ALGORIMS

 

Arth Design Build PTE Ltd. — Secure AWS Cloud Deployment of Newforma with MSSP Support

 

Overview:

Arth Design Build PTE Ltd., a leader in construction and FM Solutions, migrated their Newforma Project Center servers to Amazon Web Services (AWS).

To ensure the protection of sensitive project files, emails, and client data, Arth Design engaged a Managed Security Service Provider (MSSP) to build a secure, resilient, and compliant cloud environment.

 

Challenges:

  • Manual User Management: No centralized directory service; manual account creation was required.
  • Secure Server Communication: Needed LAN-like secure communication between File Server and Project Center.
  • External Access Requirements: Info Exchange needed public accessibility while ensuring strong security controls. 
  • Remote Workforce Security: Remote users required safe VPN access into the environment. 
  • Regulatory Compliance: Required adherence to PDPA and ISO 27001 standards for data protection.
 

MSSP Cloud Security Approach:

  • VPN Access with MFA: Deployed secure VPN connectivity using AWS Client VPN with enforced Multi-Factor Authentication (MFA).
  • Strict Access Control: Manual user management combined with least privilege principles to restrict file and folder access.
  • End-to-End Encryption: Implemented SSL/TLS encryption for Info Exchange and server communications.
  • Port and Network Security Hardening: Only critical application ports are opened with strict security policies. 
  • Proactive Threat Monitoring: Continuous monitoring for real-time threat detection and incident response. 
  • Patch and Vulnerability Management: Scheduled monthly vulnerability scans and patch updates using AWS Systems Manager. 
  • Secured Email Integration: Hardened Office 365 email integration with additional security controls for safe communication.
 

Results:

Before MSSP Support                                                                                   After MSSP Support

On-prem servers with basic configuration                                                      Fully secured cloud-based AWS deployment

Open file permissions                                                                                      Strict user access control, least-privilege model

Info Exchange exposed to internet                                                                  Info Exchange protected with SSL, firewall, and VPN

No proactive monitoring                                                                                 24×7 monitoring and dedicated support

 

Conclusion:

With MSSP expertise and AWS’s robust cloud capabilities, Arth Design Build successfully transitioned their Newforma environment into a secure, compliant, and scalable cloud solution. By strengthening access control, encrypting all communications, and establishing proactive threat management, Arth now ensures data confidentiality, client trust, and long-term operational resilience.