This document outlines how to conduct STAR certification assessments to the Cloud Controls Matrix (CCM) as part of an ISO 27001 assessment. The STAR certification process is not meant to be a replacement for any ISO/IEC 27001 certification processes but as a supplement or extension of those processes.
This document:
This document:
- Outlines the requirements Certifying Bodies (CBs) must meet in order to conduct a STAR certification assessment to the Cloud Controls Matrix (CCM) as part of an ISO/IEC 27001 assessment
- Describes the controls set out in the CCM that can be considered additional controls in ISO/IEC 27001.
- Should be considered as supplementary to ISO/IEC 27006 and serves to outline the additional requirements for the assessment of the CCM.
Prefer to access this resource without an account? Download it now.




