CSA Research Publications
Whitepapers, Reports and Other Resources
Browse Publications
![]() | State of SaaS Security: 2023 Survey Report Release Date: 06/02/2023 In today’s digital landscape, SaaS has emerged as a vital lifeline for operations in organizations big and small. As businesses entrust the cloud with the... Request to download |
![]() | High Performance Computing Tabletop Guide Release Date: 05/31/2023 This guide lays out the framework necessary to host a High Performance Computing (HPC)-focused cyberattack tabletop exercise (TTX) so that organizations c... Request to download |
![]() | Medical Devices in A Zero Trust Architecture - Japanese Translation Release Date: 05/31/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | How to Design a Secure Serverless Architecture (2023 Version) - Japanese Translation Release Date: 05/12/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | Enterprise Authority to Operate Working Group Charter 2023 Release Date: 05/10/2023 The mission of the Enterprise Authority to Operate (EATO) Working Group is to develop, maintain, review, update, support and deploy of a concentrated assessm... Request to download |
![]() | Medical Devices in A Zero Trust Architecture Release Date: 05/08/2023 Today’s medical devices often connect to the cloud, which increases the risk by expanding the attack surface. This presents the Healthcare Delivery Organi... Request to download |
![]() | An Agile Data Doctrine for a Secure Data Lake Release Date: 04/25/2023 Data is now a significant asset in most organizations around the globe, whether government, business, or not-for-profit; the inevitable shift toward its u... Request to download |
![]() | The Six Pillars of DevSecOps: Automation - Japanese Translation Release Date: 04/05/2023 This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate... Request to download |
![]() | Release Date: 04/05/2023 The Cloud Controls Matrix (CCM) is a framework of controls (policies and procedures) that are essential for cloud computing security. It is created and up... Request to download |
![]() | Agile Data Lake Threat Modeling Release Date: 03/28/2023 As cloud platforms expand further and further into business uses, the need to understand the attack surface to your data becomes much more apparent. With ... Request to download |
![]() | Data Loss Prevention and Data Security Survey Report Release Date: 03/14/2023 As the traditional perimeter is reduced or eliminated with the move to remote and hybrid work, and as Zero Trust strategies gain popularity, data security... Request to download |
![]() | Internet of Things (IoT) Working Group Charter 2023 Release Date: 03/12/2023 This charter lays out the scope, responsibilities, and roadmap for the Internet of Things Working Group. The Cloud Security Alliance Internet of Things (I... Request to download |
![]() | Quantum-Safe Security Working Group Charter 2023 Release Date: 03/10/2023 The focus of the Quantum‐Safe Security Working Group is on cryptographic methods that will remain safe after the widespread availability of the quantum co... Request to download |
![]() | Health Information Management Working Group Charter 2023 Release Date: 03/07/2023 The Health Information Management Working Group aims to directly influence how health information service providers deliver secure cloud solutions (servic... Request to download |
![]() | Auditors Guidance Document STAR Certification: Auditing the Cloud Controls Matrix Release Date: 03/01/2023 The download file also contains the following: Illustrative Type 2 SOC 2® Report: With the Additional Criteria in the Cloud Security Alliance (CSA) Cloud ... Request to download |
![]() | CSA CCM v4.0 Addendum - IBM Cloud Framework for Financial Services v1.1.0 Release Date: 02/22/2023 This document is a CSA CCM v4.0 addendum to the IBM Cloud Framework for Financial Services v1.1.0 that contains controls mapping between the CCM and the I... Request to download |
![]() | Release Date: 02/01/2023 A STAR Enabled Solution is a product or service that utilizes the CCM framework or the Consensus Assessment Initiative Questionnaire (CAIQ). Their technol... Request to download |
![]() | Top Threats Working Group Charter 2023 Release Date: 02/01/2023 The Top Threats Working Group aims to provide up-to-date, industry-informed expert insights on cloud security risks, threats, and vulnerabilities to help ... Request to download |
![]() | Telesurgery Tabletop Guide Book Release Date: 01/30/2023 The purpose of this guidebook is to assist healthcare providers in planning and facilitating a discussion and evaluation of the procedural response action... Request to download |
![]() | ACSP Training Course Outline | CSA Release Date: 01/17/2023 An outline of the topics covered and what you'll be building in the labs each day of the Advanced Cloud Security Practitioner (ACSP) Training. Cloud ... Request to download |