Canadian certification body accredited by the Standards Council of Canada

Published elsewhere

Let’s Go Back to the Basics: How ISO 27001 Certification Works

Yehia’s CSA article explores risk-based certification and assurance in the cloud.

Editorial summary of an article originally published in English by Cloud Security Alliance.

About the article

In this article for Cloud Security Alliance, Yehia (Ian) Ahmed explains ISO 27001 through the lens of risk management, rather than a uniform checklist.

He considers cloud providers’ shared responsibilities and the role of CSA’s Cloud Controls Matrix and STAR programme. Read the original for his full perspective.

Read the original on CSA