

# Security foundations
<a name="security-foundations"></a>


|  MIDASEC01: How do you verify governance and compliance with security standards?  | 
| --- | 
|   | 

 Manufacturing customers face unique challenges in securing workloads due to the convergence of IT and OT. Security in this environment must account for legacy protocols, isolated control systems, and real-time operational constraints. The following best practices provide guidance to implement robust governance, maintain compliance, and operate securely on AWS. 

**Topics**
+ [MIDASEC01-BP01 Create a security Shared Responsibility Model](midasec01-bp01.md)
+ [MIDASEC01-BP02 Standardize security baseline and implement role-based access controls](midasec01-bp02.md)
+ [MIDASEC01-BP03 Secure machine-to-machine and human-to-machine access](midasec01-bp03.md)
+ [MIDASEC01-BP04 Automate monitoring and reporting with cloud-ready compliance tools](midasec01-bp04.md)
+ [MIDASEC01-BP05 Implement incident response playbooks](midasec01-bp05.md)
+ [MIDASEC01-BP06 Establish a communication protocol between IT and OT systems](midasec01-bp06.md)