tencent cloud

Compliance

International Authority
ISO 9001 Certification
ISO 20000 Certification
ISO 29151 Certification
ISO 27001 Certification
ISO 22301 Certification
ISO 27017 Certification
CSA STAR Certification
SOC Audit
Region and Industry Recognition
TISAX
KISMS
MTCS
PCI DSS Certification
C5
OSPAR
HIPAA
NIST CSF Certification
GxP Compliance
IT compliance audit in Hong Kong Special Administrative Region (HKSAR) financial industry
The Motion Picture Association of America (MPAA)
IT compliance audit in Malaysian financial industry
IT compliance audit in Indonesian financial industry
IT compliance audit in Thailand financial industry
IT compliance audit in Philippines financial industry
The center for Financial Industry Information Systems (FISC)
SEC Rule 17a-4
ITSS Certification
Trusted Cloud Services Certification
Big Data Product Capability Certification
Multi-Level Protection Scheme
CDN Qualification
Personal Information Protection
ISO 27018 Certification
ISO 27701 Certification
BS10012: 2017 Personal Information Management System
Data Protection Trustmark (DPTM) Certification
CISPE Code of Conduct
ICP introduction in China
ICP Filing Introduction

ISO 27017 Certification

PDF
聚焦模式
字号
最后更新时间: 2025-07-15 10:02:56
ISO 27017:2015 is an international standard issued by the International Organization for Standardization (ISO) in December 2015. It is a practical standard for cloud service information security and offers cloud service providers and customers with guidelines for specific security controls and their implementation. ISO 27017 is a standard based on ISO 27002, and its primary purpose is to provide cloud vendors with security specifications for cloud construction and OPS. The requirements in ISO 27017 consist of the following two parts:
Requirements in ISO 27002: under the framework of ISO 27002, additional implementation guidelines for 37 controls are proposed.
Special requirements in cloud environments: outside the framework of ISO 27002, 7 control measures that require special consideration in cloud computing environments are added.
Specificity of ISO 27017:
On each control, implementation guidelines are provided to cloud service providers and customers respectively, and the roles and responsibilities of both parties are elaborated.
Based on the requirements in the ISO 27017 standard, Tencent Cloud has established a more comprehensive cloud security management system to improve its overall cloud security service capabilities.

Should you require any relevant compliance certificates or reports, please kindly proceed to apply for and download them via the Tencent Cloud Compliance Documentation Center.

帮助和支持

本页内容是否解决了您的问题?

填写满意度调查问卷,共创更好文档体验。

文档反馈