Cloud 101CircleEventsBlog
Register for CSA’s free Virtual Cloud Trust Summit to tackle enterprise challenges in cloud assurance.

Download Publication

Security Guidance for Critical Areas of Focus in Cloud Computing V3.0
Security Guidance for Critical Areas of Focus in Cloud Computing V3.0

Security Guidance for Critical Areas of Focus in Cloud Computing V3.0

Release Date: 11/14/2011

Working Group: Security Guidance

The CSA guidance as it enters its third edition seeks to establish a stable, secure baseline for cloud operations. This effort provides a practical, actionable road map to managers wanting to adopt the cloud paradigm safely and securely. Domains have been rewritten to emphasize security, stability and privacy, ensuring corporate privacy in a multi-tenant environment.
Download this Resource

Prefer to access this resource without an account? Download it now.

Bookmark
Share
Related resources
Security Guidance v4.0 Info Sheet
Security Guidance v4.0 Info Sheet
Security Guidance for Critical Areas of Focus in Cloud Computing v4.0
Security Guidance for Critical Areas of Focus i...
FedRAMP Cloud Controls Matrix v3.0.1 Candidate Mapping
FedRAMP Cloud Controls Matrix v3.0.1 Candidate ...
CSA Community Spotlight: Propelling the Industry Forward with Larry Whiteside Jr.
CSA Community Spotlight: Propelling the Industry Forward with Larry...
Published: 03/12/2024
The Implications of AI in Cybersecurity - A Transformative Journey
The Implications of AI in Cybersecurity - A Transformative Journey
Published: 03/11/2024
New Year, New Security Awareness Training—How to Implement a Role-Based Training Program
New Year, New Security Awareness Training—How to Implement a Role-B...
Published: 02/08/2024
What is the Shared Responsibility Model in the Cloud?
What is the Shared Responsibility Model in the Cloud?
Published: 01/25/2024

Acknowledgements

Rich Mogull
Rich Mogull
CEO at Securosis

Rich Mogull

CEO at Securosis

Rich is the VP of Product for DisruptOPS and Analyst and CEO of Securosis. With twenty years of experience in information security, physical security, and risk management, Rich is one of the foremost experts on cloud security, having driven development of the Cloud Security Alliance’s V4 Guidance and the associated CCSK training curriculum. He is a prolific writer and fe...

Read more

Jens Laundrup
Jens Laundrup
Chief Security Engineer and Executive Consultant, Emagined Security Inc.

Jens Laundrup

Chief Security Engineer and Executive Consultant, Emagined Security Inc.

Jens Laundrup, Chief Security Engineer and Executive Consultant, Emagined Security Inc., has spent over 30 years in the Information Security space to include numerous security engineering disciplines including Military, Government and Corporate Information Security, Compliance Program Design, Architecture Design, and Network & Physical Security. Mr. Laundrup has led the development and design of cutting-edge risk-based security programs and...

Read more

Abhik Chaudhuri
Abhik Chaudhuri
Security GRC Team of TCS Global Technology Practice for the IoT and Smart Cities

Abhik Chaudhuri

Security GRC Team of TCS Global Technology Practice for the IoT and Smart Cities

Abhik Chaudhuri (PMP, ITIL Expert, Certified in Cobit Foundation, IBM accredited Senior IT Specialist, certified ISO 27001:2013 ISMS Lead Auditor, Member of IEEE SIG on IoT and Corporate Member of CSA’s International Standardization Council) isin the 14th year of IT Consulting profession and leading the Security GRC Team of TCS Global Technology Practice for the IoT and Smart Cities. Abhik has w...

Read more

JP Morgenthal Headshot Missing
JP Morgenthal

JP Morgenthal

This person does not have a biography listed with CSA.

Liam Lynch Headshot Missing
Liam Lynch

Liam Lynch

This person does not have a biography listed with CSA.

Lee Newcombe Headshot Missing
Lee Newcombe

Lee Newcombe

This person does not have a biography listed with CSA.

Dave Asprey Headshot Missing
Dave Asprey

Dave Asprey

This person does not have a biography listed with CSA.

Laura Posey
Laura Posey

Laura Posey

This person does not have a biography listed with CSA.

Melvin M. Rodriguez Headshot Missing
Melvin M. Rodriguez

Melvin M. Rodriguez

This person does not have a biography listed with CSA.

Kevin Fielder
Kevin Fielder
Senior Manager Cyber Security at Worldpay

Kevin Fielder

Senior Manager Cyber Security at Worldpay

Kevin Fielder has over 15 years IT and security experience across multiple industries encompassing online trading, online supermarkets, banking/finance/insurance. His various roles have included pen testing and security assessments through technical and security architecture to security consulting and innovations.

Current focus includes security strategy, secure design and development, security innovations, software based mobile secur...

Read more

Dominik Birk
Dominik Birk
Vice President of the CSA Swiss Chapter

Dominik Birk

Vice President of the CSA Swiss Chapter

Dominik Birk is working as a Information Security Manager for the Zurich Insurance Group in Zurich, Switzerland. Besides that, Birk is leading the the CSA WG “Incident Management and Forensics”, helped establish the German and Swiss local CSA Chapters, and contributed to the CSA Cloud Security Guidance V3.0.

Read more

Danielito Vizcayno Headshot Missing
Danielito Vizcayno

Danielito Vizcayno

This person does not have a biography listed with CSA.

Archie Reed Headshot Missing
Archie Reed

Archie Reed

This person does not have a biography listed with CSA.

James Beadel Headshot Missing
James Beadel

James Beadel

This person does not have a biography listed with CSA.

Stefan Pettersson Headshot Missing
Stefan Pettersson

Stefan Pettersson

This person does not have a biography listed with CSA.

George Ferguson Headshot Missing
George Ferguson

George Ferguson

This person does not have a biography listed with CSA.

Dennis F. Poindexter Headshot Missing
Dennis F. Poindexter

Dennis F. Poindexter

This person does not have a biography listed with CSA.

John Arnold Headshot Missing
John Arnold

John Arnold

This person does not have a biography listed with CSA.

Bhavesh Bhagat Headshot Missing
Bhavesh Bhagat

Bhavesh Bhagat

This person does not have a biography listed with CSA.

Ram Kumar Headshot Missing
Ram Kumar

Ram Kumar

This person does not have a biography listed with CSA.

Bernd Grobauer Headshot Missing
Bernd Grobauer

Bernd Grobauer

This person does not have a biography listed with CSA.

Ian Dobson Headshot Missing
Ian Dobson

Ian Dobson

This person does not have a biography listed with CSA.

Chris Rezek
Chris Rezek
Product Manager for Security and Privacy at Google

Chris Rezek

Product Manager for Security and Privacy at Google

This person does not have a biography listed with CSA.

Luciano (J.R.) Santos
Luciano (J.R.) Santos
Chief Customer Officer, CSA

Luciano (J.R.) Santos

Chief Customer Officer, CSA

J.R. Santos serves as the Chief Customer Officer for the Cloud Security Alliance. In this role, J.R. serves as a CSA Member advocate, partnering with leaders across all business units to transform the member experience and ensure that members are the center of every business decision. J.R. leads the Experience Services organization that includes the CSA Membership and Sales team, who work collaboratively to promote a consistent experience f...

Read more

Bernd Jaeger
Bernd Jaeger
Colt (Germany)

Bernd Jaeger

Colt (Germany)

Working for more than 20 years within the ICT industry, focussing on information security, Bernd’s scope ranges from security management related activities down to a deep, “hands-on” level of understanding of today’s threats and countermeasures.

Working for Telecommunication-, Internet-, Cloud and Technology Service provider, Bernd designed and implemented highly customized security solutions, developed technical blueprints and produc...

Read more

M S Prasad Headshot Missing
M S Prasad

M S Prasad

This person does not have a biography listed with CSA.

Andrea Bilobrk Headshot Missing
Andrea Bilobrk

Andrea Bilobrk

This person does not have a biography listed with CSA.

Andrew Hay Headshot Missing
Andrew Hay

Andrew Hay

This person does not have a biography listed with CSA.

David Kessler Headshot Missing
David Kessler

David Kessler

This person does not have a biography listed with CSA.

Thomas Trappler Headshot Missing
Thomas Trappler

Thomas Trappler

This person does not have a biography listed with CSA.

Tushar Jain Headshot Missing
Tushar Jain

Tushar Jain

This person does not have a biography listed with CSA.

Damu Kuttikrishnan Headshot Missing
Damu Kuttikrishnan

Damu Kuttikrishnan

This person does not have a biography listed with CSA.

Kanchanna Ramasamy Balraj Headshot Missing
Kanchanna Ramasamy Balraj

Kanchanna Ramasamy Balraj

This person does not have a biography listed with CSA.

Josey V. George Headshot Missing
Josey V. George

Josey V. George

This person does not have a biography listed with CSA.

Shane Tully Headshot Missing
Shane Tully

Shane Tully

This person does not have a biography listed with CSA.

Valmiki Mukherjee Headshot Missing
Valmiki Mukherjee

Valmiki Mukherjee

This person does not have a biography listed with CSA.

Anton Chuvakin Headshot Missing
Anton Chuvakin

Anton Chuvakin

This person does not have a biography listed with CSA.

Richard Zhao
Richard Zhao
Chief Strategy Officer of NSFOCUS

Richard Zhao

Chief Strategy Officer of NSFOCUS

Dr. Liang ZHAO (Richard) manages the research team, strategic planning, and fosters innovations at NSFOCUS. He obtained his B.Sc, M.Sc. and Ph.D degrees from Peking University at 1991, 1994, 1997 respectively. Liang majored physics and fiber-optic communications and has over 15 years of professional experience in telecom and network security areas. He owns certifications of CISSP, ITIL, BS7799.

Prior to his current position, he was th...

Read more

Hassan Takabi Headshot Missing
Hassan Takabi

Hassan Takabi

This person does not have a biography listed with CSA.

Dr. Amol Khedgikar
Dr. Amol Khedgikar
Senior Vice-President – IT audit, M&T Bank

Dr. Amol Khedgikar

Senior Vice-President – IT audit, M&T Bank

This person does not have a biography listed with CSA.

Marlin Pohlman Headshot Missing
Marlin Pohlman

Marlin Pohlman

This person does not have a biography listed with CSA.

Pamela Jones Harbour Headshot Missing
Pamela Jones Harbour

Pamela Jones Harbour

This person does not have a biography listed with CSA.

Pw Carey Headshot Missing
Pw Carey

Pw Carey

This person does not have a biography listed with CSA.

Michael Marks Headshot Missing
Michael Marks

Michael Marks

This person does not have a biography listed with CSA.

Joe Wallace Headshot Missing
Joe Wallace

Joe Wallace

This person does not have a biography listed with CSA.

Yvonne Wilson Headshot Missing
Yvonne Wilson

Yvonne Wilson

This person does not have a biography listed with CSA.

Peter Johnson Headshot Missing
Peter Johnson

Peter Johnson

This person does not have a biography listed with CSA.

Kimberley Laris Headshot Missing
Kimberley Laris

Kimberley Laris

This person does not have a biography listed with CSA.

John Kinsella Headshot Missing
John Kinsella

John Kinsella

This person does not have a biography listed with CSA.

Ulrich Lang Headshot Missing
Ulrich Lang

Ulrich Lang

This person does not have a biography listed with CSA.

Balaji Ramamoorthy Headshot Missing
Balaji Ramamoorthy

Balaji Ramamoorthy

This person does not have a biography listed with CSA.

Rajiv Mishra Headshot Missing
Rajiv Mishra

Rajiv Mishra

This person does not have a biography listed with CSA.

Troy D. Casey Headshot Missing
Troy D. Casey

Troy D. Casey

This person does not have a biography listed with CSA.

Carlo Espiritu Headshot Missing
Carlo Espiritu

Carlo Espiritu

This person does not have a biography listed with CSA.

Chris Hoff Headshot Missing
Chris Hoff

Chris Hoff

This person does not have a biography listed with CSA.

Paul Simmonds
Paul Simmonds
CEO at Global Identity Foundation & Board Member of CSA UK Chapter

Paul Simmonds

CEO at Global Identity Foundation & Board Member of CSA UK Chapter

Paul is the CEO of the Global Identity Foundation and formerly the global CISO of AstraZeneca, ICI and prior to that Motorola Cellular Infrastructure. He is twice listed as one of Network World’s “most powerful people in networking”. He is a director of the Cloud Security Alliance (Europe), co-founded the Jericho Forum, and sits on the advisory boards of a number of global tech companies.

Read more

Francoise Gilbert Headshot Missing
Francoise Gilbert

Francoise Gilbert

This person does not have a biography listed with CSA.

Said Tabet Headshot Missing
Said Tabet

Said Tabet

This person does not have a biography listed with CSA.

Jesus Luna Headshot Missing
Jesus Luna

Jesus Luna

This person does not have a biography listed with CSA.

Rich Mogull
Rich Mogull
CEO at Securosis

Rich Mogull

CEO at Securosis

Rich is the VP of Product for DisruptOPS and Analyst and CEO of Securosis. With twenty years of experience in information security, physical security, and risk management, Rich is one of the foremost experts on cloud security, having driven development of the Cloud Security Alliance’s V4 Guidance and the associated CCSK training curriculum. He is a prolific writer and fe...

Read more

Neil Fryer Headshot Missing
Neil Fryer

Neil Fryer

This person does not have a biography listed with CSA.

Randolph Barr Headshot Missing
Randolph Barr

Randolph Barr

This person does not have a biography listed with CSA.

Jeff Reed Headshot Missing
Jeff Reed

Jeff Reed

This person does not have a biography listed with CSA.

Devesh Bhatt Headshot Missing
Devesh Bhatt

Devesh Bhatt

This person does not have a biography listed with CSA.

Kendall Scoboria Headshot Missing
Kendall Scoboria

Kendall Scoboria

This person does not have a biography listed with CSA.

Damir Savanovic
Damir Savanovic

Damir Savanovic

Damir Savanovic (M) is an Associate Director - Cloud Controls Lead at Willis Towers Watson, leading a team of subject matter experts to address compliance and control requirements for multiple compliance frameworks within information and cybersecurity for a global financial institution.

As a security evangelist and subject matter expert in the areas of security governance, risk and compliance, data protection with over...

Read more

Henry St. Andre
Henry St. Andre
Director of Trust Services for inContact

Henry St. Andre

Director of Trust Services for inContact

Henry St. Andre began his career in telecommunication 32 years ago, in 1984 during the break-up and divestiture of AT&T. He served as Director of Operations for over 25 years working for several different regional telecommunications providers and ultimately because the Director of Operations for inContact before being asked to be the Director of Trust Services at inContact, with the mission to create a security team and operations that coul...

Read more

Eiji Sasahara
Eiji Sasahara
Board of Director at CSA Japan Chapter

Eiji Sasahara

Board of Director at CSA Japan Chapter

This person does not have a biography listed with CSA.

Michael Panico Headshot Missing
Michael Panico

Michael Panico

This person does not have a biography listed with CSA.

Sue Ross Headshot Missing
Sue Ross

Sue Ross

This person does not have a biography listed with CSA.

Chad Woolf Headshot Missing
Chad Woolf

Chad Woolf

This person does not have a biography listed with CSA.

Ariel Litvin Headshot Missing
Ariel Litvin

Ariel Litvin

This person does not have a biography listed with CSA.

Amy Van Antwerp Headshot Missing
Amy Van Antwerp

Amy Van Antwerp

This person does not have a biography listed with CSA.

Adrian Secombe Headshot Missing
Adrian Secombe

Adrian Secombe

This person does not have a biography listed with CSA.

Tushar Bhavsar Headshot Missing
Tushar Bhavsar

Tushar Bhavsar

This person does not have a biography listed with CSA.

Sundararajan N Headshot Missing
Sundararajan N

Sundararajan N

This person does not have a biography listed with CSA.

Andrew Yeomans Headshot Missing
Andrew Yeomans

Andrew Yeomans

This person does not have a biography listed with CSA.

Michele Drgon Headshot Missing
Michele Drgon

Michele Drgon

This person does not have a biography listed with CSA.

Subra Kumaraswamy Headshot Missing
Subra Kumaraswamy

Subra Kumaraswamy

This person does not have a biography listed with CSA.

Nrupak Shah Headshot Missing
Nrupak Shah

Nrupak Shah

This person does not have a biography listed with CSA.

Jim Peterson Headshot Missing
Jim Peterson

Jim Peterson

This person does not have a biography listed with CSA.

Xavier Guerin Headshot Missing
Xavier Guerin

Xavier Guerin

This person does not have a biography listed with CSA.

Tatsuya Kamimura Headshot Missing
Tatsuya Kamimura

Tatsuya Kamimura

This person does not have a biography listed with CSA.

Becky Swain Headshot Missing
Becky Swain

Becky Swain

This person does not have a biography listed with CSA.

Michael Machado Headshot Missing
Michael Machado

Michael Machado

This person does not have a biography listed with CSA.

Kathleen Moriarty Headshot Missing
Kathleen Moriarty

Kathleen Moriarty

This person does not have a biography listed with CSA.

Are you a research volunteer? Request to have your profile displayed on the website here.

Interested in helping develop research with CSA?

Related Certificates & Training