Amazon Web Services:
Risk and Compliance
Amazon Web Services: Risk and Compliance
Amazon Web Services: Risk and Compliance
Copyright © Amazon Web Services, Inc. and/or its affiliates. All rights reserved.
Amazon's trademarks and trade dress may not be used in connection with any product or service that is not
Amazon's, in any manner that is likely to cause confusion among customers, or in any manner that disparages or
discredits Amazon. All other trademarks not owned by Amazon are the property of their respective owners, who may
or may not be affiliated with, connected to, or sponsored by Amazon.Amazon Web Services: Risk and Compliance
Table of Contents
Amazon Web Services: Risk and Compliance..........................................................................................1
Abstract....................................................................................................................................1
Introduction......................................................................................................................................2
Shared responsibility model................................................................................................................3
Evaluating and integrating AWS controls..............................................................................................4
AWS risk and compliance program.......................................................................................................5
AWS business risk management...................................................................................................5
Operational and business management ........................................................................................5
Control environment and automation...........................................................................................6
Controls assessment and continuous monitoring............................................................................6
AWS certifications, programs, reports, and third-party attestations...................................................7
Cloud Security Alliance...............................................................................................................7
Customer cloud compliance governance................................................................................................8
Conclusion .........................................................................................................................................9
Contributors ....................................................................................................................................10
Further reading................................................................................................................................11
Document Revisions..........................................................................................................................12
Notices............................................................................................................................................13
iiiAmazon Web Services: Risk and Compliance
Abstract
Amazon Web Services: Risk and
Compliance
Publication date: March 11, 2021 (Document Revisions (p. 12))
Abstract
AWS serves a variety of customers, including those in regulated industries. Through our shared
responsibility model, we enable customers to manage risk effectively and efficiently in the IT
environment, and provide assurance of effective risk management through our compliance with
established, widely recognized, frameworks, and programs. This paper outlines the mechanisms that
AWS has implemented to manage risk on the AWS side of the Shared Responsibility Model, and the tools
that customers can leverage to gain assurance that these mechanisms are being implemented effectively.
1Amazon Web Services: Risk and Compliance
Introduction
AWS and its customers share control over the IT environment. Therefore, secur
2021_AWS_Risk_and_Compliance_Whitepaper
文档预览
中文文档
16 页
50 下载
1000 浏览
0 评论
0 收藏
3.0分
温馨提示:本文档共16页,可预览 3 页,如浏览全部内容或当前文档出现乱码,可开通会员下载原始文档
本文档由 思安 于 2023-10-19 06:00:40上传分享