Cloud 101CircleEventsBlog
CSA is empowering the future of AI with safety, responsibility, and compliance. Join our AI Safety Ambassador Program to lead the charge in building a safer AI future.

Download Publication

CCM Gap Analysis Report (ABS CCIG)
CCM Gap Analysis Report (ABS CCIG)

CCM Gap Analysis Report (ABS CCIG)

Release Date: 09/14/2020

Working Group: Cloud Controls Matrix

The report summarizes the mapping of CCM v3.0.1 to the Association of Banks in Singapore Cloud Computing Implementation Guide 2.0 and provides gap analysis on the results. The Gap Analysis Report is a companion piece with the CCM Addendum (mapping with Association of Banks in Singapore Cloud Computing Implementation Guide 2.0).

The financial services industry is one of most important and regulated sectors in any market. It is typically bounded by a multitude of regulations that financial institutions (FIs) need to comply with. It is both daunting and challenging, yet a necessary task for conscientious FIs to review these available regulations / guidelines / frameworks / best practices, comply with mandatory regulations, and make decisions about which best practices and recommendations to take heed of, in order to reduce their overall risk exposure and keep up with the industry’s progress. This mammoth task gets exponentially difficult for FIs operating beyond a single country or regulatory space, especially when relevant regulations and frameworks are constantly evolving.

Because of this complex landscape, mapping of frameworks is a useful and popular tool for FIs looking to seek compliance to multiple standards and best practices. In this exercise, the Working Group mapped the Association of Banks in Singapore (ABS) Cloud Computing Implementation Guide (CCIG) 2.0 to CSA’s Cloud Controls Matrix 3.0.1, and summarized the mapping results in the accompanying Gap Analysis Report. Singapore FIs who are already in line with ABS CCIG 2.0 will benefit through being able to easily identify and fulfill additional controls (gaps) on top of the ABS CCIG 2.0 to achieve adherence to other targeted frameworks within CCM, which is useful when expanding to other markets.

Download this Resource

Prefer to access this resource without an account? Download it now.

Related resources
NIST CSF v2 Cloud Community Profile - Based on CCM v4
NIST CSF v2 Cloud Community Profile - Based on ...
Informative Reference Details for the Mapping of CCM v4 to NIST CSF v2
Informative Reference Details for the Mapping o...
CCM-Lite and CAIQ-Lite
CCM-Lite and CAIQ-Lite
Implementing CCM: Ensure Secure Software with the Application and Interface Security Domain
Implementing CCM: Ensure Secure Software with the Application and I...
Published: 02/05/2025
Implementing CCM: Assurance & Audit Controls
Implementing CCM: Assurance & Audit Controls
Published: 02/04/2025
Let’s Go Back to the Basics: How ISO 27001 Certification Works
Let’s Go Back to the Basics: How ISO 27001 Certification Works
Published: 01/09/2025
Modern Day Vendor Security Compliance Begins with the STAR Registry
Modern Day Vendor Security Compliance Begins with the STAR Registry
Published: 12/20/2024


Victor Chin Headshot Missing
Victor Chin

Victor Chin

Ekta Mishra
Ekta Mishra
Membership Director & Country Manager (India), CSA APAC

Ekta Mishra

Membership Director & Country Manager (India), CSA APAC

Haojie Zhuang Headshot Missing
Haojie Zhuang

Haojie Zhuang

Dr. Hing-Yan Lee
Dr. Hing-Yan Lee
Executive Vice President of Government Affairs, CSA

Dr. Hing-Yan Lee

Executive Vice President of Government Affairs, CSA

Dr. Hing Yan Lee serves as the Executive Vice President of Asia Pacific (APAC) for Cloud Security Alliance. Dr. Lee has over 30 years of ICT working experience in both the public and private sectors. In the recent 9+ years, he was Director of National Cloud Computing Office at Infocomm Development Authority, where he was responsible for, inter alia, developing the cloud ecosystem, promoting cloud adoption by government agencies and private...

Read more

Alex Siow
Alex Siow

Alex Siow

Yao Sing Tao
Yao Sing Tao

Yao Sing Tao

Arun Vivek Headshot Missing
Arun Vivek

Arun Vivek

Francis Lee Headshot Missing
Francis Lee

Francis Lee

Paul Lee Headshot Missing
Paul Lee

Paul Lee

Anthony Lim
Anthony Lim

Anthony Lim

Anthony is a 20-year Asia Pacific cyber-security pioneer and veteran professional, and an early advocate of cloud computing security and governance, since before 2010, when at IBM he was inaugural AP business leader for application security. Prior, he was Check Point’s founding AP managing director and CA’s first regional security brand director. He is currently a consultant, instructor and auditor in this area.

Anthony was on the int...

Read more

Moorthi Rathinam Headshot Missing
Moorthi Rathinam

Moorthi Rathinam

Terence Siau Headshot Missing
Terence Siau
Sales Director, CSA APAC

Terence Siau

Sales Director, CSA APAC

Steven Sim
Steven Sim
President at ISACA Singapore Chapter

Steven Sim

President at ISACA Singapore Chapter

Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?

Related Certificates & Training