All success stories

Protecting course content while cutting streaming costs

A secure edge-delivery architecture lowered bandwidth cost, protected learning content, and closed high-severity security findings.

Sahaba Edu logoClientSahaba Edu
40%lower delivery bandwidth cost
100%course content access controlled
0high-severity findings remaining

Core services in the architecture.

A focused view of the AWS services most representative of this engagement. The complete technical scope is described below.

  1. 01Amazon CloudFront
  2. 02Amazon S3
  3. 03AWS WAF
  4. 04Amazon Aurora
  5. 05AWS Key Management Service
  6. 06Amazon CloudWatch
01

The challenge

Sahaba Edu delivered interactive video lectures from a single server, creating high bandwidth costs, limited protection for course content, and material security gaps.

02

What CloudVests delivered

CloudVests aligned the platform to AWS best practices, moved media delivery to a global content-delivery network with secure access controls, adopted a managed database, and remediated the security findings identified during review.

Course media was separated from the application runtime and delivered from private Amazon S3 storage through CloudFront. Signed access controls and AWS WAF policies protected paid content and reduced direct exposure of the origin.

Amazon Aurora replaced the unmanaged database layer, with KMS-backed encryption and CloudWatch monitoring applied across the delivery path.

03

The outcome

The platform now distributes video efficiently at the edge while controlling access to paid content and maintaining a stronger security baseline.

The edge architecture reduced bandwidth pressure on the core application while making content authorization, database availability, and security monitoring explicit platform responsibilities.