With AWS, you have full control of your data, including who can access it, where and how it's stored and secured, as well as how you meet data sovereignty needs. We will only process your data in accordance with documented instructions.
We are transparent about how our services process data uploaded to your AWS account. Our capabilities can help you encrypt, delete, and monitor the processing of customer data.
This is based on the AWS Shared Responsibility Model and the AWS customer agreement. The privacy features of AWS services provide additional granularity.
Resources
Data Privacy FAQ: Common questions around data privacy on AWS.
AWS Participation in Gaia-X: An EU initiative helping to define standards for the next generation of data infrastructure.
Data Residency Guardrails in AWS Control Tower: A simplified way to translate data residency requirements into controls for single and multi-account environments.
AWS Customer Agreement: The terms and conditions that govern access to and use of service offerings.
Privacy Features of AWS Services: The key privacy features of AWS services which can be used to perform data transfer assessments in accordance with the Schrems II decision of the Court of Justice of the European Union, and the European Data Protection Board Recommendations on measures that supplement transfer tools.
CISPE Data Protection Code of Conduct: The CISPE Code assures organizations that their cloud infrastructure service provider meets the requirements applicable to a data processor under the GDPR.
AWS Nitro System: A combination of dedicated hardware and lightweight hypervisors enabling confidential computing, by which operator access is restricted.