Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.




Industry Leadership
Strategic Initiatives
CSA's strategic programs driving innovation in AI, cloud, and Zero Trust.
A public-interest 501(c)(3) dedicated to secure and trustworthy AI.

CSAI FoundationChaptersEventsBlog
Join Identity Week America to explore secure credentials, biometrics, and digital identity solutions while connecting with industry experts. Save 20% on your ticket with code CSASAVE20

STAR Registry Listing for

NIC G-Cloud Deem

NIC G-Cloud Deem

The government cloud 'Deem Cloud' is one of the innovative technical solutions at the National Information Center (NIC), which is affiliated with the Saudi Data and Artificial Intelligence Authority (SDAIA). It contributes to providing cloud computing services based on the latest technologies. These include Infrastructure as a Service (IaaS) offerings such as Virtual Data Center, Backup as a Service, Deem Cloud Storage, and DNS services. Additionally, Deem Cloud provides Software as a Service (SaaS) solutions such as Email as a Service, Sharek Service, Deem Video Meeting, and Deem File Sharing. Furthermore, the platform offers Security as a Service (SecaaS) through the Cybersecurity Enhancement Program. In addition to these offerings, Deem Cloud provides a range of Enterprise Services, including Institutional and Professional Services, to support the digital transformation efforts of government entities. By integrating and securing the data centers of these entities into a unified, fortified platform, Deem Cloud plays a pivotal role in advancing their cybersecurity and operational efficiency initiatives.

Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No/NA questions and space to justify the response a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the Cloud Controls Matrix (CCM).
Provides guidelines for CPAs to conduct SOC 2 engagements using criteria from the AICPA (Trust Service Principles, AT 101) and the CSA Cloud Controls Matrix.
Information about NIC G-Cloud Deem
Listed Since: 01/31/2023

STAR Level 1

Cloud Controls Matrix

CAIQ Self-assessment v4.0.2

Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No/NA questions and space to justify the response a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the Cloud Controls Matrix (CCM).

Created or renewed about 1 year ago, on August 06, 2025.

(Deprecated)
Deprecated assessments do not necessarily indicate non-compliance. In this case, the assessment has not been updated within its validity period. We suggest contacting this organization directly to request that they submit an updated assessment.

STAR Level 2

Cloud Controls Matrix

STAR Attestation v4.0

Provides guidelines for CPAs to conduct SOC 2 engagements using criteria from the AICPA (Trust Service Principles, AT 101) and the CSA Cloud Controls Matrix.

Created or renewed about 1 year ago, on August 08, 2025.