ISO/IEC 27017 gives guidelines and recommendations for information security controls applicable to the provision and use of cloud services by providing:
- additional implementation guidance for relevant controls specified in ISO/IEC 27002;
- additional controls with implementation guidance that specifically relate to cloud services.
This recommendation in ISO/IEC 27017 provides controls and implementation guidance for cloud service providers and cloud service customers.