Dear partners,

I thought you might be interested in this effort by the Cloud Security Alliance in the area of continuous certification.

Best regards,

Philippe



-------- Message transféré --------
Sujet : Continuous Audit Metrics Working Group
Date : Fri, 14 Feb 2020 18:15:20 +0200
De : Alain Pannetrat <apannetrat@cloudsecurityalliance.org>


Dear colleagues,

Apologies for sending out a "bulk" email. I thought it was the easiest way for me to reach out to you and share information about an initiative we are launching, which should interest you.

CSA is building the very first "Continuous Certification" scheme in the industry. In the context of this effort, the Cloud Security Alliance is launching  a new initiative dedicated to the definition of security attributes and metrics associated with the control objectives defined within our Cloud Control Matrix (CCM), the CSA Metrics Working Group.

We are now seeking the help of cloud customers, cloud providers, security tool vendors, auditors and all relevant experts in order to define the very first industry-wide catalogue of security attributes and metrics for continuous auditing.

To learn more, you can read our whitepaper here: https://docs.google.com/document/d/1hFsmWglIjrbHKJzRCGaOcMAv6trftnMfdZAvasrzGG8/edit?usp=sharing

As we typically do, we will create a working group, and hold regulars online conference calls in the next few months to collect input from all volunteers with a view of producing a deliverable by the end of the year.

We'd be happy if you can join us! Do not hesitate to share this call with your colleagues as well.

Best regards,

Alain Pannetrat



--
Alain Pannetrat
Senior Researcher / STARwatch product manager
Cloud Security Alliance
p: +30 694 257 3232


This e-mail account is used only for work-related purposes; it is not guaranteed that any correspondence sent to this address will be read by the addressee only, as it may be necessary, under certain circumstances, for third parties appointed by the Cloud Security Alliance to access this e-mail account. Please do not send any messages of a personal nature to this address.