AWS CCP Notes

Search

Search IconIcon to open search

06-01 Shared Responsibility Model

Last updated Aug 17, 2023 Edit Source

The Shared Responsibility Model is a cloud security framework that defines the
security obligations of the customer versa the Cloud Service Provider (CSP) e.g. AWS.

Each CSP has their own variant of the Shared Responsibility Model but they are all generally the same.

# AWS Shared Responsibility Model

# Customer

Customer
Responsibility for security 'in' the cloud.
Customer Data
Platform, Applications, IAM
OS, Network & Firewall Config.
Client-side Data Encryption & Data Integrity AuthenticationServer-side EncryptionNetwork Traffic Protection
AWS
Responsibility for security 'of' the cloud.
Software
ComputeStorageDatabaseNetworking
Hardware/AWS Global Infr.
HardwareAvailability ZoneEdge Locations

The type of cloud deployment model and/or the scope of cloud service category
can result in specialized Shared Responsibility Models.

# tl;dr