
In late 2019, a multi-national enterprise asked Modis to review its AWS Cloud operations. Having started their AWS Cloud journey in early 2018 and app...
Content management error: Header Banners should not be placed in the Navigation placeholder!
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!
Security and transparency of operation is critical in all IT workloads, on cloud or off. With AWS, much of this is wrapped up in an API activity log service, AWS CloudTrail. Modis likes sending this log stream directly to separate, dedicated security logging accounts, were general administration staff can’t access logs. We’re also keen on using automated security log event identification and alerting in near real-time.
For secure interactive (AWS Web Console) access, we use physical Multi-Factor Authentication (MFA) tokens based upon Time-based One Time Passwords (TOTP) for all master (root) account credentials, with federation of identity back to your corporate directory (such as Active Directory by way of SAML federation) which may also implement an MFA policy.
Understanding these dependencies, and working to ensure that the customer's security posture is maximised without unduly inflicting delay and complication on staff is important; and we'll work with our customers and their existing IT security teams to help them understand any risks and benefits.
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!
We’re fanatical about encryption, algorithms, ciphers, signatures, and validation. Modis’ cloud approach is to use only encrypted protocols for all data transfers, both in transit to/from the cloud, as well as intra-cloud. We love disabling old crypto protocols, using only the latest and strongest ciphers, ephemeral keys for forward secrecy protection, and strong chains of trust.
We also love helping our customers understand how this looks over time. With Modis, you can be as secure as your bank, if not more so.
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!
Modis is keen to assist customers however they need, and here are some examples of what we've done previously:
Inspect, review and recommend changes for developers and release managers around Continuous Integration and Continuous Delivery, Development, API usage, API design, credential handling. Authenticating using two-way x509 certificate verification, and more.
Observe and inspect operational processes and procedures, recommending changes to improve security, logging, visibility, governance, and timeliness to mitigate potential future security considerations. Tuning and automating TLS Certificate issuance and renewal, TLS option configuration, etc.
Design and architect security frameworks around applications, including using single sign on technologies such as LDAP, SAML and other techniques, AWS IAM Roles and Policies, public/private asymmetric keys and key management, AWS Key Management Service, and more.
We can also engage to put cloud governance teams into your organisations, providing best practice and assistance to your existing development and line-of-business service teams. This service continually appraises, researches and improves your security posture over time, which is often overlooked in a project completion and migration to support approach to IT projects.
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!
Modis maintains a number of staff holding the coveted AWS Security Specially Certification. This challenging certification is critical recognition by Amazon Web Services of Modis’ technical staff in the capability they bring to bear for our customers in the security space. Our team also hold many other industry and 3rd-party vendor security-releated certifications, professional memberships and more. Our security staff are well versed with decades of experience in security.
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!
In late 2019, a multi-national enterprise asked Modis to review its AWS Cloud operations. Having started their AWS Cloud journey in early 2018 and app...
Landgate needed to replace its legacy Access and Authentication system used by external customers when accessing Landgate’s web-based applications, in...
In 2014 Modis started to create a custom replacement land registry automation solution for Landgate, the state government jurisdiction of land adminis...
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!
Content management error: Generic Content Banners should not be placed in the Navigation placeholder!