My AWS Rocks!

Thoughts, stories and ideas on making your AWS solutions rock.

Security at all Layers

And why you should use it.

Security in depth, defence in depth, layered security, zero trust; all terms that get spoken but often not fully understood. Mainly because much of these security principles have evolved over time and depending on the lens applied a different term has emerged. In this, the first of a series focused on security, I’ll try and unpack what security in depth means (at least for me) and why you should be considering a layered security approach. I will try and keep these posts a mix of technical and non-technical details, and where possible utilise real world examples to highlight my thoughts. Future post will focus on the implementation of security from different perspectives such as application, data, and infrastructure.

Cost Savings and Sustainability

Byproducts of Well-Architected

Are cost and sustainability really separate items to think off? I’d argue if you do the other 4 pillars of the well-architected framework they are 90% done.

Wait! IP4 has a cost?

Why has my bill got IP costs is still talked about since AWS started charging for public IPs. This post looks at what you could do to reduce the impact of the charges.

description

Don't get trapped by the elephant in the room!

Why we often get trapped by working out what something is or should be rather than getting started.

description

My bill is how much‽

Follow these 5 simple steps to make sure you're not the next person to complain that you had an unexpected AWS bill.

description

AWS Golden Jacket; Is it worth the race?

Why did I end up getting them all?

Getting all AWS certifications is not something I set out to achieve at the start. So why did I end up getting them all? This post takes a look at 6 reasons why you might want to consider before taking on the challenge.

AWS Well-Architected - Why so many get it wrong

How to become 'well-architected'.

description

You put what in a public subnet‽

Why make something public vs private

So you've split your VPC into different tiers which is great, but why did you put THAT in your public subnet and not a private one?