Conclusion - Amazon Web Services: Risk and Compliance

This whitepaper is for historical reference only. Some content might be outdated and some links might not be available.

Conclusion

Providing highly secure and resilient infrastructure and services to our customers is a top priority for AWS. Our commitment to our customers is focused on working to continuously earn customer trust and ensure customers maintain confidence in operating their workloads securely on AWS. To achieve this, AWS has integrated risk and compliance mechanisms that include:

  • The implementation of a wide array of security controls and automated tools

  • Continuous monitoring and assessment of security controls to help ensure AWS operational effectiveness and strict adherence to compliance regimes

  • Independent risk assessment by the AWS Business Risk Management program

  • Operational and business management mechanisms

In addition, AWS regularly undergoes independent third-party audits to provide assurance that the control activities are operating as intended. These audits, along with the many certifications AWS has obtained, provide an additional level of validation of the AWS control environment that benefit customers.

Taken together with customer-managed security controls, these efforts allow AWS to securely innovate on behalf of customers and help customers improve their security posture when building on AWS.