Circle
Events
Blog

CSA Research Publications

Whitepapers, Reports and Other Resources

Home
Publications

Browse Publications

Earning Trust in the 21st Century

Earning Trust in the 21st Century
Release Date: 01/26/2021

This paper addresses the technical, social, policy, and regulatory issues associated with creating trust frameworks in a Zero Trust world. Industry and gover...

Request to download
Turkey Cloud Adaptation Survey – Turkey vs EU comparison

Turkey Cloud Adaptation Survey – Turkey vs EU comparison
Release Date: 01/13/2021

In the last quarter of 2020 as a comprehensive CSA Global's done all over the world "Cloud Computing and Cloud Technology Use in Transition Survey" which mad...

Request to download
APAC Data Sovereignty Working Group Charter

APAC Data Sovereignty Working Group Charter
Release Date: 01/12/2021

The proposed charter outlines the scope, responsibilities, issues to address, align and guide the working group.

Request to download
Mitigating Hybrid Clouds Risks - Turkish Translation

Mitigating Hybrid Clouds Risks - Turkish Translation
Release Date: 01/12/2021

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translated c...

Request to download
The 12 Most Critical Risks for Serverless Applications - Japanese Translation

The 12 Most Critical Risks for Serverless Applications - Japanese Translation
Release Date: 01/12/2021

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translated c...

Request to download
Open Certification Framework Working Group Charter

Open Certification Framework Working Group Charter
Release Date: 01/01/2021

The CSA Open Certification Framework (OCF) is an industry initiative to allow global, trusted independent evaluation of cloud providers. It is a program for ...

Request to download
Software-Defined Perimeter Zero Trust Charter

Software-Defined Perimeter Zero Trust Charter
Release Date: 12/29/2020

The proposed charter outlines the scope, responsibilities, etc. to align and guide the Software-Defined Perimeter Zero Trust working group through the year 2...

Request to download
Enterprise Architecture to CCM Shared Responsibility Model

Enterprise Architecture to CCM Shared Responsibility Model
Release Date: 12/18/2020

The EA-CCM Shared Responsibility Model is a companion piece with the EA-CCM Mapping. To review the EA-CCM Mapping, follow this link. (https://cloudsecuritya...

Request to download
Enterprise Architecture to CCM v3.0.1 Mapping

Enterprise Architecture to CCM v3.0.1 Mapping
Release Date: 12/18/2020

The EA-CCM Mapping is a companion piece with the EA-CCM Shared Responsibility Model. To review the Shared Responsibility Model, follow this link. (http://cl...

Request to download
Cloud-Based, Intelligent Ecosystems

Cloud-Based, Intelligent Ecosystems
Release Date: 12/10/2020

This paper proposes a call to action for security executives to break the endless cycle of iterative tool adoption and, instead, move to data-centric securit...

Request to download
Requirements for Bodies Providing STAR Certification

Requirements for Bodies Providing STAR Certification
Release Date: 12/05/2020

This document outlines how to conduct a STAR certification assessments to the Cloud Controls Matrix (CCM) as part of an ISO 27001 assessment.

Request to download
Top Threats to Cloud Computing: Egregious Eleven Deep Dive - Japanese Translation

Top Threats to Cloud Computing: Egregious Eleven Deep Dive - Japanese Translation
Release Date: 11/30/2020

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translated c...

Request to download
The 2020 State of Identity Security in the Cloud

The 2020 State of Identity Security in the Cloud
Release Date: 11/19/2020

The use of cloud services have continued to increase over the past decade. Particularly in the wake of the COVID-19 public health crisis, many enterprises di...

Request to download
Best Practices in Implementing a Secure Microservices Architecture - Japanese Translation

Best Practices in Implementing a Secure Microservices Architecture - Japanese Translation
Release Date: 11/18/2020

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translated c...

Request to download
Key Management in Cloud Services

Key Management in Cloud Services
Release Date: 11/09/2020

The purpose of this document is to provide guidance for using Key Management Systems (KMS) with cloud services, whether the key management system is native t...

Request to download

Cloud Controls Matrix v3.0.1 ISO Reverse Mapping
Release Date: 10/22/2020

This latest expansion to the CCM incorporates the ISO/IEC 27017:2015:2015 and ISO/IEC 27018:20147:2015 and ISO/IEC 27002:2013 controls, introduces a new appr...

Request to download
Mitigating Hybrid Clouds Risks

Mitigating Hybrid Clouds Risks
Release Date: 10/22/2020

The purpose of this document is to provide guidance for the countermeasures to the risks, threats, and vulnerabilities in hybrid cloud environments.

Request to download
Cloud OS Security Specification v2.0

Cloud OS Security Specification v2.0
Release Date: 10/14/2020

Currently, most of the standards related to cloud computing security focus on information security management systems (ISMS), and corresponding certification...

Request to download
Survey Report - Security Practices in HPC & HPC Cloud

Survey Report - Security Practices in HPC & HPC Cloud
Release Date: 10/08/2020

This survey report aims to provide insights to the level and type of cyber and cloud security adopted by High Performance Computing (HPC) / HPC Cloud infrast...

Request to download
Critical-Controls-Implementation-for-SAP-(Parts-1-and-2)

Critical-Controls-Implementation-for-SAP-(Parts-1-and-2)
Release Date: 10/05/2020

SAP security documentation can be difficult to navigate and there are currently no frameworks that aligns with standard controls. This document aims to allev...

Request to download