SecureSphere: A Cloud-Native Big Data Security Framework Using AWS Key Management Service for Amazon S3
DOI:
https://doi.org/10.47392/IRJAEH.2026.0620Keywords:
Big Data Security, Cloud Computing, AWS KMS, Amazon S3, Key Management, Envelope Encryption, Regulatory ComplianceAbstract
The exponential growth of big data coupled with the rapid transition to public cloud storage has created major concerns regarding data confidentiality and integrity. Unsecured cloud storage buckets are vulnerable to unauthorized access and severe compliance violations. This paper presents SecureSphere, a cloud-native security framework designed to protect big data at rest within Amazon Simple Storage Service (S3) by integrating AWS Key Management Service (KMS). We propose a centralized key management and envelope encryption model where S3 objects are encrypted dynamically using data keys generated and managed by AWS KMS. Access to the cryptographic keys and stored assets is governed by strict AWS Identity and Access Management (IAM) policies. By enforcing automated key rotation, comprehensive audit logging via AWS CloudTrail, and department-level folder isolation, SecureSphere provides a robust security blueprint. Experimental results demonstrate that the proposed framework achieves regulatory compliance with negligible administrative overhead and near-zero encryption latency, making it highly suitable for large-scale enterprise deployments.
Downloads
Downloads
Published
Issue
Section
License
Copyright (c) 2026 International Research Journal on Advanced Engineering Hub (IRJAEH)

This work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License.
.