CSA Research Publications
Whitepapers, Reports and Other Resources
Browse Publications
![]() | Cloud Controls Matrix v4 The CCM, the only meta-framework of cloud-specific security controls, mapped to leading standards, best practices and regulations. CCM provides organizations... Request to download |
![]() | Enterprise Architecture to CCM Shared Responsibility Model The EA-CCM Shared Responsibility Model is a companion piece with the EA-CCM Mapping. The peer review for both documents are intended to be done in parallel. ... Request to download |
![]() | Enterprise Architecture to CCM v3.0.1 Mapping The EA-CCM Mapping is a companion piece with the EA-CCM Shared Responsibility Model. The peer review for both documents are intended to be done in parallel. ... Request to download |
![]() | Gap Analysis Report - Mapping of the Association of Banks in Singapore Cloud Computing Implementation Guide 2.0 to Cloud Security Alliance Cloud Controls Matrix v3.0.1 The CCM Addendum (mapping with Association of Banks in Singapore Cloud Computing Implementation Guide 2.9) is a companion piece with the Gap Analysis Report.... Request to download |
![]() | CCM Gap Analysis Report (ABS CCIG) The Gap Analysis Report is a companion piece with the CCM Addendum (mapping with Association of Banks in Singapore Cloud Computing Implementation Guide 2.9).... Request to download |
![]() | STAR Certification Guidance Document: Auditing the Cloud Controls Matrix (CCM) There are a number of control areas on the CCM that will each be awarded a management capability score on a scale of 1-15. This 2nd version release includes ... Request to download |
![]() | CCM Translation in 10 Languages Cloud Security Alliance (CSA) in the context of an agreement with OneTrust has translated the Cloud Control Matrix (CCM) v3.0.1 in 10 languages in order to f... Request to download |
![]() | CSA CCM v3.0.1 Addendum - Cloud OS Security Specifications This document is an addendum to the CCM V3.0.1 and contains a controls mapping and gap analysis between the CSA CCM and CSA's research artifact "Cloud OS Sec... Request to download |
![]() | Mapping of 'The Guidelines' Security Recommendations to CCM This document contains the additional controls that serves to bridge the gap between CCM V3.0.1 and the controls within 'Guideline on Effectively Managing Se... Request to download |
![]() | Gap Analysis Report on Mapping CSA’s Cloud Controls Matrix to ‘Guideline on Effectively Managing Security Service in the Cloud’ The report summarizes the mapping of CCM v3.0.1 to 'Guideline on Effectively Managing Security Services in the Cloud' and provides gap analysis on the results. Request to download |
![]() | Cloud Controls Matrix v3.0.1 The CCM, the only meta-framework of cloud-specific security controls, mapped to leading standards, best practices and regulations. CCM provides organizations... Request to download |
![]() | CCM v3.0.1 Addendum - FedRAMP Moderate This document is an addendum to the CCM V3.0.1 that contain controls mapping between the CSA CCM and the FedRAMP R4 Moderate Baseline. The document aims to ... Request to download |
![]() | CSA CCM v3.0.1 Addendum - NIST 800-53 Rev 4 Moderate This document is an addendum to the CCM V3.0.1 that contain controls mapping between the CSA CCM and the NIST 800-53 R4 Moderate Baseline. The document aims ... Request to download |
![]() | CSA CCM v3.0.1 Addendum - AICPA TSC 2017 This document is an addendum to the CCM V3.0.1 that contain controls mapping between the CSA CCM and the AICPA TSC 2017. The document aims to help AICPA TSC ... Request to download |
![]() | CCM v3.0.1-080319 The CCM, the only meta-framework of cloud-specific security controls, mapped to leading standards, best practices and regulations. CCM provides organizations... Request to download |
![]() | CCM Mapping Workpackage Template This document is the companion document to the Methodology for the Mapping of the Cloud Controls Matrix (CCM). It is a CCM mapping workpackage template that ... Request to download |
![]() | CCM v3.0.1 Addendum - BSI Germany C5 v1 This document is an addendum to the Cloud Controls Matrix (CCM) V3.0.1 controls. It contains the additional controls that serves to bridge the gap between CC... Request to download |
![]() | CCM v3.0.1 Addendum - ISO 27002 27017 27018 v1.1 This document is an addendum to the Cloud Controls Matrix (CCM) V3.0.1 controls. It contains the additional controls that serves to bridge the gap between CC... Request to download |
![]() | CCM Mapping Methodology The Cloud Security Alliance (CSA) Cloud Controls Matrix (CCM) provides fundamental security principles to guide cloud vendors and cloud customers seeking to ... Request to download |
![]() | AOSSL and CCM Technote Cloud computing is the future, and in many cases, the present of information technology. Always On SSL (AOSSL) is rapidly becoming an essential practice to h... Request to download |