Securing Amazon Web Services with Zero Trust Architecture

dc.contributorAalto-yliopistofi
dc.contributorAalto Universityen
dc.contributor.advisorLund, Thomas
dc.contributor.authorJaiswal, Shweta
dc.contributor.schoolPerustieteiden korkeakoulufi
dc.contributor.supervisorJiang, Yuming
dc.date.accessioned2025-01-12T17:30:53Z
dc.date.available2025-01-12T17:30:53Z
dc.date.issued2024-07-31
dc.description.abstractSecuring cloud infrastructure has become a crucial priority for organizations worldwide in the rapidly evolving technological landscape. As businesses increasingly depend on cloud-based systems, safeguarding sensitive information against potential threats is essential. AWS is one of the public cloud providers offering various services for organizations. Despite its widespread adoption, AWS faces significant security challenges, evidenced by notable breaches such as the Capital One and Imperva incidents. These breaches underscore the need for proactive security measures to address the security challenges in AWS. Traditional security models, such as perimeter-based or trust-based, are insufficient for protecting AWS environments due to the dynamic nature of cloud resources and the porous network perimeters. ZTA provides a more robust approach by operating under the assumption that threats can originate inside and outside the network. It advocates for granular access controls, micro-segmentation, and continuous authentication and authorization to minimize the attack surface and prevent lateral movement within the network. This thesis focuses on enhancing the security of AWS using ZTA. It comprehensively reviews the state-of-the-art techniques for implementing ZTA tenets and addresses AWS security challenges. It offers insights and solutions to enhance AWS security through the adoption of ZTA principles. Furthermore, it presents a Proof-of-Concept (POC) implementation of a ZTA system to securely manage AWS resources. The POC implementation was conducted in collaboration with Sikt - The Norwegian Infrastructure Provider for Research and Education.en
dc.format.extent92
dc.format.mimetypeapplication/pdfen
dc.identifier.urihttps://aaltodoc.aalto.fi/handle/123456789/132846
dc.identifier.urnURN:NBN:fi:aalto-202501121141
dc.language.isoenen
dc.programmeMaster’s Programme in Security and Cloud Computing (SECCLO)fi
dc.programme.majorSecurity and Cloud Computingfi
dc.programme.mcodeSCI3113fi
dc.subject.keywordZero Trust architecureen
dc.subject.keywordAmazon Web Services Securityen
dc.subject.keywordcloud securityen
dc.subject.keywordZTA implementationen
dc.subject.keywordZTA challengesen
dc.titleSecuring Amazon Web Services with Zero Trust Architectureen
dc.typeG2 Pro gradu, diplomityöfi
dc.type.ontasotMaster's thesisen
dc.type.ontasotDiplomityöfi
local.aalto.electroniconlyyes
local.aalto.openaccessyes

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
master_Jaiswal_Shweta_2024.pdf
Size:
2.36 MB
Format:
Adobe Portable Document Format