SlideShare una empresa de Scribd logo
1 de 42
An Introduction to the AWS
Well Architected Framework
Clayton Brown, Solution Architect,
Well-Architected SME
“Are you Well-
Architected?”
Werner Vogels
Introduction to the AWS Well Architected Framework
We will cover:
• An introduction to the AWS Well Architected Framework
• The recent addition of the operational excellence pillar, and updates to the
reliability pillar
• New architecture type overlays for Serverless, NoSQL, gaming, SAP, and
streaming workloads
This session is suited for:
• Enterprise and solutions architects
• System and application developers
• Development managers
• IT professionals
• IT Leaders and anybody interested in the emerging area of DevOps
AWS Reference Architectures
aws.amazon.com/architecture aws.amazon.com/whitepapers
AWS Reference Serverless Micro Service Architectures
aws.amazon.com/serverless/
AWS Serverless Multi-Tier
Architectures
Using Amazon API Gateway and AWS Lambda
November 2015
AWS Foundation Services
Compute Storage Database Networking
AWS Global
Infrastructure
Regions
Availability Zones
Edge Locations
Client-side Data Encryption
Server-side Data
Encryption
Network Traffic Protection
Platform, Applications, Identity & Access Management
Operating System, Network & Firewall Configuration
Customer content
Customers
Shared Responsibility between AWS and our customers
Customers are
responsible for their
security IN the Cloud
AWS is responsible
for the security OF
the Cloud
AWS Trusted Advisor
AWS Well-Architected Framework Whitepapers
AWS Well Architected
Framework
November 2016
AWS Well Architected Framework Whitepaper
• Security Pillar Whitepaper
• Reliability Pillar Whitepaper
• Performance Efficiency Pillar Whitepaper
• Cost Optimization Pillar Whitepaper
• Operational Excellence Pillar Whitepaper
aws.amazon.com/architecture/well-architected/
Free Online Self Paced Training Materials
What is the Well-Architected Framework?
Pillars Design Principles Questions
Pillars of Well-Architected
Security Reliability
Performance
Efficiency
Cost
Optimization
Operational
Excellence
Why would I want to apply the AWS Well-Architected Framework?
Build and
deploy faster
Lower or
mitigate risks
Make informed
decisions
Learn AWS
best practices
A Mechanism for your Cloud Journey
Learn Measure Improve
Pillar-
Specific
Design
Principles
General
Design
Principles
Design Principles
Automate responses to security events: Monitor and automatically
trigger responses to event-driven, or condition-driven, alerts.
General Design Principles
Stop guessing your capacity needs
Test systems at production scale
Automate to make architectural experimentation easier
Allow for evolutionary architectures
Build data-driven architectures
Improve through game days
AWS Well-Architected Framework Security Pillar Whitepaper
Security Pillar
AWS Well-Architected Framework
November 2016
Design Principles for Security
Apply security at all layers
Enable traceability
Implement a principle of least privilege
Focus on securing your system
Automate security best practices
Pillar Area
Question Text
Question Context
Best Practices
Questions
Key Services for Security AWS IAM
Areas Key Services
Identity and Access
Management
Detective Controls
Infrastructure Protection
Data Protection
Incident Response
Elastic Load
Balancing
Amazon EBS Amazon S3 Amazon RDS
AWS Key
Management Service
MFA Token
Amazon VPC
AWS CloudTrail AWS Config Amazon CloudWatch
AWS IAM
AWS IAM AWS CloudFormation
Customer story: Automation
Financial Services Organization
Situation:
• They had a process for
getting credentials
from their InfoSec
team took too long so
they hardcoded them
into their applications
Behavior:
• SA team created a
proof of concept and
demoed to customer
Impact:
• implemented an
automated solution for
IAM user/group/role
creation to address a
Well Architected critical
issue.
AWS Well-Architected Framework Reliability Pillar Whitepaper
Reliability Pillar
AWS Well-Architected Framework
November 2016
Design Principles for Reliability
Test recovery procedures
Automatically recover from failure
Scale horizontally to increase aggregate system availability
Stop guessing capacity
Manage change in automation
Key Services for Reliability
Areas Key Services
Foundations
Change management
Failure management
AWS IAM Amazon VPC
AWS CloudTrail AWS Config
AWS CloudFormation
Amazon CloudWatch
Customer story: Governance
Retailing
Situation:
• Customer has been
building serverless
architectures
Behavior:
• We ran a Well-
Architected review on
their architecture
Impact:
• They want to use the
Well-Architected
framework and reviews
as a gating
mechanisms for future
production workloads
AWS Well-Architected Framework Performance & Efficiency Pillar Whitepaper
Performance Efficiency Pillar
AWS Well-Architected Framework
November 2016
Design Principles for Performance Efficiency
Democratize advanced technologies
Go global in minutes
Use serverless architectures
Experiment more often
Mechanical sympathy
Key Services for Performance Efficiency
Areas Key Services
Selection
Review
Monitoring
Trade-Off
Amazon EBS Amazon S3 Amazon RDSAuto Scaling Amazon Glacier
Amazon
CloudFront
Amazon
DynamoDB
Amazon
CloudWatch AWS Lambda
Amazon Elasticache AWSSnowball
AWS
CloudFormation AWS Blog
Amazon CloudWatch
Customer story: Understanding
Aeronautics
Situation:
• Reviewed 3 customer
facing architectures, took
months to get the right
people in the room
Behavior:
• Got their team together
for the first time to agree
on what had actually
been implemented
• Cohesive view of whole
architecture
• Report with replay and
recommendations
Impact:
• Learnings on AWS,
issues identified with
recommendations
• Earned trust and better
understanding of the
customer
• WA review part of
approval process
AWS Well-Architected Framework Cost Optimization Pillar Whitepaper
Cost Optimization Pillar
AWS Well-Architected Framework
November 2016
Design Principles for Cost Optimization
Adopt a consumption model
Benefit from economies of scale
Stop spending money on data center operations
Analyze and attribute expenditure
Use managed services to reduce cost of ownership
Key Services for Cost Optimization
Areas Key Services
Cost-effective resources
Matched supply and demand
Expenditure awareness
Optimizing over time
Amazon CloudWatch
Auto Scaling
Amazon SNS
Reserved Instances AWS Trusted Advisor
AWS Blog & What’s New
Cost Allocation Tags
Customer story: Maturity
SaaS company
Situation:
• Existing SaaS
architecture
deployed in Classic
EC2
Behavior:
• Used Well-
Architected to plan
the migration to
VPC, including
multi-AZ, and
capacity planning
Impact:
• Migrated to a
mature architecture
AWS Well-Architected Framework Operational Excellence Pillar Whitepaper
Operational Excellence Pillar
AWS Well-Architected Framework
Coming Soon
Topics explored in Operations Excellence Pillar
• What best practices for cloud operations are you using?
• How are you doing configuration management for your workload?
• How are you evolving your workload while minimizing the impact of
change?
• How do you monitor your workload to ensure it is operating as expected?
• How do you respond to unplanned operational events?
• How is escalation managed when responding to unplanned operational
events?
Design Principles for Operational Excellence
Perform Operations with Code
Align Operations Processes to Business Objectives
Make Regular, Small, Incremental Changes
Test for Responses to Unexpected Events
Learn from Operational Events and Failures
Keep Operations Procedures Current
Areas Key Services
Preparation
Operations
Responses
Key Services for Operational Excellence
AWS
CloudTrail
AWS Config
AWS
CloudFormation
Amazon
CloudWatch
Amazon
CloudWatch
AWS
CloudFormation
AWS
CloudFormation
Lambda
RunCommand
Batch
Lambda
RunCommand
Batch
Lambda
RunCommand
Batch
AWS Config
AWS Config
AWS Developer
Tools
AWS
CloudFormation
AWS
CloudTrail
AWS Developer
Tools
AWS Developer
Tools
Benefits of Well-Architected
Think Cloud-Natively
Consistent Approach to
Reviewing Architecture
Understand
Potential Impact
Visibility of Risks
Preparing for Well Architected Review
• Complete the Online Training
• Perform Customer Self Assessment
• Evaluate Automated Assessment Tools
• Certified APN Partner Led Assessment
• AWS Account Team Engagement & Review
• Work with AWS SA on any Remediation Plans
AWS Well Architected Report Format
For More Information…
https://aws.amazon.com/well-architected/
AWS Well-Architected
Framework Whitepaper
Pillar Specific
Whitepapers
Free Online Training

Más contenido relacionado

La actualidad más candente

Data Center Migration to the AWS Cloud
Data Center Migration to the AWS CloudData Center Migration to the AWS Cloud
Data Center Migration to the AWS Cloud
Tom Laszewski
 
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Amazon Web Services
 

La actualidad más candente (20)

AWS Cloud Migration Insights Forum
AWS Cloud Migration Insights ForumAWS Cloud Migration Insights Forum
AWS Cloud Migration Insights Forum
 
Data Center Migration to the AWS Cloud
Data Center Migration to the AWS CloudData Center Migration to the AWS Cloud
Data Center Migration to the AWS Cloud
 
So you want to be Well-Architected?
So you want to be Well-Architected?So you want to be Well-Architected?
So you want to be Well-Architected?
 
AWS Security Best Practices
AWS Security Best PracticesAWS Security Best Practices
AWS Security Best Practices
 
AWS 101
AWS 101AWS 101
AWS 101
 
Cloud Migration, Application Modernization, and Security
Cloud Migration, Application Modernization, and Security Cloud Migration, Application Modernization, and Security
Cloud Migration, Application Modernization, and Security
 
Well-Architected Bootcamp
Well-Architected BootcampWell-Architected Bootcamp
Well-Architected Bootcamp
 
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...Using AWS Control Tower to govern multi-account AWS environments at scale - G...
Using AWS Control Tower to govern multi-account AWS environments at scale - G...
 
AWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and WorkshopsAWS Cloud Adoption Framework and Workshops
AWS Cloud Adoption Framework and Workshops
 
AWS Security Best Practices and Design Patterns
AWS Security Best Practices and Design PatternsAWS Security Best Practices and Design Patterns
AWS Security Best Practices and Design Patterns
 
Cloud Migration Workshop
Cloud Migration WorkshopCloud Migration Workshop
Cloud Migration Workshop
 
Deploy and Govern at Scale with AWS Control Tower
Deploy and Govern at Scale with AWS Control TowerDeploy and Govern at Scale with AWS Control Tower
Deploy and Govern at Scale with AWS Control Tower
 
Large-Scale AWS Migrations with CSC
Large-Scale AWS Migrations with CSCLarge-Scale AWS Migrations with CSC
Large-Scale AWS Migrations with CSC
 
Creating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organizationCreating an Operating Model to enable a high frequency organization
Creating an Operating Model to enable a high frequency organization
 
Setting Up a Landing Zone
Setting Up a Landing ZoneSetting Up a Landing Zone
Setting Up a Landing Zone
 
Defining Your Cloud Strategy
Defining Your Cloud StrategyDefining Your Cloud Strategy
Defining Your Cloud Strategy
 
Azure Cost Management
Azure Cost ManagementAzure Cost Management
Azure Cost Management
 
Reduce Costs and Build a Strong Operational Foundation with the AWS Migration...
Reduce Costs and Build a Strong Operational Foundation with the AWS Migration...Reduce Costs and Build a Strong Operational Foundation with the AWS Migration...
Reduce Costs and Build a Strong Operational Foundation with the AWS Migration...
 
Azure Migration Program Pitch Deck
Azure Migration Program Pitch DeckAzure Migration Program Pitch Deck
Azure Migration Program Pitch Deck
 
Cloud Migration, Application Modernization and Security for Partners
Cloud Migration, Application Modernization and Security for PartnersCloud Migration, Application Modernization and Security for Partners
Cloud Migration, Application Modernization and Security for Partners
 

Similar a An Introduction to the AWS Well Architected Framework - Webinar

Similar a An Introduction to the AWS Well Architected Framework - Webinar (20)

Following Well Architected Frameworks - Lunch and Learn.pdf
Following Well Architected Frameworks - Lunch and Learn.pdfFollowing Well Architected Frameworks - Lunch and Learn.pdf
Following Well Architected Frameworks - Lunch and Learn.pdf
 
Migración a la Nube: Preparación y Mejores Prácticas
Migración a la Nube: Preparación y Mejores PrácticasMigración a la Nube: Preparación y Mejores Prácticas
Migración a la Nube: Preparación y Mejores Prácticas
 
AWS re:Invent 2016: Embracing DevSecOps while Improving Compliance and Securi...
AWS re:Invent 2016: Embracing DevSecOps while Improving Compliance and Securi...AWS re:Invent 2016: Embracing DevSecOps while Improving Compliance and Securi...
AWS re:Invent 2016: Embracing DevSecOps while Improving Compliance and Securi...
 
Expanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud InfrastructureExpanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud Infrastructure
 
Expanding your Data Center with Hybrid Cloud Infrastructure
Expanding your Data Center with Hybrid Cloud InfrastructureExpanding your Data Center with Hybrid Cloud Infrastructure
Expanding your Data Center with Hybrid Cloud Infrastructure
 
AWS Community Day Chicago 2019 - Well Architected
AWS Community Day Chicago 2019 - Well ArchitectedAWS Community Day Chicago 2019 - Well Architected
AWS Community Day Chicago 2019 - Well Architected
 
AWS Community Day - David Matthews - Living Well-Architected
AWS Community Day - David Matthews - Living Well-ArchitectedAWS Community Day - David Matthews - Living Well-Architected
AWS Community Day - David Matthews - Living Well-Architected
 
Getting Started with Windows Workloads on Amazon EC2 - Toronto
 Getting Started with Windows Workloads on Amazon EC2 - Toronto Getting Started with Windows Workloads on Amazon EC2 - Toronto
Getting Started with Windows Workloads on Amazon EC2 - Toronto
 
Cloud First: New Architecture for New Infrastructure
Cloud First: New Architecture for New InfrastructureCloud First: New Architecture for New Infrastructure
Cloud First: New Architecture for New Infrastructure
 
Being Well Architected in the Cloud
Being Well Architected in the CloudBeing Well Architected in the Cloud
Being Well Architected in the Cloud
 
Getting Started with AWS Security
 Getting Started with AWS Security Getting Started with AWS Security
Getting Started with AWS Security
 
re:Invent recap session 2: Being well Architected in the cloud
re:Invent recap session 2: Being well Architected in the cloudre:Invent recap session 2: Being well Architected in the cloud
re:Invent recap session 2: Being well Architected in the cloud
 
Simplify & Standardise your migration to AWS with a Migration Landing Zone
Simplify & Standardise your migration to AWS with a Migration Landing ZoneSimplify & Standardise your migration to AWS with a Migration Landing Zone
Simplify & Standardise your migration to AWS with a Migration Landing Zone
 
Adding to the bottom line - the Key Cloud plays for the Mid-Market - Adam Beavis
Adding to the bottom line - the Key Cloud plays for the Mid-Market - Adam BeavisAdding to the bottom line - the Key Cloud plays for the Mid-Market - Adam Beavis
Adding to the bottom line - the Key Cloud plays for the Mid-Market - Adam Beavis
 
Getting started with aws security toronto rs
Getting started with aws security toronto rsGetting started with aws security toronto rs
Getting started with aws security toronto rs
 
Benefits of Cloud Computing
Benefits of Cloud ComputingBenefits of Cloud Computing
Benefits of Cloud Computing
 
Getting Started with AWS Security
Getting Started with AWS SecurityGetting Started with AWS Security
Getting Started with AWS Security
 
Expanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud InfrastructureExpanding Your Data Center with Hybrid Cloud Infrastructure
Expanding Your Data Center with Hybrid Cloud Infrastructure
 
Getting Started with AWS Security
Getting Started with AWS SecurityGetting Started with AWS Security
Getting Started with AWS Security
 
AWS APAC Webinar Week - Introduction to Cloud Computing With Amazon Web Services
AWS APAC Webinar Week - Introduction to Cloud Computing With Amazon Web ServicesAWS APAC Webinar Week - Introduction to Cloud Computing With Amazon Web Services
AWS APAC Webinar Week - Introduction to Cloud Computing With Amazon Web Services
 

Más de Amazon Web Services

Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
Amazon Web Services
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
Amazon Web Services
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
Amazon Web Services
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
Amazon Web Services
 

Más de Amazon Web Services (20)

Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
Come costruire servizi di Forecasting sfruttando algoritmi di ML e deep learn...
 
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
Big Data per le Startup: come creare applicazioni Big Data in modalità Server...
 
Esegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS FargateEsegui pod serverless con Amazon EKS e AWS Fargate
Esegui pod serverless con Amazon EKS e AWS Fargate
 
Costruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWSCostruire Applicazioni Moderne con AWS
Costruire Applicazioni Moderne con AWS
 
Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot Come spendere fino al 90% in meno con i container e le istanze spot
Come spendere fino al 90% in meno con i container e le istanze spot
 
Open banking as a service
Open banking as a serviceOpen banking as a service
Open banking as a service
 
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
Rendi unica l’offerta della tua startup sul mercato con i servizi Machine Lea...
 
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...OpsWorks Configuration Management: automatizza la gestione e i deployment del...
OpsWorks Configuration Management: automatizza la gestione e i deployment del...
 
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows WorkloadsMicrosoft Active Directory su AWS per supportare i tuoi Windows Workloads
Microsoft Active Directory su AWS per supportare i tuoi Windows Workloads
 
Computer Vision con AWS
Computer Vision con AWSComputer Vision con AWS
Computer Vision con AWS
 
Database Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatareDatabase Oracle e VMware Cloud on AWS i miti da sfatare
Database Oracle e VMware Cloud on AWS i miti da sfatare
 
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJSCrea la tua prima serverless ledger-based app con QLDB e NodeJS
Crea la tua prima serverless ledger-based app con QLDB e NodeJS
 
API moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e webAPI moderne real-time per applicazioni mobili e web
API moderne real-time per applicazioni mobili e web
 
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatareDatabase Oracle e VMware Cloud™ on AWS: i miti da sfatare
Database Oracle e VMware Cloud™ on AWS: i miti da sfatare
 
Tools for building your MVP on AWS
Tools for building your MVP on AWSTools for building your MVP on AWS
Tools for building your MVP on AWS
 
How to Build a Winning Pitch Deck
How to Build a Winning Pitch DeckHow to Build a Winning Pitch Deck
How to Build a Winning Pitch Deck
 
Building a web application without servers
Building a web application without serversBuilding a web application without servers
Building a web application without servers
 
Fundraising Essentials
Fundraising EssentialsFundraising Essentials
Fundraising Essentials
 
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
AWS_HK_StartupDay_Building Interactive websites while automating for efficien...
 
Introduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container ServiceIntroduzione a Amazon Elastic Container Service
Introduzione a Amazon Elastic Container Service
 

An Introduction to the AWS Well Architected Framework - Webinar

  • 1. An Introduction to the AWS Well Architected Framework Clayton Brown, Solution Architect, Well-Architected SME
  • 3. Introduction to the AWS Well Architected Framework We will cover: • An introduction to the AWS Well Architected Framework • The recent addition of the operational excellence pillar, and updates to the reliability pillar • New architecture type overlays for Serverless, NoSQL, gaming, SAP, and streaming workloads This session is suited for: • Enterprise and solutions architects • System and application developers • Development managers • IT professionals • IT Leaders and anybody interested in the emerging area of DevOps
  • 5. AWS Reference Serverless Micro Service Architectures aws.amazon.com/serverless/ AWS Serverless Multi-Tier Architectures Using Amazon API Gateway and AWS Lambda November 2015
  • 6. AWS Foundation Services Compute Storage Database Networking AWS Global Infrastructure Regions Availability Zones Edge Locations Client-side Data Encryption Server-side Data Encryption Network Traffic Protection Platform, Applications, Identity & Access Management Operating System, Network & Firewall Configuration Customer content Customers Shared Responsibility between AWS and our customers Customers are responsible for their security IN the Cloud AWS is responsible for the security OF the Cloud
  • 8. AWS Well-Architected Framework Whitepapers AWS Well Architected Framework November 2016 AWS Well Architected Framework Whitepaper • Security Pillar Whitepaper • Reliability Pillar Whitepaper • Performance Efficiency Pillar Whitepaper • Cost Optimization Pillar Whitepaper • Operational Excellence Pillar Whitepaper aws.amazon.com/architecture/well-architected/
  • 9. Free Online Self Paced Training Materials
  • 10. What is the Well-Architected Framework? Pillars Design Principles Questions
  • 11. Pillars of Well-Architected Security Reliability Performance Efficiency Cost Optimization Operational Excellence
  • 12. Why would I want to apply the AWS Well-Architected Framework? Build and deploy faster Lower or mitigate risks Make informed decisions Learn AWS best practices
  • 13. A Mechanism for your Cloud Journey Learn Measure Improve
  • 14. Pillar- Specific Design Principles General Design Principles Design Principles Automate responses to security events: Monitor and automatically trigger responses to event-driven, or condition-driven, alerts.
  • 15. General Design Principles Stop guessing your capacity needs Test systems at production scale Automate to make architectural experimentation easier Allow for evolutionary architectures Build data-driven architectures Improve through game days
  • 16. AWS Well-Architected Framework Security Pillar Whitepaper Security Pillar AWS Well-Architected Framework November 2016
  • 17. Design Principles for Security Apply security at all layers Enable traceability Implement a principle of least privilege Focus on securing your system Automate security best practices
  • 18.
  • 19.
  • 20. Pillar Area Question Text Question Context Best Practices Questions
  • 21. Key Services for Security AWS IAM Areas Key Services Identity and Access Management Detective Controls Infrastructure Protection Data Protection Incident Response Elastic Load Balancing Amazon EBS Amazon S3 Amazon RDS AWS Key Management Service MFA Token Amazon VPC AWS CloudTrail AWS Config Amazon CloudWatch AWS IAM AWS IAM AWS CloudFormation
  • 22. Customer story: Automation Financial Services Organization Situation: • They had a process for getting credentials from their InfoSec team took too long so they hardcoded them into their applications Behavior: • SA team created a proof of concept and demoed to customer Impact: • implemented an automated solution for IAM user/group/role creation to address a Well Architected critical issue.
  • 23. AWS Well-Architected Framework Reliability Pillar Whitepaper Reliability Pillar AWS Well-Architected Framework November 2016
  • 24. Design Principles for Reliability Test recovery procedures Automatically recover from failure Scale horizontally to increase aggregate system availability Stop guessing capacity Manage change in automation
  • 25. Key Services for Reliability Areas Key Services Foundations Change management Failure management AWS IAM Amazon VPC AWS CloudTrail AWS Config AWS CloudFormation Amazon CloudWatch
  • 26. Customer story: Governance Retailing Situation: • Customer has been building serverless architectures Behavior: • We ran a Well- Architected review on their architecture Impact: • They want to use the Well-Architected framework and reviews as a gating mechanisms for future production workloads
  • 27. AWS Well-Architected Framework Performance & Efficiency Pillar Whitepaper Performance Efficiency Pillar AWS Well-Architected Framework November 2016
  • 28. Design Principles for Performance Efficiency Democratize advanced technologies Go global in minutes Use serverless architectures Experiment more often Mechanical sympathy
  • 29. Key Services for Performance Efficiency Areas Key Services Selection Review Monitoring Trade-Off Amazon EBS Amazon S3 Amazon RDSAuto Scaling Amazon Glacier Amazon CloudFront Amazon DynamoDB Amazon CloudWatch AWS Lambda Amazon Elasticache AWSSnowball AWS CloudFormation AWS Blog Amazon CloudWatch
  • 30. Customer story: Understanding Aeronautics Situation: • Reviewed 3 customer facing architectures, took months to get the right people in the room Behavior: • Got their team together for the first time to agree on what had actually been implemented • Cohesive view of whole architecture • Report with replay and recommendations Impact: • Learnings on AWS, issues identified with recommendations • Earned trust and better understanding of the customer • WA review part of approval process
  • 31. AWS Well-Architected Framework Cost Optimization Pillar Whitepaper Cost Optimization Pillar AWS Well-Architected Framework November 2016
  • 32. Design Principles for Cost Optimization Adopt a consumption model Benefit from economies of scale Stop spending money on data center operations Analyze and attribute expenditure Use managed services to reduce cost of ownership
  • 33. Key Services for Cost Optimization Areas Key Services Cost-effective resources Matched supply and demand Expenditure awareness Optimizing over time Amazon CloudWatch Auto Scaling Amazon SNS Reserved Instances AWS Trusted Advisor AWS Blog & What’s New Cost Allocation Tags
  • 34. Customer story: Maturity SaaS company Situation: • Existing SaaS architecture deployed in Classic EC2 Behavior: • Used Well- Architected to plan the migration to VPC, including multi-AZ, and capacity planning Impact: • Migrated to a mature architecture
  • 35. AWS Well-Architected Framework Operational Excellence Pillar Whitepaper Operational Excellence Pillar AWS Well-Architected Framework Coming Soon
  • 36. Topics explored in Operations Excellence Pillar • What best practices for cloud operations are you using? • How are you doing configuration management for your workload? • How are you evolving your workload while minimizing the impact of change? • How do you monitor your workload to ensure it is operating as expected? • How do you respond to unplanned operational events? • How is escalation managed when responding to unplanned operational events?
  • 37. Design Principles for Operational Excellence Perform Operations with Code Align Operations Processes to Business Objectives Make Regular, Small, Incremental Changes Test for Responses to Unexpected Events Learn from Operational Events and Failures Keep Operations Procedures Current
  • 38. Areas Key Services Preparation Operations Responses Key Services for Operational Excellence AWS CloudTrail AWS Config AWS CloudFormation Amazon CloudWatch Amazon CloudWatch AWS CloudFormation AWS CloudFormation Lambda RunCommand Batch Lambda RunCommand Batch Lambda RunCommand Batch AWS Config AWS Config AWS Developer Tools AWS CloudFormation AWS CloudTrail AWS Developer Tools AWS Developer Tools
  • 39. Benefits of Well-Architected Think Cloud-Natively Consistent Approach to Reviewing Architecture Understand Potential Impact Visibility of Risks
  • 40. Preparing for Well Architected Review • Complete the Online Training • Perform Customer Self Assessment • Evaluate Automated Assessment Tools • Certified APN Partner Led Assessment • AWS Account Team Engagement & Review • Work with AWS SA on any Remediation Plans
  • 41. AWS Well Architected Report Format
  • 42. For More Information… https://aws.amazon.com/well-architected/ AWS Well-Architected Framework Whitepaper Pillar Specific Whitepapers Free Online Training