+SOV-1-03 CSP Effective Control
---+SOV-1-03-C1
---+SOV-1-03-C2
---+SOV-1-03-SI
|
1. Overview
SOV-1-03 CSP Effective Control
SOV-1-03 CSP Effective Control
| Summary |
Standard |
|
SOV-1-03-C1
|
The cloud service provider MUST be effectively controlled by one or more EU corporations. The cloud service provider MUST ensure that effective controls are transparent to cloud service customers.
|
|
SOV-1-03-C2
|
The cloud service provider MUST be under the effective control of one or more German undertakings. The cloud service provider MUST ensure that effective controls are transparent to cloud service customers.
|
|
SOV-1-03-SI
|
Effective control in this context means the possibility to exert direct or indirect influence, or determine the key strategic, financial, or operational decisions from non-EU undertakings. If restrictions are imposed by cloud service customers for EU or Germany, they should be justified, and it should be ensured that their implementation, for example, in procurement procedures, is legally permissible on the basis of reasons such as public safety.
|
1.1 References
1.2 Identified Requirements
1.2 Related Regulation
2. Identified Requirements
Requirements
| Source |
Requirement |
3. Related Regulations
Regulations
| Source |
Regulation |
|