From the course: Securing Software as a Service (SaaS)

Unlock the full course today

Join today to access over 24,600 courses taught by industry experts.

Shared responsibility model

Shared responsibility model

- You have a role in securing the SaaS environments and workloads your organization consumes. Some people think SaaS organizations own the entire application stack. This simply isn't true. AWS, GCP, and Azure make it easy and explicitly define the boundaries of their ownership and, in turn, provide clarity and expectations for security. Big-name SaaS providers will publish an SLA with roles and responsibilities as it relates to their service. And in most cases, the roles and responsibilities will follow a shared responsibility model. In a shared responsibility model, the SaaS provider and you, the consumer, share responsibility of the security for various components that make up the service. Think about your social media account or the cloud your phone saves data to. You don't have any access to the data center, infrastructure, networking equipment, or operating system the application is hosted on. You do, however…

Contents