Overview
The key benefits of using the ITGix AWS Landing Zone include:
PCI DSS compliance and auditability from day one * CDE environment that is ready to be audited
Centralized organizational login via Single Sign-On * Optional integration with federated access control from SAML or OIDC providers (Keycloak, Google Workspace, Active Directory, etc)
Cost efficiency at scale because of centralized networking and shared services * Hub and spoke network topology * Centralized Egress * Centralized network firewall inspection of all outbound traffic * Ability to create centralized VPNs (supports both Site-to-Site VPNs and Client VPNs) * Ability to integrate landing zone with on-prem datacenters via AWS Direct Connect * Ability to multiply application accounts while maintaining a cost efficient egress traffic and VPN infrastructure
Fast time to market * Automated provisioning
Security controls * Resource isolation * Least privilege access * Single sign-on * Centralized user management * WAF for inbound traffic * Network firewall for outbound traffic * Optional DDOS protection via AWS Shield Advanced
Automated security scanning * Intrusion detection * Vulnerability scanning * Automated scanning for security standard compliance - PCI DSS, NIST, CIS Benchmarks, AWS Foundations
Highlights
- Centralized Organizational Setup and PCI DSS Compliance -> Centralized organizational login via Single Sign-On (SSO), enhancing security and user management across your AWS environment. Compliance and audibility from day one leading to a secure environment for handling sensitive data.
- Fast Time to Market and Cost Efficiency at Scale -> Achieve fast time to market with end-to-end automation, streamlining deployment processes, and accelerating application delivery. Benefit from cost efficiency at scale through centralized networking and shared services, optimizing resource utilization and reducing operational expenses
- Security Controls and Automated Security Scanning -> Robust security controls including resource isolation, least privilege access, web application firewall for inbound traffic, network firewall for outbound traffic, and optional DDoS protection via AWS Shield Advanced. Utilize automated security scanning, intrusion detection, vulnerability scanning, and compliance scanning for PCI DSS, NIST, CIS Benchmarks, and AWS Foundations, ensuring proactive threat detection and compliance adherence.
Details
Unlock automation with AI agent solutions

Pricing
Custom pricing options
How can we make this page better?
Legal
Content disclaimer
Support
Vendor support
For support needs you can contact us at sales@itgix.com or