Cloud Security Alliance Brings AI-Assisted Auditing to Cloud Computing

The Cloud Security Alliance (CSA), the world’s leading organization dedicated to defining standards, certifications, and best practices to help ensure a secure cloud computing environment, today introduced an innovative addition to its suite of Security, Trust, Assurance and Risk (STAR) Registry assessments with the launch of Valid-AI-ted, an AI-powered, automated validation system. The new tool provides an automated quality check of assurance information of STAR Level 1 self-assessments using state-of-the-art LLM technology.

"With agile, vendor-neutral programs and a global network of industry experts, CSA is uniquely positioned to develop authoritative AI tools that address the real-world challenges of cloud service providers. Our focus on security-conscious innovation led to the creation of Valid-AI-ted and will continue to see us deliver forward-looking initiatives that will push the boundaries of secure, AI-driven technology," said Jim Reavis, CEO and co-founder, Cloud Security Alliance.

Free to CSA members, Valid-AI-ted leverages AI-driven evaluation and automatically grades cloud providers’ STAR Level 1 self-assessments, generating a detailed report with graded scores per question and domain, shared privately with the submitter. CSA members will be able to submit an unlimited number of times, while non-member providers can remediate and resubmit up to 10 times. Upon passing, they earn a distinctive STAR Level 1 Valid-AI-ted badge that can be displayed on both the CSA STAR Registry and their own platforms.

Ideal for cloud service providers seeking CSA STAR certification and existing STAR participants looking to upgrade transparency and trust credentials, Valid-AI-ted is unique in its automation of cloud security assessment using AI. It provides objective, accurate, and rapid validation of STAR Level 1 submissions—something no other cloud assurance framework currently offers at scale.

Compared to traditional STAR Level 1 evaluations, Valid-AI-ted provides:

  • Improved assurance. Traditional STAR Level 1 self-assessments vary widely in the quality of CSP answers to CSA’s security questionnaire, which must be interpreted by customers. Valid-AI-ted provides assurance that the self-assessment was performed with care and achieved a robust security baseline
  • Qualitative, best practices analysis. Valid-AI-ted enforces a standardized scoring model based upon proven implementation guidance from the Cloud Controls Matrix (CCM)
  • More actionable insights. Regardless of whether they pass or fail, organizations receive granular feedback per control, highlighting areas for improvement
  • Heightened recognition in the STAR Registry. Organizations with the STAR Level 1 Valid-AI-ted badge stand out to customers, partners, and regulators as having gone beyond checkbox compliance
  • Easier access to continuous improvement. The ability to revise and resubmit is ideal for maturing organizations and provides an improved path towards STAR Level 2 third-party assessment solutions

The CSA STAR Registry is a publicly accessible registry that documents the security and privacy controls provided by popular cloud computing offerings. STAR encompasses the key principles of transparency, rigorous auditing, and harmonization of standards outlined in the CCM. Publishing to the registry allows organizations to show current and potential customers their security and compliance posture, including the regulations, standards, and frameworks they adhere to. It ultimately reduces complexity and helps alleviate the need to fill out multiple customer questionnaires.

Featured

New Products

  • Mobile Safe Shield

    Mobile Safe Shield

    SafeWood Designs, Inc., a manufacturer of patented bullet resistant products, is excited to announce the launch of the Mobile Safe Shield. The Mobile Safe Shield is a moveable bullet resistant shield that provides protection in the event of an assailant and supplies cover in the event of an active shooter. With a heavy-duty steel frame, quality castor wheels, and bullet resistant core, the Mobile Safe Shield is a perfect addition to any guard station, security desks, courthouses, police stations, schools, office spaces and more. The Mobile Safe Shield is incredibly customizable. Bullet resistant materials are available in UL 752 Levels 1 through 8 and include glass, white board, tack board, veneer, and plastic laminate. Flexibility in bullet resistant materials allows for the Mobile Safe Shield to blend more with current interior décor for a seamless design aesthetic. Optional custom paint colors are also available for the steel frame.

  • A8V MIND

    A8V MIND

    Hexagon’s Geosystems presents a portable version of its Accur8vision detection system. A rugged all-in-one solution, the A8V MIND (Mobile Intrusion Detection) is designed to provide flexible protection of critical outdoor infrastructure and objects. Hexagon’s Accur8vision is a volumetric detection system that employs LiDAR technology to safeguard entire areas. Whenever it detects movement in a specified zone, it automatically differentiates a threat from a nonthreat, and immediately notifies security staff if necessary. Person detection is carried out within a radius of 80 meters from this device. Connected remotely via a portable computer device, it enables remote surveillance and does not depend on security staff patrolling the area.

  • QCS7230 System-on-Chip (SoC)

    QCS7230 System-on-Chip (SoC)

    The latest Qualcomm® Vision Intelligence Platform offers next-generation smart camera IoT solutions to improve safety and security across enterprises, cities and spaces. The Vision Intelligence Platform was expanded in March 2022 with the introduction of the QCS7230 System-on-Chip (SoC), which delivers superior artificial intelligence (AI) inferencing at the edge.