ChaptersCircleEventsBlog
Join us for the in-person CCSK Azure course at Black Hat from August 4–5! Register now for a hands-on deep dive and secure your spot now!

CSA Research Publications

Whitepapers, Reports and Other Resources

Home
Publications

Browse Publications

Security Guidance v4.0 Info Sheet

Security Guidance v4.0 Info Sheet

Release Date: 11/09/2018

This version, the first major update since 2011, is the culmination of over a year of dedicated research and public participation from the CSA community, wor...

Request to download
CCM v3.0 - Chinese Translation

CCM v3.0 - Chinese Translation

Release Date: 10/19/2018

The Cloud Security Alliance (CSA) Cloud Controls Matrix (CCM) provides fundamental security principles to guide cloud vendors and cloud customers seeking to ...

Request to download
Security Guidance for Critical Areas of Focus in Cloud Computing v4.0 (Spanish Translation)

Security Guidance for Critical Areas of Focus in Cloud Computing v4.0 (Spanish Translation)

Release Date: 10/19/2018

Con este documento, nuestro objetivo es proporcionar tanto orientación como inspiración para respaldar los objetivos comerciales, mientras se gestionan y m...

Request to download
Using BlockChain Technology to Secure the Internet of Things - Japanese Translation

Using BlockChain Technology to Secure the Internet of Things - Japanese Translation

Release Date: 10/03/2018

本書「IoT セキュリティのためのブロックチェーン技術の活用」は、Cloud Security Alliance (CSA)が公開して いる「Using Blockchain Technology to Secure the Internet of Things」の日本語訳です。本書は、CSA ジャパ ンが、CS...

Request to download
IoT Firmware Update Processes

IoT Firmware Update Processes

Release Date: 09/20/2018

The traditional approach to updating software for IT assets involves analysis, staging and distribution of the update—a process that usually occurs during of...

Request to download
Code of Conduct for GDPR Compliance - Japanese Translation

Code of Conduct for GDPR Compliance - Japanese Translation

Release Date: 09/14/2018

説明: 本書「GDPR 準拠の為の行動規範」は、Cloud Security Alliance (CSA)が公開している「CODE OF CONDUCT FOR GDPR COMPLIANCE」の日本語訳および一般社団法人日本クラウドセキュリティアライア ンス(CSAジャパン)が解説を加えたものです...

Request to download
Top Threats to Cloud Computing: Deep Dive

Top Threats to Cloud Computing: Deep Dive

Release Date: 08/08/2018

This case study attempts to connect all the dots when it comes to security analysis by using nine anecdotes cited in the Top Threats for its foundation. Each...

Request to download
OWASP Secure Medical Devices Deployment Standard

OWASP Secure Medical Devices Deployment Standard

Release Date: 08/07/2018

With the explosion of botnets and other malware that now target IoT devices (of which medical devices can be considered a subtype) the need for security-min...

Request to download
Security Position Paper Network Function Virtualization - Chinese Translation

Security Position Paper Network Function Virtualization - Chinese Translation

Release Date: 08/03/2018

近五年来,随着云基础设施的能力和复杂性飞速演进,安全风险也相应上升。 虽然虚拟化已不是一个很新的概念,但几乎任何人都可以对计算、存储、网络和应 用程序等资源进行虚拟化的想法会增加安全威胁的影响和速度。同时,全球地缘政 治格局已从由机遇驱动的网络攻击转变为资金充足的国家行动

Request to download
Using BlockChain Technology to Secure the Internet of Things - Chinese Translation

Using BlockChain Technology to Secure the Internet of Things - Chinese Translation

Release Date: 08/03/2018

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translated c...

Request to download
Security Guidance v4.0 - Chinese Translation

Security Guidance v4.0 - Chinese Translation

Release Date: 08/03/2018

欢迎来到云安全联盟关于云计算关键领域安全指南的第四个版本。云计算的兴起是一项不 断发展的技术,它带来了许多机遇和挑战。通过这个文档,我们的目标是提供指导和灵感来支 持业务目标,同时管理和减轻采用云计算技术相关的风险。 This localized version of this publication was ...

Request to download
GEAB State of the Cloud 2018 - Chinese Translation

GEAB State of the Cloud 2018 - Chinese Translation

Release Date: 08/03/2018

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate...

Request to download
CSA Code of Conduct for GDPR Compliance - Chinese Translation

CSA Code of Conduct for GDPR Compliance - Chinese Translation

Release Date: 08/03/2018

云安全联盟 CSA 近期发布了 CoC for GDPR Compliance(CSA GDPR 合规行为准则),旨 在为云服务提供商(CSP)、云消费者、及相关企业提供 GDPR 合规解决方案,并提供涉及云服 务提供商应提交的关于数据保护级别的透明性准则。这个准则为各种规模的客户提供工具来评 估其个人数据保护水...

Request to download
Building a Foundation for Successful Cyber Threat Intelligence Exchange - Chinese Translation

Building a Foundation for Successful Cyber Threat Intelligence Exchange - Chinese Translation

Release Date: 08/03/2018

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate...

Request to download
CCM and CAIQ (Spanish Translations)

CCM and CAIQ (Spanish Translations)

Release Date: 07/10/2018

Cloud Security Alliance (CSA) in the context of an agreement with OneTrust has translated the Cloud Control Matrix (CCM) v3.0.1 and CAIQ into Spanish.

Request to download
CCM Mapping Methodology

CCM Mapping Methodology

Release Date: 07/09/2018

The Cloud Security Alliance (CSA) Cloud Controls Matrix (CCM) provides fundamental security principles to guide cloud vendors and cloud customers seeking to ...

Request to download
Software Defined Perimeter Architecture Guide: Chinese Translation

Software Defined Perimeter Architecture Guide: Chinese Translation

Release Date: 06/24/2018

Software Defined Perimeter (SDP) Architecture Guide is designed to leverage proven, standards-based components to stop network attacks against application in...

Request to download
Software Defined Perimeter as a DDoS Mechanism: Chinese Translation

Software Defined Perimeter as a DDoS Mechanism: Chinese Translation

Release Date: 06/24/2018

The primary goal of this document is to increase the awareness and understanding of SDP as a tool to prevent DDoS attacks by demonstrating its efficiency and...

Request to download
Software Defined Perimeter Specification: Chinese Translation

Software Defined Perimeter Specification: Chinese Translation

Release Date: 06/24/2018

This document outlines a Cloud Security Alliance (CSA) initiated protocol for the Software Defined Perimeter specification, and requests discussion and sugge...

Request to download
Firmware Integrity in the Cloud Data Center

Firmware Integrity in the Cloud Data Center

Release Date: 06/12/2018

This paper presents the point of view from key stakeholders in datacenter development regarding how to build cloud infrastructure using secure servers and in...

Request to download