an update on the aws/fedramp tic overlay pilot
TRANSCRIPT
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
An Update on the AWS/FedRAMP TIC Overlay Pilot
Sara Mosely, US DHS TIC Program Manager
Matthew Goodrich, FedRAMP Director
Jennifer Gray, AWS US Public Sector Compliance Architect
©2015, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
AWS/FedRAMP Updates• 2015 AWS FedRAMP Package Transition
to NIST SP 800-53, Revision 4• New services ready for FedRAMP • 2015 AWS/FedRAMP High Baseline Pilot• AWS/FedRAMP Continuous Monitoring • AWS/FedRAMP TIC Overlay Pilot
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
AWS/FedRAMP TIC-Overlay PilotAgency Sponsor GSA 18F/FedRAMP
AWS/FedRAMP-TIC Pilot Kick Off
TIC Capabilities Control Review
3PAO Test Cases
Testing
AWS/TIC Overlay Assessment Report
TIC Ready
AWS/FedRAMP TIC Overlay Report
May July AugustJune
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
customer’snetwork
AmazonWeb Servicescloud
subnets
isolated AWS customer resources
Amazon VPC architecture
routerVPN
gateway
private
private
private
Internet Internet
TIC provider
securecircuit
secure VPN connection over the Internet or Direct Connect
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
customer’snetwork
AmazonWeb Servicescloud
subnets
isolated AWS customer resources
Amazon VPC Architecture
routerVPN
gateway
private
private
private
Internet Internet
TIC provider
securecircuit
secure VPN connection over the Internet or Direct Connect
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
Availability Zone #2
App server
CloudWatch
RDS snapshots
fixed content
App
App
Web
Web
RDS
RDS
Availability Zone #1
Availability Zone #2
Availability Zone #1
RDP
RDP
AD
AD
customer gateway
production VPC management VPC
End Users
VPC peering
CloudTrail logsIAM
Achieving TIC Capabilities with AWS
CloudTrail
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015
Thank You.This presentation will be loaded to SlideShare the week following the Symposium.
http://www.slideshare.net/AmazonWebServices
AWS Government, Education, and Nonprofit Symposium Washington, DC I June 25-26, 2015