ChaptersEventsBlog

Download Publication

The Continuous Audit Metrics Catalog: Towards a Machine-Readable Representation
The Continuous Audit Metrics Catalog: Towards a Machine-Readable Representation

The Continuous Audit Metrics Catalog: Towards a Machine-Readable Representation

Release Date: 06/07/2022

In October 2021, the Cloud Security Alliance released the first version of the Continuous Audit Metrics catalog which provides a standard reference for the continuous auditing of cloud services that supports security metrics in a way that mirrors what the CSA CCM or ISO/IEC 27002 does for security controls. The released catalog contained an initial set of 34 security metrics, each mapped to the CCM v4


This document takes the initial catalog that was presented in PDF format and translates of the 34 security metrics into YAML, a machine-readable format that is also still reasonably easy to understand by humans. 

Download this Resource

Prefer to access this resource without an account? Download it now.

Bookmark
Share
Related resources
The Continuous Audit Metrics Catalog
The Continuous Audit Metrics Catalog
Enhancing the Agentic AI Security Scoping Matrix: A Multi-Dimensional Approach
Enhancing the Agentic AI Security Scoping Matrix: A Multi-Dimension...
Published: 12/16/2025
Understanding the DoD’s New Cyber Security Risk Management Construct (CSRMC)
Understanding the DoD’s New Cyber Security Risk Management Construc...
Published: 12/15/2025
Why Your Copilot Needs a Security Co-Pilot: Enhancing GenAI with Deterministic Fixes
Why Your Copilot Needs a Security Co-Pilot: Enhancing GenAI with De...
Published: 12/10/2025
It's Time to Rethink Cloud Investigations
It's Time to Rethink Cloud Investigations
Published: 12/02/2025

Interested in helping develop research with CSA?

Related Certificates & Training