
OMB (in memo M-24-15) has updated guidance to agencies under the Federal Risk and Authorization Management Program (FedRAMP) to account for “developments in federal cybersecurity and substantial changes to the commercial cloud marketplace that have occurred since the program was established” in 2011.
“In the years since FedRAMP’s creation, the cloud marketplace has grown exponentially as technology has continued to evolve. Now, there is a cloud solution for almost everything – from empowering healthcare research to managing complex logistics operations to coordinating emergency response efforts,” says a White House fact sheet.
“This guidance responds to these changes, and will help agencies safely adopt the latest and best cloud technologies faster in order to better serve the public while keeping your information safe and secure,” it says.
The guidance sets strategic goals for FedRAMP including that it “lead an information security program grounded in technical expertise and risk management”; “rapidly increase the size of the FedRAMP Marketplace by evolving and offering additional FedRAMP authorization paths”; “streamline processes through automation”; and “leverage shared infrastructure between the federal government and private sector.”
Other topics include specifying cloud computing products and services that are outside the scope of FedRAMP; setting standards and procedures for products and services to be authorized for use by agencies; continuous monitoring requirements; and more.
Key Bills Advancing, but No Path to Avoid Shutdown Apparent
TSP Adds Detail to Upcoming Roth Conversion Feature
White House to Issue Rules on RIF, Disciplinary Policy Changes
DoD Announces Civilian Volunteer Detail in Support of Immigration Enforcement
See also,
How Do Age and Years of Service Impact My Federal Retirement
The Best Ages for Federal Employees to Retire
How to Challenge a Federal Reduction in Force (RIF) in 2025
Should I be Shooting for a $1M TSP Balance? Depends…