Overview
Baidu AI Cloud Object Storage (BOS) delivers robust security features, including server-side encryption, client-side encryption, anti-hotlinking allowlists, seamless pre-configuration options, fine-grained permission controls, log auditing, compliance retention policies (WORM), multi-availability zone (AZ) redundant storage, and cross-region data backup with disaster recovery. These features comprehensively safeguard your cloud data, ensuring enterprise-grade security and compliance.
First cloud service provider
Baidu AI Cloud seamlessly incorporates compliance principles into both its cloud platform framework and the design of its cloud product services, striving to create a secure and reliable cloud ecosystem for its users.
- ISO 27032: An internationally recognized cybersecurity guideline designed to address risks across four critical domains of key information infrastructure protection and provide reference measures for risk control. Baidu AI Cloud is the first domestic cloud service provider with this certification;
- ISO 29151: An internationally recognized guideline for personal identity information protection, aiming to fully control risks and ensure the security of the personal identity information (PII) lifecycle. Baidu AI Cloud is the first domestic cloud service provider with this certification;
- ISO 27017: A practical standard specifically for information security control measures in cloud computing services. Baidu AI Cloud is the first domestic cloud service provider with this certification;
- ISO 27018: The first international standard requiring and guiding public cloud service providers to protect cloud users' personal information security. Baidu AI Cloud is the first domestic cloud service provider with this certification;
- BS 10012: The world's first personal information protection management system standard. The BS 10012 revised according to GDPR requirements mandates enterprises to comply with personal information management system standards while provide implementable tools. Baidu AI Cloud is the first cloud service provider in China to achieve BS 10012 certification

Authoritative certification overview
Baidu AI Cloud Object Storage (BOS) has achieved trusted cloud certification for five consecutive years and was among the first products in China to pass the object storage standard evaluation by the China Academy of Telecommunication Research under MIIT. Furthermore, BOS has garnered several accolades, including the Cloud Computing Excellence Product Award from the China Open Source Cloud League. Baidu AI Cloud Object Storage (BOS) holds the following certifications:



BOS security capability development
Baidu AI Cloud Object Storage (BOS) offers a wide range of features such as access control, data encryption, monitoring and auditing, data disaster recovery, compliance retention, and data security, ensuring compliant and secure data storage from various perspectives.
| Security function | Description |
|---|---|
| [Access Control](BOS/Security and compliance/Access control.md) | BOS provides tools like access control lists (ACL) for read-write permissions, authorization policies, anti-hotlinking allow lists, and more for managing and controlling access to storage resources. |
| [Data Encryption](BOS/Security and compliance/Data encryption.md) | BOS supports both server-side and client-side encryption, as well as HTTPS encryption transmission via SSL/TLS, effectively reducing potential security risks to cloud data. |
| [Monitoring and Audit](BOS/Security and compliance/Monitoring and Audit.md) | BOS includes features for storing and querying access logs, meeting enterprise needs for data monitoring and auditing. |
| [Data Disaster Recovery](BOS/Security and compliance/Data Disaster Recovery.md) | BOS offers intra-city redundant storage and cross-region replication (CRR), ensuring data center disaster recovery at both regional and cross-regional levels. |
| [Data Retention Compliance](BOS/Security and compliance/Data Retention Compliance.md) | BOS supports Write Once Read Many (WORM), allowing users to store and use data in a way that prevents deletion or modification, meeting compliance needs for industries like finance, insurance, and healthcare. |
| [Data Protection](BOS/Security and compliance/Data protection.md) | BOS includes versioning and a recycle bin feature. Once versioning is enabled, it keeps historical versions of overwritten or deleted data. In cases of accidental overwrites or deletions, you can restore data to any historical version, effectively protecting against data loss or tampering. If the recycle bin is enabled, any accidentally deleted data can easily be recovered. |
