C838 ISO/NIST standards 2024-2025
Rated A+
CSA Star - ANSWER-Consists of the Cloud Controls Matrix and Consensus
Assessments Initiative Questionnaire
ENISA - ANSWER-Identifies 35 types of risks for cloud computing
ISO/IEC 15408-1:2009 - ANSWER-Common Criteria Assurance Framework on
ensuring security products have been thoroughly tested.
ISO/IEC 27017:2015 - ANSWER-Guidelines for Infosec controls for provision and use of
cloud services and cloud service customers.
ISO/IEC 27018:2015 - ANSWER-Privacy aspects of Cloud Computing for Customers
ISO/IEC 27034-1 - ANSWER-Secure Application Development
ISO/IEC 27037:2012 - ANSWER-Guide for collecting, identifying, and preserving
electronic evidence.
ISO/IEC 27041:2015 - ANSWER-Guide for incident investigations
ISO/IEC 27042:2015 - ANSWER-Guide for digital evidence analysis
ISO/IEC 27043:2015 - ANSWER-Incident investigation principles and processes
ISO/IEC 27050-1:2016 - ANSWER-Overview and principles for eDiscovery
NIST SP 800-145 - ANSWER-Pertains to defining cloud concepts and definitions for the
various core components of cloud computing
NIST SP 800-37 - ANSWER-Guide for implementing the Risk Management Framework
Rated A+
CSA Star - ANSWER-Consists of the Cloud Controls Matrix and Consensus
Assessments Initiative Questionnaire
ENISA - ANSWER-Identifies 35 types of risks for cloud computing
ISO/IEC 15408-1:2009 - ANSWER-Common Criteria Assurance Framework on
ensuring security products have been thoroughly tested.
ISO/IEC 27017:2015 - ANSWER-Guidelines for Infosec controls for provision and use of
cloud services and cloud service customers.
ISO/IEC 27018:2015 - ANSWER-Privacy aspects of Cloud Computing for Customers
ISO/IEC 27034-1 - ANSWER-Secure Application Development
ISO/IEC 27037:2012 - ANSWER-Guide for collecting, identifying, and preserving
electronic evidence.
ISO/IEC 27041:2015 - ANSWER-Guide for incident investigations
ISO/IEC 27042:2015 - ANSWER-Guide for digital evidence analysis
ISO/IEC 27043:2015 - ANSWER-Incident investigation principles and processes
ISO/IEC 27050-1:2016 - ANSWER-Overview and principles for eDiscovery
NIST SP 800-145 - ANSWER-Pertains to defining cloud concepts and definitions for the
various core components of cloud computing
NIST SP 800-37 - ANSWER-Guide for implementing the Risk Management Framework