EXPLORING SERVERLESS SECURITY: IDENTIFYING SECURITY RISKS AND IMPLEMENTING BEST PRACTICES

Ramasankar Molleti, Anirudh Khanna · INTERANTIONAL JOURNAL OF SCIENTIFIC RESEARCH IN ENGINEERING AND MANAGEMENT · 2025

FaaS or Serverless computing extends the existing cloud computing by removing or abstracting the notion of a server and the need to scale up and down on demand. This paper seeks to discuss the security issues that are associated with serverless architecture, with special focus on authentication, data encryption, compliance issues and those risks that are unique to different vendors. It compares existing security architectures and measures and current industry benchmarks originating from premier cloud platforms such as AWS Lambda, Azure Functions, Google Cloud Functions. Some of the critical risks including injection attacks, insecure deployments, and operational monitoring have similar threat proneness models accompanied by secure coding, IAM integration, DevOps rules, and recommendations. Keywords - DevOps, IAM, Serverless Architectures, injection attacks, monitoring, FaaS.

Read the paper · More papers on PaperTik