Architecture


Posts about Architecture to help your AWS solutions rock!

Network Security at all levels

In this, the second of a multi-part series on securing your workloads, I’ll look more broadly and why, where, and how, you should be securing your network. I’ll look at both the principles and AWS services that help you reduce the risk of network based breaches. The introduction to the Security at all levels gives an overview of what I believe security in depth means and why we should all follow the principles.

Security at all Layers

And why you should use it.

Security in depth, defence in depth, layered security, zero trust; all terms that get spoken but often not fully understood. Mainly because much of these security principles have evolved over time and depending on the lens applied a different term has emerged. In this, the first of a series focused on security, I’ll try and unpack what security in depth means (at least for me) and why you should be considering a layered security approach. I will try and keep these posts a mix of technical and non-technical details, and where possible utilise real world examples to highlight my thoughts. Future post will focus on the implementation of security from different perspectives such as application, data, and infrastructure.

Cost Savings and Sustainability

Byproducts of Well-Architected

Are cost and sustainability really separate items to think off? I’d argue if you do the other 4 pillars of the well-architected framework they are 90% done.

Don't get trapped by the elephant in the room!

Why we often get trapped by working out what something is or should be rather than getting started.

Analysis of technology decision-making exploring why teams get stuck in planning and advocating for rapid iteration and fail-fast approaches.

My bill is how much‽

Follow these 5 simple steps to make sure you're not the next person to complain that you had an unexpected AWS bill.

Prevent bill shock and unexpected AWS charges through account security, budgets, cost anomaly detection, credential protection, and service cost understanding.

AWS Well-Architected - Why so many get it wrong

How to become 'well-architected'.

Analysis of why organizations struggle with Well-Architected reviews - common misunderstandings, pillar misinterpretation, and enterprise architecture patterns.

Why use a Transit Gateway

Transit Gateway or VPC Peering? A common question but not an easy answer. This is why I recommend Transit Gateway for anything over a POC.

Comprehensive analysis of Transit Gateway vs VPC Peering for hybrid network connectivity - comparing cost, throughput, VPN integration, and scalability.

Creating a Well-Architected VPC

So how do we make our VPC Well-Architected and Secure?

Complete VPC design guide with CloudFormation templates covering subneting strategies, routing, security controls, NACLs, VPC Endpoints, and NAT Gateways.