Encryption of "Data in Transit" (data being transferred between two nodes in a network).
Cloud Controls Matrix (CCM) Data
| Physical | Network | Compute | App | Data |
|---|---|---|---|---|
| False | True | False | False | True |
| Corp Gov Relevance |
|---|
| False |
| SaaS | PaaS | IaaS |
|---|---|---|
| True | True | True |
| Service Provider | Tenant / Consumer |
|---|---|
| True | True |
| COBIT 4.1 | HIPAA / HITECH Act | ISO/IEC 27001-2005 |
|---|---|---|
DS 5.10 5.11 | 45 CFR 164.312(e)(1) | A.7.2.1 |
| NIST SP800-53 R3 | FedRAMP (Final 2012) Low Impact | FedRAMP (Final 2012) Moderate Impact | PCI DSS v2.0 |
|---|---|---|---|
AC-14 | NIST SP 800-53 R3 AC-1 | NIST SP 800-53 R3 AC-22 | 2.1.1 |
| BITS Shared Assessments SIG v6.0 | BITS Shared Assessments SIG v5.0 | GAPP (Aug 2009) |
|---|---|---|
G.19.1.1, G.19.1.2, G.19.1.3, G.10.8, G.9.11, G.14, G.15.1 | G.4 | 3.2.4 |
| Jericho Forum | NERC CIP |
|---|---|
Commandment #4 |
Consensus Assessments Initiative Questionnaire (CAIQ) Data
| COBIT | HIPAA | ISO27001 | SP800_53 |
|---|---|---|---|
COBIT 4.1 DS 5.10 5.11 | 45 CFR 164.312(e)(1) | A.7.2.1 | NIST SP800-53 R3 AC-14 |
| FedRAMP | PCI_DSS | BITS | GAPP |
|---|---|---|---|
PCI-DSS v2.0 2.1.1 | GAPP Ref 3.2.4 |
| SaaS | PaaS | IaaS |
|---|---|---|
| True | True | True |
| SP | CUST |
|---|---|
| True | True |