Understanding the Shared Responsibility Model in AWS
Although we touched on it briefly in Chapter 1, Amazon Web Service Pillars, understanding the Shared Responsibility Model is imperative in order to work with the security of your account, and especially the IAM service.
The following diagram provides an overview of the model:
The essence of this Shared Responsibility Model is about providing flexibility and customer control. With this model there are two major concepts, outlined as follows:
- Who is responsible for security OF the cloud:
This is where AWS holds the responsibility.
- Who is responsible for security IN the cloud:
This is where you as the customer hold the responsibility.
AWS controls the global infrastructure, which includes the data centers that host the servers running all of the AWS services. These data centers are run according to...