BSINITEL offers a fully integrated and ready to deploy customized AWS Landing Zone for companies who wants to consolidate their AWS accounts into an AWS organization and centrally manage them, it is integrated with AWS Security services and offers a tremendous gain in time for companies who wants to embrace the power of AWS Cloud.
The Landing Zone can be deployed in as short as few weeks upon customer required customization reception, else it is fully ready and operational. Customer can enjoy easiness of new accounts creation and immediate security measures setup. The Pack is fully compatible with any sort of workload deployment whether on EKS or EC2, we offer also a complementary service for building and deploying kubernetes on-demand.
BSINITEL Landing Zone is integrated with a comprehensive list of AWS Security services as below:
AWS Backup: Manage and monitor backups across all of the accounts in your organization.
AWS CloudTrail: Enable governance, compliance, and operational and risk auditing of your account.
AWS Config: Assess, audit, and evaluate the configurations of your AWS resources.
AWS Firewall Manager: Centrally configure and manage firewall rules for web applications across your accounts and applications.
Amazon GuardDuty: GuardDuty is a continuous security monitoring service that analyzes and processes information from a variety of data sources. It uses threat intelligence feeds and machine learning to identify unexpected and potentially unauthorized and malicious activity within your AWS environment.
AWS Identity and Access Management: Securely control access to AWS resources.
IAM Access Analyzer: Analyze resource-based policies in your AWS environment to identify any policies that grant access to a principal outside of your zone of trust.
Amazon Inspector: Automatically scan your AWS workloads for vulnerabilities to discover Amazon EC2 instances and container images that reside in Amazon ECR for software vulnerabilities and unintended network exposure.
AWS Resource Access Manager Share specified AWS resources that you own with other accounts.
AWS Security Hub View your security state in AWS and check your environment against security industry standards and best practices.
AWS Single Sign-On Provide single sign-on services for all of your accounts and cloud applications.
Amazon VPC IP Address Manager (IPAM) IPAM is a VPC feature that makes it easier for you to plan, track, and monitor IP addresses for your AWS workloads.
Below depicted diagrams of the main accounts configured with BSINITEL Landing Zone and the respective AWS services. IPAM is a VPC feature that makes it easier for you to plan, track, and monitor IP addresses for your AWS workloads.