SlideShare a Scribd company logo
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Building a HybridCloudArchitecture
UtilizingAWS LandingZones
Tom Laszewski
Enterprise Technologist
Amazon Web Services, Americas
S e s s i o n I D
Richard Hillard
Client Services Director
GreenPages
Jeff Weitz
IT Director
Finch Therapeutics
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Agenda
Hybrid Cloud – Think Differently
Hybrid Cloud on AWS
Extending AWS Landing Zones into Hybrid Cloud on AWS
Hybrid Cloud – Partner Reference Implementation - GreenPages
Hybrid Cloud - Customer Implementation – Finch Therapeutics
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid Cloud - Think Differently
Networks are secured,
authentication is required
to access the network
and/or resources.
Decreases the impact ‘blast radius’ of network intrusion, data breach, data
loss, service outages, human error or bad actors by design.
Networks are secured, authentication is required to
access the network and/or resources is granted in
a least-permissive way within smaller network
segments.
‘Zero-Trust’
Model
Legacy Model
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid Cloud - Primitives
Multi-Account / Multi-Cloud
Enables a ‘Zero-Trust’ model at the highest
operational control.
Micro-Services
Deploy workloads into smaller, secure
network segments.
Transit Hub
Allow your organization to scale and leverage cloud
in new, unanticipated ways.
N-Tier Architecture
Application stack isolation and security,
easily pinpoint application vs. infrastructure
issues.
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Hybrid Cloud - Why do I need it?
Mitigate Risk
Integrate security and authentication throughout
the design, lower the ‘blast radius’ of impactful
events.
Achieve Agility
Deploy and run environments
programmatically, at scale in a consistent, ops-
ready state.
Enable Compliance
Deploy infrastructure as code, automated alerting
and/or remediation of non-compliant events.
Cost Optimization and Reporting
Provide clear line-of-sight into the costs of running
workloads; accurate forecasting and automated
reporting.
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
VMware
Cloud
on
AWS
HybridCloud onAWS
On-premises
Data Center
Networking
DirectConnect, VPN, VPC
Security & Identity
IAM, Directory Services
Data Integration
Storage Gateway, S3, EBS Snapshots, RDS, Snowball, Glacier, Route
53, MQ, ELB
Management, Monitoring & Operations
CloudFormation, CloudWatch, CloudTrail, Config, Systems Manager
Backup
&
DR
Data
Center
Extension
Cloud
Migration
Dev and
Test
Edge
&
IoT
Cloud
Bursting
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Shared Services
VPC
AWS Landing Zones Implementation
Shared Services
Account
Security VPC
Security Account
Logging VPC
Logging Account
AWS cloud
AWS
Organizations
Cross-
Account IAM
Roles
Security
Notifications
CloudTrail and
Config Logs
AWS Microsoft
Active Directory
Organizations
Account
Organizations
VPC
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Shared Services
VPC
Hybrid Cloud Implementation
Shared Services
Account
Security VPC
Security Account
Logging VPC
Logging Account
AWS cloud corporate data center
Corporate Network
Active Directory
Data Sources
Datacenter Services
Transit Hub VPC
Transit Hub Acct
AWS Direct
Connect
Dev Sandbox
VPCs
Developers Acct
Department VPC
Department Account
Application VPC
Application Account
Organizations
Account
Organizations
VPC
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Shared Services
VPC
Sample AWS Account / VPC Perspectives
AWS Organizations Master Account
Shared Services Acct
Security VPC
Security Acct
Logging VPC
Logging Acct
InfoTechOU
Dept 01 Dev VPC
Dept 01 Non-Prod
Acct
Dept 01 Test VPC
Dept 01 Staging
VPC
Dept 01 Prod Acct
Dept 01 Prod VPC
Dev Sandbox
VPCs
Developers Acct
DevelopersOUDepartment1OU
App 01 Dev VPC
App 01 Dev Acct
App 01 Test VPC
App 01 Test Acct
App01 Staging
VPC
App 01 Staging Acct
Highly-RegulatedApplicationOU
App01 Prod VPC
App 01 Prod Acct
Transit Hub VPC
Transit Hub Acct
AWS Direct
Connect
AWS cloud
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
HybridCloud / MultiCloudTopology
Organization
Shared
Services
Transit Hub
Security
DevOps
App 101 Non-
Prod
VPN Client
Access
App 102 Non-
Prod
App 102 Prod
Tenant
Shared
Services
Transit Hub
Security
DevOps
VPN Client
Access
App 201 Non-
Prod
App 201 Prod
App 202 Non-
Prod
App 202 Prod
Microsoft Azure GreenPages Demo Company
Tenancy
GreenPages Demo Company VLAN
AWS GreenPages Demo Company Account
Family
AWS Accounts and
Virtual Private Clouds (VPCs)
Azure Subscriptions and
Virtual Private Networks (VNETs)
GreenPages Configuration
Center
Amazon Web Services Microsoft Azure
Operations Management &
Monitoring
Hybrid Cloud Orchestrator
CloudBolt www.cloudbolt.io
Consistent environment deployments to
AWS, Azure, GCP, and vmware, with real-
time validation and automated remediation.
https://dev.gphco.io
Digital Operations
OpsRamp www.opsramp.com
Security, Compliance & Financial
Control
CloudCheckr www.cloudcheckr.com
Next-Gen Global Transit Network by Aviatrix
www.aviatrix.com
Corporate Network
Active Directory
Data Sources
Data Center Services
App 101 Prod
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS HybridCloud –Operations and Management
Hybrid Cloud
Orchestrator
CloudBolt www.cloudbolt.io
Consistent environment deployments
to AWS, Azure, GCP, and vmware,
with real-time validation and
automated remediation.
Self-service IT & user empowerment.
Multi-cloud & hypervisor
management.
Digital Operations
OpsRamp www.opsramp.com
Digital operations command
center – bringing the right
operational insights across
multiple services, platforms and
tools for a holistic view.
Security, Compliance &
Financial Control
CloudCheckr www.cloudcheckr.com
Comprehensive cost management
with advanced, automated reporting to
line-of-business resource owners.
Security and compliance auditing.
Unified utilization analytics.
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
AWS HybridCloudCustomer – FinchTherapeutics
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
HybridCloud / MultiCloudTopology
Organization
Shared
Services
Transit Hub
Security
DevOps
App 01 Dev
VPN Client
Access
App 2 Dev
App 2 QA
Tenant
Shared
Services
Transit Hub
Security
DevOps
VPN Client
Access
Microsoft Azure Finch Therapeutics Tenancy
AWS Finch Therapeutics Account Family
AWS Accounts and
Virtual Private Clouds (VPCs)
Azure Subscriptions and
Virtual Private Networks (VNETs)
Corporate Headquarters
Amazon Web Services
Microsoft Azure
Next-Gen Global Transit Network by Aviatrix
www.aviatrix.com
Corporate Network
Active Directory
Data Sources
Data Center Services
Manufacturing
(planned)
App 01 QA
App 01 Prod
App 2 Prod
App 4 Dev
App 4 QA
App 4 Prod
App 3 Dev
App 3 QA
App 3 Prod
Branch Office
Corporate Network
Application Users
Data Collection
Branch Office
Corporate Network
Application Users
Data Collection
Thank you!
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
Tom Laszewski
tomlasz@amazon.com
Enterprise Technologist
Amazon Web Services, Americas
Richard Hillard
richard.hillard@greenpages.co
m
Client Services Director
GreenPages
Jeff Weitz
jeff@finchtherapeutics.co
m
IT Director
Finch Therapeutics
© 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.

More Related Content

What's hot

Azure active directory
Azure active directoryAzure active directory
Azure active directory
Raju Kumar
 
AWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best PracticesAWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best PracticesAmazon Web Services
 
AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...
AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...
AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...
Amazon Web Services
 
AWS WAF
AWS WAFAWS WAF
VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023
VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023 VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023
VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023
Amazon Web Services Korea
 
SD-WANって何だろう。使い方を知ってみよう(AWS分)
SD-WANって何だろう。使い方を知ってみよう(AWS分)SD-WANって何だろう。使い方を知ってみよう(AWS分)
SD-WANって何だろう。使い方を知ってみよう(AWS分)
Yukihiro Kikuchi
 
AWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 Observability
AWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 ObservabilityAWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 Observability
AWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 Observability
Amazon Web Services Korea
 
AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법
AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법
AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법
Amazon Web Services Korea
 
AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래
AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래
AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래
Amazon Web Services Korea
 
Black Belt Online Seminar Amazon CloudWatch
Black Belt Online Seminar Amazon CloudWatchBlack Belt Online Seminar Amazon CloudWatch
Black Belt Online Seminar Amazon CloudWatch
Amazon Web Services Japan
 
Understanding Azure AD
Understanding Azure ADUnderstanding Azure AD
Understanding Azure AD
New Horizons Ireland
 
AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다
AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다
AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다
Amazon Web Services Korea
 
AWS Core Services Overview, Immersion Day Huntsville 2019
AWS Core Services Overview, Immersion Day Huntsville 2019AWS Core Services Overview, Immersion Day Huntsville 2019
AWS Core Services Overview, Immersion Day Huntsville 2019
Amazon Web Services
 
Setting Up a Landing Zone
Setting Up a Landing ZoneSetting Up a Landing Zone
Setting Up a Landing Zone
Amazon Web Services
 
AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018
AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018
AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018
Amazon Web Services
 
Security and governance with AWS Control Tower and AWS Organizations - SEC204...
Security and governance with AWS Control Tower and AWS Organizations - SEC204...Security and governance with AWS Control Tower and AWS Organizations - SEC204...
Security and governance with AWS Control Tower and AWS Organizations - SEC204...
Amazon Web Services
 
Managing and governing multi-account AWS environments using AWS Organizations...
Managing and governing multi-account AWS environments using AWS Organizations...Managing and governing multi-account AWS environments using AWS Organizations...
Managing and governing multi-account AWS environments using AWS Organizations...
Amazon Web Services
 
How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...
How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...
How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...
Amazon Web Services
 
Azure Stack Fundamentals
Azure Stack FundamentalsAzure Stack Fundamentals
Azure Stack Fundamentals
Cenk Ersoy
 
AWS Black Belt Techシリーズ Amazon Workspaces
AWS Black Belt Techシリーズ  Amazon WorkspacesAWS Black Belt Techシリーズ  Amazon Workspaces
AWS Black Belt Techシリーズ Amazon Workspaces
Amazon Web Services Japan
 

What's hot (20)

Azure active directory
Azure active directoryAzure active directory
Azure active directory
 
AWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best PracticesAWS Multi-Account Architecture and Best Practices
AWS Multi-Account Architecture and Best Practices
 
AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...
AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...
AWS Security Best Practices in a Zero Trust Security Model - DEM08 - Toronto ...
 
AWS WAF
AWS WAFAWS WAF
AWS WAF
 
VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023
VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023 VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023
VUCA 시대의 디지털 네이티브 리더가 알아야할 AWS의 기술 ::: AWS ExecLeaders Korea 2023
 
SD-WANって何だろう。使い方を知ってみよう(AWS分)
SD-WANって何だろう。使い方を知ってみよう(AWS分)SD-WANって何だろう。使い方を知ってみよう(AWS分)
SD-WANって何だろう。使い方を知ってみよう(AWS分)
 
AWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 Observability
AWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 ObservabilityAWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 Observability
AWS Summit Seoul 2023 |Datadog을 활용한 AWS 서버리스 Observability
 
AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법
AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법
AWS Summit Seoul 2023 | 클라우드 보안의 새로운 접근법
 
AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래
AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래
AWS Summit Seoul 2023 | 지속적인 혁신과 발전, AWS 네트워킹이 이끄는 미래
 
Black Belt Online Seminar Amazon CloudWatch
Black Belt Online Seminar Amazon CloudWatchBlack Belt Online Seminar Amazon CloudWatch
Black Belt Online Seminar Amazon CloudWatch
 
Understanding Azure AD
Understanding Azure ADUnderstanding Azure AD
Understanding Azure AD
 
AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다
AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다
AWS Summit Seoul 2023 | 플로 AWS All-in 전략을 통해 음원서비스의 혁신을 이루다
 
AWS Core Services Overview, Immersion Day Huntsville 2019
AWS Core Services Overview, Immersion Day Huntsville 2019AWS Core Services Overview, Immersion Day Huntsville 2019
AWS Core Services Overview, Immersion Day Huntsville 2019
 
Setting Up a Landing Zone
Setting Up a Landing ZoneSetting Up a Landing Zone
Setting Up a Landing Zone
 
AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018
AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018
AWS Landing Zone Deep Dive (ENT350-R2) - AWS re:Invent 2018
 
Security and governance with AWS Control Tower and AWS Organizations - SEC204...
Security and governance with AWS Control Tower and AWS Organizations - SEC204...Security and governance with AWS Control Tower and AWS Organizations - SEC204...
Security and governance with AWS Control Tower and AWS Organizations - SEC204...
 
Managing and governing multi-account AWS environments using AWS Organizations...
Managing and governing multi-account AWS environments using AWS Organizations...Managing and governing multi-account AWS environments using AWS Organizations...
Managing and governing multi-account AWS environments using AWS Organizations...
 
How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...
How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...
How to Enable Single Sign On to Multiple AWS Accounts and Business Applicatio...
 
Azure Stack Fundamentals
Azure Stack FundamentalsAzure Stack Fundamentals
Azure Stack Fundamentals
 
AWS Black Belt Techシリーズ Amazon Workspaces
AWS Black Belt Techシリーズ  Amazon WorkspacesAWS Black Belt Techシリーズ  Amazon Workspaces
AWS Black Belt Techシリーズ Amazon Workspaces
 

Similar to Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones

Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
Amazon Web Services
 
Hybrid Cloud on AWS
Hybrid Cloud on AWSHybrid Cloud on AWS
Hybrid Cloud on AWS
Tom Laszewski
 
ENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
ENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing ZonesENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
ENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
Tom Laszewski
 
Introduction to Hybrid Cloud on AWS
Introduction to Hybrid Cloud on AWSIntroduction to Hybrid Cloud on AWS
Introduction to Hybrid Cloud on AWS
Tom Laszewski
 
深入淺出 AWS 混合式雲端架構
深入淺出 AWS 混合式雲端架構 深入淺出 AWS 混合式雲端架構
深入淺出 AWS 混合式雲端架構
Amazon Web Services
 
Introduction to Hybrid Cloud on AWS - AWS Online Tech Talks
Introduction to Hybrid Cloud on AWS - AWS Online Tech TalksIntroduction to Hybrid Cloud on AWS - AWS Online Tech Talks
Introduction to Hybrid Cloud on AWS - AWS Online Tech Talks
Amazon Web Services
 
Costruire Architetture Ibride con AWS
Costruire Architetture Ibride con AWSCostruire Architetture Ibride con AWS
Costruire Architetture Ibride con AWS
Amazon Web Services
 
Hybrid Cloud on AWS - Introduction and Art of the Possible
Hybrid Cloud on AWS - Introduction and Art of the PossibleHybrid Cloud on AWS - Introduction and Art of the Possible
Hybrid Cloud on AWS - Introduction and Art of the Possible
Tom Laszewski
 
Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]
Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]
Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]
Amazon Web Services
 
VMWare Cloud on AWS | Floor 28
VMWare Cloud on AWS | Floor 28VMWare Cloud on AWS | Floor 28
VMWare Cloud on AWS | Floor 28
Amazon Web Services
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in Practice
Alert Logic
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in Practice
Alert Logic
 
Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring
Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring
Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring
Tom Laszewski
 
PaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with AltusPaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with Altus
Cloudera, Inc.
 
PaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with AltusPaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with Altus
Cloudera, Inc.
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
Amazon Web Services
 
AWS - Security & Compliance
AWS - Security & ComplianceAWS - Security & Compliance
AWS - Security & Compliance
Amazon Web Services LATAM
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
Amazon Web Services
 
APN_Live_20190722_Introduction_to_SA
APN_Live_20190722_Introduction_to_SAAPN_Live_20190722_Introduction_to_SA
APN_Live_20190722_Introduction_to_SA
Amazon Web Services
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
Amazon Web Services
 

Similar to Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones (20)

Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
Build a Hybrid Cloud Architecture Using AWS Landing Zones (ENT304-R1) - AWS r...
 
Hybrid Cloud on AWS
Hybrid Cloud on AWSHybrid Cloud on AWS
Hybrid Cloud on AWS
 
ENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
ENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing ZonesENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
ENT304 - Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones
 
Introduction to Hybrid Cloud on AWS
Introduction to Hybrid Cloud on AWSIntroduction to Hybrid Cloud on AWS
Introduction to Hybrid Cloud on AWS
 
深入淺出 AWS 混合式雲端架構
深入淺出 AWS 混合式雲端架構 深入淺出 AWS 混合式雲端架構
深入淺出 AWS 混合式雲端架構
 
Introduction to Hybrid Cloud on AWS - AWS Online Tech Talks
Introduction to Hybrid Cloud on AWS - AWS Online Tech TalksIntroduction to Hybrid Cloud on AWS - AWS Online Tech Talks
Introduction to Hybrid Cloud on AWS - AWS Online Tech Talks
 
Costruire Architetture Ibride con AWS
Costruire Architetture Ibride con AWSCostruire Architetture Ibride con AWS
Costruire Architetture Ibride con AWS
 
Hybrid Cloud on AWS - Introduction and Art of the Possible
Hybrid Cloud on AWS - Introduction and Art of the PossibleHybrid Cloud on AWS - Introduction and Art of the Possible
Hybrid Cloud on AWS - Introduction and Art of the Possible
 
Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]
Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]
Nuvem Híbrida - EBC on the road Brazil Edition [Portuguese]
 
VMWare Cloud on AWS | Floor 28
VMWare Cloud on AWS | Floor 28VMWare Cloud on AWS | Floor 28
VMWare Cloud on AWS | Floor 28
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in Practice
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in Practice
 
Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring
Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring
Hybrid Cloud on AWS : Provisioning, Operations, Management, and Monitoring
 
PaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with AltusPaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with Altus
 
PaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with AltusPaaS or Fail: Rule the Cloud with Altus
PaaS or Fail: Rule the Cloud with Altus
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
 
AWS - Security & Compliance
AWS - Security & ComplianceAWS - Security & Compliance
AWS - Security & Compliance
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
 
APN_Live_20190722_Introduction_to_SA
APN_Live_20190722_Introduction_to_SAAPN_Live_20190722_Introduction_to_SA
APN_Live_20190722_Introduction_to_SA
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
 

More from Tom Laszewski

AWS Private Equity Transformation Advisory
AWS Private Equity Transformation AdvisoryAWS Private Equity Transformation Advisory
AWS Private Equity Transformation Advisory
Tom Laszewski
 
Organizing for faster innovation - People, process, culture, and technology
Organizing for faster innovation - People, process, culture, and technologyOrganizing for faster innovation - People, process, culture, and technology
Organizing for faster innovation - People, process, culture, and technology
Tom Laszewski
 
Creating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organizationCreating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organization
Tom Laszewski
 
Technical Due Diligence with AWS
Technical Due Diligence with AWSTechnical Due Diligence with AWS
Technical Due Diligence with AWS
Tom Laszewski
 
AWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive GuidanceAWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive Guidance
Tom Laszewski
 
AWS Technical Due Diligence Workshop Session Two
AWS Technical Due Diligence Workshop Session TwoAWS Technical Due Diligence Workshop Session Two
AWS Technical Due Diligence Workshop Session Two
Tom Laszewski
 
AWS Technical Due Diligence Workshop Session One
AWS Technical Due Diligence Workshop Session OneAWS Technical Due Diligence Workshop Session One
AWS Technical Due Diligence Workshop Session One
Tom Laszewski
 
Post transaction cloud value creation
Post transaction cloud value creation Post transaction cloud value creation
Post transaction cloud value creation
Tom Laszewski
 
Private Equity Technical Due Diligence Value Creation
Private Equity Technical Due Diligence Value CreationPrivate Equity Technical Due Diligence Value Creation
Private Equity Technical Due Diligence Value Creation
Tom Laszewski
 
Cloud Enablement Engine Role Definition and Mapping
Cloud Enablement Engine Role Definition and MappingCloud Enablement Engine Role Definition and Mapping
Cloud Enablement Engine Role Definition and Mapping
Tom Laszewski
 
Private Equity Value Creation Carve Outs, Divestitures and mergers
Private Equity Value Creation Carve Outs, Divestitures and mergersPrivate Equity Value Creation Carve Outs, Divestitures and mergers
Private Equity Value Creation Carve Outs, Divestitures and mergers
Tom Laszewski
 
AWS Technical Due Diligence Executive Overview
AWS Technical Due Diligence Executive Overview AWS Technical Due Diligence Executive Overview
AWS Technical Due Diligence Executive Overview
Tom Laszewski
 
AWS Techical Due Diligence to post transaction execution for M&A
AWS Techical Due Diligence to post transaction execution for M&A AWS Techical Due Diligence to post transaction execution for M&A
AWS Techical Due Diligence to post transaction execution for M&A
Tom Laszewski
 
Hybrid Cloud on AWS: Foundational Layers and AWS Services
Hybrid Cloud on AWS: Foundational Layers and AWS ServicesHybrid Cloud on AWS: Foundational Layers and AWS Services
Hybrid Cloud on AWS: Foundational Layers and AWS Services
Tom Laszewski
 
Migrating thousands of workloads to AWS at enterprise scale
Migrating thousands of workloads to AWS at enterprise scaleMigrating thousands of workloads to AWS at enterprise scale
Migrating thousands of workloads to AWS at enterprise scale
Tom Laszewski
 
Operating and Managing Hybrid Cloud on AWS
Operating and Managing Hybrid Cloud on AWSOperating and Managing Hybrid Cloud on AWS
Operating and Managing Hybrid Cloud on AWS
Tom Laszewski
 
Monolithic to Microservices Demystified
Monolithic to Microservices DemystifiedMonolithic to Microservices Demystified
Monolithic to Microservices Demystified
Tom Laszewski
 
AWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and WorkshopsAWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and Workshops
Tom Laszewski
 
DevOps, CI/CD, cost management, and security on AWS
DevOps, CI/CD, cost management, and security on AWSDevOps, CI/CD, cost management, and security on AWS
DevOps, CI/CD, cost management, and security on AWS
Tom Laszewski
 
Application Modernization using the Strangler Pattern
Application Modernization using the Strangler PatternApplication Modernization using the Strangler Pattern
Application Modernization using the Strangler Pattern
Tom Laszewski
 

More from Tom Laszewski (20)

AWS Private Equity Transformation Advisory
AWS Private Equity Transformation AdvisoryAWS Private Equity Transformation Advisory
AWS Private Equity Transformation Advisory
 
Organizing for faster innovation - People, process, culture, and technology
Organizing for faster innovation - People, process, culture, and technologyOrganizing for faster innovation - People, process, culture, and technology
Organizing for faster innovation - People, process, culture, and technology
 
Creating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organizationCreating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organization
 
Technical Due Diligence with AWS
Technical Due Diligence with AWSTechnical Due Diligence with AWS
Technical Due Diligence with AWS
 
AWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive GuidanceAWS Cloud Center Excellence Quick Start Prescriptive Guidance
AWS Cloud Center Excellence Quick Start Prescriptive Guidance
 
AWS Technical Due Diligence Workshop Session Two
AWS Technical Due Diligence Workshop Session TwoAWS Technical Due Diligence Workshop Session Two
AWS Technical Due Diligence Workshop Session Two
 
AWS Technical Due Diligence Workshop Session One
AWS Technical Due Diligence Workshop Session OneAWS Technical Due Diligence Workshop Session One
AWS Technical Due Diligence Workshop Session One
 
Post transaction cloud value creation
Post transaction cloud value creation Post transaction cloud value creation
Post transaction cloud value creation
 
Private Equity Technical Due Diligence Value Creation
Private Equity Technical Due Diligence Value CreationPrivate Equity Technical Due Diligence Value Creation
Private Equity Technical Due Diligence Value Creation
 
Cloud Enablement Engine Role Definition and Mapping
Cloud Enablement Engine Role Definition and MappingCloud Enablement Engine Role Definition and Mapping
Cloud Enablement Engine Role Definition and Mapping
 
Private Equity Value Creation Carve Outs, Divestitures and mergers
Private Equity Value Creation Carve Outs, Divestitures and mergersPrivate Equity Value Creation Carve Outs, Divestitures and mergers
Private Equity Value Creation Carve Outs, Divestitures and mergers
 
AWS Technical Due Diligence Executive Overview
AWS Technical Due Diligence Executive Overview AWS Technical Due Diligence Executive Overview
AWS Technical Due Diligence Executive Overview
 
AWS Techical Due Diligence to post transaction execution for M&A
AWS Techical Due Diligence to post transaction execution for M&A AWS Techical Due Diligence to post transaction execution for M&A
AWS Techical Due Diligence to post transaction execution for M&A
 
Hybrid Cloud on AWS: Foundational Layers and AWS Services
Hybrid Cloud on AWS: Foundational Layers and AWS ServicesHybrid Cloud on AWS: Foundational Layers and AWS Services
Hybrid Cloud on AWS: Foundational Layers and AWS Services
 
Migrating thousands of workloads to AWS at enterprise scale
Migrating thousands of workloads to AWS at enterprise scaleMigrating thousands of workloads to AWS at enterprise scale
Migrating thousands of workloads to AWS at enterprise scale
 
Operating and Managing Hybrid Cloud on AWS
Operating and Managing Hybrid Cloud on AWSOperating and Managing Hybrid Cloud on AWS
Operating and Managing Hybrid Cloud on AWS
 
Monolithic to Microservices Demystified
Monolithic to Microservices DemystifiedMonolithic to Microservices Demystified
Monolithic to Microservices Demystified
 
AWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and WorkshopsAWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and Workshops
 
DevOps, CI/CD, cost management, and security on AWS
DevOps, CI/CD, cost management, and security on AWSDevOps, CI/CD, cost management, and security on AWS
DevOps, CI/CD, cost management, and security on AWS
 
Application Modernization using the Strangler Pattern
Application Modernization using the Strangler PatternApplication Modernization using the Strangler Pattern
Application Modernization using the Strangler Pattern
 

Recently uploaded

Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Product School
 
How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...
Product School
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
DianaGray10
 
Connector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a buttonConnector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a button
DianaGray10
 
Designing Great Products: The Power of Design and Leadership by Chief Designe...
Designing Great Products: The Power of Design and Leadership by Chief Designe...Designing Great Products: The Power of Design and Leadership by Chief Designe...
Designing Great Products: The Power of Design and Leadership by Chief Designe...
Product School
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
Product School
 
Search and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical FuturesSearch and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical Futures
Bhaskar Mitra
 
When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...
Elena Simperl
 
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
UiPathCommunity
 
DevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA ConnectDevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA Connect
Kari Kakkonen
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Tobias Schneck
 
Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...
Product School
 
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Jeffrey Haguewood
 
Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*
Frank van Harmelen
 
UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3
DianaGray10
 
Software Delivery At the Speed of AI: Inflectra Invests In AI-Powered Quality
Software Delivery At the Speed of AI: Inflectra Invests In AI-Powered QualitySoftware Delivery At the Speed of AI: Inflectra Invests In AI-Powered Quality
Software Delivery At the Speed of AI: Inflectra Invests In AI-Powered Quality
Inflectra
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Ramesh Iyer
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
Jemma Hussein Allen
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
Laura Byrne
 
JMeter webinar - integration with InfluxDB and Grafana
JMeter webinar - integration with InfluxDB and GrafanaJMeter webinar - integration with InfluxDB and Grafana
JMeter webinar - integration with InfluxDB and Grafana
RTTS
 

Recently uploaded (20)

Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
Unsubscribed: Combat Subscription Fatigue With a Membership Mentality by Head...
 
How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...How world-class product teams are winning in the AI era by CEO and Founder, P...
How world-class product teams are winning in the AI era by CEO and Founder, P...
 
UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4UiPath Test Automation using UiPath Test Suite series, part 4
UiPath Test Automation using UiPath Test Suite series, part 4
 
Connector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a buttonConnector Corner: Automate dynamic content and events by pushing a button
Connector Corner: Automate dynamic content and events by pushing a button
 
Designing Great Products: The Power of Design and Leadership by Chief Designe...
Designing Great Products: The Power of Design and Leadership by Chief Designe...Designing Great Products: The Power of Design and Leadership by Chief Designe...
Designing Great Products: The Power of Design and Leadership by Chief Designe...
 
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
From Daily Decisions to Bottom Line: Connecting Product Work to Revenue by VP...
 
Search and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical FuturesSearch and Society: Reimagining Information Access for Radical Futures
Search and Society: Reimagining Information Access for Radical Futures
 
When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...When stars align: studies in data quality, knowledge graphs, and machine lear...
When stars align: studies in data quality, knowledge graphs, and machine lear...
 
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
Dev Dives: Train smarter, not harder – active learning and UiPath LLMs for do...
 
DevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA ConnectDevOps and Testing slides at DASA Connect
DevOps and Testing slides at DASA Connect
 
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
Kubernetes & AI - Beauty and the Beast !?! @KCD Istanbul 2024
 
Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...Mission to Decommission: Importance of Decommissioning Products to Increase E...
Mission to Decommission: Importance of Decommissioning Products to Increase E...
 
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
Slack (or Teams) Automation for Bonterra Impact Management (fka Social Soluti...
 
Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*Neuro-symbolic is not enough, we need neuro-*semantic*
Neuro-symbolic is not enough, we need neuro-*semantic*
 
UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3UiPath Test Automation using UiPath Test Suite series, part 3
UiPath Test Automation using UiPath Test Suite series, part 3
 
Software Delivery At the Speed of AI: Inflectra Invests In AI-Powered Quality
Software Delivery At the Speed of AI: Inflectra Invests In AI-Powered QualitySoftware Delivery At the Speed of AI: Inflectra Invests In AI-Powered Quality
Software Delivery At the Speed of AI: Inflectra Invests In AI-Powered Quality
 
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
Builder.ai Founder Sachin Dev Duggal's Strategic Approach to Create an Innova...
 
The Future of Platform Engineering
The Future of Platform EngineeringThe Future of Platform Engineering
The Future of Platform Engineering
 
The Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and SalesThe Art of the Pitch: WordPress Relationships and Sales
The Art of the Pitch: WordPress Relationships and Sales
 
JMeter webinar - integration with InfluxDB and Grafana
JMeter webinar - integration with InfluxDB and GrafanaJMeter webinar - integration with InfluxDB and Grafana
JMeter webinar - integration with InfluxDB and Grafana
 

Building a Hybrid Cloud Architecture Utilizing AWS Landing Zones

  • 1.
  • 2. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Building a HybridCloudArchitecture UtilizingAWS LandingZones Tom Laszewski Enterprise Technologist Amazon Web Services, Americas S e s s i o n I D Richard Hillard Client Services Director GreenPages Jeff Weitz IT Director Finch Therapeutics
  • 3. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Agenda Hybrid Cloud – Think Differently Hybrid Cloud on AWS Extending AWS Landing Zones into Hybrid Cloud on AWS Hybrid Cloud – Partner Reference Implementation - GreenPages Hybrid Cloud - Customer Implementation – Finch Therapeutics
  • 4. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 5. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Hybrid Cloud - Think Differently Networks are secured, authentication is required to access the network and/or resources. Decreases the impact ‘blast radius’ of network intrusion, data breach, data loss, service outages, human error or bad actors by design. Networks are secured, authentication is required to access the network and/or resources is granted in a least-permissive way within smaller network segments. ‘Zero-Trust’ Model Legacy Model
  • 6. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Hybrid Cloud - Primitives Multi-Account / Multi-Cloud Enables a ‘Zero-Trust’ model at the highest operational control. Micro-Services Deploy workloads into smaller, secure network segments. Transit Hub Allow your organization to scale and leverage cloud in new, unanticipated ways. N-Tier Architecture Application stack isolation and security, easily pinpoint application vs. infrastructure issues.
  • 7. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Hybrid Cloud - Why do I need it? Mitigate Risk Integrate security and authentication throughout the design, lower the ‘blast radius’ of impactful events. Achieve Agility Deploy and run environments programmatically, at scale in a consistent, ops- ready state. Enable Compliance Deploy infrastructure as code, automated alerting and/or remediation of non-compliant events. Cost Optimization and Reporting Provide clear line-of-sight into the costs of running workloads; accurate forecasting and automated reporting.
  • 8. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. VMware Cloud on AWS HybridCloud onAWS On-premises Data Center Networking DirectConnect, VPN, VPC Security & Identity IAM, Directory Services Data Integration Storage Gateway, S3, EBS Snapshots, RDS, Snowball, Glacier, Route 53, MQ, ELB Management, Monitoring & Operations CloudFormation, CloudWatch, CloudTrail, Config, Systems Manager Backup & DR Data Center Extension Cloud Migration Dev and Test Edge & IoT Cloud Bursting
  • 9. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 10. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Shared Services VPC AWS Landing Zones Implementation Shared Services Account Security VPC Security Account Logging VPC Logging Account AWS cloud AWS Organizations Cross- Account IAM Roles Security Notifications CloudTrail and Config Logs AWS Microsoft Active Directory Organizations Account Organizations VPC
  • 11. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Shared Services VPC Hybrid Cloud Implementation Shared Services Account Security VPC Security Account Logging VPC Logging Account AWS cloud corporate data center Corporate Network Active Directory Data Sources Datacenter Services Transit Hub VPC Transit Hub Acct AWS Direct Connect Dev Sandbox VPCs Developers Acct Department VPC Department Account Application VPC Application Account Organizations Account Organizations VPC
  • 12. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Shared Services VPC Sample AWS Account / VPC Perspectives AWS Organizations Master Account Shared Services Acct Security VPC Security Acct Logging VPC Logging Acct InfoTechOU Dept 01 Dev VPC Dept 01 Non-Prod Acct Dept 01 Test VPC Dept 01 Staging VPC Dept 01 Prod Acct Dept 01 Prod VPC Dev Sandbox VPCs Developers Acct DevelopersOUDepartment1OU App 01 Dev VPC App 01 Dev Acct App 01 Test VPC App 01 Test Acct App01 Staging VPC App 01 Staging Acct Highly-RegulatedApplicationOU App01 Prod VPC App 01 Prod Acct Transit Hub VPC Transit Hub Acct AWS Direct Connect AWS cloud
  • 13. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. HybridCloud / MultiCloudTopology Organization Shared Services Transit Hub Security DevOps App 101 Non- Prod VPN Client Access App 102 Non- Prod App 102 Prod Tenant Shared Services Transit Hub Security DevOps VPN Client Access App 201 Non- Prod App 201 Prod App 202 Non- Prod App 202 Prod Microsoft Azure GreenPages Demo Company Tenancy GreenPages Demo Company VLAN AWS GreenPages Demo Company Account Family AWS Accounts and Virtual Private Clouds (VPCs) Azure Subscriptions and Virtual Private Networks (VNETs) GreenPages Configuration Center Amazon Web Services Microsoft Azure Operations Management & Monitoring Hybrid Cloud Orchestrator CloudBolt www.cloudbolt.io Consistent environment deployments to AWS, Azure, GCP, and vmware, with real- time validation and automated remediation. https://dev.gphco.io Digital Operations OpsRamp www.opsramp.com Security, Compliance & Financial Control CloudCheckr www.cloudcheckr.com Next-Gen Global Transit Network by Aviatrix www.aviatrix.com Corporate Network Active Directory Data Sources Data Center Services App 101 Prod
  • 14. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 15. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWS HybridCloud –Operations and Management Hybrid Cloud Orchestrator CloudBolt www.cloudbolt.io Consistent environment deployments to AWS, Azure, GCP, and vmware, with real-time validation and automated remediation. Self-service IT & user empowerment. Multi-cloud & hypervisor management. Digital Operations OpsRamp www.opsramp.com Digital operations command center – bringing the right operational insights across multiple services, platforms and tools for a holistic view. Security, Compliance & Financial Control CloudCheckr www.cloudcheckr.com Comprehensive cost management with advanced, automated reporting to line-of-business resource owners. Security and compliance auditing. Unified utilization analytics.
  • 16. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.
  • 17. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. AWS HybridCloudCustomer – FinchTherapeutics
  • 18. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. HybridCloud / MultiCloudTopology Organization Shared Services Transit Hub Security DevOps App 01 Dev VPN Client Access App 2 Dev App 2 QA Tenant Shared Services Transit Hub Security DevOps VPN Client Access Microsoft Azure Finch Therapeutics Tenancy AWS Finch Therapeutics Account Family AWS Accounts and Virtual Private Clouds (VPCs) Azure Subscriptions and Virtual Private Networks (VNETs) Corporate Headquarters Amazon Web Services Microsoft Azure Next-Gen Global Transit Network by Aviatrix www.aviatrix.com Corporate Network Active Directory Data Sources Data Center Services Manufacturing (planned) App 01 QA App 01 Prod App 2 Prod App 4 Dev App 4 QA App 4 Prod App 3 Dev App 3 QA App 3 Prod Branch Office Corporate Network Application Users Data Collection Branch Office Corporate Network Application Users Data Collection
  • 19. Thank you! © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved. Tom Laszewski tomlasz@amazon.com Enterprise Technologist Amazon Web Services, Americas Richard Hillard richard.hillard@greenpages.co m Client Services Director GreenPages Jeff Weitz jeff@finchtherapeutics.co m IT Director Finch Therapeutics
  • 20. © 2018, Amazon Web Services, Inc. or its affiliates. All rights reserved.

Editor's Notes

  1. Application modernization projects with AWS start with creating an AWS Landing Zone to ensure a secure, well-operated and managed, compliant, highly available, cost-efficient, and multi-account AWS environment based upon AWS best practices. Common hybrid cloud use cases, such as cloud migration, data center extension, disaster recovery, cloud bursting, and edge computing require data integration, operations management and monitoring, security, and networking as the foundational components of a hybrid cloud architecture. In this session, we dive deep on the networking, security, account management structure, operating management and monitoring best practices to build your own AWS Landing Zone extended into your data center . We will dive deep on the AWS Landing Zone extension into a hybrid cloud architecture for the foundational layers of network, security, and operations management and monitoring. The AWS partner, GreenPages, will demonstrate a repeatable hybrid cloud architecture to secure, manage, and integrate your network across on-premises and multiple AWS regions utilizing an AWS Landing Zone. Finch Therapeutics will then discuss how they utilized the GreenPages hybrid cloud reference implementation to deploy, secure, and manage their hybrid cloud environment.
  2. - Outcome – helps with transformation and migration.
  3. Operating in a hybrid architecture is a step in the cloud adoption journey for many organizations that have on-premises technology investments. Migrating legacy IT systems takes time, and can be disruptive to current processes, organizational structure, and culture. AWS has developed a broad set of hybrid cloud capabilities across storage, networking, security, application deployment, and management tools to help you build and operate a secure, performant, reliable, and scalable hybrid cloud. Join this tech talk to learn how customers are leveraging AWS hybrid cloud capabilities for cloud bursting and integrating devices and edge systems. The webinar will start with a review of customer success stories for datacenter capacity extension, delivery of new services and applications, and ensuring business continuity and disaster recovery, as well as covering the configuration of a hybrid cloud landing zone. Security and Networking are foundational to all hybrid cloud use cases. Data integration as data needs to be moved between on-premise and AWS 3. In order to assist with running your workloads on AWS you can utilize…. A. AWS CloudFormation to allows you to model your entire infrastructure in a text file – Infrastructure as Code). This template becomes the single source of truth for your infrastructure – your virtual data center in a box (well, actually a JSON or YAML) B. Amazon CloudWatch – To monitor services for running on AWS resources C. AWS CloudTrail enables governance, compliance, operational auditing, and risk auditing of your AWS account. D. AWS Config F. AWS Systems Manager Use cases: We will focus on data integration customer successes first as often times the first two efforts of a an enterprise customers cloud journey are 1) disaster recovery and backup 2) analytics on AWS. The first customer success is a hot standby scenario utilizing an AWS ISV and a MSP partner, as partners are important to AWS customer’s success with the AWS platform. Dev and Test Cloud Migration - Without a migration you don’t have hybrid cloud 4. For cloud bursting, you will most likely need a high speed, low latency network in place – DirectConnect, but really only need an Amazon Machine Image – an image that provides the information required to launch an EC2 instance, and Use Spot Fleets to bid on multiple instance types simultaneously. This provides a low cost environment as a Spot Instance is an unused EC2 instance that is available for less than the On-Demand price because Spot Instances enable you to request unused EC2 instances at steep discounts 5. Data Center Extension - When you build a new app in the Cloud, you don’t need to run 100% of the functionality in the Cloud. Whether its for compliance reasons or because you have an existing component already built, you can utilize this functionality in your new cloud apps vs. rebuilding or porting. Database on premises or in a AWS direct connect location. Mobile, web application on AWS Database on AWS and application / web or mobile on premise Applications running simultaneously on AWS and on premise -AWS OpsWorks, CodeDeploy 6. Edge and IoT - A vast amount of data is being generated by devices as part of the Internet of Things and by systems at remote locations. Process data where is is consumed is important.
  4. What’s the problem we’re trying to solve for our customers? Most of our customers don’t have the luxury of unlimited budgets or infinite deadlines. They’re also facing significant challenges with change management and aligning teams. So, we’ve developed some prescriptive guidance, a blueprint for success. Rapid on-ramp for cloud enablement. Hybrid-cloud / multi-cloud architecture solving some of the most complex challenges first. Ability to provide clear leadership and a proven path forward to manage the organizational change cycle needed for cloud adoption. Big three challenges we solve for right away: Extending network connectivity via Global Transit Architecture Bring Identity and Access Management (often Active Directory) to each Hybrid Cloud Landing Zone Provide reference architecture around IaaS deployments Why are people struggling with Operations? Most organizations do a great job of managing their own corporate datacenters, or their cloud environments. Where we find our customers are having some difficulty is building a true hybrid-cloud, multi-cloud management platform. There’s a lot of noise coming from all of the different stacks, tools, alerting platform, reports. We all want to get AHEAD of these challenges, stop reacting after-the-fact.
  5. What’s was the problem here? Granular, gated GxP controls by environment. How to connect corporate offices and remote office to cloud resources without backhauling all traffic to corporate headquarters. Ability to provide clear leadership and a proven path forward to manage the organizational change cycle needed for cloud adoption. Big three challenges we solved for right away: Extending network connectivity via Global Transit Architecture Bring Identity and Access Management (often Active Directory) to each Hybrid Cloud Landing Zone Provide reference architecture around IaaS deployments What are we still struggling with? Still working to automated builds and deployments via CloudFormation Templates. These will be used as a basis for CloudBolt Builds, most-likely powered by Terraform. Working to instrument and monitor all environments and workloads in OpsRamp. Helping to build a cross-functional Agile/SCRUM Team regarding implementing all the initiatives Finch Therapeutics’ leadership has for the company.