This document discusses various compliance standards that organizations should consider when moving IT assets or applications to the public cloud, including SSAE 16, PCI DSS, HIPAA, ISO 27001, and others. It provides an overview of each standard, including whether it involves attestation or certification, relevance for service providers versus enterprises, approximate costs, and best practices for developing a compliance strategy. The key takeaway is that organizations need to determine which standards are relevant based on their business and clients, as pursuing all standards can add unnecessary complexity and cost.