Modernization

How to fund security and modernize at the same time

FedRAMP's standards go a long way toward the security goals the White House just set -- but smaller firms must be able to afford the authorization process.

Modernization

Government needs a massive investment in FedRAMP

A well-funded shared service could relieve an authorization bottleneck and bring essential cloud services to the government market.

Modernization

House passes FedRAMP bill

The House today passed a bill aimed at standardizing the processes federal agencies use to onboard cloud computing technologies.

Modernization

CMMC reciprocity guidelines are still a work in progress

The Defense Department is hoping to begin rolling its Cybersecurity Maturity Model Certification program later this year, but questions remain about how reciprocity with FedRAMP will be handled.

Modernization

Secure and rapid modernization takes innovation from all sides

As the past few months have shown, close collaboration and aggressive sharing of lessons learned can pay big dividends.

Modernization

GAO plans review of telework tech

The congressional watchdog plans to examine agency lessons learned from the rapid rollout of telework tools as part of pandemic response.

Modernization

Report: FedRAMP must evolve to meet demand, emerging tech

A new report lays out where FedRAMP has gone wrong – and what can be done to fix it.

Modernization

Farm credit agency looks to cloud

The small independent agricultural loan regulator wants to go all-in on cloud-based financial reporting.

Modernization

State looks to the cloud for building management services

The State Department's building administration agency is investigating software-as-a-service solutions for its site managers as an alternative to an existing shared services platform.

Modernization

More agencies are using FedRAMP, but some are still going rogue

While hundreds of additional government cloud projects are being vetted for cybersecurity every year, a GAO audit makes clear that many agencies are still standing up programs without going through FedRAMP.

Modernization

Google Cloud gets FedRAMP High tag

Google's cloud offering earned the highest FedRAMP authorization for cloud services.

Modernization

How a mature FedRAMP sets the stage for more ambitious cloud projects

Cloud adoption is being driven by broader pressure on agencies and maturation of the Federal Risk and Authorization Management Program.

Modernization

Oracle fires back in JEDI lawsuit as court date approaches

Lawyers for Amazon Web Services, the Department of Justice and Oracle are set to deliver oral arguments in the long-running JEDI lawsuit on July 10, while an award from DOD is expected in late August.

Modernization

White House tilts from 'cloud first' to 'cloud smart'

In a new policy document, the Trump administration is looking to refresh its cloud strategy, taking a more flexible agency-by-agency approach and laying out a playbook for next 18 months.

Modernization

GSA elevates Mr. FedRAMP

The program management office within the General Services Administration handling cloud security is undergoing a leadership shuffle.

Modernization

GSA wants feedback on cloud contract language

A recent RFI seeks examples of effective and problematic contract language as well as suggestions on how to incorporate cloud services into different contract vehicles for direct solicitations, resellers and system integrators.

Modernization

FedRAMP launches streamlined approvals for low-impact services

FedRAMP Tailored aims to get applications to agencies in as little as four weeks and reduce the burden on cloud providers.

Modernization

FedRAMP trimming approval time, officials say

The time for cloud services to clear the Federal Risk Authorization and Management Program has been significantly accelerated.

Modernization

As FedRAMP gains speed, true sharing still lags

New study finds that most authorized cloud services are used by just one or two agencies, but "the scope is widening."

Modernization

Securing the government cloud

FedRAMP is a good first step, argues one security expert, but in the end, the customer is responsible for taking steps to prevent, detect and respond to cyber adversaries.