FedScoop: The Federal Risk and Authorization Management Program provided a preview of guidance it will soon issue on how internal components and external cloud service providers should document continuous monitoring compliance.
In a recent blog post, FedRAMP officials at the General Services Administration said they would soon be issuing formal guidance on CSPs’ authorization boundary — the demarcation line for security authorization responsibilities between agencies and CSPs.
FedRAMP’s Program Management Office has been examining not only the internal structures of a CSP’s data infrastructure but also the third-party partners they work with and how they access federal data and metadata.
The most significant government policy, business, and technology news and analysis delivered to your inbox.
Subscribe Nowi360Gov is an intelligent network of websites and e-newsletters that provides government business, policy and technology leaders with a single destination for the most important news and analysis regarding their agency strategies and initiatives.
Telephone: 202.760.2280
Toll Free: 855.i360.Gov
Fax: 202.697.5045
The most significant government policy, business, and technology news and analysis delivered to your inbox.
Subscribe Now