Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.




Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.

CSAI FoundationChaptersEventsBlog
Join Identity Week America to explore secure credentials, biometrics, and digital identity solutions while connecting with industry experts. Save 20% on your ticket with code CSASAVE20

STAR Registry Listing for

Model N

Model N

Model N supports the complex business needs of the world’s leading brands in pharmaceutical, medical device, high tech, manufacturing and semiconductors across more than 120 countries, including Pfizer, AstraZeneca, Sanofi, Gilead, Abbott, Stryker, AMD, Micron, Seagate, STMicroelectronics, NXP, Sesotec, and Southern States.

Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No/NA questions and space to justify the response a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the Cloud Controls Matrix (CCM).
Provides guidelines for CPAs to conduct SOC 2 engagements using criteria from the AICPA (Trust Service Principles, AT 101) and the CSA Cloud Controls Matrix.
Information about Model N
Listed Since: 04/06/2022

STAR Level 1

Cloud Controls Matrix

CAIQ Self-assessment v4.0.2

Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No/NA questions and space to justify the response a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the Cloud Controls Matrix (CCM).

Created or renewed about 1 year ago, on June 24, 2025.

(Deprecated)
Deprecated assessments do not necessarily indicate non-compliance. In this case, the assessment has not been updated within its validity period. We suggest contacting this organization directly to request that they submit an updated assessment.

STAR Level 2

Cloud Controls Matrix

STAR Attestation v3.0

Provides guidelines for CPAs to conduct SOC 2 engagements using criteria from the AICPA (Trust Service Principles, AT 101) and the CSA Cloud Controls Matrix.

Created or renewed over 3 years ago, on January 20, 2023.

(Deprecated)
Deprecated assessments do not necessarily indicate non-compliance. In this case, the assessment has not been updated within its validity period. We suggest contacting this organization directly to request that they submit an updated assessment.