Arth Design Build PTE Ltd. — Secure AWS Cloud Deployment of Newforma with MSSP Support
Overview:
Arth Design Build PTE Ltd., a leader in construction and FM Solutions, migrated their Newforma Project Center servers to Amazon Web Services (AWS).
To ensure the protection of sensitive project files, emails, and client data, Arth Design engaged a Managed Security Service Provider (MSSP) to build a secure, resilient, and compliant cloud environment.
Challenges:
- Manual User Management: No centralized directory service; manual account creation was required.
- Secure Server Communication: Needed LAN-like secure communication between File Server and Project Center.
- External Access Requirements: Info Exchange needed public accessibility while ensuring strong security controls.
- Remote Workforce Security: Remote users required safe VPN access into the environment.
- Regulatory Compliance: Required adherence to PDPA and ISO 27001 standards for data protection.
MSSP Cloud Security Approach:
- VPN Access with MFA: Deployed secure VPN connectivity using AWS Client VPN with enforced Multi-Factor Authentication (MFA).
- Strict Access Control: Manual user management combined with least privilege principles to restrict file and folder access.
- End-to-End Encryption: Implemented SSL/TLS encryption for Info Exchange and server communications.
- Port and Network Security Hardening: Only critical application ports are opened with strict security policies.
- Proactive Threat Monitoring: Continuous monitoring for real-time threat detection and incident response.
- Patch and Vulnerability Management: Scheduled monthly vulnerability scans and patch updates using AWS Systems Manager.
- Secured Email Integration: Hardened Office 365 email integration with additional security controls for safe communication.
Results:
Before MSSP Support After MSSP Support
On-prem servers with basic configuration Fully secured cloud-based AWS deployment
Open file permissions Strict user access control, least-privilege model
Info Exchange exposed to internet Info Exchange protected with SSL, firewall, and VPN
No proactive monitoring 24×7 monitoring and dedicated support
Conclusion:
With MSSP expertise and AWS’s robust cloud capabilities, Arth Design Build successfully transitioned their Newforma environment into a secure, compliant, and scalable cloud solution. By strengthening access control, encrypting all communications, and establishing proactive threat management, Arth now ensures data confidentiality, client trust, and long-term operational resilience.