ChaptersEventsBlog

Download Publication

Cloud Octagon Model
Cloud Octagon Model

Cloud Octagon Model

Release Date: 06/24/2019

In this document CSA provides an approach to assess risk in SaaS cloud computing. The Cloud Octagon Model stems from an approach conceptualized and implemented by the Cloud Security Group within the Technology & Engineering department, Corporate Information Security Office (CISO), ABN AMRO Bank NV (Netherlands). It counts such aspects as procurement, IT governance, architecture, development and engineering, service providers, risk processes, data classification, and country. The model provides practical guidance and structure to all involved risk parties in order to keep pace with rapid changes in privacy and data protection laws and regulations, and changes in technology and its security implications. The model aims to:
  • reduce risks associated with cloud computing;
  • improve the effectiveness of the cloud risk team;
  • improve manageability of the solution; and
  • improve security.

Download this Resource

Prefer to access this resource without an account? Download it now.

Bookmark
Share
Related resources
Capabilities-Based Risk Assessment (CBRA) for AI Systems
Capabilities-Based Risk Assessment (CBRA) for A...
SaaS Security Capability Framework (SSCF)
SaaS Security Capability Framework (SSCF)
AI Controls Matrix
AI Controls Matrix
SSCF v1.0: The Standard That Simplifies SaaS Security
SSCF v1.0: The Standard That Simplifies SaaS Security
Published: 11/19/2025
Least Privilege Demands that Identity Goes Beyond IAM Teams to App, Data & Security Teams
Least Privilege Demands that Identity Goes Beyond IAM Teams to App,...
Published: 11/17/2025
SecretPoint: How OneDrive Auto-Sync Turns SharePoint into a Hidden Secrets Vault
SecretPoint: How OneDrive Auto-Sync Turns SharePoint into a Hidden ...
Published: 11/14/2025
From Chatbots to Agents: The Evolution Toward Agentic AI
From Chatbots to Agents: The Evolution Toward Agentic AI
Published: 11/13/2025
What Verizon’s 2025 DBIR Reveals About the Future of Financial Sector Cyber Risk
What Verizon’s 2025 DBIR Reveals About the Future of Financial Sect...
November 21 | Virtual
Securing Financial Services in the Cloud: Essential Guidance from ANSI X9.125
Securing Financial Services in the Cloud: Essential Guidance from A...
December 5 | Virtual
Beyond Passwords: FIDO's Authentication Vision for Financial Services in the Cloud Era
Beyond Passwords: FIDO's Authentication Vision for Financial Servic...
December 12 | Virtual
FinCloud Fridays Webinar Series
FinCloud Fridays Webinar Series
February 28 | Virtual

Interested in helping develop research with CSA?

Related Certificates & Training