Search for Well Architected Advice
< All Topics
Print

Evaluate and implement new security services and features regularly

Regularly evaluating and implementing new security services and features from AWS and its partners helps you maintain and evolve the security posture of your workload. AWS consistently introduces new services and improvements to existing ones that can strengthen your security framework. By staying informed through resources such as the AWS Security Blog and “What’s New with AWS?”, you can adopt relevant updates that address emerging threats and improve your overall security architecture.

  1. Regularly assess new AWS security services: Continuously evaluate newly released AWS security services, features, and updates to ensure your security architecture remains aligned with the latest best practices. Review any newly launched services that could help mitigate specific threats or streamline your security operations.
  2. Leverage AWS Partner solutions: Explore security services and tools provided by AWS Partners to complement and enhance AWS-native security features. These solutions may offer specialized capabilities that address niche security needs or help integrate security practices across different platforms.
  3. Stay informed with the AWS Security Blog: Use the AWS Security Blog to keep up with the latest security guidance, implementation guides, and newly launched AWS features. This helps ensure that your team is aware of relevant security advancements and how to apply them effectively.
  4. Monitor “What’s New with AWS?” announcements: Regularly review the “What’s New with AWS?” page for updates on new AWS features, services, and announcements. Integrating new security capabilities into your workload can provide enhanced protection and resilience against evolving security threats.
  5. Evaluate impact and implement as needed: Assess how newly released services or features can improve your existing security posture. Where relevant, plan and execute implementations that align with your security strategy and workload requirements.

Supporting Questions:

  • How do you stay informed about new AWS security services and features?
  • What process do you follow to evaluate and implement new security services into your workload?
  • How do AWS Partner solutions complement your existing AWS security features?

Roles and Responsibilities:

Security Architect:

  • Responsibilities:
    • Regularly review new AWS security services and updates for potential implementation.
    • Evaluate AWS Partner solutions to identify tools that address specific security needs.
    • Incorporate new services into the overall security architecture as needed.

Cloud Administrator:

  • Responsibilities:
    • Monitor AWS and industry sources for security-related announcements and updates.
    • Assist with implementing and configuring new security features.
    • Ensure that new services and features integrate smoothly with existing security controls.

Artefacts:

  • Security Services Evaluation Reports: Documentation that outlines the evaluation of newly released AWS security services and features, along with recommendations for adoption.
  • Implementation Plans: Detailed plans for integrating new security services into the workload, including timelines and required changes.
  • Security Blog Subscriptions: Lists of relevant security blogs, newsletters, or news sources that help keep the team informed about new developments in the AWS security landscape.
Table of Contents