Download Publication
Auditors Guidance Document STAR Certification: Auditing the Cloud Controls Matrix
Release Date: 03/01/2023
The download file also contains the following: Illustrative Type 2 SOC 2® Report: With the Additional Criteria in the Cloud Security Alliance (CSA) Cloud Controls Matrix (CCM)
The purpose of this document is to provide assessment guidance to certified bodies and associated organizations that are performing ISO/IEC 27001 audits and supporting certification activities related to STAR certification. STAR Certification is considered an “extension to scope” to ISO/IEC 27001. An ISO/IEC 27001-compliant ISMS is inherently scalable and allows you the flexibility to extend the scope of the ISMS to meet changing information security needs such as sector-specific requirements for the cloud.
The purpose of this document is to provide assessment guidance to certified bodies and associated organizations that are performing ISO/IEC 27001 audits and supporting certification activities related to STAR certification. STAR Certification is considered an “extension to scope” to ISO/IEC 27001. An ISO/IEC 27001-compliant ISMS is inherently scalable and allows you the flexibility to extend the scope of the ISMS to meet changing information security needs such as sector-specific requirements for the cloud.
Download this Resource
Prefer to access this resource without an account? Download it now.
Are you a research volunteer? Request to have your profile displayed on the website here.
Related Certificates & Training
Learn the core concepts, best practices and recommendation for securing an organization on the cloud regardless of the provider or platform. Covering all 14 domains from the CSA Security Guidance v4, recommendations from ENISA, and the Cloud Controls Matrix, you will come away understanding how to leverage information from CSA's vendor-neutral research to keep data secure on the cloud.
Learn more
Learn more