• Home
  • Contact AWS Security Architect
  • Privacy Policy

AWS Security Architect

Experienced AWS, GCP and Azure Security Architect

  • ALBs on AWS
  • APIs on AWS
  • Application Security
  • Automation
  • AWS Backups
  • AWS EC2 Patching
  • AWS Firewall manager
  • AWS IAM
  • AWS Migration
  • AWS Native SIEM
  • AWS Network Security
  • AWS Public APIs
  • Compliance and Audits
  • control tower
  • CSPM on AWS
  • Data Analytics and data Processing
  • EC2 Security
  • File Servers on AWS
  • Governance
    • Compliance
    • Tagging
  • Incident Management on AWS
  • KMS
  • PaaS Security
  • Risk Factors
  • S3 Security
  • Shared VPCs
  • Tableau on AWS
  • Terraform

AWS Shared VPC vs. Transit Gateways

anuj varma October 24, 2025 AWS Shared VPC vs. Transit Gateways2025-10-24T14:43:16+00:00 AWS Network Security No Comment
  AWS Shared VPCs as an Alternative to Transit Gateways How Security Groups behave for resources in shared subnets (Account-level roles, cross-account references, and enforcement path). TL;DR: In a Shared…
Continue Reading

AWS Backups versus 3rd party backup services

anuj varma October 23, 2025 AWS Backups versus 3rd party backup services2025-10-23T17:30:01+00:00 AWS Backups No Comment
AWS Backup vs Veeam vs Clumio vs Druva — Detailed Feature Matrix AWS Backup — Pros, Cons, and Workload Coverage Pros Centralized backup management (multi-account via Organizations) with policy-based schedules,…
Continue Reading

Dealing with Lost AWS KMS Keys

anuj varma October 22, 2025 Dealing with Lost AWS KMS Keys2025-10-22T20:10:51+00:00 KMS No Comment
<!doctype html> Also read 'One KMS Key per application in AWS?'  and Cross Account KMS Keys in AWS     Q: How Do You Deal with Lost KMS Keys on…
Continue Reading

One KMS Key per Application

anuj varma October 22, 2025 One KMS Key per Application2025-10-22T20:10:23+00:00 KMS No Comment
<!doctype html> Also read ' Cross Account KMS Keys in AWS and Lost KMS Keys in AWS Q: One KMS Key per Application in AWS? Short answer: Yes—Especially if each…
Continue Reading

Pen Test of public facing apps

anuj varma October 20, 2025 Pen Test of public facing apps2025-10-20T20:35:04+00:00 Application Security No Comment
  Penetration Testing vs. Codebase Testing A typical (external) penetration test mainly targets public-facing assets such as URLs, IPs, and exposed services. To test the underlying codebase, you need different types…
Continue Reading

EC2 Agents – URLs and IPs allowlist

anuj varma October 17, 2025 EC2 Agents – URLs and IPs allowlist2025-10-17T15:51:16+00:00 EC2 Security No Comment
  EC2 Agents: CIDR vs FQDN (Wildcard) Allowlists — with Ansible & Rapid7 Examples + SG/NACL Capabilities Executive Summary CIDR allowlists control who (IPs) can talk to your instances, ideal…
Continue Reading

AWS Application Migration Service and Block-Level Replication

anuj varma October 17, 2025 AWS Application Migration Service and Block-Level Replication2025-10-17T14:47:17+00:00 AWS Migration No Comment
  🚀 AWS Application Migration Service and Block-Level Replication When organizations modernize their infrastructure or prepare for disaster recovery, they need to migrate workloads quickly, reliably, and with minimal downtime.…
Continue Reading

AWS-Managed KMS Keys vs Customer-Managed KMS Keys

anuj varma October 15, 2025 AWS-Managed KMS Keys vs Customer-Managed KMS Keys2025-10-15T20:01:34+00:00 KMS No Comment
  AWS-Managed KMS Keys vs Customer-Managed KMS Keys Also read - Cross Account KMS Keys A quick comparison of the two primary key types in AWS Key Management Service (KMS).…
Continue Reading

SQL Server to Aurora Postgres Migration – Security Concerns

anuj varma October 14, 2025 SQL Server to Aurora Postgres Migration – Security Concerns2025-10-14T16:08:35+00:00 AWS Migration No Comment
Security Issues When Migrating from SQL Server to Amazon Aurora PostgreSQL Migrating from Microsoft SQL Server to Aurora PostgreSQL involves not only schema and data conversion but also a thorough…
Continue Reading

Deploying Security Groups via AWS Cloud Migration Factory

anuj varma October 14, 2025 Deploying Security Groups via AWS Cloud Migration Factory2025-10-14T15:48:00+00:00 Terraform No Comment
Deploying Security Groups via AWS Cloud Migration Factory (CMF) Deploying Security Groups through the AWS Cloud Migration Factory (CMF) typically occurs during the Target Environment Build phase of migration waves.…
Continue Reading
«‹23456›»

Archives

  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • August 2025
  • June 2025
  • May 2025
  • April 2025
  • March 2025
  • June 2024
  • November 2023
  • July 2023
  • December 2022
  • October 2022
  • September 2022

Categories

  • ALBs on AWS
  • APIs on AWS
  • Application Security
  • Automation
  • AWS Backups
  • AWS EC2 Patching
  • AWS Firewall manager
  • AWS IAM
  • AWS Migration
  • AWS Native SIEM
  • AWS Network Security
  • AWS Public APIs
  • Compliance
  • Compliance and Audits
  • control tower
  • CSPM on AWS
  • Data Analytics and data Processing
  • EC2 Security
  • File Servers on AWS
  • Governance
  • Incident Management on AWS
  • KMS
  • PaaS Security
  • Risk Factors
  • S3 Security
  • Shared VPCs
  • Tableau on AWS
  • Tagging
  • Terraform
Copyright ©2026. AWS Security Architect
Mesocolumn Theme by Dezzain