Topic
Cloud
4 guides on Cloud — practical, audit-tested, and honest about the hard parts.
BSI C5: Germany’s Cloud Security Standard Explained
The BSI Cloud Computing Compliance Criteria Catalogue (C5) is Germany’s benchmark for cloud-provider security. What it covers, how the auditor attestation works, and why enterprise buyers ask for it.
7 min read · 31 July 2026
ISO 27017 & ISO 27018: Cloud Security and Privacy Explained
ISO 27017 adds cloud-specific security controls to your ISMS; ISO 27018 protects PII in public clouds. What each adds, how certification really works, and who needs them.
7 min read · 24 June 2026
CSA STAR: Cloud Security Assurance Explained
The Cloud Security Alliance STAR programme lets providers demonstrate security against the Cloud Controls Matrix. The levels, the CAIQ, and how to use it.
7 min read · 25 May 2026
FedRAMP Authorization: A Guide for Cloud Providers
FedRAMP is the gateway to selling cloud services to US federal agencies. The impact levels, the two authorization paths, and what the journey actually involves.
9 min read · 11 June 2026