Cloud 101CircleEventsBlog
Master CSA’s Security, Trust, Assurance, and Risk program—download the STAR Prep Kit for essential tools to enhance your assurance!

STAR Registry Listing for

Thales Gemalto IdCloud

Founded in 2013 by the Cloud Security Alliance, the Security Trust Assurance and Risk (STAR) registry encompasses key principles of transparency, rigorous auditing, and cloud security and privacy best practices.

Thales Gemalto IdCloud Logo
Thales Gemalto IdCloud

Thales Gemalto IdCloud

In essence, cloud banking is the on-demand delivery of hosted computing services (servers, data storage, communication and networking, applications and data analytics) to banks, credit unions, Fintechs and other financial institutions (FIs) via the Internet.
Traditionally, these security services have been implemented and managed by FIs in-house, but over the last few years, a growing number of financial institutions have decided to move some of their services and IT infrastructure to the cloud, in search of greater agility, scalability, and cost efficiency when deploying their customer-oriented services. Financial regulators worldwide have been reacting to this market demand, introducing language that opens the door for FIs to use cloud services and contract with cloud service providers if they follow certain security and data privacy guidelines.

Recognizing this trend, and leveraging on our ample experience in offering managed services for several industries, we brought our Digital Banking and Payment solutions to the cloud as services hosted and operated by Thales.

View other services by Thales:

Organizations who have the CSA Trusted Cloud Provider seal demonstrate a commitment to organizational security. They are a CSA Corporate Member volunteer regularly for CSA, and have at least one staff member who has earned their CCSK.
Information about Thales Gemalto IdCloud
Listed Since: 09/15/2023
Last Updated: 10/29/2024

STAR Level 1

Self-Assessment & Partner-Provided

Consensus Assessments Initiative Questionnaire v4.0.2

CAIQ 4.0.2 Self-assessment
Offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services. It provides a set of Yes/No questions a cloud consumer and cloud auditor may wish to ask of a cloud provider to ascertain their compliance to the CSA Cloud Controls Matrix (CCM).

STAR Level 2

Third-Party Audit

Organizations looking for a third-party audit can choose from one or more of the security and privacy audits and certifications.

Cloud Controls Matrix v3.0.1

STAR Certification
A technology-neutral certification leveraging the requirements of the ISO/IEC 27001 management system standard together with the CSA Cloud Controls Matrix (CCM).