Cloudwick’s Amorphic Data Platform has long supported public sector and sensitive-data organizations with secure, cloud-native analytics. With the launch of Amorphic 3.1, we’re proud to introduce TRACE (Trusted Regulatory Audit and Compliance Engine), a powerful new application designed to elevate cloud governance, compliance visibility, and security posture management for organizations using Amorphic.
TRACE is purpose-built to give organizations that manage regulated data a single pane of glass to monitor their security and compliance posture in Cloudwick’s Amorphic Data Platform.
Fig. 1: TRACE Compliance Overview with overall compliance score, security standard breakdown, and findings categorized by severity (Critical, High, Medium, Low)
TRACE is built on top of AWS Security Hub, leveraging it as the core framework to aggregate, prioritize, and present findings from a wide range of AWS-native security services, including:
This native foundation ensures TRACE inherits the scalability, accuracy, and automation capabilities of AWS Security Hub while extending its visibility to include Amorphic’s platform services, giving users a complete picture of compliance postures across infrastructure and data pipelines.
As part of this model, we track and manage all platform administrative data comprehensively, capturing logs, configurations, policies, and governance activities across environments. This information is then correlated and enriched through AWS Security Hub and Amorphic’s analytics engines to produce consolidated compliance findings and unified views, enabling stakeholders to monitor security, governance, and operational health with clarity and confidence.
TRACE introduces a powerful new capability within Amorphic: Usage Observability. Through backend data pipelines and scheduled workflows, TRACE tracks and surfaces key platform KPIs - helping teams understand how the system is being used and where governance can be improved.
Fig. 2: Usage Observability Dashboard showing active users, job breakdowns by type, Athena query success rate, and Data Lab status overview.
TRACE’s first release focuses on delivering core compliance visibility using standards natively supported by AWS Security Hub, including:
These standards form the baseline of TRACE’s posture evaluation engine - offering immediate, standards-aligned security monitoring from day one.
TRACE centralizes and streamlines monitoring of both platform usage and cloud compliance.
Key features include:
Fig. 3: Security Findings Table listing misconfigurations by severity, resource type, and compliance status with action icons for resolution or documentation.
Whether managing HIPAA-regulated health data, CJIS-protected criminal justice records, or others, TRACE provides a trusted governance layer that:
While the initial release focuses on FSBP, CIS, and NIST Moderate, TRACE is built to expand. Upcoming releases will include:
With TRACE, Cloudwick is redefining how compliance and governance are operationalized in the cloud. TRACE isn't just a tool - it’s an assurance layer that builds trust in your data operations.
By combining the strengths of AWS-native security insights with deep Amorphic observability, TRACE delivers an unmatched level of transparency, accountability, and peace of mind.