11. Shared Responsibility Model
CloudEng C01 L01 Shared Responsibility Model V1
Shared Responbility Model
AWS is responsible for security OF the cloud, we are responsible for security IN the cloud.
Examples
AWS is responsible for:
- Securing edge locations
- Monitoring physical device security
- Providing physical access control to hardware/software
- Database patching
- Discarding physical storage devices
You are responsible for:
- Managing AWS Identity and Access Management (IAM)
- Encrypting data
- Preventing or detecting when an AWS account has been compromised
- Restricting access to AWS services to only those users who need it
SOLUTION:
- Securing underlying network and hardware
- Providing generators and uninterruptible power supply (UPS) systems