Strengthening online banking security: The Solaris success story with AWS Security Services

X

A&B X Solaris

Customer success stories
Strengthening online banking security: The Solaris success story with AWS Security Services

The challenge

Solaris offers its customers a fully digital Banking-as-a-Service platform that enables existing and new companies to offer their own financial services. As a fully licensed online bank, Solaris must meet very high security requirements. AWS, with its extensive and mature cloud ecosystem, was the strategic choice for Solaris' digital products. To exploit this potential, Solaris needed expert resources with in-depth know-how and many years of experience.

"We had very productive collaborations with Alice&Bob. They validated and improved our architecture and design decisions, with a strong perspective on security. I really appreciate their in-depth technical knowledge and experience, combined with their passionate 'can-do' attitude."

Dennis Winter, Deputy VP TechOps at SolarisBank

Our solution

Alice&Bob.Company worked closely with Solaris to optimize various aspects of cyber security. Through agile threat modeling workshops, intrusion and DDoS prevention were prioritized, leading to the implementation of continuous auditing services. AWS cloud services such as GuardDuty, Shield, Config and Lambda were prepared, configured and integrated to protect Solaris' accounts and workloads. These services enabled intelligent threat detection and automated incident response to ensure proactive defense against emerging threats.

Another important focus was the improvement of identity and access management (IAM). Service Control Policies (SCPs) were used to effectively manage and enforce guardrails across multiple accounts. Through the use of IAM and SCPs, Solaris achieved granular control over access permissions, minimizing security risks and ensuring compliance.

Alice&Bob.Company supported Solaris with enablement and training to promote a strong security culture and accelerate AWS cloud migration. Alice&Bob.Company's certified team provided customized training on AWS security and AWS fundamentals. This knowledge transfer facilitated the spread of security awareness across the organization and fostered DevSecOps and cloud technology expertise across multiple product teams.

Cloud technologies used

Amazon Elastic Compute Cloud (EC2)

Scalable virtual servers in the cloud.

Amazon Elastic Kubernetes Service (Amazon EKS)

Managed Kubernetes service for containerized applications

AWS Fargate

Serverless compute engine for containers

AWS Identity and Access Management (IAM)

Manage user access and authorizations.

Amazon GuardDuty

Threat detection service that monitors for malicious activity

AWS Shield

AWS Shield is a service to protect against DDoS attacks.

Results

The collaboration between Alice&Bob.Company and Solaris led to a significant change in Solaris' security practices. Security was integrated into Solaris' CI/CD pipelines, triggering automated audits, vulnerability scans and compliance checks with every code update. By integrating security controls into every stage of the software development process, Solaris achieved a "shift left" approach that ensures secure products from the start.

The security culture at Solaris was strengthened, architecture and design decisions were validated and improved, increasing confidence in the Solaris security system and establishing a partnership based on mutual trust.

Our solutions

Discover our solutions and formats that support you in the areas of digitalization, innovation & cloud:
All solutions
Arrow to the rightArrow to the right

Audit Preparation

Your solution for compliance challenges
Arrow to the right

AWS Housekeeping

Continuous improvement and increased efficiency of your cloud platform
Arrow to the right

AWS Cloud Security Assessment

Maximum security for your AWS environment
Arrow to the right
Questions?
We look forward to getting to know you!
Thank you - your message has been sent.
Unfortunately something went wrong when sending the form :(