CCM “Granular Add-on” & CCM “Concentrated”: Enhancing Cloud Controls Compliance

Presented by

Rolf Becker, Ricky Arora, and Simon Hodgkinson

About this talk

CCMv4 is a broadly adopted and recognized instrument to assess and certify compliance with a globally standardised set of controls. The European User Group Entreprise & Cloud Data Protection (EuUG) which is joining the Cloud Security Alliance (CSA) as a Special Interest Group, has developed and proposes to enhance a more granular add-on of controls expanding in several control domains with specific controls e.g. addressing augmented data protection requirements resulting from region or industry specific regulatory guidance. In addition, the EuUG is working on concentrating cloud controls to facilitate a streamlined assessment and certification of compliance for small and mid sized XaaS providers without compromising on the trust and assurance level of the assessment results. The EuUG is proposing to develop both instruments and a related assessment service as CSA Special Interest Group in dedicated work streams and is inviting participation.
Related topics:

More from this channel

Upcoming talks (8)
On-demand talks (909)
Subscribers (67832)
CSA CloudBytes was launched as a webinar series to help us educate the industry on all matters related to the cloud. Our channel is designed to inform our audience about trending topics, new technologies, and latest research. Learn more at Join the Cloud Security Alliance on LinkedIn and follow us on twitter: @cloudsa