CISA has released comprehensive guidance for securing communications infrastructure, following recent cybersecurity incidents attributed to actors from the People's Republic of China.
CSPs must take steps to implement these security measures effectively in cloud environments.
Amazon Web Services (AWS) capabilities can be used to implement CISA's guidance while benefiting from the advantages of the cloud.
Shared responsibility is paramount when AWS customers operate in the public cloud.
AWS manages the security of infrastructure and handles undifferentiated heavy lifting of infrastructure security.
AWS security services include threat intelligence, automation, micro-segmentation, access control, and more.
AWS cryptographic services, such as AWS KMS, AWS CloudHSM, and AWS Certificate Manager, help secure data in transit and at rest.
AWS provides the tools to implement the CISA security controls effectively while maintaining operational efficiency.
Detailed mapping between the CISA guidance and AWS security controls and best practices can be found on their GitHub page.
Amazon Web Services offers CSPs a comprehensive solution that provides security for cloud-based communications infrastructure, without compromising on speed or flexibility.