ANALYSIS OF INFORMATION SECURITY MECHANISMS IN AMAZON WEB SERVICES (AWS) CLOUD

И. Н. Бабак, A. A. Микитенко

Abstract


Advantages and disadvantages of using cloud technologies in companies are considered. The programmatic mechanisms for protecting data and users’ resources from an unauthorized access that are given by an Amazon Web Services (AWS) cloud service provider are analyzed. The basic vulnerabilities which can be present even when effective programmatic methods for cloud resources safety exist are analyzed. Such problems as obsolescence of the access keys, open ports and untuned safety rules, presence of resources which are not in use in a cloud are highlighted. In the article approaches for increasing data protection strength and information security in the AWS cloud are proposed. Development of the framework is proposed, the main functions of this framework is the following: scanning and removing outdated access keys, open ports, resources which are not in use and vulnerable configurations of protection mechanisms in a cloud. For ease of use of the framework, it is supposed to develop scripts for automating the process of its deployment.


Keywords


AWS; cloud technologies; data security mechanisms; vulnerabilities; framework

References


APN Partner Stories - Written Case Studies [Electronic resource]. – Mode of access: https://aws.amazon.com/partners/success

A HISTORY OF CLOUD COMPUTING: [Electronic resource]. - Mode of access: https://cloudtweaks.com/2011/02/a-history-of-cloud-computing

AWS Pricing [Electronic resource]. – Mode of access: https://aws.amazon.com/pricing/?nc1=h_ls

AWS Case Study: NASA/JPL's Desert Research and Training Studies [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/nasa-jpl/

Netflix & Amazon Kinesis Streams Case Study [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/netflix-kinesis-streams/

Autodesk Case Study [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/autodesk/

AWS Case Study: Hitachi [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/hitachi/

McDonalds Case Study [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/mcdonalds/

AWS Case Study: The Royal Opera House [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/royal-opera-house/

AWS Case Study: Coursera [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/coursera/

Foursquare Case Study [Electronic resource]. – Mode of access: https://aws.amazon.com/solutions/case-studies/foursquare/

AWS Identity and Access Management (IAM) [Electronic resource]. – Mode of access: https://aws.amazon.com/iam/

AWS Key Management Service (KMS) [Electronic resource]. – Mode of access: https://aws.amazon.com/kms/

AWS Trusted Advisor [Electronic resource]. – Mode of access: https://aws.amazon.com/premiumsupport/trustedadvisor/

Amazon Cognito [Electronic resource]. – Mode of access: https://aws.amazon.com/cognito/




DOI: https://doi.org/10.32620/oikit.2018.81.12

Refbacks

  • There are currently no refbacks.