is there a need to relaunch your EC2 instances if your administrators leave the company?
roles are temporary credentials and they are not accounts. EC2 instances uses roles
In a VPC how should you separate different tiers of your application
security groups. with security groups, you don’t have to keep track of IP addresses. You can specify to allow access to a network interface or instance from another security group.
securing data in transit
SSL over web
VPN for IPSec for data moving from corporate data centers and VPC
IPSec over direct connect
import/export snowball