AI/ML on AWS: An Overview
Explore the AWS AI/ML stack, from pre-built AI services and managed ML platforms to foundational ML frameworks and infrastructure, designed to solve diverse business challenges and drive innovation.
Explore the AWS AI/ML stack, from pre-built AI services and managed ML platforms to foundational ML frameworks and infrastructure, designed to solve diverse business challenges and drive innovation.
Amazon API Gateway is a fully managed service that makes it easy for developers to create, publish, maintain, monitor, and secure APIs at any scale. It acts as a front door for applications to access data and functionality.
Amazon Athena is a serverless, interactive query service that enables you to analyze data directly in Amazon S3 and other sources using standard SQL, paying only for the queries you run.
Amazon Athena is a serverless, interactive query service that enables you to analyze data directly in Amazon S3 and other sources using standard SQL, paying only for the queries you run.
Amazon Aurora is a high-performance, cloud-native relational database that combines the reliability of enterprise databases with the simplicity and cost-effectiveness of open-source databases.
Amazon Aurora is a high-performance, cloud-native relational database that combines the reliability of enterprise databases with the simplicity and cost-effectiveness of open-source databases.
Amazon Bedrock is a fully managed service that provides access to a range of high-performing foundation models from leading AI companies through a single API, enabling you to build and scale generative AI applications with enterprise-grade security and privacy.
mazon CloudFront is a content delivery network (CDN) service provided by Amazon Web Services (AWS). It helps deliver content (like websites, videos, and APIs) to users with low latency and high transfer speeds by caching content in multiple locations around the world
Amazon CloudFront is a content delivery network (CDN) service that delivers content with low latency and high speeds through a global network of edge locations.
Amazon Comprehend is a natural language processing service that extracts insights from text documents by analyzing sentiment, key phrases, language, and entities for content understanding and classification.
Amazon Data Firehose is a fully managed service for loading streaming data into data lakes, warehouses, and analytics services in near real-time with automatic scaling and data transformation.
Amazon Detective helps you analyze and investigate the root cause of security threats with interactive visualizations and a unified view of resource interactions.
Amazon DocumentDB is a fully managed MongoDB-compatible database service designed for semi-structured data with dynamic schemas, offering automatic scaling and enterprise-grade security for document-oriented applications.
Amazon DynamoDB is a fully managed NoSQL database service that delivers single-digit millisecond performance at any scale with built-in security and automatic scaling capabilities.
Amazon DynamoDB is a fully managed NoSQL database service that delivers single-digit millisecond performance at any scale with built-in security and automatic scaling capabilities.
Amazon Elastic Container Registry (Amazon ECR) is where you can store, manage, and deploy container images.
Amazon Elastic Container Service (Amazon ECS) is a scalable container orchestration service for running and managing containers on AWS, like Docker containers.
Amazon Elastic Kubernetes Service (Amazon EKS) is a fully managed service for running Kubernetes on AWS
Amazon EBS provides persistent block-level storage volumes for EC2 instances, offering data durability, flexibility, and performance optimization for critical workloads.
Amazon EC2 offers a broad range of instance types, each tailored to meet specific use case requirements.
Amazon EFS is a fully managed, scalable NFS file storage service that automatically scales to petabytes and provides concurrent access for multiple EC2 instances across AWS cloud and on-premises resources.
Amazon ElastiCache is a fully managed in-memory caching service that delivers sub-millisecond latency and high throughput for Redis, Valkey, and Memcached workloads with automatic scaling and failover capabilities.
Amazon EMR is a big data platform for processing vast amounts of data using open-source frameworks like Apache Spark, Hadoop, and Hive with managed infrastructure and automatic scaling.
Amazon FSx provides fully managed, high-performance file systems in the cloud, supporting multiple filesystem protocols including Windows File Server, Lustre, OpenZFS, and NetApp ONTAP for diverse workload requirements.
Amazon GuardDuty provides intelligent threat detection across your AWS infrastructure and resources by continuously monitoring network activity and account metadata.
Amazon Inspector helps improve application security and compliance by running automated security assessments for Amazon EC2 instances, containers, and Lambda functions.
Amazon Kendra is an intelligent enterprise search service powered by machine learning that delivers precise answers from your content using natural language queries rather than simple keyword matching.
Amazon Kinesis Data Streams is a serverless streaming data service for real-time ingestion of terabytes of data from applications, streams, and sensors with automatic scaling.
Amazon Lex enables you to build conversational interfaces using voice and text, leveraging automatic speech recognition and natural language understanding to create lifelike chatbots and virtual assistants.
Amazon Lightsail is a cloud service offering virtual private servers (VPSs), storage, databases, and networking at a predictable monthly price.
Amazon Macie uses machine learning and automation to discover, classify, and protect sensitive data in Amazon S3, helping organizations maintain data privacy and security compliance.
Amazon Neptune is a fully managed graph database service designed for highly connected datasets, delivering high-performance graph queries and relationship analysis for complex data patterns and social networks.
Amazon OpenSearch Service is a managed service for running and scaling OpenSearch clusters, used for log analytics, real-time application monitoring, and full-text search.
Amazon Personalize uses machine learning to deliver real-time personalized recommendations based on historical user behavior, enabling customized experiences across applications and content platforms.
Amazon Polly converts text into lifelike speech using advanced deep learning technologies, supporting multiple languages, voices, and accents for creating natural-sounding audio content.
Amazon Q Business is a generative AI-powered assistant that securely connects to your company's information repositories to answer questions, solve problems, and streamline workflows using your internal data and expertise.
Amazon Q Developer is a generative AI-powered coding assistant that provides real-time code recommendations, debugging help, and testing support directly within your IDE to accelerate software development.
Amazon QuickSight is a scalable, serverless, cloud-native business intelligence (BI) service that allows you to create and publish interactive dashboards and reports.
Amazon Redshift is a fully managed, petabyte-scale data warehouse service optimized for high-performance analysis and business intelligence on large structured and semi-structured datasets.
Amazon Rekognition enables developers to add visual analysis capabilities to applications through deep learning-based image and video analysis, detecting objects, faces, text, scenes, and activities without requiring machine learning expertise.
Amazon RDS is a managed relational database service that automates routine database tasks while providing high availability, security, and scalability for enterprise applications.
Amazon RDS is a managed relational database service that automates routine database tasks while providing high availability, security, and scalability for enterprise applications.
Amazon Route 53 is a highly available and scalable cloud DNS service that provides reliable routing of end users to internet applications with globally dispersed DNS servers.
Amazon S3 offers multiple storage classes designed for different use cases, access patterns, and cost optimization requirements. Choose the right storage class based on your data access frequency and performance needs.
Amazon SageMaker is a fully managed platform that enables data scientists and developers to build, train, and deploy ML models at scale without managing underlying infrastructure, featuring a comprehensive MLOps suite and SageMaker JumpStart for accelerated development.
AWS SQS, or Amazon Simple Queue Service, is a fully managed message queuing service that decouples applications, allowing them to communicate and process messages asynchronously
Amazon S3 is a fully managed, highly-available object storage service offering 99.999999999% durability for storing and retrieving any amount of data as objects in buckets.
AWS Subnet is a segment of a Virtual Private Cloud (VPC) that allows you to organize your network resources into logical groupings
Amazon Textract uses machine learning to automatically extract text, handwriting, and structured data from scanned documents, forms, and tables without manual data entry or custom code.
Amazon Transcribe converts speech to text using automatic speech recognition, supporting multiple languages with features like speaker identification, custom vocabulary, and real-time transcription capabilities.
Amazon Translate is a neural machine translation service that provides fast, high-quality, and affordable language translation for text content across dozens of languages with real-time and batch processing capabilities.
An Amazon VPC lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define.
Amazon SNS is a publish-subscribe service that publishers use to send messages to subscribers through SNS topics
This enhanced architecture builds upon the foundational PAAS services with comprehensive security layers, multi-AZ deployment, and hybrid connectivity. The design provides defense in depth through perimeter security, network-level protection, and robust monitoring across three Availability Zones
AMIs are pre-built virtual machine images that have the basic components for what is needed to start an EC2 instance
AWS Backup is a centralized backup service that streamlines data protection across AWS resources and on-premises deployments, providing automated scheduling, cross-region replication, and compliance management through a unified dashboard.
AWS Batch is a fully managed service that you can use to run batch computing workloads on AWS. It automatically schedules, manages, and scales compute resources for batch jobs, optimizing resource allocation based on job requirements.
AWS Certificate Manager centralizes SSL/TLS certificate management, providing automated provisioning, deployment, and renewal of certificates for AWS services and applications.
AWS Client VPN is a networking service you can use to connect your remote workers and on-premises networks to the cloud. It is a fully managed, elastic VPN service that automatically scales up or down based on user demand.
An in-depth look at how AWS CloudFront's Global Edge Network enhances content delivery with reduced latency and improved resilience for secure Government applications.
Comprehensive data protection in AWS through encryption at rest and in transit, key management, data discovery, and certificate management services.
Direct Connect is a service that makes it possible for you to establish a dedicated private connection between your network and VPC in the AWS Cloud.
AWS Elastic Block Store
AWS Elastic Disaster Recovery (DRS) minimizes downtime and data loss by continuously replicating physical, virtual, and cloud-based servers to AWS for rapid and reliable recovery.
AWS Global Accelerator is a networking service that uses the AWS global network to improve application availability, performance, and security through intelligent traffic routing.
AWS Glue is a serverless ETL (extract, transform, and load) service that simplifies data preparation, transformation, and loading for analytics, using the Glue Data Catalog for metadata.
The AWS Glue Data Catalog is a centralized, managed metadata repository that enhances data discovery and provides a unified schema for data across various AWS services.
AWS IAM Identity Center centralizes identity and access management across AWS accounts and applications, providing single sign-on and federated identity management capabilities.
Securely manage identities and access to AWS services and resources with comprehensive identity management solutions, following the principle of least privilege.
AWS IAM enables you to manage access to AWS services and resources securely through users, groups, roles, and policies with fine-grained permissions control.
AWS KMS provides centralized management of cryptographic keys used to encrypt and decrypt data across AWS services and applications with fine-grained access controls.
AWS SQS, or Amazon Simple Queue Service, is a fully managed message queuing service that decouples applications, allowing them to communicate and process messages asynchronously
Protect your AWS infrastructure from network-based threats with comprehensive DDoS protection, web application firewalls, and security controls.
AWS Outposts is a fully managed hybrid cloud solution that extends AWS infrastructure and services to on-premises data centers.
AWS PrivateLink is a highly available, scalable technology that you can use to privately connect your VPC to services and resources as if they were in your VPC.
Amazon SNS is a publish-subscribe service that publishers use to send messages to subscribers through SNS topics
AWS S3
AWS S3 Storage System
AWS Secrets Manager provides secure storage, management, and automatic rotation of database credentials, API keys, and other secrets throughout their lifecycle.
Comprehensive threat detection and security incident response capabilities with intelligent monitoring, investigation tools, and centralized security management.
AWS Security Hub provides a comprehensive view of your security and compliance state by aggregating findings from multiple AWS services and partner solutions.
Explore AWS security fundamentals including the shared responsibility model, identity management, network protection, data encryption, and threat detection services.
AWS Shield provides DDoS protection for AWS applications, with Standard protection included automatically and Advanced protection offering enhanced mitigation for sophisticated attacks.
Site-to-Site VPN creates a secure connection between your data center or branch offices and your AWS Cloud resources.
AWS Storage Gateway is a hybrid cloud storage service that seamlessly integrates on-premises environments with AWS Cloud storage, offering local caching and cost optimization.
A comprehensive guide to AWS storage services including block, object, and file storage options. Learn about the different storage types and AWS shared responsibility model for storage services.
AWS Storage Types
AWS Transit Gateway is a network transit hub that you can use to interconnect your virtual private clouds (VPCs) and on-premises networks. It acts as a cloud router that simplifies your network architecture.
AWS WAF is a web application firewall that protects your web applications from common web exploits and attacks by filtering, monitoring, and blocking malicious web traffic.
CloudFormation is a service that helps you model and set up your AWS resources so that you can spend less time managing those resources and more time focusing on your applications that run in AWS
EBS snapshots provide point-in-time backups of EBS volumes with incremental storage and automated lifecycle management through Amazon Data Lifecycle Manager.
Edge locations offer multiple services to run closer to end users, including AWS networking services like Amazon CloudFront.
Edge networking brings information storage and computing closer to users, reducing latency and improving performance for user-facing applications through distributed infrastructure.
Elastic Beanstalk is a fully managed service that streamlines the deployment, management, and scaling of web applications.
Amazon EC2 offers a broad range of instance types, each tailored to meet specific use case requirements.
Amazon EventBridge is a serverless service that helps connect different parts of an application using events, helping to build scalable, event-driven systems
Amazon EventBridge, SNS, and SQS are all AWS messaging and event services, but they serve different purposes and use cases
AWS Fargate is a serverless compute engine for containers. It works with both Amazon ECS and Amazon EKS.
Discover AWS services for building and deploying generative AI applications, featuring managed foundation models, AI assistants, and advanced tools for content creation and accelerated development.
To allow public traffic from the internet to access your VPC, you attach an internet gateway to the VPC. An internet gateway is a connection between a VPC and the internet
Focus on Amazon SageMaker, AWS's fully managed platform for building, training, and deploying custom machine learning models at scale with comprehensive MLOps capabilities, offering more control without managing infrastructure.
Multi AZs Secured VPC is a comprehensive AWS Hybrid architecture that effectively illustrates a secure, highly available multi-AZ deployment with both internet and private connectivity options
A network ACL is a virtual firewall that controls inbound and outbound traffic at the subnet level. It performs stateless packet filtering to secure your VPC subnets.
A NAT gateway is a managed NAT service that enables instances in private subnets to connect to services outside your VPC while preventing external services from initiating connections to those instances.
Network traffic in a VPC refers to the movement of data packets traveling across a network. Understanding how packets flow through VPC components is essential for managing secure and efficient cloud networking.
Explore AWS's ready-to-use Artificial Intelligence services that provide pre-trained models for language processing, computer vision, search, and conversational AI, requiring no ML expertise.
A comprehensive overview of AWS foundational concepts, global infrastructure components, and their strategic importance, with a focus on considerations for government and classified environments.
A deep dive into AWS IAM, covering core concepts, policy types, and best practices for securing access in government and classified environments.
A comprehensive guide to designing and implementing secure network architectures in AWS, with a focus on government and classified environments.
A comprehensive guide to data protection and encryption strategies in AWS, with a focus on government and classified environments.
A detailed guide to securing compute applications in AWS, with emphasis on best practices for EC2, Lambda, ECS, and EKS environments.
Comprehensive learning material for AWS Compliance and Regulatory Adherence, including FedRAMP, DoD SRG, ITAR, NIST SP 800-53, and their application in government and classified environments.
Comprehensive learning material for AWS Hybrid Cloud and Connectivity, including Direct Connect, VPN, Storage Gateway, DataSync, Snow Family, and their application in government and classified environments.
Comprehensive learning material for AWS Disaster Recovery and Business Continuity, including RTO, RPO, various DR strategies, and their application in government and classified environments.
Comprehensive learning material for AWS DevSecOps and Automation, covering secure software development lifecycle, CI/CD pipelines, infrastructure as code, and automated security testing in government and classified environments.
Comprehensive learning material for AWS Cost Management and Optimization, covering strategies, tools, and best practices for controlling and reducing AWS expenditures, with considerations for government and classified environments.
A security group is a virtual firewall that controls inbound and outbound traffic at the resource level. It performs stateful packet filtering to secure individual AWS resources like EC2 instances.
Virtual Private Gateway is the VPN concentrator on the Amazon side of the Site-to-Site VPN connection.
Virtual Private Network is the overall technology/method for creating secure connections over the internet