tencent cloud

Compliance

International Authority
ISO 9001 Certification
ISO 20000 Certification
ISO 29151 Certification
ISO 27001 Certification
ISO 22301 Certification
ISO 27017 Certification
CSA STAR Certification
SOC Audit
Region and Industry Recognition
TISAX
KISMS
MTCS
PCI DSS Certification
C5
OSPAR
HIPAA
NIST CSF Certification
GxP Compliance
IT compliance audit in Hong Kong Special Administrative Region (HKSAR) financial industry
The Motion Picture Association of America (MPAA)
IT compliance audit in Malaysian financial industry
IT compliance audit in Indonesian financial industry
IT compliance audit in Thailand financial industry
IT compliance audit in Philippines financial industry
The center for Financial Industry Information Systems (FISC)
SEC Rule 17a-4
ITSS Certification
Trusted Cloud Services Certification
Big Data Product Capability Certification
Multi-Level Protection Scheme
CDN Qualification
Personal Information Protection
ISO 27018 Certification
ISO 27701 Certification
BS10012: 2017 Personal Information Management System
Data Protection Trustmark (DPTM) Certification
CISPE Code of Conduct
ICP introduction in China
ICP Filing Introduction

C5

PDF
聚焦模式
字号
最后更新时间: 2025-07-15 10:02:56
Tencent Cloud has passed the German C5:2020 basic and additional audit criteria, demonstrating that the security controls of Tencent Cloud services comply with the standards of the German Federal Office for Information Security (Bundesamt für Sicherheit in der Informationstechnik, BSI) and can further meet the data security compliance requirements of Germany and Europe.
On August 31, 2020, Tencent Cloud passed the German BSI C5:2020 cloud security basic and additional audit criteria, proving its global leading position in the development of security policies and technical applications for cloud platforms. The Cloud Computing Compliance Criteria Catalogue (C5) was developed by the German BSI with the aim of verifying the information security compliance of cloud providers based on standardized inspections and reports.
The C5:2020 criteria include 17 objectives regarding the information security of cloud services, such as information security organization, security policies and instructions, personnel, asset management, and physical security, and stipulate general principles, procedures, and measures to achieve these objectives. Compared with the 2016 version, C5:2020 expands the criteria to add a new section “Dealing with investigation requests from government agencies" based on the EU Cybersecurity Act, which puts forward more stringent requirements for the security management levels of cloud providers.
C5:2020 is not only an essential cloud security benchmark for the adoption of cloud solutions by German government agencies and organizations, but it is also widely adopted by the private sector in Europe and around the world. Moreover, it is a high-level security standard recognized by the cloud industry and an important baseline for cloud providers to comply with the German Federal Data Protection Act (Bundesdatenschutzgesetz, BDSG) and the EU General Data Protection Regulation (GDPR).
Tencent Cloud's alignment with the C5:2020 basic and additional audit criteria demonstrates that its users are in strict compliance with German data security guidelines. This certification also enables Tencent Cloud to help users fully understand its security controls through a transparent communication mechanism, enhancing user trust in its services and products.

Should you require any relevant compliance certificates or reports, please kindly proceed to apply for and download them via the Tencent Cloud Compliance Documentation Center.

帮助和支持

本页内容是否解决了您的问题?

填写满意度调查问卷,共创更好文档体验。

文档反馈