ISO/IEC 27017 gives guidelines for information security controls applicable to the provision and use of cloud services by providing: This Recommendation | International Standard provides controls and implementation guidance for both cloud service providers and cloud service customers.
The standard can be bought here: https://www.iso.org/standard/43757.html
The informative sections of this standard are publicly available here: https://www.iso.org/obp/ui/#iso:std:iso-iec:27017:ed-1:v1:en – additional implementation guidance for relevant controls specified in ISO/IEC 27002; – additional controls with implementation guidance that specifically relate to cloud services.
Status: Published
Publication Date: 2015-12-01
Category: Cloud computing Cybersecurity
Working Group:
Primary Source: https://www.iso.org/standard/43757.html