Enhanced Security and Scalability in Cloud Architectures Using AWS KMS and Lambda Authorizers: A Novel Framework
Keywords:
cloud security, AWS KMS, Lambda Authorizer, serverless computingAbstract
Increasing concerns regarding security and scalability for rapid adoption of cloud native application which required advance architectural solutions. The objective research paper is to present a framework that integrates AWS Key Management Service (KMS) with Lambda Authorizers and Web Application Firewall (WAF) techniques which helps in enhancing security while ensuring efficient scalability in serverless environments.
Downloads
References
A. Shankar, "Cloud Computing Security Issues and Challenges: A Survey," International Journal of Computer Applications, vol. 24, no. 4, pp. 42-51, Aug. 2011.
C. A. Ardagna, M. Cremonini, and E. Damiani, "Security in Cloud Computing: A Survey," International Journal of Computer Science and Information Security, vol. 9, no. 6, pp. 108-121, 2011.
C. P. Stoll, "AWS Security Best Practices," Cloud Security Alliance, 2020.
N. M. Choudhury, M. H. Bhuiyan, and M. R. Islam, "A Survey on Security in Serverless Computing," Proceedings of the 4th International Conference on Computing, Communication, and Networking Technologies, Aug. 2020, pp. 180-186.
D. A. Anderson and A. G. Brown, "Securing Serverless Architectures: A Cloud-Centric Approach," IEEE Cloud Computing, vol. 7, no. 5, pp. 24-34, 2020.
J. Wang, Y. Zheng, and X. Liao, "A Review of Serverless Computing Security Risks and Solutions," IEEE Access, vol. 9, pp. 4906-4920, Jan. 2021.
Amazon Web Services, "AWS Key Management Service," AWS Whitepaper, 2021.
H. Goudarzi and M. Maleki, "Security Analysis in Cloud Environments," Journal of Cloud Computing: Advances, Systems and Applications, vol. 6, no. 1, pp. 13-30, Mar. 2019.
E. S. Cruz, F. M. C. Lima, and S. M. Lima, "Lambda Functions in AWS: Scalability and Security Insights," International Journal of Computer Science and Network Security, vol. 19, no. 6, pp. 72-80, June 2019.
J. W. Rittinghouse and J. F. Ransome, Cloud Computing: Implementation, Management, and Security, 2nd ed. CRC Press, 2017.
M. D. Y. Cheng, "An Introduction to Web Application Firewall (WAF) Technology," Journal of Information Security and Applications, vol. 35, pp. 56-62, Sept. 2017.
Z. Li and P. Zhang, "Cloud Service Models: A Survey on Security and Privacy Concerns," Cloud Computing, vol. 11, no. 2, pp. 45-52, July 2019.
M. G. Schwartz, "Security Mechanisms in AWS: Leveraging KMS and Lambda for Cloud Security," Journal of Cloud Security, vol. 4, no. 3, pp. 102-111, Apr. 2020.
P. Wu and Y. Zhang, "Serverless Security: Challenges and Future Directions," Proceedings of the IEEE International Conference on Cloud Computing, 2021, pp. 125-130.
C. J. Erwin, "Enhancing Security in Serverless Architectures with Lambda Functions," IEEE Cloud Computing, vol. 8, no. 3, pp. 56-64, June 2021.
R. K. Gupta, "Practical Threat Mitigation Strategies in Cloud: Using AWS WAF," International Journal of Information Security and Privacy, vol. 13, no. 1, pp. 14-27, Jan. 2021.
X. Zhang and T. Zhang, "Access Control for Serverless Cloud Environments: Using Lambda Authorizers," IEEE Transactions on Cloud Computing, vol. 9, no. 4, pp. 1091-1102, Dec. 2020.
M. D. Thomas and S. K. Patel, "Security and Privacy Challenges in Serverless Architectures," IEEE Cloud Computing, vol. 6, no. 8, pp. 82-89, Oct. 2018.
P. M. Amiri, "Cloud Computing Security Best Practices: A Guide to Securing Your Infrastructure," Springer International Publishing, 2019.
S. M. Khorasani and M. I. K. Al-Fuqaha, "A Survey of Web Application Firewalls: Architectures, Features, and Challenges," International Journal of Web and Grid Services, vol. 10, no. 3, pp. 224-239, 2020.