+SOV-1-03 CSP Effective Control
---+SOV-1-03-C1
---+SOV-1-03-C2
---+SOV-1-03-SI

1. Overview

SOV-1-03 CSP Effective Control

SOV-1-03 CSP Effective Control
Summary Standard
SOV-1-03-C1

The cloud service provider MUST be effectively controlled by one or more EU corporations. The cloud service provider MUST ensure that effective controls are transparent to cloud service customers.

SOV-1-03-C2

The cloud service provider MUST be under the effective control of one or more German undertakings. The cloud service provider MUST ensure that effective controls are transparent to cloud service customers.

SOV-1-03-SI

Effective control in this context means the possibility to exert direct or indirect influence, or determine the key strategic, financial, or operational decisions from non-EU undertakings. If restrictions are imposed by cloud service customers for EU or Germany, they should be justified, and it should be ensured that their implementation, for example, in procurement procedures, is legally permissible on the basis of reasons such as public safety.

1.1 References

1.2 Identified Requirements

1.2 Related Regulation

2. Identified Requirements

Requirements
Source Requirement

3. Related Regulations

Regulations
Source Regulation
Impressum