeXperts
 
002 AWSSlides.pdf
DrBashirMSaad
 
Securing AWS environments by Ankit Giri
OWASP Delhi
 
Practical AWS Security - Scott Hogg
Trish McGinity, CCSK
 
AWS Certified Solutions Architect Associate Notes.pdf
fayoyiwababajide
 
Introduction to EC2
Mark Squires
 
Building a Bigdata Architecture on AWS
Arun Sirimalla
 
Aptible, AWS, and Telepharm: Architecting HIPAA compliance for the cloud
Aptible
 
Aws Architecture Fundamentals
2nd Watch
 
AWS AWSome Day 2018 - Technical Track
Tom Woodyer
 
gkkAwscloudpractitioneressentialstraining
Anne Starr
 
Ad

More from Ghazanfar Latif (Gabe) (14)

PPT
File_System_Fundamentals savitchAbsJavaPPT Java Programming Part 2
Ghazanfar Latif (Gabe)
 
PPT
Chap09_Virtual Memory File_System_Fundamentals savitchAbsJavaPPT Java Program...
Ghazanfar Latif (Gabe)
 
PPT
savitchAbsJavaPPT Java Programming Part 1
Ghazanfar Latif (Gabe)
 
PPTX
Chapter09 Unsupervised Learning Testing Cases
Ghazanfar Latif (Gabe)
 
PPTX
Chapter8_What_Is_Machine_Learning Testing Cases
Ghazanfar Latif (Gabe)
 
PPTX
K-means Clustering Algorithm Testing Cases
Ghazanfar Latif (Gabe)
 
PPTX
What is Interaction Design?
Ghazanfar Latif (Gabe)
 
PPTX
Svm on cloud (presntation)
Ghazanfar Latif (Gabe)
 
PPS
A L A Q S A
Ghazanfar Latif (Gabe)
 
PPS
Attitude Fyh 02 P R E E T R A N J A N
Ghazanfar Latif (Gabe)
 
PPT
Technical Report Writing Presentation
Ghazanfar Latif (Gabe)
 
PPT
Outreach Scholarship Program for Hiegher Education in Pakistan
Ghazanfar Latif (Gabe)
 
PPT
Semantic Web Technologies Presenattion (Topic: TripIt)
Ghazanfar Latif (Gabe)
 
File_System_Fundamentals savitchAbsJavaPPT Java Programming Part 2
Ghazanfar Latif (Gabe)
 
Chap09_Virtual Memory File_System_Fundamentals savitchAbsJavaPPT Java Program...
Ghazanfar Latif (Gabe)
 
savitchAbsJavaPPT Java Programming Part 1
Ghazanfar Latif (Gabe)
 
Chapter09 Unsupervised Learning Testing Cases
Ghazanfar Latif (Gabe)
 
Chapter8_What_Is_Machine_Learning Testing Cases
Ghazanfar Latif (Gabe)
 
K-means Clustering Algorithm Testing Cases
Ghazanfar Latif (Gabe)
 
What is Interaction Design?
Ghazanfar Latif (Gabe)
 
Svm on cloud (presntation)
Ghazanfar Latif (Gabe)
 
Attitude Fyh 02 P R E E T R A N J A N
Ghazanfar Latif (Gabe)
 
Technical Report Writing Presentation
Ghazanfar Latif (Gabe)
 
Outreach Scholarship Program for Hiegher Education in Pakistan
Ghazanfar Latif (Gabe)
 
Semantic Web Technologies Presenattion (Topic: TripIt)
Ghazanfar Latif (Gabe)
 
Ad

Security enabling at amazon cloud (presntation)

  • 2. Availability Zone A Amazon S3 VPC EBS 3 EBS 2 EBS 1 EC2 Server Kerberos MIT tools Web EHR App Apache X509 PHP Amazon Management Console Security Setting, SNS, Elastic IP, MFA www.abc.com US West Region Cloud EHR Deployment Architecture (Basic)
  • 3. Availability Zone A Amazon S3 VPC EBS 3 EBS 2 EBS 1 EC2 Server Kerberos MIT tools Web EHR App Apache X509 PHP Amazon Management Console Security Setting, SNS, Elastic IP, MFA www.abc.com US West Region MFA: Will use Multi Factor Authentication device to Access the AWS Console in a more secure way. SNS: We will use SNS Service to provide limited rights of the AWS Management Console to the different Developers. GPO Settings: We setup the policies for the different users of the server according to their requirements which will make server and data more secure Instance Security Settings: We will setup the limited access of the EC2 instance to the users by allowing and blocking different ports of the instance. VPC: We will setup VPC for the establishment of local area network within the different EC2 instance running in a particular AWS Region which will make them one step secure. Windows Firewall Settings: We will enable windows firewall to access of the server resources externally which will also make EHR one step more secure. S3 Access: We will setup S3 Permissions for the limited access of S3 Buckets. Security Enabling for Cloud GovCloud: We will use GovCloud EC2 Instance for the Cloud HER Deployment which is more secure and fully comply HIPAA Regulations. CloudWatch: We will setup alarms for the resources usage. SSL Certificate: We will use SSL Certificate for Secure and encrypted communication between client and EC2 Server IAM: This service can be used to provide limited access of the Amazon Management Console to different users.
  • 4. AWS Pricing Normal EC2 Server (Large Instance) 7.5 GB memory 2 virtual core with 4 ECU Processor 64-bit platform 850 GB of Storage Space Per Month Charges $345.6 150 GB Storage Space 50 GB Network Out Cost for S3 $25 Net Cost $370.6 Gov. EC2 Server (Large Instance) 7.5 GB memory 2 virtual core with 4 ECU Processor 64-bit platform 850 GB of Storage Space Per Month Charges $ 417.6 150 GB Storage Space 50 GB Network Out Cost for S3 $25 Net Cost $442.6 Benefits: Comply with HIPAA regulations Completely. The Large Instance (6:00 AM, 10:55 PM) $295.8/month The Instance will remains Live (10:55 PM to 6:00 AM)

Editor's Notes

  • #4: Design 1, When we go to from Micro instance to Large Instance?