Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - News & Analysis - CSA Sets Research Agenda for Annual Congress
News & Analysis

CSA Sets Research Agenda for Annual Congress

ISBuzz TeamBy ISBuzz TeamNovember 8, 2013Updated:April 30, 20255 Mins Read
Share LinkedIn Twitter Facebook Copy Link Email
cloud security alliance
Share
Facebook Twitter LinkedIn Email Copy Link
Quick AI Summary
ChatGPTClaudeGeminiGrokPerplexityDeepSeekCopilot

Cloud Security Alliance Annual Congress to Serve as Launchpad for New Research, Guidance Reports and Working Groups 

Orlando, FL – November 7, 2013 – The Cloud Security Alliance today released its planned research agenda and a preview of new working groups to be launched at the upcoming Cloud Security Alliance Congress 2013, taking place December 4-5 in Orlando. This year’s event will feature the release of research in the areas of Big Data, Mobile, CloudTrust Protocol and Cloud Assessment among others.  Attendees of this year’s Congress will gain first-hand access to all reports, along with exclusive access to authors of each report through one-on-one discussions and featured interactive presentations.

Research, guidance reports and working groups scheduled for release include:

Big Data Security Taxonomy and Framework

The new report from the Big Data Working Group evolved from the idea of mapping different varieties of big data such as graphs and streaming video to ten facets of data derived from the groups previously released top-ten list. The group’s motivation for coming up with this taxonomy is to help big data services to determine what kind of big data infrastructures they need to deploy and metrics they need to employ for getting the best value out of the data.

Consensus Assessments Initiative Questionnaire (CAIQ) V.3 Open Review Period

In 2010, the CSA released a set of questions a cloud consumer and cloud auditor may wish to ask of a cloud provider, which can then be tailored to suit each unique cloud customer’s evidentiary requirements. Now in its third version, the Cloud Assessments Initiative Working Group will start the open review period for a set of new questions intended to help organizations further build the necessary assessment processes for engaging with cloud providers.

Mobile Authentication

The CSA Mobile Working Group will release a new report that outlines key factors in determining recommended authentication processes, trust boundary identification approaches, guidelines to improve usability of mobile authentication in enterprise / bring-your-own-device (BYOD) environments, and authentication threats and risks identification approaches to conduct an appropriate risk assessment.

Cloud Trust Protocol Technical Model and API

The Cloud Trust Protocol Working Group is releasing a new document that proposes a technical model and API for the CloudTrust Protocol.  The CloudTrust Protocol (CTP) is designed to be a mechanism by which cloud service clients can ask for and receive information related to the security of the services they use in the cloud, promoting transparency and trust.

Secure Development of Cloud Applications

In conjunction with the Software Assurance Forum for Excellence in Code (SAFECode), the CSA will release a new set of guidelines on Practices for Secure Development of Cloud Applications. The report aims to address how the emergence and maturation of cloud computing has impacted the security development lifecycles of leading technology providers, and help readers better understand and implement best practices for secure cloud software development.

Virtualization Working Group Launch

The Cloud Security Alliance will be announcing the formation and associated details of a reconstituted version of the CSA Virtualization Working Group.  Virtualization is a critical part of cloud computing as it provides an important layer of abstraction from physical hardware, enabling the elasticity and resource pooling commonly associated with cloud. Recent developments in software defined networking (SDN) show great potential to virtualize data networks in the same way that operating systems have been virtualized. The future integration and potential convergence of virtualization of operating systems and networks promise to greatly impact the next generation of cloud architectures.  The security issues and recommended best practices of this broader view of virtualization merit additional focused research from this group.

Anti-Bot Working Group Launch

Botnets have long been a favored attack mechanism of malicious actors.  As cloud computing is rapidly becoming the primary option for server-based computing and hosted IT infrastructure, CSA as the industry leader has an obligation to articulate solutions to prevent, respond and mitigate against botnets occurring on cloud infrastructure.  The CSA Anti-Bot Working Group will be the primary stakeholder for coordinating these activities.

Cloud Security Alliance Congresses continue to be the industry’s premier gathering for IT security professionals and executives who must further educate themselves on the rapidly evolving subject of cloud security.  In addition to offering best practices and practical solutions for remaining secure in the cloud, this year’s fourth annual U.S. CSA Congress will focus on emerging areas of growth and concern in cloud security.  Attendees will gain exposure to industry-specific case studies that will help them learn and leverage best practices used by their peers in moving to a secure cloud.

WHAT:                                               Cloud Security Alliance Congress 2013

WHEN:                                              Conference: December 4 and 5 – 9:00 am – 5:00 pm

                                                            Workshops: December 3 and 6 – 9:00 am – 5:00 pm

WHERE:                                             The Rosen Centre Hotel, Orlando FL

ATTENDEE

REGISTRATION: https://www.euromoneysecure.com/orders/MISTI/default.asp?abc=123&page=71&LS=&ProductID=4985

MEDIA REGISTRATION:            Email [email protected]

Click to Tweet: @cloudsa releases research agenda for upcoming @csacongress 12/4-5 in Orlando.  Join Us!

About Cloud Security Alliance

The Cloud Security Alliance is a not-for-profit organization with a mission to promote the use of best practices for providing security assurance within Cloud Computing, and to provide education on the uses of Cloud Computing to help secure all other forms of computing. The Cloud Security Alliance is led by a broad coalition of industry practitioners, corporations, associations and other key stakeholders. For further information, visit us at www.cloudsecurityalliance.org, and follow us on Twitter @cloudsa.

ISBuzz Team
  • ISBuzz Team
    Air Canada Data Breach: BianLian Extortion Group Claims A Massive Heist Contrary To Airline’s Earlier Statement
  • ISBuzz Team
    Unprecedented DDoS Attack Rocks The Web: Tech Giants Reveal A Digital Tsunami
  • ISBuzz Team
    CISA Flags High-Severity Adobe Acrobat Reader Flaw Amid Active Exploits
  • ISBuzz Team
    Curl Security Alert: Patching A Critical Bug Averting Potential Cyber Catastrophe

The opinions expressed in this post belong to the individual contributors and do not necessarily reflect the views of Information Security Buzz.

Share. Facebook Twitter LinkedIn Email Copy Link

Related Posts

Tenable warns AI adoption is outpacing governance as cloud exposure risks surge

May 15, 20264 Mins Read

Cloud Security Controls Explained: A Definitive Guide

March 19, 20269 Mins Read

The Real Cost of Inconsistent Third-Party Access

December 18, 20255 Mins Read
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}