How Ibexlabs Mitigated Security Vulnerabilities and Secured XGEN AI’s Assets Using AWS Best Practices

XGEN AI engaged Ibexlabs to improve its AWS security posture. Through the AWS Well-Architected Framework, Ibexlabs assessed and implemented a customized remediation plan that included regular AWS reviews. This comprehensive approach mitigated security risks, improved data confidentiality, and strengthened XGEN AI’s overall security posture.
  • About

  • Need

  • Solution

  • Results

About XGen.Ai

XGen.Ai is a comprehensive traffic and product analytics suite, personalization platform, and A/B testing solution that automates the experience optimization process at the unique customer level in real-time. Their proprietary artificial intelligence platform drives autonomous, curated product recommendations and merchandising – delivering a truly tailored digital shopping experience that is as dynamic and unique as the individual customer.

Need

An AWS platform to support ambitious growth plans.

XGen.Ai recognizes that security is a moving target and they need to be constantly vigilant for any gaps in their security posture.

This risk mitigation includes checking for security best practices as part of the AWS Well-Architected Framework which includes use of multi-factor authentication, privilege management, Amazon S3 access control, and IAM access keys management.

This is a regular check to ensure their objects are not vulnerable to data theft and and their resources are immune to attacks.

XGen.Ai sought an independent outside review to make sure they weren’t “marketing their own homework”.

“Our AWS platform is complex and, like anyone else’s, is always changing. As part of our risk management process, we value getting outside help to check our situation and fix what we need. It’s like servicing your car: if you don’t keep up your servicing plan, then you’ll break down one day.”

Jason D’Rion, Chief Information Officer at XGen.Ai

XGen.Ai looked for an AWS partner with security and AWS Well-Architected expertise who could independently assess their current state, give them a detailed review including a list of recommended remediations, and then help them implement those recommendations.

The Solution

How Ibexlabs help XGen.Ai use the AWS Well-Architected Framework to further improve their security posture.

Ibexlabs conducted a comprehensive review of XGen.Ai infrastructure based on AWS Well-Architected principles with a specific focus on the Security Pillar.

The types of security checks and remediations included:

  • Set numerous security measures to implement a defense-in-depth strategy.
  • Sensitivity levels for data and verify use of techniques such as encryption, and access control as required.
  • Implemented the concept of least priority while communicating with AWS resources.
  • Pruned inactive IAM roles, users, and groups.
  • Improved secrets management in AWS Lambda Environment Variables.
  • Tightened public access to Amazon S3 buckets, ensuring the confidentiality of sensitive data.
  • Rotated IAM users access keys minimize the risk of data theft.
  • Enabled versioning and replication on buckets that need higher data availability.

AWS Identity and Access Management

AWS IAM requires constant tuning to secure all AWS resources, with a special focus on privilege management so that staff joiners, movers, and leavers don’t retain unnecessary permissions.

Amazon S3

Amazon S3 has a complex and powerful set of permissions that require regular revision to ensure no data is exposed inadvertently and that all the advanced features of versioning and used to enhance availability.

“We know that AWS IAM and Amazon S3 configurations are not set-and-forget. Getting an independent review of our configurations is essential to be honest and transparent about how our security posture needs to change as our business changes.”

Jason D’Rion, Chief Information Officer at XGen.Ai

Results

The main result for XGen.Ai was keeping their AWS security posture in line with their business. The recognize the need for regular independent checks to not just bring in the latest AWS Well-Architected Framework pillars like Security, but also to collaborate on implementing remediations without disrupting the business.

We offer customized solutions to accelerate your cloud outcomes.

Contact us arrow

Customer Feedback

Ibexlabs provide an excellent service. They work fast and the quality is top-notch. They have us build the Profasee infrastructure and we get everything we need from them in pristine state and always very quickly. They are also very proactive with suggestions for enhancements and always follow up on their work. Real pleasure to work with Ibexlabs!
Alfredo de Hoces
Profasee
Labra and Ibexlabs, has done a really great job supporting me, as per our AWS rep the usual time to attain partner status is 9 months+ -- we cut that down to weeks with getting all aspects of the Marketplace listing done, working with a review team and at a code and infrastructure level. Great service. Further the various SalesForce add-ons such as Labra Flyout which allows offers through AWS Marketplace to be done, and Opp Sync that keeps all my Opps up to date with AWS, a major time saver, especially with the automation pieces to fill out fields from SF. Gabrielle from support does a great job and working with him has been seamless and clear. I also met some of the other team members, a great company to work with, definitely recommend them.
Jason D’Rion

Chief Information Officer

xGen Ai
Ibex has exceeded expectations. They have a excellent processes and workflows for requests, deliver on time, and are very knowledgeable. Their pricing is competitive and transparent. After seeing their abilities, we wouldn't dream of taking this role on internally.
Wade Denton

President, Chief Technology Officer

Nomo Hub
They have helped us to educate our teams on best practices, along with reliably keeping our infrastructure continually updated. This has allowed us to focus on the specifics of our business while getting the best out of AWS. Whenever we have questions or concerns, they always research options and come back to us with a good insights to weigh pros and cons so we choose wisely. They are reliable, helpful, and easy to work with. I would highly recommend them.
Vivek Pathak

Managing Partner - COO

BroadPeak Partners