Cloud 101CircleEventsBlog
The CCSK v5 and Security Guidance v5 are now available!

CSA Research Publications

Whitepapers, Reports and Other Resources

Home
Publications

Browse Publications

Requirements for Bodies Providing STAR Certification

Requirements for Bodies Providing STAR Certification
Release Date: 04/13/2024

This document outlines how to conduct STAR certification assessments to the Cloud Controls Matrix (CCM) as part of an ISO 27001 assessment. The STAR certi...

Request to download
Open Certification Framework Working Group Charter

Open Certification Framework Working Group Charter
Release Date: 03/31/2024

The CSA Open Certification Framework (OCF) is an industry initiative to allow global, trusted independent evaluation of cloud providers. It is a program for ...

Request to download
Guidelines for CPAs Providing CSA STAR Attestation v4

Guidelines for CPAs Providing CSA STAR Attestation v4
Release Date: 09/07/2023

This document provides guidance for CPAs in conducting a STAR Attestation. It includes relevant information including professional requirements, competenc...

Request to download
STAR Level 1: Security Questionnaire (CAIQ v4)

STAR Level 1: Security Questionnaire (CAIQ v4)
Release Date: 06/07/2021

The STAR Level 1: Security Questionnaire (CAIQ v4) offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services,...

Request to download
STAR Certification Guidance Document: Auditing the Cloud Controls Matrix (CCM)

STAR Certification Guidance Document: Auditing the Cloud Controls Matrix (CCM)
Release Date: 08/05/2020

There are a number of control areas on the CCM that will each be awarded a management capability score on a scale of 1-15. This 2nd version release includes ...

Request to download
STAR Continuous Technical Guidance

STAR Continuous Technical Guidance
Release Date: 02/27/2019

STAR Continuous specifies the necessary activities and conditions for the continuous auditing of the cloud service over a defined set of security requirement...

Request to download
Streamlining Vendor IT Security and Risk Assessments

Streamlining Vendor IT Security and Risk Assessments
Release Date: 12/09/2018

Cloud computing has rapidly gained traction as a significant and even default IT system for many different organizations. In such a dynamic environment, cybe...

Request to download
CSA STAR Program & Open Certification Framework in 2016 and Beyond

CSA STAR Program & Open Certification Framework in 2016 and Beyond
Release Date: 04/12/2016

The Cloud Security Alliance (CSA) Security, Trust and Assurance Registry (STAR) program is the industry’s leading trust mark for cloud security. The CSA Open...

Request to download
STAR Overview PDF

STAR Overview PDF
Release Date: 04/20/2015

The CSA STAR Program is a publicly accessible registry designed to recognize the varying assurance requirements and maturity levels of providers and consumer...

Request to download
Publicizing Your STAR Certification

Publicizing Your STAR Certification
Release Date: 09/03/2013

The following guidelines will help you to apply good practice in publicizing, communicating and promoting your certification to stakeholders, including staff...

Request to download
OCF Vision Statement

OCF Vision Statement
Release Date: 08/17/2012

The CSA Open Certification Framework is a program for flexible, incremental and multi-layered cloud provider certification according to the Cloud Security Al...

Request to download