FedRAMP

The Federal Risk and Authorization Management Program (FedRAMP) is a government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services. This approach uses a “do once, use many times” framework that will save cost, time, and staff required to conduct redundant agency security assessments.

FedRAMP was established on December 8, 2011 via an official memorandum from the Federal Chief Information Officer to all agency CIOs.  FedRAMP will achieve Initial Operating Capability (IOC) within 180 days.

 

Recent Updates & Releases

FedRAMP Policy Memo (OMB)

3PAO Program Description

FedRAMP Security Controls

FedRAMP Concept of Operations (CONOPS)

 

 

Logo for FedRAMP

Contacts

General Inquiries
info@fedramp.gov

Press Inquiries
202-501-9113