Skip to content
Open access

SecureSphere: A Cloud-Native Big Data Security Framework Using AWS Key Management Service for Amazon S3

Jul 2026 · International Research Journal on Advanced Engineering Hub (IRJAEH) · 0 citations · 14 references

Abstract

The exponential growth of big data coupled with the rapid transition to public cloud storage has created major concerns regarding data confidentiality and integrity. Unsecured cloud storage buckets are vulnerable to unauthorized access and severe compliance violations. This paper presents SecureSphere, a cloud-native security framework designed to protect big data at rest within Amazon Simple Storage Service (S3) by integrating AWS Key Management Service (KMS). We propose a centralized key management and envelope encryption model where S3 objects are encrypted dynamically using data keys generated and managed by AWS KMS. Access to the cryptographic keys and stored assets is governed by strict AWS Identity and Access Management (IAM) policies. By enforcing automated key rotation, comprehensive audit logging via AWS CloudTrail, and department-level folder isolation, SecureSphere provides a robust security blueprint. Experimental results demonstrate that the proposed framework achieves regulatory compliance with negligible administrative overhead and near-zero encryption latency, making it highly suitable for large-scale enterprise deployments.

Read PDF