Introduction This blog provides step-by-step instructions to implement centralised AWS Backup across an AWS Organisation using Terraform. Backup policies are managed from a dedicated DevOps Tooling account using Delegated Administration. A CloudFormation StackSet automatically deploys the required IAM role and backup vault to all member accounts. Org-level backup policies are attached to the Production and […]
Security incidents in AWS rarely stem from zero-day exploits against the hypervisor. In practice, they trace back to routine configuration drift: an IAM policy wildcard added at 2 AM to fix a broken deployment, a database spun up in a public subnet for staging, or a security group rule left open to 0.0.0.0/0. AWS operates […]
Introduction Relying on a single AWS account for enterprise workloads creates a critical structural bottleneck that limits security and scalability. At the beginning of your cloud journey, a single account is perfect: developers have agility, networks are simple, billing is straightforward. However, as your footprint grows, a single account is a recipe for disaster. You’ll […]
INTRODUCTION Remember the old morning routine? Grab coffee, open the laptop, and then…the waiting game. Staring at that little icon, praying the corporate VPN would finally connect. If you’re still living that life, we need to talk. The world in which we work has undergone significant changes. We’re at home, in cafes, on the road. […]
In today’s digital age, mobile apps play an important role in our personal and professional lives, assisting with tasks such as managing finances, shopping, and social connections. However, their popularity also attracts cybercriminals seeking to exploit vulnerabilities. Application security, or AppSec, safeguards apps from these threats, ensuring user data safety and maintaining the integrity of […]
Introduction: As software development teams start exploring Generative AI and Large Language Models (LLMs) for test and development work, resulting productivity boosts have generated quite a bit of excitement. From authoring unit tests to code diff summarization and supporting exploratory test work, LLMs are becoming useful assets for the QA toolbox. This new technology comes […]
Introduction At To The New, we help customers across various industries develop cutting-edge, scalable infrastructure. However, you must first tame the beast before you can scale anything. And in this case, the beast was Jenkins. Jenkins setups that have grown disorganized over time are a problem for many organisations. Engineers spend more time troubleshooting than […]
Security is always a big concern for OTT apps. Understanding user identity and their access levels is very crucial while developing secure and user-friendly Roku channels with BrightScript. There are many mechanisms which are used to adopt security in OTT apps. Some of the most commonly used security mechanisms are – Sessions, Cookies, JWTs, Authentication, […]
Introduction As cyber threats grow in sophistication, businesses require a powerful solution to detect, analyze, and address security incidents efficiently. Microsoft Sentinel, a cloud-native Security Information and Event Management (SIEM) and Security Orchestration, Automation, and Response (SOAR) platform, empowers organizations to strengthen their security framework while simplifying operations. In this blog, we will explore Azure […]