How ZS democratized secure ad-hoc analytics with Amazon SageMaker
Learn how ZS built a security-hardened Amazon SageMaker platform that balances developer agility with healthcare-grade governance, serving 1,000+ daily active users across 200+ SageMaker domains.
ZS Associates has developed a secure and adaptable Amazon SageMaker environment to cater to the needs of developers needing ad-hoc analytics capabilities while adhering to strict compliance requirements in regulated industries. The platform, serving over 1,000 daily active users across 200+ SageMaker domains, offers a multi-tenant architecture with isolated SageMaker domains, distinct IAM roles, and controlled network settings for each tenant.
The architecture incorporates a three-tier IAM role structure, AWS KMS encryption, CrowdStrike for threat detection, Splunk for log aggregation, and AWS CloudTrail for audit trails. The platform delivers operational efficiency, cost optimization, and governance at scale through automated compliance configurations, security controls, and fine-grained access controls.
By leveraging SageMaker Savings Plans and lifecycle policies, ZS achieved a monthly spend of over $50K on SageMaker, with cost savings of approximately $10K per month. The solution integrates with other AWS services and meets healthcare sector security requirements while providing rapid data recovery through AWS Backup with tag-based automation.
Written by urgent.news from AWS Machine Learning's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.