Welcome to above the clouds

AWS – Amazon QuickSight now supports GetClusterCredentialswithIAM for Redshift Data Sources
Amazon QuickSight now supports connectivity to Redshift data source using an IAM role through GetClusterCredentialswithIAM. This is an enhancement to the previously launched feature for Redshift RunasRole which now makes the Database user/Database Group parameters optional thereby implicitly tying the temporary user identity to the IAM credentials. This feature now enables customers to use LakeFormation-Managed […]

GCP – Releasing Artifact Registry assets across Organizations and Projects with serverless
Have you ever wondered if there is a more automated way to copy Artifact Registry or Container Registry Images across different projects and Organizations? In this article we will go over an opinionated process of doing so using serverless components in Google Cloud and its deployment with Infrastructure as Code (IaC). This article assumes knowledge […]

GCP – Unlocking enhanced LLM capabilities with RAG in BigQuery
The rise of generative AI has brought forth exciting possibilities, but it also has its limitations. Large language models (LLMs), the workhorses of generative AI, often lack access to specific data and real-time information, which can hinder their performance in certain scenarios. Retrieval augmented generation (RAG) is a technique within natural language processing that uses […]

GCP – Reusing the same address space for multiple GKE clusters in a single project
One of the benefits of Google Kubernetes Engine (GKE) is its use of a fully-integrated network model, which means that the Pod addresses are routable within the VPC network. But as your usage of GKE scales across your organization, you might find it difficult to allocate network space in a single VPC, and rapidly run […]

AWS – Amazon WorkSpaces Web is now called Amazon WorkSpaces Secure Browser
Today, AWS End User Computing announced Amazon WorkSpaces Web is now called Amazon WorkSpaces Secure Browser. With WorkSpaces Secure Browser, users can access private websites and software-as-a-service (SaaS) web applications, interact with online resources, or browse the internet from a disposable container. The service helps reduces the risk of data exfiltration by streaming web content […]

AWS – AWS Control Tower improves control operations at scale
AWS Control Tower customers can now submit up to 100 control operations concurrently. These operations can span multiple organizational units, reducing the operational burden from repetitive execution. Enabling multiple controls at scale provides a consistent, standardized configuration across multiple AWS accounts. To monitor the status of the ongoing and queued control operations, customers can either […]

AWS – AWS Resource Explorer now provides filtering on resources that support tags
Today, AWS announces a new filter in AWS Resource Explorer to search for resources that support tags. This allows you to understand which resources can and cannot be tagged in order to better evaluate your tagging coverage in your organization or account. Currently, customers can use tag:none to view resources in their account that do […]

Azure – Public Preview: Migrate virtual machine backups using standard backup policy to enhanced backup policy
Azure Backup now supports migrating virtual backups using standard backup policy to enhanced backup policy. Read More for the details.

GCP – How to strengthen supply chain security with GKE Security Posture
The security of the software supply chain is a complex undertaking for modern enterprises. Securing the software supply chain, particularly build artifacts like container images, is a crucial step in enhancing overall security. To provide built-in, centralized visibility into your applications, we are introducing software supply chain security insights for your Google Kubernetes Engine workloads […]
GCP – Collaborative ML research projects within a single cloud environment
As one of the largest banks in Indonesia and Southeast Asia, Bank Rakyat Indonesia (BRI) focuses on small-to-medium businesses and microfinance. At BRI, we established a Digital Banking Development and Operation Division to implement digital banking and digitalization. Within this division, a department we call Digital BRIBRAIN develops a range of AI solutions that span […]