AWS Cloud Operations Blog

Category: Management Tools

How to detect and monitor HAQM Simple Storage Service (S3) access with AWS CloudTrail and HAQM CloudWatch

How to detect and monitor HAQM Simple Storage Service (S3) access with AWS CloudTrail and HAQM CloudWatch

While protection of data is critical, equally important is observing who accesses it.  AWS services allow you to control your data by determining where it’s stored, who has access, and how it’s secured. AWS CloudTrail provides an effective way to track data access activities.  You can detect access attempts, and identify potential unauthorized attempts. CloudTrail, […]

Using Terraform with Landing Zone Accelerator on AWS

In this post, we explore how you can incorporate HashiCorp Terraform to manage your HAQM Web Services (AWS) application infrastructure after using AWS Control Tower with Landing Zone Accelerator on AWS (LZA) to manage your AWS ecosystem. The LZA deploys a cloud foundation that is architected to align with AWS best practices and multiple global […]

Detect and respond to security threats in near real-time using HAQM Managed Grafana

Security is “job zero” at AWS. It’s crucial to gain deeper insights into your AWS infrastructure’s security posture to respond quickly to threats. The ability to centrally monitor and visualize the security findings make it easier for you to identify any security threats or gaps and also keep the principle of least privilege in focus. […]

Achieve cost effective cloud operations with AWS Managed Services

As organizations increasingly adopt cloud services, they often face the challenge of hosting diverse workloads with varying cost structures and budget constraints. To establish a solid foundation for cost optimization without compromising operational efficiency in your cloud operations, it’s essential to manage your cloud expenses efficiently. This aligns with the AWS Well-Architected Cost Optimization pillar, […]

AWS Account vending by integrating ServiceNow with AWS Control Tower Account Factory for Terraform

AWS Control Tower makes it easy to create and manage a secure, multi-account AWS environment, ready for immediate use. However, for more customized setups, particularly using Terraform, customers can use AWS Control Tower Account Factory for Terraform (AFT). Account Factory for Terraform (AFT) sets up a Terraform pipeline to help you provision and customize accounts […]

Top Announcements for AWS Cloud Operations at re:Invent 2024

Figure 1. AWS launches new capabilities to help you transform your IT operations. At re:Invent 2024, Nandini Ramani, VP Search, Observability & Cloud Ops, provided a glimpse of how AWS is building the future of cloud operations. The four sections of this blog post cover the top AWS Cloud Operations announcements to help you transform […]

Streamlining AWS Organizations Cleanup Strategies

AWS Organizations provides capabilities for AWS customers to centrally manage accounts in their multi-account environment. As the business landscape evolves, customers may need to close multiple AWS accounts or an entire organization. This could take place during mergers and acquisitions, to support cleanup efforts which reduce cost from unused resources, or decommissioning a venture or […]

Monitor EBS Detailed Performance Statistics with HAQM Managed Service for Prometheus

Today we are excited to announce that you can now easily ingest HAQM EBS detailed performance statistics from your HAQM Elastic Kubernetes Service (HAQM EKS) workloads into an HAQM Managed Service for Prometheus workspace. We recently announced the availability of EBS detailed performance statistics, which gives you real-time visibility into the performance of your EBS […]

Manage AMI updates for AWS Auto Scaling groups with AWS Lambda and AWS Systems Manager

Keeping HAQM Machine Image (AMI) up-to-date with the latest patches and updates is a critical task for organizations using AWS Auto Scaling group . However, manually patching AMIs and updating Auto Scaling groups can be time-consuming for your teams and error-prone. This blog post presents a solution to automate the process of updating AMIs for […]

Leveraging existing tagging strategies for Application Operations

Leveraging existing tagging strategies for Application Operations

Customers often spend time finding and managing individual resources within their applications. They need to find various applications, manage and perform application tasks, and monitor resources during different stages of the application lifecycle. Customers usually have hundreds to thousands of resources within even a single AWS account. This requires navigating across multiple AWS services pages […]