While authorizations of cloud services under the Federal Risk and Authorization Management Program have risen by almost 60% from July 2019 to April 2023, numerous agencies continued to leverage services that were not approved under FedRAMP despite the authorization being required by the Office of Management and Budget, FedScoop reports.
Inadequate OMB oversight of federal agencies' FedRAMP compliance has contributed to the persistent utilization of services not authorized under the program, indicating the need for additional effort to deal with continued nonadherence, a report from the Government Accountability Office revealed. Such findings have prompted the GAO to urge the OMB to develop new guidance on monitoring FedRAMP authorization sponsorship costs and issue a final version of proposed FedRAMP guidance.
On the other hand, the General Services Administration has been recommended by the report to establish guidelines on facilitating Federal Information Processing Standard requirement adherence among cloud service providers.
Cloud Security, Government Regulations
FedRAMP compliance gaps remain despite increasing adoption
Share
An In-Depth Guide to Cloud Security
Get essential knowledge and practical strategies to fortify your cloud security.
Related Events
Related Terms
Business Impact Analysis (BIA)British Standard 7799Chain of CustodyCloud ComputingCompetitive IntelligenceData CustodianDue CareDue DiligenceGreynetGet daily email updates
SC Media's daily must-read of the most current and pressing daily news
You can skip this ad in 5 seconds