
Tving is reviewing its cloud security infrastructure with Amazon Web Services and strengthening its security framework to improve service stability and protect customer data.
The streaming service said on the 2nd that it had assessed the security level of its current cloud environment through AWS's Security Improvement Program, or SIP. The program analyzes a company's actual cloud operations to identify vulnerabilities and draw up improvement tasks and an implementation roadmap.
The assessment drew on security control benchmarks from the Center for Internet Security, the cybersecurity framework of the U.S. National Institute of Standards and Technology and AWS foundational security best practices. Based on the findings, Tving plans to prioritize improvement tasks and apply them in stages to upgrade its cloud security framework. The SIP review is part of the company's broader push to reinforce its information protection systems.
Drawing on the results, Tving will strengthen security across five areas including identity and access management, threat detection, infrastructure and data protection, and incident response and automation. The company plans to manage access rights and externally exposed elements in its cloud environment and build a system that can quickly detect and respond to anomalies.
Under those principles, Tving is pursuing specific security improvements centered on four core tasks.
First, the company will review its entire cloud environment by comprehensively reflecting leading domestic and overseas security benchmarks and global guidelines, and build a management framework based on global best practices to respond flexibly to a rapidly changing security landscape.
It will also conduct advance checks on externally exposed assets and excessively granted access rights to minimize potential security gaps and the risk of misconfiguration.
In addition, for multi-account environments, Tving will build integrated governance that applies centralized security policies and controls based on AWS Organizations, a service that allows multiple AWS accounts to be managed centrally. That will let the company manage security elements scattered across individual accounts under consistent standards and improve efficiency in applying and operating policies.
The company is also upgrading threat response processes that detect anomalies in real time and automatically carry out necessary measures, speeding up responses to security events and automating repetitive tasks for faster and more consistent action.
Tving is adopting AWS security services in stages and expanding their scope to improve internal security processes and response capabilities. The services include AWS Network Firewall, which monitors cloud network traffic and blocks malicious traffic; Amazon GuardDuty, which detects signs of threats; AWS Security Hub, which consolidates alerts and security status from multiple security services; and Amazon Inspector, which automatically checks for system vulnerabilities.
The security work through SIP will not stop at a one-time assessment but continue through workshops, expert sessions and regular reassessments.
Through that process, Tving plans to conduct comprehensive evaluations of its cloud security level on a regular basis and steadily incorporate assessment findings and improvements to strengthen security response capabilities across the organization.
"We are using AWS's SIP to systematically review our entire cloud environment and are carrying out the identified improvement tasks in stages," a Tving official said. "Through regular checks and continuous improvement, we will build an environment where customers can use our service with confidence."






