CSA Research Publications
Whitepapers, Reports and Other Resources
Browse Publications
![]() | Top Threats to Cloud Computing Post Pandemic Eleven Survey Report Release Date: 08/05/2023 The CSA Top Threats Report aims to raise awareness of current cloud security risks, threats, and vulnerabilities. In this 2024 installment, we surveyed ov... Request to download |
![]() | Security Enabled Innovation and Cloud Trends Release Date: 08/02/2023 Expel commissioned CSA to develop a survey and report to understand better the industry’s knowledge, attitudes, and opinions regarding security’s relation... Request to download |
![]() | Security Implications of ChatGPT Release Date: 08/02/2023 This position paper provides analysis across four dimensions: How it can benefit cybersecurity, how it can benefit malicious attackers, how ChatGPT might ... Request to download |
![]() | Serverless Working Group Charter 2023 Release Date: 07/24/2023 The Serverless Working Group seeks to develop best practices to help organizations that want to run their business with a serverless computing model. Serv... Request to download |
![]() | Release Date: 07/18/2023 Zero Trust is a strategic mindset that is highly useful for organizations to adopt as part of their digital transformations and other efforts to increase ... Request to download |
![]() | Zero Trust Principles and Guidance for Identity and Access Management (IAM) Release Date: 07/13/2023 Identity and the ability to consume information about that identity as well as other Zero Trust (ZT) signals (additional attributes about an identity), is... Request to download |
![]() | Release Date: 07/12/2023 The threat landscape has materially changed over the years to the point that Identity and Access Management (IAM) is a core component of any digital acces... Request to download |
![]() | Cloud and Compromise (C&C): Gamifying of Cloud Security Release Date: 07/10/2023 CSA’s Top Threats Working Group works to identify the most significant cloud security threats, vulnerabilities, and weaknesses; analyze major incidents; a... Request to download |
![]() | CSA Code of Conduct Gap Resolution and Annex 10 to the CSA Code of Conduct for GDPR Compliance Release Date: 06/21/2023 This bundle from the CSA Privacy Level Agreement Working Group includes:CSA Code of Conduct Gap Resolution spreadsheetAnnex 10 to the CSA Code of Conduct ... Request to download |
![]() | Security Implications of ChatGPT - Japanese Translation Release Date: 06/20/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | Understanding Cloud Attack Vectors Release Date: 06/06/2023 This publication was produced through the efforts of chapters and volunteers but the content development falls outside of the CSA Research Lifecycle. For ... Request to download |
![]() | State of Financial Services in Cloud Release Date: 06/05/2023 In recent years, the financial services industry has increasingly adopted cloud services. This trend is expected to continue with the further adoption and... Request to download |
![]() | State of SaaS Security: 2023 Survey Report Release Date: 06/02/2023 In today’s digital landscape, SaaS has emerged as a vital lifeline for operations in organizations big and small. As businesses entrust the cloud with the... Request to download |
![]() | High Performance Computing Tabletop Guide Release Date: 05/31/2023 This guide lays out the framework necessary to host a High Performance Computing (HPC)-focused cyberattack tabletop exercise (TTX) so that organizations c... Request to download |
![]() | Medical Devices in A Zero Trust Architecture - Japanese Translation Release Date: 05/31/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | How to Design a Secure Serverless Architecture (2023 Version) - Japanese Translation Release Date: 05/12/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | Enterprise Authority to Operate Working Group Charter 2023 Release Date: 05/10/2023 The mission of the Enterprise Authority to Operate (EATO) Working Group is to develop, maintain, review, update, support and deploy of a concentrated assessm... Request to download |
![]() | Medical Devices in A Zero Trust Architecture Release Date: 05/08/2023 Today’s medical devices often connect to the cloud, which increases the risk by expanding the attack surface. This presents the Healthcare Delivery Organi... Request to download |
![]() | An Agile Data Doctrine for a Secure Data Lake Release Date: 04/25/2023 Data is now a significant asset in most organizations around the globe, whether government, business, or not-for-profit; the inevitable shift toward its u... Request to download |
![]() | The Six Pillars of DevSecOps: Automation - Japanese Translation Release Date: 04/05/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |