The CSA Enterprise Authority to Operate (EATO) Framework is an assessment, remediation, consultancy, and certification framework. It targets Anything-as-a-Service (XaaS) providers and their entire underlying supply chain who are catering to customers in highly regulated industries processing sensitive data. EATO controls are based on CCMv4, with augmented controls to reflect tight regulatory requirements, and the certification plugs into the CSA STAR Framework as a Level 2 “premium” version. EATO will follow a subscription based model with shared funding of one single cycle (Audit – Findings – Remediation under independent guidance – Re-Audit – Trusted Certification) conducted by CSA certified partners, instead of duplicative assessments by each individual corporate customer.