Blog The Analysis

Data Protection and Control, AWS’ Commitment to European Customers

Digital data security and protection are among the hottest and most talked about topics in the last year. Digital information storage offers significant benefits when it comes to security, but it is also governed by multiple regulations and compliance.
It therefore becomes necessary for Cloud Providers that manage large amounts of data and sensitive information to gain the trust of customers.

Amazon Web Services, a leading cloud provider , allows you to manage data privacy controls, how it is used, and determine who has access to it and how it is encrypted.
With the help of AWS , you can meet key EU data privacy security and compliance requirements, such as handling data subject requests, managing personal data breach notifications, performing data protection impact assessments, and setting up technical and organizational measures in relation to the processing of your data.

AWS Customer Obsession

brings the Cloud Provider to the forefront of any initiative that can reassure and support different businesses in various parts of the world. Among these initiatives there is also the European
Gaia-x
project, which aims to draw up common objectives for a data infrastructure at European level.
Over 100 European companies and 17 research countries are already part of the initiative, and other European and international players will be invited to take part in the project. Not only Gaia-x, but AWS is also compliant with Cloud Infrastructure Services in Europe (CISPE), European Commission Standard Contractual Clauses (CCS), the SWIPO Code of Conduct Infrastructure as a Service (IaaS).

How does AWS protect EU customer data?

Data control. AWS offers services such as Identity and Access Management (IAM) that allow you to securely manage access to services and resources within the AWS Cloud. In addition, services such asCloudTrail and Amazon Macie enable governance, compliance, detection, and auditing, or CloudHSM and Key Management Service allow you to securely generate and manage encryption keys.

Security. At AWS, security is a shared responsibility between the Cloud Provider and the customer. In addition to comprehensive services Amazon GuardDuty or AWS Nitro System, AWS boasts internationally recognized standards such as Cloud Computing Compliance Controls Catalog (C5) and Esquema Nacional de Seguridad (ENS) and type certifications PCI-DSS, Hébergement de Données de Santé(HDS, France) and TISAX (EU Automotive) that meet compliance requirements for regulatory agencies across the European Union.

Data sovereignty. Amazon Web Services‘ global network allows you to choose to store data in one or more of the European Regions, including France, Germany, Ireland, Italy, Sweden, and Spain, starting in 2022. AWS allows you to use its services with the assurance that your customer data will remain in the selected Region. Only a limited number of Amazon services provide data transfer , and the systems are designed to prevent AWS personnel from accessing customer data remotely for any purpose.
Data privacy. AWS is increasing the level of privacy protection with services that enable you to implement privacy controls, including advanced access control, encryption , and logging. AWS only processes customer data in accordance with the instructions documented and shared by the customer, using and sharing content only with consent (as described in the AWS Customer Agreement and AWS GDPR Data Processing Addendum).

Interested in learning more about data security on AWS?

Author

Maria Grazia

Leave a comment

Your email address will not be published. Required fields are marked *

This site is registered on wpml.org as a development site. Switch to a production site key to remove this banner.