Secure content delivery provides content, such as data, videos, applications, and APIs, quickly and securely to customers. These should be delivered over secure transport, using the recommended version of Transport Layer Security (TLS) to encrypt communications between endpoints. If necessary, there are a number of methods that you can use to help secure that same content through restricted access, including signed URLs, signed cookies, and token authentication.
Amazon CloudFront
To create a more secure CDN, organizations can gain protection against L3/L4 DDoS attacks
using AWS Shield
CloudFront offers security capabilities, including field-level encryption and HTTPS support,
seamlessly running with AWS Shield Advanced, AWS WAF, and Amazon Route 53