Shared Responsibility Model for Infrastructure Services

Information

Infrastructure services, such as Amazon EC2, Amazon EBS, and Amazon VPC, run on top of the AWS global infrastructure. They vary in terms of availability and durability objectives but always operate within the specific region where they have been launched.

NOTE: Nessus has not performed this check. Please review the benchmark to ensure target compliance.

Solution

Building on the AWS secure global infrastructure, you install and configure your operating systems and platforms in the AWS cloud just as you would do on premises in your own data centers. Then you install your applications on your platform. Ultimately, your data resides in and is managed by your own applications. Unless you have more stringent business or compliance requirements, you don't need to introduce additional layers of protection beyond those provided by the AWS secure global infrastructure.

See Also

https://d1.awsstatic.com/whitepapers/Security/AWS_Security_Best_Practices.pdf

Item Details

Category: ACCESS CONTROL, SYSTEM AND COMMUNICATIONS PROTECTION

References: 800-53|AC-4, 800-53|SC-2, 800-53|SC-3, 800-53|SC-7

Plugin: amazon_aws

Control ID: de352880e85372acc9357f04300165b22f4c7b5ca7c4854ca80b6b916d32862e