ChaptersEventsBlog
How is your enterprise using AI Agents? Help us benchmark security and take the survey before November 30 →

Working Group

Open API

Enterprises are moving towards an IT model in which most business applications are delivered as Software as a Service (SaaS) from Cloud Service Providers (CSPs). The emerging tools and products used to secure these business applications are categorized as Cloud Access Security Brokers (CASB) by leading analysts. The goal of the Cloud Security Open Application Programming Interface (Open API) Working Group is to provide guidance for Enterprises and CSPs on functionality and interoperability with CASBs. As well as to enable rapid adoption of cloud services in a secure manner, and to protect Personally Identifiable Information (PII) and sensitive data across multiple clouds.
Working Group
Who can join?

Anyone can join a working group, whether you have years of experience or want to just participate as a fly on the wall.

What is the time commitment?

The time commitment for this group varies depending on the project. You can spend a 15 minutes helping review a publication that's nearly finished or help author a publication from start to finish.

Open Peer Reviews

Peer reviews allow security professionals from around the world to provide feedback on CSA research before it is published.

Learn how to participate in a peer review here.

Standards-Benchmarks-Maturity

Open Until: 12/13/2025

Standardization serves as a foundational backbone that enables uniqueness and diversity to flourish within structured envir...

Open Source Red Teaming Tool: PyRIT Automation Capability in Agentic Red Team Testing Environments

Open Until: 12/13/2025

This paper presents an open source red teaming tool for simulating adversarial attacks in modern systems. Designed for secu...

Using Zero Trust Against Identity Spoofing and Abuse

Open Until: 12/20/2025

The shift towards zero trust architectures brings in a heightened focus on the integrity of identity and identity attribute...

Using Zero Trust to Secure Enterprise Information in LLM Environments

Open Until: 12/20/2025

Guidance for safe enterprise enablement of AI/ML apps while protecting sensitive organizational information (IP, PII, etc.)...