Which of the following is the responsibility of AWS under the shared responsibility model?

Do you know where AWS' security responsibility ends and yours begins? Try your hand with this quick quiz.

Which of the following is the responsibility of AWS under the shared responsibility model?

By

  • Stephen J. Bigelow,

Published: 06 Feb 2018

In a traditional data center, an enterprise exercises total control over its facility and assumes full responsibility for infrastructure security and operation. But with the public cloud, that all changes, and now, many users need to grow accustomed to the AWS shared responsibility model.

Public cloud adopters can shed the expense and management burden of traditional IT infrastructure in favor of on-demand, pay-as-you-go services. But they also surrender control and insight into that infrastructure and must trust the provider to ensure availability and security.

While AWS says it can provide secure cloud infrastructure, it cannot guarantee the security of workloads in the cloud. It's a subtle but profound distinction that delineates the separation between providers and users. When you migrate workloads and data to the cloud, it doesn't absolve you of regulatory compliance and corporate governance obligations. The provider can deliver tools and technologies necessary to protect an environment, but it's up to users to implement them to secure workloads and data.

Thus, AWS and its users share security responsibilities. See how much you know about the AWS shared responsibility model and your cloud accountability with this brief quiz.

Dig Deeper on AWS infrastructure

  • Which of the following is the responsibility of AWS under the shared responsibility model?
    What is data separation and why is it important in the cloud?

    Which of the following is the responsibility of AWS under the shared responsibility model?

    By: Stephen Bigelow

  • Which of the following is the responsibility of AWS under the shared responsibility model?
    shared responsibility model

    Which of the following is the responsibility of AWS under the shared responsibility model?

    By: Kathleen Casey

  • Which of the following is the responsibility of AWS under the shared responsibility model?
    GovTech to enhance Government on Commercial Cloud

    Which of the following is the responsibility of AWS under the shared responsibility model?

    By: Aaron Tan

  • Which of the following is the responsibility of AWS under the shared responsibility model?
    Cloud misconfiguration a growing cause of security incidents

    Which of the following is the responsibility of AWS under the shared responsibility model?

    By: Sebastian Klovig Skelton

Which of the following is the responsibility of AWS under the shared responsibility model?

The AWS shared responsibility model defines what you (as an AWS account holder/user) and AWS are responsible for when it comes to security and compliance.

Security and Compliance is a shared responsibility between AWS and the customer. This shared model can help relieve customer’s operational burdens as AWS operates, manages, and controls the components from the host operating system and virtualization layer down to the physical security of the facilities in which the service operates.

The customer assumes responsibility and management of the guest operating system (including updates and security patches), other associated application software as well as the configuration of the AWS provided security group firewall.

AWS are responsible for “Security of the Cloud” .

  • AWS is responsible for protecting the infrastructure that runs all the services offered in the AWS Cloud.
  • This infrastructure is composed of the hardware, software, networking, and facilities that run AWS Cloud services.

Customers are responsible for “Security in the Cloud”.

  • For EC2 this includes network level security (NACLs, security groups), operating system patches and updates, IAM user access management, and client and server-side data encryption.

The following diagram shows the split of responsibilities between AWS and the customer:

Which of the following is the responsibility of AWS under the shared responsibility model?

Inherited Controls – Controls which a customer fully inherits from AWS.

  • Physical and Environmental controls.

Shared Controls – Controls which apply to both the infrastructure layer and customer layers, but in separate contexts or perspectives.

In the AWS shared security model, a shared control, AWS provides the requirements for the infrastructure and the customer must provide their own control implementation within their use of AWS services.

Examples  of shared controls include:

  • Patch Management – AWS is responsible for patching and fixing flaws within the infrastructure, but customers are responsible for patching their guest OS and applications.
  • Configuration Management – AWS maintains the configuration of its infrastructure devices, but a customer is responsible for configuring their own guest operating systems, databases, and applications.
  • Awareness & Training – AWS trains AWS employees, but a customer must train their own employees.

Customer Specific – Controls which are solely the responsibility of the customer based on the application they are deploying within AWS services. .

Examples of customer specific controls include:

  • Service and Communications Protection or Zone Security which may require a customer to route or zone data within specific security environments.

Which of the following is the responsibility of AWS under the shared responsibility model select the best answer?

5) B – Maintaining physical hardware is an AWS responsibility under the AWS shared responsibility model.

Which of the following is the customer's obligation under the AWS shared responsibility model?

In summary, the customer assumes responsibility and management of the guest operating system (including updates and security patches), other associated application software, as well as the configuration of the AWS, provided security group firewall.

What is a responsibility of AWS in the shared responsibility model quizlet?

Maintaining physical hardware is the responsibility of AWS under the shared responsibility model.

What is AWS shared responsibility?

Just as the responsibility to operate the IT environment is shared between AWS and its customers, the management, operation, and verification of IT controls is also a shared responsibility. AWS can help customers by managing those controls associated with the physical infrastructure deployed in the AWS environment.