ChaptersCircleEventsBlog

Download Publication

How to Design a Secure Serverless Architecture - Chinese Translation
How to Design a Secure Serverless Architecture - Chinese Translation
Who it's for:
  • application developers  
  • security professionals  
  • CISOs  
  • system and security administrators  
  • information system security officers  

How to Design a Secure Serverless Architecture - Chinese Translation

Release Date: 02/07/2022

Working Group: Serverless

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translated content falls outside of the CSA Research Lifecycle. For any questions and feedback, contact research@cloudsecurityalliance.org.

Like any solution, serverless computing brings with it a variety of cyber risks. This paper provides best practices and recommendations for securing serverless applications. It offers an extensive overview of the different threats, focusing on the application owner risks that serverless platforms are exposed to and suggesting the appropriate security controls.

The document assumes that the readers have some knowledge of coding practices, security and networking expertise, and application containers, microservices, functions, and agile application development.

Key Takeaways: 

  1. What is Serverless
  2. Advantages and benefits of serverless architecture
  3. Shared responsibility model for serverless
  4. Security design, controls and best practices
  5. Kubernetes security best practices 
  6. CI-CD pipelines, Function Code, Code scans and policy enforcement for Functions and Containers    
  7. Compliance and governance for serverless
Download this Resource

Prefer to access this resource without an account? Download it now.

Bookmark
Share
View translations
Related resources
Shadow Access and AI
Shadow Access and AI
Zero Trust Guidance for Small and Medium Size Businesses (SMBs) - Japanese Translation
Zero Trust Guidance for Small and Medium Size B...
AI Organizational Responsibilities: AI Tools and Applications
AI Organizational Responsibilities: AI Tools an...
Unlocking the Distillation of AI and Threat Intelligence Models
Unlocking the Distillation of AI and Threat Intelligence Models
Published: 04/23/2025
Secure Vibe Coding Guide
Secure Vibe Coding Guide
Published: 04/09/2025
A Guide On How AI Pilot Programs are Shaping Enterprise Adoption
A Guide On How AI Pilot Programs are Shaping Enterprise Adoption
Published: 03/28/2025
Threat Modeling OpenAI's Responses API with the MAESTRO Framework
Threat Modeling OpenAI's Responses API with the MAESTRO Framework
Published: 03/24/2025
Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?

Related Certificates & Training