Download Publication

Auditors Guidance Document STAR Certification: Auditing the Cloud Controls Matrix
Release Date: 03/01/2023
The download file also contains the following: Illustrative Type 2 SOC 2® Report: With the Additional Criteria in the Cloud Security Alliance (CSA) Cloud Controls Matrix (CCM)
The purpose of this document is to provide assessment guidance to certified bodies and associated organizations that are performing ISO/IEC 27001 audits and supporting certification activities related to STAR certification. STAR Certification is considered an “extension to scope” to ISO/IEC 27001. An ISO/IEC 27001-compliant ISMS is inherently scalable and allows you the flexibility to extend the scope of the ISMS to meet changing information security needs such as sector-specific requirements for the cloud.
The purpose of this document is to provide assessment guidance to certified bodies and associated organizations that are performing ISO/IEC 27001 audits and supporting certification activities related to STAR certification. STAR Certification is considered an “extension to scope” to ISO/IEC 27001. An ISO/IEC 27001-compliant ISMS is inherently scalable and allows you the flexibility to extend the scope of the ISMS to meet changing information security needs such as sector-specific requirements for the cloud.
Download this Resource
Prefer to access this resource without an account? Download it now.
Related Resources
Are you a research volunteer? Request to have your profile displayed on the website here.