ChaptersCircleEventsBlog
Join us for the in-person CCSK Azure course at Black Hat from August 4–5! Register now for a hands-on deep dive and secure your spot now!

CSA STAR Resources

Home
Resources

Browse Resources

Requirements for Bodies Providing STAR Certification

Requirements for Bodies Providing STAR Certification

Release Date: 03/31/2025

This document outlines how to conduct STAR certification assessments to the Cloud Controls Matrix (CCM) as part of an ISO 27001 assessment. The STAR certi...

Request to download
NIST CSF v2 Cloud Community Profile - Based on CCM v4

NIST CSF v2 Cloud Community Profile - Based on CCM v4

Release Date: 10/15/2024

The CSFv2.0 Cloud Community Profile aligns the Cloud Controls Matrix (CCM) version 4.0 with the Cybersecurity Framework (CSF) version 2.0 by mapping equiv...

Request to download
STAR Attestation Value Proposition

STAR Attestation Value Proposition

Release Date: 10/03/2023

Request to download
Guidelines for CPAs Providing CSA STAR Attestation v4

Guidelines for CPAs Providing CSA STAR Attestation v4

Release Date: 09/07/2023

This document provides guidance for CPAs in conducting a STAR Attestation. It includes relevant information including professional requirements, competenc...

Request to download
CSA Assurance Education FAQ

CSA Assurance Education FAQ

Release Date: 08/22/2023

Assurance education encompasses training and certification programs that teach individuals how to determine the effectiveness of the cybersecurity practic...

Request to download
STAR Assessment Portfolio FAQ

STAR Assessment Portfolio FAQ

Release Date: 08/22/2023

The STAR Assessment Portfolio is a collection of globally-recognized cloud security and privacy assessments that can be completed by cloud service provide...

Request to download
Deconstructing Application Connectivity Challenges in a Complex Cloud Environment

Deconstructing Application Connectivity Challenges in a Complex Cloud Environment

Release Date: 12/14/2022

The production and use of SaaS applications in organizations has grown exponentially over the past several years. Application Security has become an integ...

Request to download
CSA CCM v4.0 Addendum - ISMAP

CSA CCM v4.0 Addendum - ISMAP

Release Date: 10/04/2022

This document is an addendum to the CCM V4.0 that contain controls mapping between the CSA CCM and Japan's Information System Security Management and Asse...

Request to download
Accedere: Using a SOC 2 Approach to Help Organizations Achieve CSA STAR Level 2

Accedere: Using a SOC 2 Approach to Help Organizations Achieve CSA STAR Level 2

Release Date: 09/19/2022

Cybersecurity frameworks, standards and certifications can be quite complicated to understand, making it difficult to identify which standard an organizat...

Request to download
The Importance of STAR

The Importance of STAR

Release Date: 03/17/2022

Compliance requires a comprehensive review of services and processes related to cloud infrastructure and how it is managed during a data lifecycle. STAR f...

Request to download
STAR Level 1: Security Questionnaire (CAIQ v4) - Japanese Translation

STAR Level 1: Security Questionnaire (CAIQ v4) - Japanese Translation

Release Date: 11/02/2021

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate...

Request to download
CCM v4 - Turkish Translation

CCM v4 - Turkish Translation

Release Date: 10/26/2021

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate...

Request to download
CCM and CAIQ v4 - Chinese Translations

CCM and CAIQ v4 - Chinese Translations

Release Date: 10/26/2021

This localized version of this publication was produced from the original source material (CCM, CAIQ) through the efforts of local organizations and the C...

Request to download
CCM and CAIQ v4 -Japanese Translations

CCM and CAIQ v4 -Japanese Translations

Release Date: 10/26/2021

This localized version of this publication was produced from the original source material (CCM, CAIQ) through the efforts of chapters and volunteers but t...

Request to download
CCM v4 - Spanish Translation

CCM v4 - Spanish Translation

Release Date: 10/26/2021

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate...

Request to download
CCM v4 Chinese Translation

CCM v4 Chinese Translation

Release Date: 10/26/2021

This localized version of this publication was produced from the original source material (CCM, CAIQ) through the efforts of local organizations and the C...

Request to download
CCM v4 - Hungarian Translation

CCM v4 - Hungarian Translation

Release Date: 10/19/2021

This localized version of this publication was produced from the original source material through the efforts of chapters and volunteers but the translate...

Request to download
Code of Practice for Implementing STAR Level 2

Code of Practice for Implementing STAR Level 2

Release Date: 06/23/2021

This Code of Practice shows how you can apply the CCM control set in your organization to reach STAR Level 2 third party certification/attestation and als...

Request to download
STAR Level 1: Security Questionnaire (CAIQ v4)

STAR Level 1: Security Questionnaire (CAIQ v4)

Release Date: 06/07/2021

The STAR Level 1: Security Questionnaire (CAIQ v4) offers an industry-accepted way to document what security controls exist in IaaS, PaaS, and SaaS services,...

Request to download
STAR Enabled Solution | CSA - OneTrust VRM Tool

STAR Enabled Solution | CSA - OneTrust VRM Tool

Release Date: 05/05/2021

The CSA-OneTrust Vendor Risk Management (VRM) tool automates the entire vendor management lifecycle, including onboarding and offboarding vendors, triaging v...

Request to download