Circle
Events
Blog

CSA Research Publications

Whitepapers, Reports and Other Resources

Home
Publications

Browse Publications

Critical Controls Implementation for Salesforce

Critical Controls Implementation for Salesforce
Release Date: 06/15/2021

The Salesforce Platform can be a valuable tool for organizations to build and test applications. However, certain security changes are needed when an orga...

Request to download
Telehealth Risk Management

Telehealth Risk Management
Release Date: 06/10/2021

The recent COVID-19 pandemic has increased the demand for data and accelerated the use of telehealth. The Health Resources and Services Administration (HRSA)...

Request to download
Cloud Controls Matrix and CAIQ v4

Cloud Controls Matrix and CAIQ v4
Release Date: 06/07/2021

The Cloud Controls Matrix (CCM) is a cybersecurity control framework for cloud computing aligned to the CSA best practices, that is considered the de-facto s...

Request to download
STAR Level 1: Security Questionnaire (CAIQ v4)

STAR Level 1: Security Questionnaire (CAIQ v4)
Release Date: 06/07/2021

The STAR Level 1: Security Questionnaire (CAIQ v4) offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services,...

Request to download
Cloud Incident Response Framework - Japanese Translation

Cloud Incident Response Framework - Japanese Translation
Release Date: 06/04/2021

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate...

Request to download
IoT Security Controls Framework Version 2 - Japanese Translation

IoT Security Controls Framework Version 2 - Japanese Translation
Release Date: 05/28/2021

The IoT Security Controls Framework is relevant for enterprise IoT systems that incorporate multiple types of connected devices, cloud services, and networki...

Request to download
CSA Guide to the IoT Security Controls Framework v2 - Japanese Translation

CSA Guide to the IoT Security Controls Framework v2 - Japanese Translation
Release Date: 05/28/2021

The Guide to the IoT Security Controls Framework provides instructions for using the companion CSA IoT Security Controls Framework spreadsheet. This guide ex...

Request to download
Guidelines for CPAs Providing CSA STAR Attestation v3

Guidelines for CPAs Providing CSA STAR Attestation v3
Release Date: 05/27/2021

This document provides guidance for CPAs in conducting a STAR Attestation. It includes relevant information including: professional requirements, competency ...

Request to download
Cloud Solution Data Science COVID-19 Dashboard

Cloud Solution Data Science COVID-19 Dashboard
Release Date: 05/27/2021

Data centers grow annually by about forty percent, and those for industries such as healthcare, energy, and transportation are growing even faster. Howeve...

Request to download
CSA Enterprise Architecture Reference Guide

CSA Enterprise Architecture Reference Guide
Release Date: 05/18/2021

The Enterprise Architecture Reference Guide v2 is a companion piece with the EA v2 to CCM v3.0.1 Mapping. The peer review for both documents are intended to ...

Request to download
Enterprise Architecture Reference Diagram

Enterprise Architecture Reference Diagram
Release Date: 05/18/2021

The CSA Enterprise Architecture (EA) is both a methodology and a set of tools. It is a framework, a comprehensive approach for the architecture of a secure c...

Request to download
Enterprise Architecture v2 to CCM v3.01 Mapping Guide

Enterprise Architecture v2 to CCM v3.01 Mapping Guide
Release Date: 05/18/2021

The Enterprise Architecture (EA) is the CSA’s standard cloud reference architecture while the Cloud Control Matrix (CCM) is the CSA’s standard control set. T...

Request to download
Enterprise Architecture to CCM v3.01 Reordered Mapping

Enterprise Architecture to CCM v3.01 Reordered Mapping
Release Date: 05/18/2021

The EA v2 to CCM v3.0.1 Mapping is a companion piece with the Enterprise Architecture Reference Guide v2. The peer review for both documents are intended to ...

Request to download

Test Publication Please Ignore
Release Date: 05/17/2021

Contrary to popular belief, Lorem Ipsum is not simply random text. It has roots in a piece of classical Latin literature from 45 BC, making it over 2000 y...

Request to download
Disaster Recovery as a Service

Disaster Recovery as a Service
Release Date: 05/13/2021

Disaster Recovery as a Service (DRaaS) is a cloud computing service model that allows an organization to back up its data and IT infrastructure in a third...

Request to download
Top Cloud Priorities for CxOs

Top Cloud Priorities for CxOs
Release Date: 05/13/2021

The Top Cloud Priorities for CxOs was created to equip C-level executives with industry guidance to build pragmatic cloud security projects and strategies...

Request to download
CSA CxO Trust Working Group Charter

CSA CxO Trust Working Group Charter
Release Date: 05/11/2021

The CSA CxO Trust Working Group will conduct research consisting of best practices, metrics, surveys, C-level presentations, and other tools in support of...

Request to download
STAR Enabled Solution | CAIQ-Lite

STAR Enabled Solution | CAIQ-Lite
Release Date: 05/05/2021

CSA and Whistic identified the need for a lighter-weight assessment questionnaire in order to accommodate the shift to cloud procurement models, and to enabl...

Request to download
STAR Enabled Solution | CSA - OneTrust VRM Tool

STAR Enabled Solution | CSA - OneTrust VRM Tool
Release Date: 05/05/2021

The CSA-OneTrust Vendor Risk Management (VRM) tool automates the entire vendor management lifecycle, including onboarding and offboarding vendors, triaging v...

Request to download
Cloud Incident Response Framework

Cloud Incident Response Framework
Release Date: 05/04/2021

This document aims to provide a Cloud Incident Response (CIR) framework that serves as a go-to guide for a CSC to effectively prepare for and manage cloud in...

Request to download