How to Get FedRAMP Authorized

How to Get FedRAMP Authorized

53mIntermediate2023-06-22

Authors

Debra Baker

Debra Baker

Course details

If you're a cloud service provider (CSP) looking to sell your cloud services offering (CSO) to the United States federal government, they need to be FedRAMP Authorized. FedRAMP is a high-security risk management framework. It allows a CSO to be authorized to be accepted for use by all United States Federal Government Agencies. The FedRAMP process is rigorous and encompasses three levels: low, medium, high, and custom. In this course, information security and compliance expert Debra Baker guides you through the rigorous process of the FedRAMP authorization, including the continuous reporting and monitoring required after authorization is granted.

If you're an engineer, manager, or developer currently embarking on a FedRAMP project, this class is tailored for you. Join Debra as she breaks down FedRAMP in an easy-to-understand manner, demystifying the authorization process and explaining how to start the FedRamp journey.

Skills covered

Governance, Risk, and ComplianceIntroduction toCybersecurity

Concepts

Introduction

  • How to get FedRAMP authorized
  • FedRAMP - What you should know

Introduction to FedRAMP

  • What is FedRAMP
  • Why is FedRAMP important
  • FedRAMP definitions
  • FedRAMP key stakeholders

Getting Started with FedRAMP

  • FedRAMP authorization path - Agency vs. JAB P-ATO
  • Choose your FedRAMP level
  • FedRAMP authorization impact levels

Preparing for FedRAMP

  • GAP analysis and readiness assessment
  • FedRAMP agency and JAB-PTO pre-authorization process

FedRAMP Authorization Process

  • FedRAMP full security assessment
  • FedRAMP agency and JAB-PTO authorization process

Post-Authorization Process

  • FedRAMP continuous monitoring - ConMon overview
  • FedRAMP continuous monitoring - ChangeMgmt
  • FedRAMP continuous monitoring - IncidentResponse
  • FedRAMP continuous monitoring - VulnerabilityManagement
  • FedRAMP continuous monitoring - InternalReporting
  • FedRAMP continuous monitoring - Deliverables

Conclusion

  • Next steps
40,000 Toman