All Articles

All Articles
Cloud Security Alliance Releases Guidance on Microservices Architectural Pattern for a Repeatable Approach to Architecting, Deploying Secure Systems

Press Release Published: 08/31/2021

Document designed to help application developers, architects develop a vendor-neutral reference architecture foundationSEATTLE – Aug. 31, 2021 – The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining and raising awareness of best practices to help ensure a secur...

MPA Best Practice Guidelines Name RBI as Implementation Guidance Infrastructure for Web Filtering and Usage Control

Blog Published: 08/27/2021

This blog was originally published by Ericom Software here.Written by Peter Fell, Group CTO, EME, Ericom Software. What Every TPN Vendor Should Know About Remote Browser Isolation In a recent important addition to the Motion Picture Association (MPA) Content Security Program, MPA Best Practic...

What is the MITRE ATT&CK Framework for Cloud? | 10 TTPs You Should Know Of

Blog Published: 08/26/2021

This blog was originally published by Sysdig here.Written by Stefano Chierici, Sysdig.MITRE ATT&CK framework for cloud will help you identify the possible threats related to a cloud environment and begin securing your cloud infrastructure.MITRE ATT&CK is a well-known comprehensive knowled...

CSA CxO Trust Initiative: Understanding the Priorities of the C-Suite

Blog Published: 08/25/2021

CSA’s CxO Trust Initiative is a broad-based, forward-looking initiative to elevate the knowledge of cloud computing and cybersecurity. Its core mission is to help Chief Information Security Officers (CISOs) better understand the priorities of their peers within the C-Suite and effectively communi...

The Future of Work is Hybrid – Is Your Security Ready?

Blog Published: 08/25/2021

This blog was originally published by Bitglass here.Written by Jonathan Andresen, Bitglass.It wasn’t that long ago that most of us used to work in an office. Fifteen months into the global COVID pandemic it’s now certain that the future will not be a full return to the office or a continuation of...

What are the Most Common Cloud Computing Service Delivery Models?

Blog Published: 08/24/2021

This blog was originally published by Alert Logic here.Written by Angelica Torres-Corral, Alert Logic.Cloud computing has transformed the way companies use technology, and your organization stands to gain a lot from migrating to a cloud solution. But which service delivery model is right for you...

Cloud Security Alliance Welcomes Inaugural Members of the CxO Trust Advisory Council

Press Release Published: 08/24/2021

Members will contribute to, advise on the overall strategy and roadmap of CxO Trust and CxO Working GroupSEATTLE – Aug. 24, 2021 – The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud ...

Why IaaS Security Should be a Priority

Blog Published: 08/20/2021

This blog was originally published by Bitglass here. Written by Jonathan Andresen, Bitglass. Why are CIOs and IT organizations prioritizing investment in cloud infrastructure? The answer is simple: to better support virtual workforces, supply chains, and partners. Getting the most value out of le...

STAR Testimonial: CSA STAR + SOC2 - From Readiness to Attestation

Blog Published: 08/20/2021

CSA’s STAR Attestation is the first cloud-specific attestation program designed to quickly assess and understand the types and rigor of security controls applied by cloud service providers. This is a collaboration between CSA and the AICPA to provide guidelines for CPAs to conduct SOC2 engageme...

Five Recommendations for Securing Cloud Containers

Blog Published: 08/19/2021

Written by the members of the Security Guidance Working Group. This blog came from Domain 8 of the CSA Security Guidance for Cloud Computing v4.Understanding the impacts of virtualization on security is fundamental to properly architecting and implementing cloud security. In this blog, we will be...

Cloud Security Alliance’s STAR Registry Now Accepting Version 4 of CAIQ

Press Release Published: 08/19/2021

SEATTLE – Aug. 19, 2021 – The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, is pleased to announce that cloud service providers (CSPs) are now able to submit ...

Secure Containers and Microservices Series

Blog Published: 08/18/2021

Last updated: September 1, 2021CSA Application Containers and Microservices Working Group’s Secure Containers and Microservices SeriesApplication containers and a microservices architecture, as defined in NIST SP 800-180, are being used to design, develop and deploy applications leveraging agile ...

Security Agents Don’t Belong In Your Cloud!

Blog Published: 08/18/2021

This blog was originally published by Blue Hexagon here. Written by Saumitra Das, Blue Hexagon. COVID-19 has significantly accelerated migration to the cloud as organizations enable an increasingly remote workforce and adopt cloud-native services to serve increasingly online customers. Unfortunat...

C-Level Stakeholders to Take on Digital Transformation’s Impact on Security Strategies at CxO Trust Summit

Press Release Published: 08/17/2021

Event to provide CISOs, other C-level stakeholders with unique insight on navigating companies through today’s cybersecurity challengesSEATTLE – Aug. 17, 2021 – The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications, and best practices ...

SaaS Security: Risks and Mitigation Methods

Blog Published: 08/16/2021

Written by Dipen Rana and Pooja Patil, TCS As a pandemic-triggered hybrid work model settles in, many enterprises are moving onto the cloud for better agility and greater efficiency. With the cloud offering subscription-based models and eliminating infrastructure cost, organizations have the flex...

CCM Testimonial: The Advantages and Future of the Cloud Controls Matrix

Blog Published: 08/12/2021

The Cloud Controls Matrix (CCM) is composed of 197 control objectives that cover all key aspects of cloud technology. It can be used as a tool for the systematic assessment of cloud implementation and provides guidance on which security controls should be implemented by which actor within the clo...

How Can 3DS Authentication Enhance My Payments Flow?

Blog Published: 08/11/2021

This blog was originally published by TokenEx here. Written by Jessica Titsworth, TokenEx. As the rapid growth of ecommerce platforms and digital payments continue, the amount of card-not-present (CNP) transactions has increased. While this can provide extra convenience for the cardholder, mercha...

Jen Easterly, Director of the Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) to Headline Cloud Security Alliance’s SECtember

Press Release Published: 08/11/2021

Premier cloud event offers insight into trending topics such as digital transformation, Zero Trust, and cyber-supply chain risk managementSEATTLE – Aug. 11, 2021 – The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications and best practice...

Top 20 Dockerfile Best Practices

Blog Published: 08/10/2021

This blog was originally published by Sysdig here.Written by Álvaro Iradier, Sysdig.Learn how to prevent security issues and optimize containerized applications by applying a quick set of Dockerfile best practices in your image builds.If you are familiar with containerized applications and micros...

Understanding Cloud Drift Enables Zero Trust Cloud Management

Blog Published: 08/09/2021

This blog was originally published by OpsCompass here.Written by John Grange, OpsCompass.True Insight into Your Security Posture and Drift is Key to Zero-TrustIn the cloud everything is configurable software. This sounds a little obvious, if not trite, but it actually represents an important insi...

Looking for the CCM?

Start using the Cloud Controls Matrix to simplify compliance with multiple standards & regulations.