CSA Research Publications
Whitepapers, Reports and Other Resources
Browse Publications
![]() | Release Date: 05/13/2021 The Top Cloud Priorities for CxOs was created to equip C-level executives with industry guidance to build pragmatic cloud security projects and strategies... Request to download |
![]() | CSA CxO Trust Working Group Charter Release Date: 05/11/2021 The CSA CxO Trust Working Group will conduct research consisting of best practices, metrics, surveys, C-level presentations, and other tools in support of... Request to download |
![]() | STAR Enabled Solution | CSA - OneTrust VRM Tool Release Date: 05/05/2021 The CSA-OneTrust Vendor Risk Management (VRM) tool automates the entire vendor management lifecycle, including onboarding and offboarding vendors, triaging v... Request to download |
![]() | Cloud Incident Response Framework Release Date: 05/04/2021 This document aims to provide a Cloud Incident Response (CIR) framework that serves as a go-to guide for a CSC to effectively prepare for and manage cloud in... Request to download |
![]() | Security Guidelines for Providing and Consuming APIs Release Date: 04/30/2021 In modern application workloads, organizations are often required to integrate their application with other parties such as Software-as-a-Service (SaaS) prov... Request to download |
![]() | Crypto-Asset Exchange Security Guidelines Release Date: 04/13/2021 Thanks to the blockchain technology that makes them possible, crypto-assets are becoming massively successful. As with any successful industry, a multitud... Request to download |
![]() | Zero Trust Architecture Expert Group Charter Release Date: 04/08/2021 The CSA Zero Trust Architecture Expert Group will review and advise on the scope, curriculum, objectives, structure, go-to-market (GTM) strategy and value pr... Request to download |
![]() | Critical Controls Implementation for Oracle E-Business Suite Release Date: 04/05/2021 This paper will help an organization determine what security changes are needed when deploying Oracle E-Business Suite (EBS) in the Cloud. For clarity, this ... Request to download |
![]() | CSA STAR Level 3 Focus Group Charter Release Date: 04/02/2021 The CSA STAR Level 3 Focus Group will advise on the scope, objectives, structure, go-to-market (GTM) strategy and value proposition for STAR Level 3... Request to download |
![]() | State of Cloud Security Concerns, Challenges, and Incidents Release Date: 03/30/2021 The use of cloud services has continued to increase over the past decade. Particularly in the wake of the COVID-19 public health crisis, many enterprises’... Request to download |
![]() | Release Date: 03/10/2021 The following resources are frequently referenced in the CCAK study guide and training materials. You can download the unofficial prep-kit with the correc... Request to download |
![]() | Confidence in Post Quantum Algorithms Release Date: 02/25/2021 NIST made the recent announcement of its Round 3 candidates for future post-quantum cryptography or quantum safe standards. As the world prepares to transiti... Request to download |
![]() | Cloud Incident Response Working Group Charter Release Date: 02/14/2021 In today’s connected era, a comprehensive incident response strategy is an integral aspect of any organization aiming to manage and lower their risk profile.... Request to download |
![]() | Blockchains in the Quantum Era Release Date: 02/05/2021 Digital Ledger Technologies (DLT) such as blockchain are being deployed as part of diverse applications that span multiple market segments. Application devel... Request to download |
![]() | CSA IoT Security Controls Framework v2 Release Date: 01/28/2021 The IoT Security Controls Framework is relevant for enterprise IoT systems that incorporate multiple types of connected devices, cloud services, and networki... Request to download |
![]() | Guide to the Internet of Things (IoT) Security Controls Framework v2 Release Date: 01/28/2021 The Guide to the IoT Security Controls Framework provides instructions for using the companion CSA IoT Security Controls Framework v2 spreadsheet. This guide... Request to download |
![]() | Earning Trust in the 21st Century Release Date: 01/26/2021 This paper addresses the technical, social, policy, and regulatory issues associated with creating trust frameworks in a Zero Trust world. Industry and gover... Request to download |
![]() | APAC Data Sovereignty Working Group Charter Release Date: 01/12/2021 The proposed charter outlines the scope, responsibilities, issues to address, align and guide the working group. Request to download |
![]() | Mitigating Hybrid Clouds Risks - Turkish Translation Release Date: 01/12/2021 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translated c... Request to download |
![]() | Software-Defined Perimeter Zero Trust Charter Release Date: 12/29/2020 The proposed charter outlines the scope, responsibilities, etc. to align and guide the Software-Defined Perimeter Zero Trust working group through the year 2... Request to download |