
The NCSA Cloud Security Assessment for Cloud Service Customers (CSC) is part of Thailand’s National Cloud Security Framework established by the National Cyber Security Agency (NCSA). The assessment enables organizations using cloud services to evaluate and demonstrate the security of their cloud environments based on the confidentiality, integrity, and availability (CIA) of information and systems. It is applicable to government agencies, Critical Information Infrastructure (CII) organizations, and other regulated entities utilizing cloud services from Cloud Service Providers (CSPs)
The assessment approach is determined by the impact level of the information or information system:
The impact level is determined by evaluating the potential effects of loss of confidentiality, integrity, or availability of information and services

Enhance the security of cloud services while improving risk management and customer confidence in a systematic manner.
Assessment of cloud security in accordance with the NCSA guidelines helps increase confidence and reduce information security risks.