STAR Registry FAQ信息安全资料 .docxVIP

  • 0
  • 0
  • 约5.12千字
  • 约 3页
  • 2026-02-10 发布于浙江
  • 举报

STARRegistryFAQ

Theonlyplaceyouneedtogoforcloudsecuritytransparency

TheCSASecurity,Trust,Assurance,andRisk(STAR)programisthelargestcloudassuranceprogramintheworldthatconstitutesanecosystemofthebestpractices,standards,technology,andauditingpartners.STARsupportsorganizationstoeffectively

andefficientlyaddresshowtodefinetrustinthecloud,fosteraccountability,evaluaterisk,measureassurance,andsimplifycomplianceandprocurement.TheSTARRegistryistheprimaryserviceofferedbytheSTARprogram.

Whatisit?

TheSTARRegistryisagloballyrecognizedandpubliclyaccessiblerepositoryofover2,000serviceassessmentsfilledoutbycloudserviceproviders(CSPs).Theseassessmentsdocumentthesecurity,privacy,andgovernancepoliciesofthecloudservicesofferedbytheCSPs.CloudcustomerscanusetheSTARRegistrytofindacloudservicewiththerightlevelofsecurityanddataprivacyfortheirorganization.

Whyisitimportant?

TheSTARRegistrybenefitsbothCSPsandtheircurrentandprospectivecustomers.It:

? Servesasamarketdifferentiator,allowingCSPstodemonstratetheirvaluesoftransparency,accountability,andtop-tiersecurity.

? ProvideseasilyaccessibleinformationonCSPs’securitycommitmentsandcapabilities,allowingcurrentcustomerstoconfirmthecontinuedcomplianceoftheirCSP.

? Streamlinesthecloudserviceselectionandprocurementprocessesforpotentialcloudcustomersbyprovidingasinglelistofthousandsofservicesalignedwithindustrybestpractices.

? AllowstransparencyoftheexpectedsharedsecurityresponsibilitiesbetweenCSPsandcloudcustomers.

? EliminatestheneedforCSPstocompletemultiplecustomersquestionnaires.CSPscan

?Copyright2023,CloudSecurityAlliance.Allrightsreserved. 1

pointstakeholderstotheRegistryforthelatestinformation,ratherthanfillingoutauniquequestionnaireforeachstakeholder.

Howdoyouuseit?

Vis

您可能关注的文档

文档评论(0)

1亿VIP精品文档

相关文档