AWS Shared Responsibility Models
The more customizable your service or platform, the more responsibilities you hold as the customer.
The AWS service that you choose to use dictates your responsibility based on the amount of configuration that needs to be performed in the service tier.
Figure 1.1: A Comparison of Shared Responsibility Models
Figure 1.1 shows that infrastructure services, which are presented as an IaaS platform, including services such as EC2, hold many more customer responsibilities regarding security. The trade-off you receive for this more significant burden of responsibility is the flexibility and customization you are allowed in the layer. You can see that each of the different models is labelled directly underneath, and each of the models will be discussed in detail in the following pages.
The basis for what AWS is responsible for remains the same—that is, the Hardware and AWS Global Infrastructure, and the AWS Foundational...