Home/Glossary/Shared Responsibility Model

Shared Responsibility Model

A framework that outlines which security tasks the cloud provider handles versus what the customer must secure.

Cloud Security

Cloud vendors secure the infrastructure; customers secure the data, configurations, and user access.

Typical split

  • Provider responsibilities: Physical data centers, networking, hypervisor, core services like compute and storage.
  • Customer responsibilities: Identity and access management, data protection, workload configuration, compliance with industry regulations.

Why teams stumble

  • Assuming managed services are secure-by-default.
  • Failing to harden default IAM roles or storage buckets.
  • Overlooking logging and monitoring in shared environments.