[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"detail-sidebar-cat-1-en-105":3,"doc-seo-189313-105":53,"doc-detail-189313-en":127},{"code":4,"msg":5,"data":6},0,"success",[7,14,19,24,29,34,39,44,49],{"id":8,"doc_module":9,"doc_module_name":10,"category_name":11,"show_sort_weight":12,"slug":13},11,1,"Template","Presentations",90,"presentations",{"id":15,"doc_module":9,"doc_module_name":10,"category_name":16,"show_sort_weight":17,"slug":18},12,"Resumes",80,"resumes",{"id":20,"doc_module":9,"doc_module_name":10,"category_name":21,"show_sort_weight":22,"slug":23},14,"Invoices",70,"invoices",{"id":25,"doc_module":9,"doc_module_name":10,"category_name":26,"show_sort_weight":27,"slug":28},15,"Posters",60,"posters",{"id":30,"doc_module":9,"doc_module_name":10,"category_name":31,"show_sort_weight":32,"slug":33},16,"Social Media",50,"social-media",{"id":35,"doc_module":9,"doc_module_name":10,"category_name":36,"show_sort_weight":37,"slug":38},17,"Forms",40,"forms",{"id":40,"doc_module":9,"doc_module_name":10,"category_name":41,"show_sort_weight":42,"slug":43},18,"Letters",30,"letters",{"id":45,"doc_module":9,"doc_module_name":10,"category_name":46,"show_sort_weight":47,"slug":48},21,"Paper Templates",5,"papers-templates",{"id":50,"doc_module":9,"doc_module_name":10,"category_name":51,"show_sort_weight":4,"slug":52},158,"General","general-158",{"code":4,"msg":54,"data":55},"ok",{"site_id":56,"language":57,"slug":58,"title":59,"keywords":60,"description":61,"schema_data":62,"social_meta":120,"head_meta":122,"extra_data":124,"updated_unix":126},105,"en","the-shared-responsibility-model-in-cloud-computing","The Shared Responsibility Model in Cloud Computing","","This document meticulously details the shared responsibility model across different cloud service models: On-premise, Infrastructure as a Service (IaaS), Platform as a Service (PaaS), and Software as a Service (SaaS). It breaks down the key responsibilities for Data, Application, Platform, Infrastructure, and Physical layers, indicating whether they are handled by the Cloud Service Provider (CSP), the Cloud Service Consumer (CSC), or are shared. The document also elaborates on the critical aspect of \"Cloud Visibility,\" exploring the \"Who, Why, When, and How\" of effective cloud management. It outlines the components that contribute to cloud visibility, including Network, Compliance and Control Plane Management, Applications and Databases, and Virtual Environments (VMs and Containers). Furthermore, it presents comparative tables illustrating cloud governance approaches across major providers like IBM, AWS, GCP, and Azure, highlighting their frameworks for establishing, enforcing, and overseeing cloud usage guidelines. A comprehensive comparison of incident response frameworks from NIST, SANS, ISO/IEC, and CSA CIR is also provided, detailing stages such as Preparation, Detection and Analysis, Containment, Eradication, Recovery, and Post-incident activities. Finally, the document defines common cloud security threats, including attacks on buckets, exploitation of OAuth tokens, and abuse of cloud resources.",{"@graph":63,"@context":119},[64,80,102],{"@type":65,"itemListElement":66},"BreadcrumbList",[67,71,74,77],{"item":68,"name":69,"@type":70,"position":9},"https://docshare.wps.com","Home","ListItem",{"item":72,"name":10,"@type":70,"position":73},"https://docshare.wps.com/template/",2,{"item":75,"name":51,"@type":70,"position":76},"https://docshare.wps.com/template/general/",3,{"item":78,"name":59,"@type":70,"position":79},"https://docshare.wps.com/template/the-shared-responsibility-model-in-cloud-computing/189313/",4,{"url":78,"name":59,"@type":81,"image":82,"author":87,"headline":59,"publisher":90,"fileFormat":93,"inLanguage":57,"description":61,"dateModified":94,"datePublished":95,"encodingFormat":93,"isAccessibleForFree":96,"interactionStatistic":97},"DigitalDocument",{"url":83,"@type":84,"width":85,"height":86},"https://docshare.wps.com/thumbnails/the-shared-responsibility-model-in-cloud-computing/189313.png","ImageObject",442,249,{"name":88,"@type":89},"Aria","Person",{"url":68,"name":91,"@type":92},"DocShare","Organization","application/pdf","2026-09-29","2026-09-03",true,{"@type":98,"interactionType":99,"userInteractionCount":101},"InteractionCounter",{"@type":100},"ViewAction",7,{"@type":103,"mainEntity":104},"FAQPage",[105,111,115],{"name":106,"@type":107,"acceptedAnswer":108},"What is the shared responsibility model in cloud computing?","Question",{"text":109,"@type":110},"The shared responsibility model defines which security tasks are handled by the cloud provider and which are handled by the customer. Responsibilities vary depending on the service model used (IaaS, PaaS, SaaS).","Answer",{"name":112,"@type":107,"acceptedAnswer":113},"What are the key components of cloud visibility?",{"text":114,"@type":110},"Cloud visibility involves understanding the \"Who, Why, When, and How\" of cloud operations. Key components include network monitoring, compliance management, application and database oversight, and visibility into virtual environments like VMs and containers.",{"name":116,"@type":107,"acceptedAnswer":117},"What are some common cloud security threats mentioned?",{"text":118,"@type":110},"Common cloud security threats include unauthorized access to data stored in object storage buckets, exploitation of OAuth tokens, and the abuse of cloud services for unauthorized purposes such as storage or data processing.","https://schema.org",{"og:url":78,"og:type":121,"og:title":59,"og:site_name":91,"og:description":61},"article",{"robots":123,"canonical":78},"index,follow",{"doc_id":125,"site_id":56},189313,1788395919,{"code":4,"msg":5,"data":128},{"doc_id":125,"user_id":129,"nickname":88,"user_avatar":130,"doc_module":9,"category_id":50,"category_name":51,"doc_title":59,"doc_description":61,"doc_content":131,"file_id":132,"file_url":133,"file_type":134,"file_size":135,"view_count":101,"is_deleted":4,"is_public":9,"is_downloadable":9,"audit_status":9,"page_count":15,"language":136,"language_code":57,"site_id":56,"html_lang":57,"table_of_contents":137,"faqs":138,"seo_title":139,"seo_description":61,"update_tm":126,"read_time":79},2336464648322,"https://ap-avatar.wpscdn.com/avatar/2200025388227c56fec?_k=1778556882303663488","| IBM | AWS | GCP | Azure |\n| --- | --- | --- | --- |\n| Cloud governance is an | Cloud governance ena- | Effective gov- | Governance pro- |\n| agreed framework that | bles customers to de- | ernance is es- | vides mechanisms |\n| consists of establishing, | fine the security, cost | sential to en- | and processes to |\n| enforcing and oversee- | and ongoing oversight | sure the relia- | maintain control |\n| ing the activities and | requirements of their | bility, security | over applications |\n| guidelines that are re- | cloud journey and en- | and maintaina- | and resources |\n| quired as part of the | sures that processes are | bility of assets. | through strategic |\n| rules of conduct for | consistently optimized | [16] | planning and priori- |\n| cloud use. [14] | and followed. [15] |  | tization. [17] |\n\n| Standard | NIST Special Publication 800-61 | SANS Incident Handler's | ISO/IEC 27035- 2:2016 | CSA CIR\u003Cbr>Framework |\n| --- | --- | --- | --- | --- |\n| Component stages | Preparation | Preparation | Planning and preparation | Preparation |\n|  | Detection and analysis | Identification | Identification, detection and report | Detection and analysis |\n|  | Containment, eradication and recovery | Containment | Assessment and decision | Containment, eradication and restoration |\n|  | Post-incident activities | Eradication | Response | Post-mortem |\n|  |  | Recovery | Lessons learned |  |\n|  |  | Lessons learned |  |  |\n\n| -Attacks on buckets | The attempt to gain unauthorized access to the data stored inan object storage bucket (Amazon S3, Google Cloud Storage or Microsoft Azure Blob Storage) |\n| --- | --- |\n| -Exploitation of OAuth tokens | The attempt to gain unauthorized access to resources protected by the OAuth (Open Authorization) system |\n| -Abuse of resources | The unauthorized use of cloud services such as storage, data processing |","cbCaivNUF8ETazL8","https://ap.wps.com/l/cbCaivNUF8ETazL8","pdf",325096,"English","# Cloud Service Models and Responsibilities\n## On-premise\n## IaaS\n## PaaS\n## SaaS\n# Cloud Visibility\n## Who, Why, When, How\n## Components of Cloud Visibility\n# Cloud Governance\n## Provider Comparison\n# Cloud Security Threats","[{\"question\":\"What is the shared responsibility model in cloud computing?\",\"answer\":\"The shared responsibility model defines which security tasks are handled by the cloud provider and which are handled by the customer. Responsibilities vary depending on the service model used (IaaS, PaaS, SaaS).\"},{\"question\":\"What are the key components of cloud visibility?\",\"answer\":\"Cloud visibility involves understanding the \\\"Who, Why, When, and How\\\" of cloud operations. Key components include network monitoring, compliance management, application and database oversight, and visibility into virtual environments like VMs and containers.\"},{\"question\":\"What are some common cloud security threats mentioned?\",\"answer\":\"Common cloud security threats include unauthorized access to data stored in object storage buckets, exploitation of OAuth tokens, and the abuse of cloud services for unauthorized purposes such as storage or data processing.\"}]","The Shared Responsibility Model in Cloud Computing | PDF"]