Cloud Service Provider Security Assessment Template

Provider Information

Certification & Compliance

Standard/Framework Certified? Comments
ISO 27001
SOC 2
GDPR
Other

Security Controls

Control Area Implemented? Details
Data Encryption (at rest & in transit)
Identity & Access Management
Vulnerability Management
Incident Response
Physical Security
Other

Data Management

Subcontractors / Third-Party Services

Other Comments / Notes