Skip to main content

DOME certification baseline

DOME marketplace will foster the adherence to the upcoming Cloud Rule Book. The EU Cloud Rulebook it is envisioned as a ???light??? regulation with no strict obligation (based on voluntary adoption) and issued as a ???Recommendation??? but the Member States will have the power to enforce it in their jurisdictions, if they wish, or even make compulsory a subset or a superset of it . For more details please refer to the   Cloud Rule Book.

Consistent to this approach, the DOME certification compliance functionality will allow the services providers to check which certification they own and to allow the customers to search/filter the catalog upon the kind of qualification they aim to achieve. In the EU Cloud Rulebook it is expected to have different compliance levels, i.e. Level 1, Level 2, Level 3. Similarly, DOME will also support the labeling strategy initially into 3 categories based on the number of verified certifications (from the supported ones). The services will be tagged (by different colors) accordingly into these categories: Red - Level 1 (No verified certifications), Yellow Level 2 - (Some supported certifications verified), and Green - Level 3 (All the  certifications have been verified by a Certification Body accepted in DOME).

For the first version of the platform the certifications supported  are:


STANDARDS

Mandatory

General


ISO/IEC 22123-1:2021

No

ISO/IEC 20000-1:2018

No

ISO/IEC 20000-2:2019

No

ISO/IEC 19944-1:2020

No

ISO/IEC 17826:2022

No

ISO/IEC 17788:2014

No



Interoperability and portability standards


ISO/IEC 19941:2017

No



Information security standards


ISO 22301:2019

No

ISO/IEC 27000:2018

No

ISO/IEC 27001:2022

No

ISO/IEC 27002:2022

No

ISO/IEC 27701:2019

No

ISO/IEC 27017:2015

No

Payment Card Industry Data Security Standard (PCI DSS) v4.0

No



Data protection and privacy standards


ISO/IEC 29100:2011

No

ISO/IEC 29101:2018

No

ISO/IEC 19086-4:2019

No

ISO/IEC 27018:2019

No



Service level agreement standards


ISO/IEC 19086-1:201

No

ISO/IEC 19086-2:2018

No

ISO/IEC 19086-3:2017

No



Characteristic / Tag to be included for each service:

DOME Level 1 - No certifications provided/achieved

DOME Level 2 - Partially verified (some certifications have been verified)

DOME Level 3 - All the certifications are verified 


ThisDOME information will be also reflected at certification level, in the Compliance profile:

VERIFIED (verification passed),

SELF-DECLARED (self-declaration of certification compliance, there is no assurance from DOME about the validity)
UNDER EVALUATION (validation process not finished)
INVALID (validation not passed),
Not achieved yet (evidences not provided)
EXPIRED (expired certificate).

Potential view in the marketplace


EXPIRED (expired certificate).