Cloud 101CircleEventsBlog
Master CSA’s Security, Trust, Assurance, and Risk program—download the STAR Prep Kit for essential tools to enhance your assurance!

STAR Registry Listing for

Platform as a Service (PaaS)

Founded in 2013 by the Cloud Security Alliance, the Security Trust Assurance and Risk (STAR) registry encompasses key principles of transparency, rigorous auditing, and cloud security and privacy best practices.

Platform as a Service (PaaS)

Platform as a Service (PaaS)

Platform as a Service (PaaS) type services consist in the provision, by PSN, of a platform capable of providing application elements and middleware as a service, abstracting from the underlying infrastructure.
The PaaS service offering involves a structured approach in which each component of the PaaS solution, such as the operating system, solution stack and other necessary software, is strictly controlled in terms of use and configuration and managed by PSN.
This offer includes different types of services that the user can purchase, jointly or separately, based on their needs:
- IAM (application identity management);
- Big Data (Data Governance);
- Artificial Intelligence (Pre-trained artificial intelligence algorithms).

View other services by Polo Strategico Nazionale:

Information about Platform as a Service (PaaS)
Listed Since: 04/22/2024
Last Updated: 08/23/2024

STAR Level 1

Self-Assessment & Partner-Provided

Consensus Assessments Initiative Questionnaire v4.0.3

CAIQ 4.0.3 Self-assessment
Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No questions a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the CSA Cloud Controls Matrix (CCM).

STAR Level 2

Third-Party Audit

Organizations looking for a third-party audit can choose from one or more of the security and privacy audits and certifications.

Cloud Controls Matrix v4

STAR Certification (CCMv4)
A technology-neutral certification leveraging the requirements of the ISO/IEC 27001 management system standard together with the CSA Cloud Controls Matrix (CCM).