icon
Search...
icon

ISO/IEC 27017 - SITE Cloud Compliance

ISO/IEC 27017 provides guidance on information security controls for cloud services based on ISO/IEC 27002. It offers additional guidance and controls to address security issues specific to the cloud computing environment.

ISO/IEC 27017 is applicable to both cloud service providers and cloud clients. It assists organizations in implementing a secure cloud computing information security management system.

SITE Cloud and ISO/IEC 27017

SITE Cloud has achieved ISO/IEC 27017 certification for its implementation of cloud-specific information security controls.

The SITE Cloud ISO/IEC 27017 certificate validates compliance with key controls for cloud security.

Clients can leverage SITE Cloud's ISO/IEC 27017 certification to support compliance for workloads and data stored on the SITE Cloud.

Scope of Certification

The SITE Cloud ISO/IEC 27017 certification applies to the following in-scope cloud services:

  • Cloud Virtual Datacenter(VDC)
  • Cloud Disaster Recovery
  • Cloud Managed IT
  • Cloud Managed IT SME

Audit Certificates

  • The SITE Cloud ISO/IEC 27017 certificate is available to clients upon request via SITE Cloud Support Portal.

 

Frequently Asked Questions:

 

Who does ISO/IEC 27017 apply to?

ISO/IEC 27017 provides guidance for both cloud providers and cloud clients. It assists organizations in implementing secure cloud computing environments.

How can I access SITE Cloud's ISO/IEC 27017 audit documentation?

Audit certificates is available through the SITE Cloud Support Portal.

Can I leverage SITE Cloud's ISO/IEC 27017 certification for my compliance efforts?

Yes, SITE Cloud's certification can be used to demonstrate compliance for client workloads hosted on the platform. However, clients are responsible for compliance of their own cloud implementation and internal controls.

Updated at 2023-11-27