AI Hacking - How Hackers Use Artifical Intelligence in Cyberattacks

Read Now
We utilize artificial intelligence for site translations, and while we strive for accuracy, they may not always be 100% precise. Your understanding is appreciated.
Finance | Customer Stories

OPSWAT Powers Secure, Scalable S3 Access for a Major US Bank 

Share this Post

About the Company: This leading financial services provider is headquartered in the USA, with over 1,500 employees and over $30 billion in total assets. This bank offers a full suite of services to businesses and consumers across the US, with a strong focus on technology-driven financial solutions. The bank generates over $865 million in annual revenue and is committed to innovation, security, and compliance in its operations.

What's the Story? This bank faced a critical challenge: enabling secure file scanning for its AWS S3 storage using Private Link, in a cloud environment that lacked native support for this architecture. With multiple accounts and regions under AWS OUs (Organizational Units), and a transition underway from EC2 to ECS/EKS environments, the complexity was increasing fast. They turned to OPSWAT to create a scalable, secure solution that could help them navigate technical roadblocks while meeting stringent compliance and performance needs.

Due to the nature of the business, the name of the organization featured in this story has been kept anonymous in order to protect the integrity of their work.

INDUSTRY:

Finance

LOCATION:

USA

SIZE:

1500+ Employees,
Over $30B Total Assets 

PRODUCTS USED:

MetaDefender Storage Security™

Smart Security for Complex Clouds: OPSWAT Empowers a $31B Bank 

Banks are increasingly moving sensitive operations to the cloud, embracing platforms like AWS to scale operations and accelerate innovation. Yet, this migration also brings heightened risk. 

Cybercriminals often target financial institutions for their vast stores of valuable data. And with regulatory pressure mounting-from SOX and GLBA to FFIEC guidance-banks must strike a difficult balance: securing cloud workflows while maintaining performance, compliance, and business continuity. 

This was exactly the situation facing our client, a major U.S.-based financial services provider. With $31.6 billion in assets and over 1,850 employees, the bank prides itself on its technology-forward approach and strong security posture. But as it expanded its cloud presence across AWS, using multiple accounts, regions, and OUs (Organizational Units), the complexity of its environment became a serious obstacle. 

icon quote

We had a vision for scalable, secure file scanning in the cloud, but our infrastructure was starting to work against us. Our legacy connection model wasn’t scalable or secure enough for where we needed to go.

Director of IT Security

This bank's specific cloud security needs came with major hurdles: 

Private Link Limitations

AWS S3 has limited support for Private Link integration, which can make direct secure access to buckets through this preferred method challenging. 

Multi-Account Complexity

The bank managed multiple AWS accounts and regions, complicating access management and resource allocation.

Scalability Requirements

A planned shift from EC2 to ECS/EKS required a flexible, modern deployment approach.

Manual Configuration Risks

Hardcoded connection URLs and inconsistent access policies increased the risk of error and misconfiguration.

icon quote

Security is always top of mind for our customers. But with our growing cloud infrastructure, we needed a more scalable and secure approach that wouldn’t disrupt our operations.

Senior Cloud Architect

Private Link-Ready Integration with IAM Role Support 

Recognizing the need for a modern, resilient solution, the bank partnered with OPSWAT to reimagine its approach. OPSWAT deployed MetaDefender Storage Security in a tailored configuration that addressed every concern, enabling secure S3 access through Private Link, automating policy enforcement, and easing the move to containerized environments. 

Finance cloud security graphic showing five configurations: IAM role integration, resource management, container deployment, QA, strategy

IAM Role Integration with Private Link

Engineered a solution that securely accessed S3 buckets via Private Link by leveraging IAM roles, bypassing the limitation for native Private Link support.

Centralized Resource Management

Recommended consolidating operations under a single S3 account to reduce complexity and streamline governance.

Containerized Deployment

Transitioned MetaDefender Storage Security from EC2 to ECS/EKS, enabling elastic scaling and better resource efficiency.

Validated QA Environment

Conducted rigorous testing in QA environment to ensure Private Link functionality and S3 compatibility.

Flexible Deployment Strategy

Explored region- and account-specific configurations to meet future scalability demands.

Scalable, Secure, and Efficient Cloud Storage Security 

With OPSWAT’s solution in place, the bank saw immediate and measurable improvements: 

Finance cloud security graphic showing storage security, S3 storage, and five key cloud security improvements

75% Faster Security Update Deployments

Transition to ECS/EKS enabled rapid rollout of policy and engine updates, ensuring timely deployment across their complex systems without downtime.

Secure, Compliant Access

IAM role-based S3 integration greatly reduced API key exposure risk.

Reliable Private Link Scanning

Achieved secure, high-throughput S3 scanning without compromising compliance or operational performance.

Streamlined QA and Rollout

Comprehensive testing ensured confidence in deployment across multiple regions and accounts.

Future-Proof Architecture

Flexible design supports future scaling without rearchitecting security workflows.

icon quote

Thanks to OPSWAT, we’ve secured our S3 storage and gained a scalable deployment model with ECS. It’s a game-changer for our cloud security and meets our needs not only now, but for the foreseeable future.

Senior Cloud Architect

A Forward-Thinking Cloud Security Strategy 

As cloud adoption accelerates in the financial sector, adapting security protocols to these complex environments is critical. For this bank, partnering with OPSWAT was about more than solving today’s challenges; it was about building a future-ready foundation. 

With secure S3 access now streamlined, the bank has greater confidence in its ability to meet internal and regulatory demands while continuing to innovate. The flexibility of OPSWAT’s solution means the security team can scale protection as the infrastructure grows, without rearchitecting workflows or compromising performance. 

Looking ahead, the bank plans to expand secure file scanning across more use cases, including customer-facing portals, internal automation pipelines, and vendor integrations. Long-term, automation will play a key role, with event-driven scanning and policy enforcement enabling real-time, hands-off threat mitigation. 

icon quote

OPSWAT has become a cornerstone of our cloud security architecture. It gives us the control we need today and the agility we’ll need tomorrow.

Senior Cloud Architect

With OPSWAT, the bank is no longer reacting to cloud complexity; it’s staying ahead of it. 

Want to learn how OPSWAT can enhance your cloud security? 

Similar Stories

Sep 19, 2025 | Company News

How OPSWAT’s Data Diode Solution Strengthens a North American Wastewater Operation’s Security

Sep 17, 2025 | Company News

OPSWAT Solutions Stop Media-Borne Malware in Biotech and Pharma Operations

Sep 16, 2025 | Company News

UK Insurer Cuts IFA Submission Time and Improves File Security with MetaDefender Core

Stay Up-to-Date With OPSWAT!

Sign up today to receive the latest company updates, stories, event info, and more.