ChaptersEventsBlog
Share your organization’s adoption, governance, and security practices. Take the Securing the New Digital Workforce survey now →

Download Publication

The Continuous Audit Metrics Catalog: Towards a Machine-Readable Representation
The Continuous Audit Metrics Catalog: Towards a Machine-Readable Representation

The Continuous Audit Metrics Catalog: Towards a Machine-Readable Representation

Release Date: 06/07/2022

In October 2021, the Cloud Security Alliance released the first version of the Continuous Audit Metrics catalog which provides a standard reference for the continuous auditing of cloud services that supports security metrics in a way that mirrors what the CSA CCM or ISO/IEC 27002 does for security controls. The released catalog contained an initial set of 34 security metrics, each mapped to the CCM v4


This document takes the initial catalog that was presented in PDF format and translates of the 34 security metrics into YAML, a machine-readable format that is also still reasonably easy to understand by humans. 

Download this Resource

Prefer to access this resource without an account? Download it now.

Bookmark
Share
Related resources
The Continuous Audit Metrics Catalog
The Continuous Audit Metrics Catalog
Introducing Cognitive Degradation Resilience (CDR): A Framework for Safeguarding Agentic AI Systems from Systemic Collapse
Introducing Cognitive Degradation Resilience (CDR): A Framework for...
Published: 11/10/2025
Identity Security Posture Management
Identity Security Posture Management
Published: 11/03/2025
Regulatory Reckoning: The Hidden Cost of an Immature Compliance Program
Regulatory Reckoning: The Hidden Cost of an Immature Compliance Pro...
Published: 10/30/2025
Building an AI Native Engineering Organization: Lessons in Speed, Culture, and Security
Building an AI Native Engineering Organization: Lessons in Speed, C...
Published: 10/29/2025

Acknowledgements

Hafiz Sheikh Adnan Ahmed
Hafiz Sheikh Adnan Ahmed

Hafiz Sheikh Adnan Ahmed

Hafiz Sheikh Adnan Ahmed is a futurist and technology/Security leader with 17+ years track record in the areas of ICT Governance, Cyber Security & Resilience, Data Privacy & Protection, Risk Management, Corporate Excellence & Innovation, Digital Transformation, Strategic Transformation.

Read more

Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?

Related Certificates & Training