DOI: 10.69554/phgo2412 ISSN: 2398-5119

Differences between traditional network security and security in the cloud

Ilya Verbitskiy
Serverless computing is transforming cloud application development by removing the need for infrastructure management, enabling developers to focus on writing and deploying code. This cloud-computing execution model offers significant advantages in cost-effectiveness, scalability and operational efficiency, with cloud providers dynamically managing server allocation, scaling and maintenance. Prominent serverless computing services include Amazon Web Services (AWS) Lambda, Azure Functions and Google Cloud Functions, facilitating faster development cycles and improving application performance. Security remains a critical concern as the serverless computing market grows. This paper focuses on AWS Cloud security, exploring the differences between traditional network security and cloud security and emphasising the challenges unique to the cloud environment. It advocates for a defence in depth strategy, which employs multiple layers of security to protect cloud infrastructure. The paper underscores the AWS shared responsibility model, which clearly outlines the security responsibilities of both AWS and its customers. It also explores the AWS Well-Architected Framework, which provides best practices for constructing secure, reliable and efficient cloud workloads. Additionally, it discusses the significance of a well-designed landing zone in AWS for managing multi-account environments and ensuring security through multilayered protection mechanisms, including identity and access management (IAM) policies, resource policies, data encryption and network security. In conclusion, the adoption of comprehensive security strategies, such as defence in depth and the utilisation of AWS tools and best practices, is not just beneficial but crucial for enterprises to secure their serverless computing environments. These measures play a pivotal role in mitigating risks, enhancing security postures and fully leveraging the benefits of serverless computing, thereby driving digital transformation initiatives.

More from our Archive