Tag: AWS
Posts with this tag
- How Benchling Isolates Multi-Tenant Code Execution with AgentCore, STS, and DNS Firewall
A layered design for running AI-generated code in a separate AWS account, with per-job credentials, S3 endpoint policies, DNS allow-listing, and continuous exfiltration tests.
- Cross-Account MCP with AWS AgentCore Gateway: Keep Data in Each LOB Account
Trace how AWS’s multi-account AgentCore Gateway pattern separates user JWT authorization through Cedar from downstream M2M OAuth, and identify the sample’s production hardening gaps.
- AWS Bedrock AgentCore and Documentation Drift: Code as Authority, MCP at the Write Boundary
A source-grounded analysis of AWS and Corley’s Eutelsat case: use code as the source of truth, RAG for domain context, and human-reviewed MCP writes for governed documentation publishing.
- Amazon SageMaker HyperPod Inference Gateway: Where GPU-Aware Routing Helps
An engineering analysis of how Amazon SageMaker HyperPod Inference Gateway uses KV cache, queue depth, LoRA, and prefix-cache signals, with the EKS add-on, CRD, failure, benchmark, and vendor-claim boundaries made explicit.
- AWS Bedrock AgentCore Consent Portal: Agent OAuth Is More Than a Connect Button
A close reading of Amazon Bedrock AgentCore Consent Portal’s end-user OAuth flow: separating the corporate IdP, Gateway, GitHub or Slack outbound provider, callbacks, session binding, token vault, and CloudTrail from the security guarantees AWS does not claim.
- AWS Step Functions × Bedrock AgentCore: Validate Agent Proposals Before Critical State Changes
A practical control boundary for multi-agent workflows: separate AgentCore proposals from deterministic validation, human approval, idempotent execution, and durable audit history in Step Functions.
- Bundesliga Partners with AWS: Generative AI Creates a Global Fan Experience
How the Bundesliga is leveraging AWS and Generative AI to bring an innovative, closer-to-the-action experience and automated content production to its 1 billion fans worldwide.
- Building Enterprise-Grade AI Agents on AWS: Bedrock AgentCore and HoyaBit's Journey from POC to Production
A summary of the AWS × HoyaBit session: the four major pain points of Enterprise Agentic AI, the Amazon Bedrock AgentCore (Runtime/Memory/Gateway/Governance) technology stack, and how Taiwan's FSC-compliant exchange pushed their voice-trading Agent and enterprise brain platform into production.
- Migrating from K8s to Amazon GameLift: Palworld Multiplayer Server Architecture in Practice
A source-bounded review of Pocketpair's Palworld persistent-world migration, with AWS documentation used to verify GameLift scale tests, Spot behavior, and UDP ping beacons.
- New Enterprise Governance Challenges in the AI Agent Era: The Dual-Platform Path of FinOps × Agent Governance (OmiFin & MAIAH)
A source-checked reading of eCloudvalley's FinOps and agent-governance talk, grounded in public FOCUS, FinOps Framework, AWS, and MAIAH material.
- Hardware-Software Co-Optimization in Practice: How AWS Custom Silicon × Tomofun Furbo Slashed AI Inference Costs by 82%
A summary of the talk by AWS's Howard and Tomofun (Furbo)'s Ricky, supplemented with the official AWS tech blog: from the vertical integration of Trainium/Inferentia/Graviton/Nitro, to Furbo porting BLIP to Inferentia 2, two-tier Auto Scaling, and AMI cold start optimization, successfully saving 81.6%–83% in AI computing costs.
- From Multi-Agent Architecture to Recruiting an AI Employee in Two Minutes: AWS × Super 8 (ORRA) Enterprise Implementation
A summary of the AWS and Super 8 (ORRA) session: the single agent decision loop, three major multi-agent orchestration patterns (Graph/Swarm/Workflow), A2A communication, Amazon Bedrock AgentCore core components, and how ORRA allows business users to build and deploy AI employees in two minutes using Job Descriptions.
- Decompose with Care: Architecture Patterns, Engineering Disciplines, and Hard Lessons in Banking System Modernization
A comprehensive summary of the AWS ProServ senior consultant's presentation 'Decompose with Care': How a leading Southeast Asian bank modernized its omni-channel monolithic platform serving 20 million active users to AWS cloud-native microservices with zero downtime. Covers four major challenges, Strangler Fig pattern, 3-Tier Facade, Contract-First / Mock-First approaches, and engineering guardrails in the AI era.
- Securely Implementing Multi-tenant AI Agents on AWS EKS: From Sandbox Isolation to BitoClaw Real-world Practice
A summary of the salon sharing by AWS Solutions Architect HC and Bito Group Operations Manager Michael: OWASP LLM Top 10 security red lines, runC / gVisor / Kata sandbox comparison, Kubernetes multi-tenant isolation levels, and how BitoClaw builds a compliant, low-cost AI Agent platform using EKS, KEDA Scale-to-Zero, Pod Identity, and Network Policy.
- From Alexa for Shopping to Agentic Commerce: How Amazon × TapPay Make AI Actually Checkout for You
A source-bounded review of low-latency shopping agents and payment guardrails from the Amazon × TapPay session, checked against first-party Alexa for Shopping and AgentCore material.
For speaking invitations, internal engineering sessions, or architecture exchange, see the topics and public work I can bring into the conversation.
Speaking & contact