AWS Public Sector Blog
Category: AWS Identity and Access Management (IAM)
How the University of São Paulo is transforming how researchers access greenhouse gas data for the Amazon rainforest with AWS
Learn how researchers in the University of São Paulo Research Center in Greenhouse Gas Innovation (RCGI) greenhouse gas (GHG) program saw an opportunity to develop a system that enabled close monitoring of the forest using data systems and data spaces in the cloud. They created Digital Amazon, a distributed data space network with open access that integrates CO2 and greenhouse gas emissions data collected by the university with other data sources to support critical and timely climate action and intervention in the Amazon Forest.
Prepare for your GovRAMP Progressing Snapshot with AWS
In this post, we explain what the Progressing Snapshot program is, what the program is for, who it is for, and how Amazon Web Services (AWS) helps you lay the foundation to address many of the 40 snapshot controls.
Why the location of your AI agent is a security decision
Learn how Amazon Web Services (AWS) operates inside a scoped compute environment with an AWS Identity and Access Management (IAM) execution role, network segmentation, and defense-in-depth security meeting FISMA, FedRAMP, and DoD CCSRG standards.
A governance framework for building trustworthy agentic AI for public sector and regulated organizations
This post outlines a practical governance framework for agentic AI systems, with a focus on public sector and other highly regulated environments. It introduces a scope-based model for classifying agent autonomy, identifies core security dimensions, and describes how organizations can align agentic AI governance with existing risk, compliance, and assurance programs.
Supporting GSA CUI protection requirements with AWS
In this blog, we will discuss how federal contractors handling Controlled Unclassified Information (CUI) for the General Services Administration (GSA) face a critical reality when the updated security requirements are required to maintain your contracts. The stakes extend beyond business; inadequate CUI protection compromises sensitive government operations and US national interests. The recently updated GSA IT Security Procedural Guide CIO-IT Security-21-112 Revision 1 (January 2026) aligns with NIST SP 800-171 Revision 3 and sets the bar for protecting CUI in nonfederal systems. Learn how Amazon Web Services (AWS) provides security services specifically designed to help you address these requirements efficiently.
Advancing the defense system lifecycle with digital engineering on AWS
AWS provides infrastructure that enables mission and program teams to build and manage their own digital engineering environments with secure, scalable computing resources and tools. This resource supplier relationship delivers value through cost efficiency, simplified management, reliable failover, and streamlined infrastructure operations. In this post, we provide a detailed walkthrough for building a secure and scalable digital engineering environment on AWS.
Building an identity-verified remote assessment platform on AWS
Universities across the UK conduct tens of thousands of online interviews and exams each year. During a single admissions intake, over 20,000 video interviews were recorded for international applicants, with 1.3% of sessions showing confirmed fraud, including 0.15% involving deepfakes. A survey by the International Center for Academic Integrity (ICAI) found that 2% of students […]
Automate AWS GovCloud (US) account creation using AWS Organizations APIs
AWS GovCloud (US) is an innovative cloud solution that includes a pair of AWS Regions providing a cloud computing environment designed specifically for government agencies, contractors, and organizations that handle sensitive, International Traffic in Arms Regulations (ITAR)-controlled data and require US citizenship or entity status. AWS GovCloud (US) regions exist as a separate partition from […]
From cloud sprawl to strategic success: Cornell University’s cloud service transformation
Within a decade of moving to the cloud, Cornell University in Ithaca, New York, was managing 260 accounts—160 of them on Amazon Web Services (AWS)—at an annual spend of $4 million. As part of what they called a “cloudification initiative,” there had been a major push in the early days to capitalize on opportunities to […]
Enabling resilient hybrid edge architectures with AWS
Organizations operating in austere environments require robust, resilient architectures that maintain operations regardless of connectivity status. This post explores how to implement and deploy resilient hybrid edge architectures using Amazon Web Services (AWS), with a focus on network resilience, data synchronization, security, and configuration management. We’ll cover best practices for deploying and managing hybrid architectures […]









