SlideShare ist ein Scribd-Unternehmen logo
1 von 23
Downloaden Sie, um offline zu lesen
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
AWS re:INVENT
Adopting Microservices in Healthcare:
Building a Compliant DevOps Pipeline
on Amazon ECS
A a r o n F r i e d m a n , A W S
J o h n F i s c h e r , H o r i z o n B l u e C r o s s B l u e S h i e l d o f N e w J e r s e y 
M a t t F e r r a r i , C l e a r D A T A
A d a m G r e e n f i e l d , C l e a r D A T A
H L C 3 0 2
N o v e m b e r 2 7 , 2 0 1 7
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Security and Compliance Are Job Zero
Leverage security
enhancements from 1M+
customer experiences
Benefit from AWS
industry leading
security teams 24/7,
365 days a year
Security infrastructure
built to satisfy military,
global banks, and other
high-sensitivity
organizations
Over 50 global
compliance
certifications and
accreditations
“Healthcare institutions don’t have
the time and resources to devote to
cybersecurity that an established
cloud provider might have.”
Lee Kim – Director, Privacy and
Security, HIMSS North America
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Shared Responsibility Model for Security
AWS Foundation Services
Compute Storage Database Networking
AWS Global Infrastructure
Regions
Availability Zones
Edge Locations
Network
Security
Identity &
Access
Control
Customer applications & content
You get to define
your controls IN
the cloud
AWS takes care
of the security
OF the cloud
You Inventory
& AWS
Config
Data
Encryption
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Aligning to Global Frameworks
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
HIPAA Eligible Services for Every
Application
Compute Storage Database Managed
Big Data
Archiving Data
Warehousing
Networking
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Reinforce Your Security Posture
Virtual Private Cloud
Isolated cloud resources
Web Application
Firewall
Filter Malicious Web
Traffic
AWS Shield
DDoS protection
AWS Certificate Manager
Provision, manage, and
deploy SSL/TSL certificates
AWS Key
Management Service
Manage creation and
control of encryption keys
AWS CloudHSM
Hardware-based key
storage
Server-Side
Encryption
Flexible data encryption
options
AWS IAM
Manage user access and
encryption keys
SAML Federation
SAML 2.0 support to
allow on-premises identity
integration
Directory Service
Host and manage
Microsoft Active Directory
Organizations
Manage settings for
multiple accounts
Service Catalog
Create and use
standardized products
AWS Config
Track resource inventory
and changes
AWS CloudTrail
Track user activity and
API usage
Amazon CloudWatch
Monitor resources and
applications
Amazon Inspector
Analyze application
security
AWS Artifact
Self-service for AWS’
compliance reports
Networking Encryption Identity & Management Compliance
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Move Fast, Stay Secure
Do one
thing wellIndependent
Decentralized
Black box
Polyglot
You build it, you run it
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
JOHN FISCHER
Enterprise Architect,
Horizon Blue Cross Blue Shield of
NJ
MATT FERRARI
CTO, ClearDATA
ADAM GREENFIELD
Senior Director of Enterprise
Architecture, ClearDATA
Meet the Speakers
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
How We Got Here
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
What We Need to Accomplish
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
ClearDATA
HEALTHCARE
Exclusive
CLOUD
SECURITY
Experts
CERTIFIED
Experience
• BAA with the most coverage of any
leading provider
• Incorporates existing infrastructure
BAAs into a single BAA
ENHANCED
BAA
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Extending the AWS Shared Responsibility Model
AWS Global
Infrastructure
Availability Zones
Regions
Edge
Locations
AWS Foundation Services
Compute Storage Database Networking
Network Traffic
Protection
Server-Side
Encryption
Client-Side Data
Encryption
Operating Systems, Network & Firewall Configurations
Platform
Customer Data
Applications Identity & Access Management
AWS Global
Infrastructure
Availability Zones
Regions
Edge
Locations
AWS Foundation Services
Compute Storage Database Networking
Network Traffic
Protection
Server-Side
Encryption
Client-Side Data
Encryption
Operating Systems, Network & Firewall Configurations
Customer Data
ClearDATA
Platform
Applications Identity & Access Management
Amazon Web Services Infrastructure ClearDATA Managed Cloud
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
What We’ve Done—Containers
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
What We’ve Done—Containers
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
What We’ve Done—Dashboard
CloudWatch
Bucket
Consuminator
Trigger Lambda
Amazon
ECS
Dash Api
Ava
Consuminator
Queue
DashTrigger
Lambda
Amazon
ECS Task
Dash
Queue
Cmdb
Snapshot Api
Image
Builder Api
Twistlock
Bucket
CloudWatch
Package
Consumer
Heartbeat
Log injection
CDHP
Interfaces
Dash
Trigger
Dynamo
Tables
Summary
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
What We’ve Done
Development Integrated
Testing
Performance
Testing
Production
virtual private
cloud
• Authentication
• Scanning
• Logging
• Monitoring
Amazon ECS
EC2 compute
container
Technologies
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Our Approach
Integration is the center of the solution
Supports a hybrid mode and lends to a phased migration to the
cloud
Horizon
Digital
Integration
Platform
1API Dev &
Mgmt. Tools
HA TA EOS
ERROR
Handling
Health
Metr ic
Gener at or
Env. Aware
Configuratio
n Client
Rx F/W
Databas e
Connectors
Perfor mance
Tracing
Engine
Caching
Client F/W
Unit Tes ting
F/W
Expectation
As sert ionF/
W
Embedded
MockH TTP
Server
Dependency
Mgmt.
Domain
Validation
DSL
CLISuppor t
Logging As pects
Inst rumentation
and Enhanced
Debugging
Support
API
Registr ation
Fault
Isolation
Circuits
Transaction
Mgmt.
Service
Dis covery
Service Logic
Dom ain
Objects(s)
Endpoints
Secur it y
Filt er
Request
Tracking
Idempotent
F/W
Request D ispatcher
R ep re se nta ti on a l
Da ta B in d in g
Cus tom DAO
AMQP
HTTP Client
F/W
ORM
MVC Frameworks with res tful capabilities
Port Bindings
Dependency
Mgmt
Environment
Def init ions
3
DevOps
CA Svc Virt Sonar CheckMarx Other
ECRNexusJenkins
Bit Bucket
Server
5
2
Cache &
Integration
API
Dedicated
NoSQL DB
File
Processors
(E)
Processor
e4e3e2e1
e4e3e2e1
EntityChangeEvents
Batch
Events
File
Processors
(T.L)
Data Store
Extract Data
Hosting &
Platform
4
Compute Service
Network Tools
Apps &
Servers
RDS
No SQL
API
Analytics
Log &
Monitor
Security
Storage Service
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
What We’ve Done—Horizon Architecture
Availability Zone 1 - US-East-1A Availability Zone 2 - US-East-1B Availability Zone 3 - US-East-1C
Internet
gateway
Production VPC (Region: US-East-1 / VPC ID: vpc-xxxxxxx /
DHCP Option Set: dopt-xxxxxxx / CIDR: 192.168.0.0/20)
Public Subnet – 192.168.9.0/24 Public Subnet – 192.168.10.0/24
router router
Public Subnet – 192.168.8.0/24
Public Subnet – 192.168.0.0/24 Public Subnet – 192.168.1.0/24 Public Subnet – 192.168.2.0/24
S3 – data
storage
API Gateway
(SaaS)
Inbound API Calls
(HTTPS)
VPC peering
(Management - vpc-xxxxxxx)
Outbound API Calls
(HTTPS)
Horizon internal networkAD / DNS CyberArk DataPower Managed File
Transfer
SMTP SplunkArcsight VDI / PC
Horizon DMZ
SSO
VPC peering
(ClearDATA - vpc-xxxxxxx)
CloudWatch
CloudTrail
api-elb-ext
SSO Calls
(HTTPS)
AD + LDAP
Prod ECS nodes
api-elb-int
Prod RabbitMQ
Node 1
Prod MongoDB
Routing Server 1
api-elb-ext
Prod ECS nodes
api-elb-int
Prod RabbitMQ
Node 2
api-elb-ext
Prod ECS nodes
api-elb-int
Prod RabbitMQ
Node 3
Trading Partners / Apps
3rd
-Party APIs
Ex: Salesforce, ServiceNow
DirectConnect
Customer Gateway
Palo Alto firewall
EC2 Container
Service (ECS)
Key
Management
Service (KMS)
Identity & Access
Management
(IAM)
spk-elb-ext spk-elb-ext spk-elb-ext
rmq-elb-int
Splunk Heavy-
Weight Forwarder
rmq-elb-int
Splunk Heavy-
Weight Forwarder
Prod MongoDB
Routing Server 2
Prod MongoDB
primary data node
Prod MongoDB
primary config srv
Prod MongoDB
Routing Server 3
Prod MongoDB
Routing Server 4
Prod MongoDB
secondary data node
Prod MongoDB
sec. config srv
rmq-elb-int
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
What We’ve Done—DevOps Process Model
1
2
3
4 5 6
7
8
9
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Lessons Learned
• AWS available services list will be consumed quickly
• Partner with Security Governance and Operations teams from start
• Level of effort to own engineering/security
• Explicit planning required for high availability and DR
• Use same tools/processes used on-premises
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Horizon
• Enterprise Content Management
• Big Data
• Migration Legacy Systems
• Multi-region DR
What’s Next
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
ClearDATA
C2 – ClearDATA Compliance
What’s Next
© 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved.
Thank you!
ClearDATA is independent from and not affiliated with Horizon Blue Cross Blue Shield of New Jersey.
Horizon Blue Cross Blue Shield of New Jersey is an independent licensee of the Blue Cross Blue Shield
Association.

Weitere ähnliche Inhalte

Was ist angesagt?

MAE401_Designing for DisneyMarvel Studio-Grade Security
MAE401_Designing for DisneyMarvel Studio-Grade SecurityMAE401_Designing for DisneyMarvel Studio-Grade Security
MAE401_Designing for DisneyMarvel Studio-Grade SecurityAmazon Web Services
 
DVC303-Technological Accelerants for Organizational Transformation
DVC303-Technological Accelerants for Organizational TransformationDVC303-Technological Accelerants for Organizational Transformation
DVC303-Technological Accelerants for Organizational TransformationAmazon Web Services
 
Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017
Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017
Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017Amazon Web Services
 
GAM310_Build a Telemetry and Analytics Pipeline for Game Balancing
GAM310_Build a Telemetry and Analytics Pipeline for Game BalancingGAM310_Build a Telemetry and Analytics Pipeline for Game Balancing
GAM310_Build a Telemetry and Analytics Pipeline for Game BalancingAmazon Web Services
 
LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...
LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...
LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...Amazon Web Services
 
WPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdf
WPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdfWPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdf
WPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdfAmazon Web Services
 
GPSWKS406-Migrating a Microsoft ASP.NET Application to AWS
GPSWKS406-Migrating a Microsoft ASP.NET Application to AWSGPSWKS406-Migrating a Microsoft ASP.NET Application to AWS
GPSWKS406-Migrating a Microsoft ASP.NET Application to AWSAmazon Web Services
 
CON203_Driving Innovation with Containers
CON203_Driving Innovation with ContainersCON203_Driving Innovation with Containers
CON203_Driving Innovation with ContainersAmazon Web Services
 
GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...
GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...
GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...Amazon Web Services
 
RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...
RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...
RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...Amazon Web Services
 
HLC305_How Verge Health Leverages Automation
HLC305_How Verge Health Leverages AutomationHLC305_How Verge Health Leverages Automation
HLC305_How Verge Health Leverages AutomationAmazon Web Services
 
Migrating Microsoft Workloads to AWS
Migrating Microsoft Workloads to AWSMigrating Microsoft Workloads to AWS
Migrating Microsoft Workloads to AWSAmazon Web Services
 
GPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and Beyond
GPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and BeyondGPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and Beyond
GPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and BeyondAmazon Web Services
 
MBL306_Mobile State of the Union
MBL306_Mobile State of the UnionMBL306_Mobile State of the Union
MBL306_Mobile State of the UnionAmazon Web Services
 
Migrating Your Databases to AWS – Tools and Services (Level 100)
Migrating Your Databases to AWS – Tools and Services (Level 100)Migrating Your Databases to AWS – Tools and Services (Level 100)
Migrating Your Databases to AWS – Tools and Services (Level 100)Amazon Web Services
 
GPSBUS204_Building a Profitable Next Generation AWS MSP Practice
GPSBUS204_Building a Profitable Next Generation AWS MSP PracticeGPSBUS204_Building a Profitable Next Generation AWS MSP Practice
GPSBUS204_Building a Profitable Next Generation AWS MSP PracticeAmazon Web Services
 
Deploying Business Analytics at Enterprise Scale - AWS Online Tech Talks
Deploying Business Analytics at Enterprise Scale - AWS Online Tech TalksDeploying Business Analytics at Enterprise Scale - AWS Online Tech Talks
Deploying Business Analytics at Enterprise Scale - AWS Online Tech TalksAmazon Web Services
 
GPSBUS202_Driving Customer Value with Big Data Analytics
GPSBUS202_Driving Customer Value with Big Data AnalyticsGPSBUS202_Driving Customer Value with Big Data Analytics
GPSBUS202_Driving Customer Value with Big Data AnalyticsAmazon Web Services
 

Was ist angesagt? (20)

MAE401_Designing for DisneyMarvel Studio-Grade Security
MAE401_Designing for DisneyMarvel Studio-Grade SecurityMAE401_Designing for DisneyMarvel Studio-Grade Security
MAE401_Designing for DisneyMarvel Studio-Grade Security
 
DVC303-Technological Accelerants for Organizational Transformation
DVC303-Technological Accelerants for Organizational TransformationDVC303-Technological Accelerants for Organizational Transformation
DVC303-Technological Accelerants for Organizational Transformation
 
Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017
Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017
Building Serverless Websites with Lambda@Edge - CTD309 - re:Invent 2017
 
GAM310_Build a Telemetry and Analytics Pipeline for Game Balancing
GAM310_Build a Telemetry and Analytics Pipeline for Game BalancingGAM310_Build a Telemetry and Analytics Pipeline for Game Balancing
GAM310_Build a Telemetry and Analytics Pipeline for Game Balancing
 
LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...
LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...
LFS301-SAGE Bionetworks, Digital Mammography DREAM Challenge and How AWS Enab...
 
WPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdf
WPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdfWPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdf
WPS301-Navigating HIPAA and HITRUST_QuickStart Guide to Account Gov Strat.pdf
 
GPSTEC307_Too Many Tools
GPSTEC307_Too Many ToolsGPSTEC307_Too Many Tools
GPSTEC307_Too Many Tools
 
GPSWKS406-Migrating a Microsoft ASP.NET Application to AWS
GPSWKS406-Migrating a Microsoft ASP.NET Application to AWSGPSWKS406-Migrating a Microsoft ASP.NET Application to AWS
GPSWKS406-Migrating a Microsoft ASP.NET Application to AWS
 
CON203_Driving Innovation with Containers
CON203_Driving Innovation with ContainersCON203_Driving Innovation with Containers
CON203_Driving Innovation with Containers
 
GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...
GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...
GPSTEC321_VMware on AWS Cloud Technical Deep Dive & Native AWS Services Integ...
 
RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...
RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...
RET303_Drive Warehouse Efficiencies with the Same AWS IoT Technology that Pow...
 
HLC305_How Verge Health Leverages Automation
HLC305_How Verge Health Leverages AutomationHLC305_How Verge Health Leverages Automation
HLC305_How Verge Health Leverages Automation
 
Migrating Microsoft Workloads to AWS
Migrating Microsoft Workloads to AWSMigrating Microsoft Workloads to AWS
Migrating Microsoft Workloads to AWS
 
GPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and Beyond
GPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and BeyondGPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and Beyond
GPSTEC317-From Leaves to Lawns AWS Greengrass at the Edge and Beyond
 
MBL306_Mobile State of the Union
MBL306_Mobile State of the UnionMBL306_Mobile State of the Union
MBL306_Mobile State of the Union
 
Migrating Your Databases to AWS – Tools and Services (Level 100)
Migrating Your Databases to AWS – Tools and Services (Level 100)Migrating Your Databases to AWS – Tools and Services (Level 100)
Migrating Your Databases to AWS – Tools and Services (Level 100)
 
GPSBUS204_Building a Profitable Next Generation AWS MSP Practice
GPSBUS204_Building a Profitable Next Generation AWS MSP PracticeGPSBUS204_Building a Profitable Next Generation AWS MSP Practice
GPSBUS204_Building a Profitable Next Generation AWS MSP Practice
 
Deploying Business Analytics at Enterprise Scale - AWS Online Tech Talks
Deploying Business Analytics at Enterprise Scale - AWS Online Tech TalksDeploying Business Analytics at Enterprise Scale - AWS Online Tech Talks
Deploying Business Analytics at Enterprise Scale - AWS Online Tech Talks
 
Introducing Amazon Fargate
Introducing Amazon FargateIntroducing Amazon Fargate
Introducing Amazon Fargate
 
GPSBUS202_Driving Customer Value with Big Data Analytics
GPSBUS202_Driving Customer Value with Big Data AnalyticsGPSBUS202_Driving Customer Value with Big Data Analytics
GPSBUS202_Driving Customer Value with Big Data Analytics
 

Ähnlich wie HLC302_Adopting Microservices in Healthcare Building a Compliant DevOps Pipeline on Amazon ECS

AWS Innovate Ottawa: Security & Compliance
AWS Innovate Ottawa: Security & ComplianceAWS Innovate Ottawa: Security & Compliance
AWS Innovate Ottawa: Security & ComplianceAmazon Web Services
 
AWS Webinar CZSK 02 Bezpecnost v AWS cloudu
AWS Webinar CZSK 02 Bezpecnost v AWS clouduAWS Webinar CZSK 02 Bezpecnost v AWS cloudu
AWS Webinar CZSK 02 Bezpecnost v AWS clouduVladimir Simek
 
Protecting Your Data- AWS Security Tools and Features
Protecting Your Data- AWS Security Tools and FeaturesProtecting Your Data- AWS Security Tools and Features
Protecting Your Data- AWS Security Tools and FeaturesAmazon Web Services
 
How Redlock Automates Security on AWS
How Redlock Automates Security on AWSHow Redlock Automates Security on AWS
How Redlock Automates Security on AWSAmazon Web Services
 
Intro to Threat Detection and Remediation on AWS
Intro to Threat Detection and Remediation on AWSIntro to Threat Detection and Remediation on AWS
Intro to Threat Detection and Remediation on AWSAmazon Web Services
 
Intro to threat_detection_and_remediation on aws
Intro to threat_detection_and_remediation on awsIntro to threat_detection_and_remediation on aws
Intro to threat_detection_and_remediation on awsBela Sojina MBA, PMP
 
Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...
Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...
Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...Amazon Web Services
 
Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018
Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018
Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018Amazon Web Services
 
Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...
Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...
Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...Amazon Web Services
 
Security at Scale with AWS - AWS Summit Cape Town 2017
Security at Scale with AWS - AWS Summit Cape Town 2017 Security at Scale with AWS - AWS Summit Cape Town 2017
Security at Scale with AWS - AWS Summit Cape Town 2017 Amazon Web Services
 
Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018
Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018
Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018Amazon Web Services
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeAlert Logic
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeAlert Logic
 
Warum ist Cloud-Sicherheit und Compliance wichtig?
Warum ist Cloud-Sicherheit und Compliance wichtig?Warum ist Cloud-Sicherheit und Compliance wichtig?
Warum ist Cloud-Sicherheit und Compliance wichtig?AWS Germany
 

Ähnlich wie HLC302_Adopting Microservices in Healthcare Building a Compliant DevOps Pipeline on Amazon ECS (20)

AWS Innovate Ottawa: Security & Compliance
AWS Innovate Ottawa: Security & ComplianceAWS Innovate Ottawa: Security & Compliance
AWS Innovate Ottawa: Security & Compliance
 
AWS Webinar CZSK 02 Bezpecnost v AWS cloudu
AWS Webinar CZSK 02 Bezpecnost v AWS clouduAWS Webinar CZSK 02 Bezpecnost v AWS cloudu
AWS Webinar CZSK 02 Bezpecnost v AWS cloudu
 
AWS - Security & Compliance
AWS - Security & ComplianceAWS - Security & Compliance
AWS - Security & Compliance
 
AWS - Security & Compliance
AWS - Security & ComplianceAWS - Security & Compliance
AWS - Security & Compliance
 
Protecting Your Data- AWS Security Tools and Features
Protecting Your Data- AWS Security Tools and FeaturesProtecting Your Data- AWS Security Tools and Features
Protecting Your Data- AWS Security Tools and Features
 
How Redlock Automates Security on AWS
How Redlock Automates Security on AWSHow Redlock Automates Security on AWS
How Redlock Automates Security on AWS
 
Intro to Threat Detection and Remediation on AWS
Intro to Threat Detection and Remediation on AWSIntro to Threat Detection and Remediation on AWS
Intro to Threat Detection and Remediation on AWS
 
Intro to threat_detection_and_remediation on aws
Intro to threat_detection_and_remediation on awsIntro to threat_detection_and_remediation on aws
Intro to threat_detection_and_remediation on aws
 
SEC301 Security @ (Cloud) Scale
SEC301 Security @ (Cloud) ScaleSEC301 Security @ (Cloud) Scale
SEC301 Security @ (Cloud) Scale
 
Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...
Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...
Living on the Edge, It’s Safer Than You Think! Building Strong with Amazon Cl...
 
Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018
Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018
Realize Value of Your Microsoft Investments - Transformation Day Montreal 2018
 
Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...
Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...
Verizon: Modernizing Enterprise Infrastructure with AWS - WIN307 - re:Invent ...
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
 
Security at Scale with AWS - AWS Summit Cape Town 2017
Security at Scale with AWS - AWS Summit Cape Town 2017 Security at Scale with AWS - AWS Summit Cape Town 2017
Security at Scale with AWS - AWS Summit Cape Town 2017
 
Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018
Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018
Security, Risk and Compliance of Your Cloud Journey - Tel Aviv Summit 2018
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in Practice
 
The AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in PracticeThe AWS Shared Responsibility Model in Practice
The AWS Shared Responsibility Model in Practice
 
Introduction to AWS Security
Introduction to AWS SecurityIntroduction to AWS Security
Introduction to AWS Security
 
Enterprise Security
Enterprise SecurityEnterprise Security
Enterprise Security
 
Warum ist Cloud-Sicherheit und Compliance wichtig?
Warum ist Cloud-Sicherheit und Compliance wichtig?Warum ist Cloud-Sicherheit und Compliance wichtig?
Warum ist Cloud-Sicherheit und Compliance wichtig?
 

Mehr von Amazon Web Services

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Amazon Web Services
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Amazon Web Services
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateAmazon Web Services
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSAmazon Web Services
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Amazon Web Services
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Amazon Web Services
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...Amazon Web Services
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsAmazon Web Services
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareAmazon Web Services
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSAmazon Web Services
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAmazon Web Services
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareAmazon Web Services
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWSAmazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckAmazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without serversAmazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...Amazon Web Services
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceAmazon Web Services
 

Mehr von Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

HLC302_Adopting Microservices in Healthcare Building a Compliant DevOps Pipeline on Amazon ECS

  • 1. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. AWS re:INVENT Adopting Microservices in Healthcare: Building a Compliant DevOps Pipeline on Amazon ECS A a r o n F r i e d m a n , A W S J o h n F i s c h e r , H o r i z o n B l u e C r o s s B l u e S h i e l d o f N e w J e r s e y M a t t F e r r a r i , C l e a r D A T A A d a m G r e e n f i e l d , C l e a r D A T A H L C 3 0 2 N o v e m b e r 2 7 , 2 0 1 7
  • 2. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Security and Compliance Are Job Zero Leverage security enhancements from 1M+ customer experiences Benefit from AWS industry leading security teams 24/7, 365 days a year Security infrastructure built to satisfy military, global banks, and other high-sensitivity organizations Over 50 global compliance certifications and accreditations “Healthcare institutions don’t have the time and resources to devote to cybersecurity that an established cloud provider might have.” Lee Kim – Director, Privacy and Security, HIMSS North America
  • 3. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Shared Responsibility Model for Security AWS Foundation Services Compute Storage Database Networking AWS Global Infrastructure Regions Availability Zones Edge Locations Network Security Identity & Access Control Customer applications & content You get to define your controls IN the cloud AWS takes care of the security OF the cloud You Inventory & AWS Config Data Encryption
  • 4. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Aligning to Global Frameworks
  • 5. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. HIPAA Eligible Services for Every Application Compute Storage Database Managed Big Data Archiving Data Warehousing Networking
  • 6. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Reinforce Your Security Posture Virtual Private Cloud Isolated cloud resources Web Application Firewall Filter Malicious Web Traffic AWS Shield DDoS protection AWS Certificate Manager Provision, manage, and deploy SSL/TSL certificates AWS Key Management Service Manage creation and control of encryption keys AWS CloudHSM Hardware-based key storage Server-Side Encryption Flexible data encryption options AWS IAM Manage user access and encryption keys SAML Federation SAML 2.0 support to allow on-premises identity integration Directory Service Host and manage Microsoft Active Directory Organizations Manage settings for multiple accounts Service Catalog Create and use standardized products AWS Config Track resource inventory and changes AWS CloudTrail Track user activity and API usage Amazon CloudWatch Monitor resources and applications Amazon Inspector Analyze application security AWS Artifact Self-service for AWS’ compliance reports Networking Encryption Identity & Management Compliance
  • 7. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Move Fast, Stay Secure Do one thing wellIndependent Decentralized Black box Polyglot You build it, you run it
  • 8. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. JOHN FISCHER Enterprise Architect, Horizon Blue Cross Blue Shield of NJ MATT FERRARI CTO, ClearDATA ADAM GREENFIELD Senior Director of Enterprise Architecture, ClearDATA Meet the Speakers
  • 9. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. How We Got Here
  • 10. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What We Need to Accomplish
  • 11. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. ClearDATA HEALTHCARE Exclusive CLOUD SECURITY Experts CERTIFIED Experience • BAA with the most coverage of any leading provider • Incorporates existing infrastructure BAAs into a single BAA ENHANCED BAA
  • 12. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Extending the AWS Shared Responsibility Model AWS Global Infrastructure Availability Zones Regions Edge Locations AWS Foundation Services Compute Storage Database Networking Network Traffic Protection Server-Side Encryption Client-Side Data Encryption Operating Systems, Network & Firewall Configurations Platform Customer Data Applications Identity & Access Management AWS Global Infrastructure Availability Zones Regions Edge Locations AWS Foundation Services Compute Storage Database Networking Network Traffic Protection Server-Side Encryption Client-Side Data Encryption Operating Systems, Network & Firewall Configurations Customer Data ClearDATA Platform Applications Identity & Access Management Amazon Web Services Infrastructure ClearDATA Managed Cloud
  • 13. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What We’ve Done—Containers
  • 14. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What We’ve Done—Containers
  • 15. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What We’ve Done—Dashboard CloudWatch Bucket Consuminator Trigger Lambda Amazon ECS Dash Api Ava Consuminator Queue DashTrigger Lambda Amazon ECS Task Dash Queue Cmdb Snapshot Api Image Builder Api Twistlock Bucket CloudWatch Package Consumer Heartbeat Log injection CDHP Interfaces Dash Trigger Dynamo Tables Summary
  • 16. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What We’ve Done Development Integrated Testing Performance Testing Production virtual private cloud • Authentication • Scanning • Logging • Monitoring Amazon ECS EC2 compute container Technologies
  • 17. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Our Approach Integration is the center of the solution Supports a hybrid mode and lends to a phased migration to the cloud Horizon Digital Integration Platform 1API Dev & Mgmt. Tools HA TA EOS ERROR Handling Health Metr ic Gener at or Env. Aware Configuratio n Client Rx F/W Databas e Connectors Perfor mance Tracing Engine Caching Client F/W Unit Tes ting F/W Expectation As sert ionF/ W Embedded MockH TTP Server Dependency Mgmt. Domain Validation DSL CLISuppor t Logging As pects Inst rumentation and Enhanced Debugging Support API Registr ation Fault Isolation Circuits Transaction Mgmt. Service Dis covery Service Logic Dom ain Objects(s) Endpoints Secur it y Filt er Request Tracking Idempotent F/W Request D ispatcher R ep re se nta ti on a l Da ta B in d in g Cus tom DAO AMQP HTTP Client F/W ORM MVC Frameworks with res tful capabilities Port Bindings Dependency Mgmt Environment Def init ions 3 DevOps CA Svc Virt Sonar CheckMarx Other ECRNexusJenkins Bit Bucket Server 5 2 Cache & Integration API Dedicated NoSQL DB File Processors (E) Processor e4e3e2e1 e4e3e2e1 EntityChangeEvents Batch Events File Processors (T.L) Data Store Extract Data Hosting & Platform 4 Compute Service Network Tools Apps & Servers RDS No SQL API Analytics Log & Monitor Security Storage Service
  • 18. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What We’ve Done—Horizon Architecture Availability Zone 1 - US-East-1A Availability Zone 2 - US-East-1B Availability Zone 3 - US-East-1C Internet gateway Production VPC (Region: US-East-1 / VPC ID: vpc-xxxxxxx / DHCP Option Set: dopt-xxxxxxx / CIDR: 192.168.0.0/20) Public Subnet – 192.168.9.0/24 Public Subnet – 192.168.10.0/24 router router Public Subnet – 192.168.8.0/24 Public Subnet – 192.168.0.0/24 Public Subnet – 192.168.1.0/24 Public Subnet – 192.168.2.0/24 S3 – data storage API Gateway (SaaS) Inbound API Calls (HTTPS) VPC peering (Management - vpc-xxxxxxx) Outbound API Calls (HTTPS) Horizon internal networkAD / DNS CyberArk DataPower Managed File Transfer SMTP SplunkArcsight VDI / PC Horizon DMZ SSO VPC peering (ClearDATA - vpc-xxxxxxx) CloudWatch CloudTrail api-elb-ext SSO Calls (HTTPS) AD + LDAP Prod ECS nodes api-elb-int Prod RabbitMQ Node 1 Prod MongoDB Routing Server 1 api-elb-ext Prod ECS nodes api-elb-int Prod RabbitMQ Node 2 api-elb-ext Prod ECS nodes api-elb-int Prod RabbitMQ Node 3 Trading Partners / Apps 3rd -Party APIs Ex: Salesforce, ServiceNow DirectConnect Customer Gateway Palo Alto firewall EC2 Container Service (ECS) Key Management Service (KMS) Identity & Access Management (IAM) spk-elb-ext spk-elb-ext spk-elb-ext rmq-elb-int Splunk Heavy- Weight Forwarder rmq-elb-int Splunk Heavy- Weight Forwarder Prod MongoDB Routing Server 2 Prod MongoDB primary data node Prod MongoDB primary config srv Prod MongoDB Routing Server 3 Prod MongoDB Routing Server 4 Prod MongoDB secondary data node Prod MongoDB sec. config srv rmq-elb-int
  • 19. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. What We’ve Done—DevOps Process Model 1 2 3 4 5 6 7 8 9
  • 20. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Lessons Learned • AWS available services list will be consumed quickly • Partner with Security Governance and Operations teams from start • Level of effort to own engineering/security • Explicit planning required for high availability and DR • Use same tools/processes used on-premises
  • 21. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Horizon • Enterprise Content Management • Big Data • Migration Legacy Systems • Multi-region DR What’s Next
  • 22. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. ClearDATA C2 – ClearDATA Compliance What’s Next
  • 23. © 2017, Amazon Web Services, Inc. or its Affiliates. All rights reserved. Thank you! ClearDATA is independent from and not affiliated with Horizon Blue Cross Blue Shield of New Jersey. Horizon Blue Cross Blue Shield of New Jersey is an independent licensee of the Blue Cross Blue Shield Association.