ISO 27017 is a widely adopted cloud security standard that provides a framework for protecting sensitive information in cloud environments. By implementing ISO 27017, organizations can improve their cloud security, comply with regulatory requirements, and increase trust with their customers and stakeholders.
| Resource | What It Offers | |----------|----------------| | | General security controls – many apply to cloud | | CSA Cloud Controls Matrix v4 | Free, downloadable spreadsheet of cloud controls mapped to ISO 27017 | | NIST SP 800-210 | Free guide on cloud access control | | EU Cloud Code of Conduct | Free self-assessment tool for cloud GDPR compliance |