Cloud 101CircleEventsBlog
Download Presentations from the CSA AI Summit at RSAC Now

STAR Registry Listing for

Descope

Founded in 2013 by the Cloud Security Alliance, the Security Trust Assurance and Risk (STAR) registry encompasses key principles of transparency, rigorous auditing, and cloud security and privacy best practices.

Descope

Descope is a drag-and-drop customer authentication and identity management platform. Our visual workflows, SDKs, and APIs help customers easily create and modify any user journey interaction with their apps. Hundreds of organizations use Descope to improve user onboarding with passwordless auth, enhance user protection with risk-based MFA, and unify identities across customer-facing apps with federated SSO.

Information about Descope
Listed Since: 03/27/2024
Last Updated: 03/27/2024

STAR Level 1

Self-Assessment & Partner-Provided

Consensus Assessments Initiative Questionnaire v4.0.3

CAIQ 4.0.3 Self-assessment
Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No questions a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the CSA Cloud Controls Matrix (CCM).

STAR Level 2

Third-Party Audit

Organizations looking for a third-party audit can choose from one or more of the security and privacy audits and certifications.

Consensus Assessments Initiative Questionnaire v3.0.1

STAR Attestation
Provides guidelines for CPAs to conduct SOC 2 engagements using criteria from the AICPA (Trust Service Principles, AT 101) and the CSA Cloud Controls Matrix.