Book Image

AWS FinOps Simplified

By : Peter Chung
Book Image

AWS FinOps Simplified

By: Peter Chung

Overview of this book

Much like how DevOps is a combination of cultural philosophies, practices, and tools that advocate a collaborative working relationship between development and IT operations, FinOps encourages the same collaboration between technology and finance team, making it key relationship to establish and maintain for any thriving business. This book will help you understand how organizations with a mature FinOps practice can decentralize cost ownership to developer teams and encourage cross-functional collaboration between business, finance, and technology, enabling speed, innovation, and business growth. You’ll focus on structuring your organization to form the right FinOps team, including a Cloud Center of Excellence, and learn how to implement practical cost savings measures with AWS tools to optimize costs in both the short as well as long term. By the end of this cloud FinOps book, you’ll be ready to implement a successful Cloud FinOps practice for your organization to get the best value from the AWS cloud for your workloads.
Table of Contents (18 chapters)
Free Chapter
2
Part 1: Managing Your AWS Inventory
7
Part 2: Optimizing Your AWS Resources
12
Part 3: Operationalizing FinOps

Governance with Service Catalog

At the beginning of this chapter, we looked at identity-based policies that permit actions for individual entities. We unpacked how permissions work through authentication and authorization. Then, we looked at permission boundaries, primarily in the form of SCPs that are applied to an AWS account or multiple AWS accounts via an OU. These SCPs define the permission boundaries that impact all users and roles associated with the AWS account, the OU, and perhaps the entire AWS Organization.

Another way of governing access to AWS resources is by providing a pre-approved list of resources that users can launch with AWS Service Catalog. You can think of Service Catalog as a vending machine of goods – users choose which resource they want to consume. And since you’re the one placing the items in the machine for users to vend, as long as you know the items that you place are secured, compliant, and approved for use, you can operate with the assurance...