CSA Research

Security through innovation.
Innovation through collaboration.


Research Artifacts

Top Threats to Cloud Computing: Egregious Eleven
Top Threats to Cloud Computing: Egregious Eleven

The report provides organizations with an up-to-date, expert-informed understanding of cloud security concerns in order to make educated risk...

Cloud Controls Matrix v3.0.1
Cloud Controls Matrix v3.0.1

Description: The CCM, the only meta-framework of cloud-specific security controls, mapped to leading standards, best practices and regulation...

SDP Architecture Guide v2
SDP Architecture Guide v2

Software Defined Perimeter (SDP) Architecture Guide is designed to leverage proven, standards-based components to stop network attacks agains...

Best Practices for Cyber Incident Exchange
Best Practices for Cyber Incident Exchange

Description: No organization is immune from cyber attack. Malicious actors collaborate with skill and agility, effectively moving from target...

Future Proofing the Connected World
Future Proofing the Connected World

Research Insights

CSA's Executive Series: When AI Goes Wrong

April 2, 2020, Bob Gourley, CTO and Co-Founder of OODA

CSA CloudBytes Figure

Upcoming Meetings

Begins at
Quantum-safe Security Working Group
Serverless Working Group
Internet of Things Working Group

Contribute to CSA Research

Artifact reviews allow security professionals from around the world to collaborate on CSA research. Provide your feedback on the following documents in progress.

Collaborating with CSA

Research Lifecycle Figure

Research Lifecycle

A step-by-step look at the research process, from proposal to publication.


Research Volunteer FAQ

Contributors to research are composed of solution providers, end users, subject matter experts, and key stakeholders in cloud and related technologies. Join the movement!

Research Volunteer FAQ Figure

Thank You Research Contributors!

Research awards recognize individuals who demonstrate significant accomplishments and contribution to CSA research. Annual and long-term achievement awards are bestowed to those who also reflect industry leadership, community participation and passion for volunteerism.

Thank You Research Contributors

Featured Working Groups

Artificial intelligence

As we move forward into the future of automation, AI is proving to be playing a critical role in the realm of both cyber and cloud security. The ability to learn at a rate that AI does makes it extremely important...


Blockchain and distributed ledger technology is an innovative and continuously evolving technology that has far reaching security implications beyond the financial services industries.

Cloud Controls Matrix

The Cloud Controls Matrix (CCM) working group supports CSA’s industry-leading meta-framework for cloud security assurance. The working group conducts controls mapping projects with the aim of identifying and analysing compliance gaps.


Changing the mindset of the industry and establishing fundamental principles to enhance the development, security, and operations during project lifecycles.

Internet of Things

As the cloud environment expand to new technologies, the connected world depends on devices to manage, orchestrate, and provision data.

Software Defined Perimeter

The Software Defined Perimeter working grouped launched with the goal to develop a solution to stop network attacks against application infrastructure.