AWS Intelligence Digest

Machine-filtered, human-readable judgment for DevOps and Platform leaders.

--
Updates YTD
--
Avg/Month
--
This Week
Signal
Amazon Neptune ๐Ÿ” AUDIT
Amazon Neptune now supports tag-based access control for IAM

Update IAM policies and Service Control Policies (SCPs) to incorporate tag-based access control for Neptune, ensuring that IAM principals can only perform actions against clusters whose tags match their own, thereby enhancing security and reducing risk.

2026-07-27
Amazon EKS ๐Ÿ“‹ PLAN
Amazon EKS Provisioned Control Plane now delivers faster pod autoscaling

Update your Kubernetes clusters to leverage the increased Horizontal Pod Autoscaler (HPA) sync concurrency in Amazon EKS Provisioned Control Plane, which now processes up to 40 times more HPA objects in parallel, reducing the time it takes for workloads to scale in response to increased load.

2026-07-28
Amazon MWAA ๐Ÿ” AUDIT
Amazon MWAA now supports Apache Airflow version 2.11.2

Update your Amazon MWAA environments to Apache Airflow 2.11.2 to incorporate the latest security patches, bug fixes, and dependency upgrades, ensuring stability and compliance with minimal operational disruption.

2026-07-24
Unknown ๐Ÿ” AUDIT
Amazon Corretto July 2026 Quarterly Updates

Update your Corretto deployments to the latest versions (26.0.2, 25.0.4, 21.0.12, 17.0.20, 11.0.32, and 8u502) to incorporate critical security patches and improvements, and configure your systems to use the new default Amazon Linux 2023 Docker images.

2026-07-22
AWS Secrets Manager ๐Ÿ“‹ PLAN
AWS Secrets Manager now publishes secret update notifications to Amazon EventBridge

Configure AWS Secrets Manager to utilize the new secret update notifications feature that automatically publishes events to Amazon EventBridge, allowing for real-time detection of secret changes and routing notifications to targets like AWS Lambda or Amazon SNS, thereby reducing manual monitoring and toil.

2026-07-22
AWS Blog ๐Ÿ‘€ OBSERVE
Centralized VPC inspection with Amazon VPC Route Server and AWS Transit Gateway

Centralized VPC inspection with Amazon VPC Route Server and AWS Transit Gateway helps you route traffic from multiple virtual private clouds (VPCs) through a shared firewall for security enforcement. Spoke VPCs send traffic through AWS Transit Gateway to a dedicated inspection VPC, where firewall appliances examine it before forwarding. The challenge is making this inspection [โ€ฆ]

2026-07-24
AWS Blog ๐Ÿ‘€ OBSERVE
How PDI Technologies cut 300 hours of manual reporting with Amazon Quick

In this post, we share how PDI Technologies implemented Amazon Quick Sight to transform their business intelligence infrastructure, cutting manual reporting from hours to minutes and expanding analytics from one team to seven. The result is a modern technology foundation that supports company-wide analytics deployment while improving reporting efficiency across our organization.

2026-07-23
AWS Blog ๐Ÿ‘€ OBSERVE
Reimagining Mainframe Applications with Accenture and AWS Transform

This post is co-written with Reshma Nuggehally, Jai Bagmar and Kanai Lal Dutta from Accenture Background: Organizations running mainframes face a critical challenge: 90% are pursuing cloud modernization, yet organizations have transitioned fewer than 20% of workloads. Rising operating costs, retiring talent, and rigid architectures demand a fundamentally different approach. In this post, we explore how [โ€ฆ]

2026-07-23
AWS Blog ๐Ÿ‘€ OBSERVE
Detecting silent agent failures with Amazon Bedrock AgentCore optimization

Amazon Bedrock AgentCore optimization surfaces silent behavioral failures in production AI agents: the ones that pass every health check but still deliver wrong outcomes. Learn how insights discovers, explains, and ranks failure patterns across sessions so you can fix the highest-impact issues first.

2026-07-23
AWS Blog ๐Ÿ‘€ OBSERVE
Automate custom PII detection at scale with Amazon Macie and Step Functions

Organizations in regulated industries like financial services, insurance, healthcare, and government ingest large volumes of data containing personally identifiable information (PII). Your applications, claims processing systems, partner data feeds, and internal workflows produce files that may include names, addresses, Social Security numbers, and domain-specific identifiers such as policy numbers, member IDs, and medical record numbers. [โ€ฆ]

2026-07-22
AWS Blog ๐Ÿ‘€ OBSERVE
Evolving from legacy BI to agentic AI at Tradeshift with Amazon Quick

In this post, we describe how Tradeshift deployed Amazon Quick with agentic AI capabilities to replace our legacy BI tool, resulting in query response times up to 30 times faster, a 40 percent reduction in total cost of ownership, and turned embedded analytics into a product that generates revenue.

2026-07-20
AWS Blog ๐Ÿ‘€ OBSERVE
Managing AI agent sprawl across business units

This blog introduces a governance framework designed for organizations with multiple business units that need to enable fast agent development while maintaining enterprise-wide visibility, cost control, and safety.

2026-07-17
AWS Blog ๐Ÿ‘€ OBSERVE
ICYMI: June 2026 @AWS Security

Read all about the latest AWS security features, compliance updates, and hands-on resources in our new, monthly digest posts. Youโ€™ll find expert blog posts, new service capabilities, code samples, and workshops. AWS Security Blog posts This monthโ€™s AWS Security Blog posts covered identity and access management, threat intelligence, network security, AI-powered security tooling, and multi-account [โ€ฆ]

2026-07-15
AWS Blog ๐Ÿ‘€ OBSERVE
Implement mTLS authentication with Amazon CloudFront for SAP S/4HANA

Introduction Itโ€™s 7 AM in Singapore, and a finance controller is racing to close the month-end books in SAP โ€” but before she can, system authentication must verify her identity across three continents. Her team in Frankfurt is battling sluggish response times, and the security team in New York has just flagged an unverified connection [โ€ฆ]

2026-07-14
AWS Blog ๐Ÿ‘€ OBSERVE
How Mapfre USA modernized fraud claims with Amazon EMR Serverless

Insurance fraud remains a significant challenge for the insurance industry because fraudulent claims can increase loss costs, reduce trust, and consume investigation capacity that could otherwise be focused on serving customers. Traditional fraud detection approaches typically rely on rules-based controls, manual investigation triggers, historical claim patterns, and structured-data-only analysis. These approaches are useful for known [โ€ฆ]

2026-07-14
Amazon Elastic VMware ๐Ÿ” AUDIT
Announcing support for VCF 9.0 and 9.1 on Amazon EVS

Update your VMware deployment strategy to include the new VCF 9.0 and 9.1 support on Amazon EVS, utilizing the provided GitHub repository for infrastructure as code templates to streamline the deployment process.

2026-07-06
Amazon Elastic VMware ๐Ÿ” AUDIT
Amazon EVS VCF 9.0 and 9.1 support

Update your VMware Cloud Foundation deployments to versions 9.0 and 9.1 on Amazon EVS, utilizing the provided GitHub repository for templates and examples to streamline the process.

2026-07-06
Unknown ๐Ÿ“‹ PLAN
AWS DMS Schema Conversion now supports offline SQL Server conversion

Update your migration workflows to utilize the new offline SQL Server conversion feature in AWS DMS Schema Conversion, allowing for schema and code conversion without direct database connectivity, thus simplifying security reviews and firewall configurations.

2026-07-10
Unknown ๐Ÿ“‹ PLAN
OAuth support for the AWS MCP Server

Update your AI agent connections to utilize the new OAuth support for the AWS MCP Server, ensuring compliance with existing IAM policies and taking advantage of new OAuth capabilities like token introspection and revocation APIs.

2026-07-09
AWS Blog ๐Ÿ‘€ OBSERVE
Enhancing enterprise inference on Amazon SageMaker HyperPod with data capture, Hugging Face, NVMe, and Route 53 integration

In this post, we walk through five capabilities now available in SageMaker HyperPod inference: multi-tier data capture for auditing and model improvement, direct deployment from Hugging Face Hub, local NVMe model loading for faster cold starts, automated Route 53 DNS for custom domains, and pod-level IAM through custom service accounts.

2026-07-09
AWS Blog ๐Ÿ‘€ OBSERVE
How One Organization Cut AWS Costs by 39% in 12 Weeks

In 12 weeks, one Software as a Service (SaaS) organization cut AWS costs by 39% while preparing for 10x growth. This post walks through the phased approach the team used to sequence multiple optimizations without disrupting production. Each phase built on the last, compounding into a total 39% reduction within 12 weeks. You can apply [โ€ฆ]

2026-07-09
AWS Blog ๐Ÿ‘€ OBSERVE
AI-powered virtual agents: Automating complex business processes

Organizations across industries struggle with labor-intensive verification and data collection processes that require manual follow-ups, phone calls, and email exchanges. These workflows consume time and resources, often taking days to complete verification tasks while generating high operational costs. Manual processes involve multiple touchpoints, repeated attempts to reach contacts, and documentation requirements that create operational bottlenecks [โ€ฆ]

2026-07-06
AWS Blog ๐Ÿ‘€ OBSERVE
Teaching models to forget: Selective unlearning with Amazon Nova

In this post, we introduce Reverse Direct Preference Optimization (rDPO), the novel unlearning technique behind Amazon Nova Customizable Content Moderation Settings (CCMS), and show how it reduces over-deflection while preserving model quality. We also provide pointers for customers who want to apply these preference optimization techniques to their own experiments.

2026-07-06
AWS Fargate ๐Ÿ” AUDIT
ECS Service Connect now supports Zone-Aware routing

Deploy the new zone-aware routing feature in ECS Service Connect by redeploying existing services to take advantage of reduced cross-AZ traffic and improved load balancing, resulting in lower costs and better performance.

2026-07-01
AWS Blog ๐Ÿ‘€ OBSERVE
Designing enterprise AI agents with DevRev guardrails powered by Amazon Nova

DevRev built real-time AI guardrails into its enterprise agent system, powered by Amazon Nova 2 Lite through Amazon Bedrock. The guardrail layer evaluates every user input against default and custom policies in 247ms average latency without degrading the conversational experience. This post explores how DevRev delivers high support ticket automation and cost reduction while keeping content on-policy and safety controls firm.

2026-07-02
Amazon EC2 ๐Ÿ‘€ OBSERVE
Amazon EC2 Dedicated Hosts now support AMD SEV-SNP

Update your EC2 configurations to utilize AMD SEV-SNP on Dedicated Hosts for improved security and control over instance placement, ensuring your infrastructure aligns with the latest AWS capabilities.

2026-07-02
AWS Blog ๐Ÿ‘€ OBSERVE
Safely Releasing Frontier Models to Customers

Itโ€™s our goal for AWS to be the most secure place to run any workload, and in support of that weโ€™ve been deeply investing in security across our services since AWS's inception more than two decades ago. Our AI services like Amazon Bedrock are built on this foundation and with the same focus.โ€ฏ

2026-07-01
AWS Blog ๐Ÿ‘€ OBSERVE
Zero-downtime Amazon S3 Versioning: Architectural patterns for mission-critical workloads

Organizations delivering content on a global scale rely on distributed edge networks to cache and serve billions of requests daily. These architectures depend on highly aggressive Time-To-Live (TTL) configurations to maximize performance and minimize origin load. On a cache miss, the network falls through to the origin to retrieve the requested content. At this scale, [โ€ฆ]

2026-07-01
Amazon CloudWatch ๐Ÿ‘€ OBSERVE
Amazon CloudWatch supports creating alarms from log queries

Configure log query-based alarms in Amazon CloudWatch to eliminate the need for intermediate metric filters or custom metrics, thereby reducing setup time and improving the efficiency of log monitoring workflows.

2026-07-01

Weekly AWS Digest in Your Inbox

No spam, no headlines. Just a weekly summary of the 3โ€“7 AWS changes that matter for DevOps and Platform teams.