Cloud & Infrastructure Security
Complete guide to cloud and infrastructure security frameworks including CSA CCM, FedRAMP, CIS Benchmarks, and regional cloud standards. Understand requirements for securing cloud environments.
FedRAMP
FedRAMP: Federal Cloud Authorization Guide
FedRAMP is the US government's standardized approach to cloud security authorization. This guide covers impact levels, the authorization process, 3PAO assessments, and the path to ATO.
Learn moreAgID
AgID: Italy Cloud Security Qualification Guide
AgID/ACN cloud qualification is required for cloud services serving Italian public administration. This guide covers qualification levels, security requirements, and the path to serving Italian government clients.
Learn moreC5
C5: Germany BSI Cloud Computing Compliance Guide
C5 is the German BSI's cloud computing compliance criteria catalogue. This guide covers the 17 control domains, Type 1 and Type 2 reports, and how C5 attestation supports German and EU cloud markets.
Learn moreCIS Benchmarks
CIS Benchmarks: Infrastructure Hardening Guide
CIS Benchmarks provide prescriptive configuration guidelines for hardening IT infrastructure. This guide covers benchmark categories, implementation profiles, automation, and how to use CIS Benchmarks for compliance.
Learn moreCSA CCM
CSA CCM: Cloud Controls Matrix Guide
The CSA Cloud Controls Matrix is the leading cloud security control framework. This guide covers CCM v4 domains, STAR assessment levels, and how to use CCM for cloud security governance.
Learn moreENS
ENS: Spain National Security Framework Guide
ENS is Spain's mandatory security framework for public sector information systems. This guide covers system categorization, security measures, certification requirements, and compliance for cloud providers.
Learn moreISG
ISG: Japan Information Security Guidelines for Cloud
Japan's Information Security Guidelines provide cloud security expectations for providers serving Japanese organizations. This guide covers the guidelines, ISMAP certification, and compliance for the Japanese market.
Learn moreMTCS
MTCS: Singapore Multi-Tier Cloud Security Standard Guide
MTCS is Singapore's national cloud security standard with three certification tiers. This guide covers the tier requirements, certification process, and how MTCS supports cloud adoption in Asia-Pacific.
Learn moreSTaIG
STaIG: Singapore Technology and AI Governance Guide
STaIG provides Singapore's approach to technology and AI governance. This guide covers the framework's requirements, alignment with Singapore's Smart Nation initiative, and implementation strategies.
Learn moreTISAX
TISAX: Automotive Information Security Assessment Guide
TISAX is the automotive industry's standardized information security assessment. This guide covers assessment levels, the VDA ISA catalog, prototype protection, and the path to TISAX labels.
Learn more