Frequently asked questions about CSA STAR

Frequently asked questions about CSA STAR

Terms & Conditions

活动对象:华为云电销客户及渠道伙伴客户可参与消费满送活动,其他客户参与前请咨询客户经理

活动时间: 2020年8月12日-2020年9月11日

活动期间,华为云用户通过活动页面购买云服务,或使用上云礼包优惠券在华为云官网新购云服务,累计新购实付付费金额达到一定额度,可兑换相应的实物礼品。活动优惠券可在本活动页面中“上云礼包”等方式获取,在华为云官网直接购买(未使用年中云钜惠活动优惠券)或参与其他活动的订单付费金额不计入统计范围内;

  • What's CSA?

    The Cloud Security Alliance (CSA) leads the industry in offering cloud security-specific research, education, certification, events, and best practices.

  • What's CSA STAR certification?

    CSA Security, Trust, Assurance, and Risk (CSA STAR) is a certification program jointly promoted by CSA and the British Standards Institution (BSI) to target the cloud industry. Based on the ISO/IEC 27001 standard and the Cloud Controls Matrix (CCM), CSA STAR uses the maturity model and assessment methods provided by BSI to comprehensively assess an organization's capabilities in cloud security management and relevant technologies.


    In 2021, CSA updated the CCM from V3.0.1 to V4. The new version includes significant updates across 17 domains and 197 control objectives, including new requirements for the latest cloud technologies, control methods, and security responsibility matrix, improved accountability of control items, and enhanced interoperability and compatibility with other relevant standards. Huawei Cloud earned CSA STAR 2021 Gold Certification after several rounds of rigorous reviews.

  • Which data centers are covered by Huawei Cloud's CSA STAR certification?

    The CSA STAR certification covers over 40 data centers belonging to Huawei Cloud globally, plus operation and maintenance services for them, including the provision of operation and maintenance services for Huawei Cloud data centers based on third-party IDCs, as well as those for Huawei Cloud's self-built data centers. You can download Huawei Cloud's CSA STAR certificate from Compliance Certificates.

  • Which Huawei Cloud services are covered by CSA STAR certification?

    The ISO/IEC 27001 certification covers over 150 Huawei Cloud services including, but not limited to, Advanced Anti-DDoS (AAD), Web Application Firewall (WAF), Data Encryption Workshop (DEW), and Database Security Service (DBSS). You can download Huawei Cloud's ISO/IEC 27001 certificate from Compliance Certificates.


    If you would like to learn more about our products, please contact us.

  • Can my organization become CSA STAR-certified automatically by using Huawei Cloud?

    Although Huawei Cloud has earned CSA STAR certification and provides you with secure and reliable cloud services on this basis, using services provided by Huawei Cloud does not certify your organization's compliance with CSA STAR. CSA STAR certification requires us to establish, implement, maintain, and continuously improve the operational security management system of our organizations based on the CSA STAR guidelines, standards, and best practices. You can invite an independent third-party certifying body to assess your own system and acquire certification for your organization.