The AWS Shared Responsibility Model is a fundamental framework that clarifies the division of security and compliance duties between AWS and its customers.
This model ensures that while AWS manages the security of the cloud infrastructure, customers are responsible for security in the cloud, specifically related to their data, applications, and configurations.
Understanding this shared responsibility is crucial for organizations to effectively protect their cloud environments and comply with industry standards.
Understanding AWS’s Responsibility: Security of the Cloud
AWS is responsible for safeguarding the infrastructure that runs all AWS services. This includes:

AWS ensures that the foundational services and hardware operate securely, thus relieving customers from managing these complex and critical layers.
Understanding Customer’s Responsibility: Security in the Cloud
Customers control the security requirements related to their use of AWS services, which vary depending on the services they select. Responsibilities generally include:
1. Managing guest operating systems, patches, and updates on services like Amazon EC2 (Infrastructure as a Service - IaaS)
2. Configuring firewalls, security groups, and network access controls
3. Securing data by using encryption, managing permissions, and identity and access management (IAM)
4. Application-level security and maintaining compliance with relevant laws and regulations
For more abstracted services, such as Amazon S3 or DynamoDB, AWS manages more of the infrastructure stack, but customers remain accountable for their data security and access configurations.
Shared Responsibility Across Service Models
The shared responsibility balance shifts based on the cloud service model:
| Aspect | Infrastructure as a Service (IaaS) | Platform as a Service (PaaS) | Software as a Service (SaaS) |
| AWS Responsibility | Physical infrastructure, foundational layers | Physical infrastructure, OS, middleware | The entire infrastructure and software |
| Customer Responsibility | OS, applications, data, network configs | Applications, data, and user access | Data, user access |

We have a sales campaign on our promoted courses and products. You can purchase 1 products at a discounted price up to 15% discount.