Finally! Of all of the ATO reciprocity issues in the DOD this is probably the easiest to implement. Cloud vendors already go through extensive certifications and third party audits and it never made any sense for each service to issue their own ATO on top of Fedramp and DISA PA Impact Levels. Addressing ATO reciprocity for tactical systems on warfighting networks is however the holy grail for CJADC2 and a lot more work is needed on risk sharing and accountability there. https://lnkd.in/eE6sUEvp
Raj Iyer, Ph.D.’s Post
More Relevant Posts
-
Channel partners generated 62.8% of publicly reported federal IT contracts in 2023 In 2023, the Canalys federal top 50 generated US$55.4 billion in IT contracts out of the estimated US$88.3 billion that went to contractors out of the federal civilian and defense IT budgets. Some 35 of the top 50 federal channel companies grew their IT contracts from 2022 to 2023, with 21 of these partners growing their contract obligations by more than 10%. US federal channel opportunity to reach record-high US$60.1 billion in 2024. Read more: https://lnkd.in/gUes6hMg Noah Dantes Alex Smith #FederalIT #IT #contract #ITbudget #US
Canalys Insights - US federal channel opportunity to reach record-high US$60.1 billion in 2024
canalys.com
To view or add a comment, sign in
-
Sales Director at Cloudflare | Customer Centric | Channel First | People Empowered | Trusted Advisor
Last week, cloudflare had lots of product announcements focused on security, as we celebrated #SecurityWeek 2024. Here's a summary, in case you've missed anything: #SASE #SSE #zerotrust #ZTNA #SWG #RBI #NaaS #DLP #CASB #WANaaS #FWaaS #emailsecurity #waap #WAF #DDoS #botmanagement
Security Week 2024 wrap up
blog.cloudflare.com
To view or add a comment, sign in
-
CMMC 2.0 is the latest requirement for defense contractors and subcontractors. Anyone who sells to the Federal Government - from Windows to widgets to safety gear - will have to meet these compliance requirements. As MSSPs and MSPs, there are 3 ways you can help your clients meet CMMC 2.0 requirements: 1. Self-comply. If your clients need to be CMMC-compliant, that means you do, too. This means you might need to disable RMM, change encryptions, review cloud configurations, etc. 2. Help your clients understand their CMMC compliance status and help them self-attest Level 1. A vCISO platform like Cynomi can help, and you might also need to become a Registered Provider Organization. 3. Encourage your clients to sign up for a CMMC audit by an authorized body, the sooner the better. Auditing lines are getting longer. CMMC 2.0 is confusing, but by doing the legwork you will be able to: ✅Establish confidence among your clients and position yourself as the trusted expert ✅Grow your business with new services ✅Enhance revenue DM me for more assistance. Watch the full video with William Birchett from Logos Systems here: https://hubs.la/Q02yZz6y0
To view or add a comment, sign in
-
CVE-2023-39958: Nextcloud Server provides data storage for Nextcloud, an open source cloud platform. Starting in version 22.0.0 and prior to versions 22.2.10.13, 23.0.12.8, 24.0.12.5, 25.0.9, 26.0.4, and 27.0.1, missing protection allows an attacker to brute force the client secrets of...
CVE-2023-39958
cyberfishnews.com
To view or add a comment, sign in
-
What is the difference between FedRAMP and CMMC? Between the DoD’s publication of the FedRAMP equivalency memo, the subsequent discussion amongst the CMMC community, and more small businesses providing cloud-based services to the DoD (e.g. through SBIR projects) we’ve been getting this question a lot lately. This post will explain the differences between FedRAMP and CMMC, and clear up any confusion as to when each of these assessment and authorization regimes apply to small-to-medium business DoD contractors.
What the heck is the difference between FedRAMP and CMMC? -
https://www.totem.tech
To view or add a comment, sign in
-
DoD aims to get more companies through FedRAMP pipeline: DoD officials plan to have a call with the industry soon to clarify the latest FedRAMP equivalency memo. The post DoD aims to get more companies through FedRAMP pipeline first appeared on Federal News Network. @Poseidon-US #FedearlNewsRadio #News
DoD aims to get more companies through FedRAMP pipeline
https://federalnewsnetwork.com
To view or add a comment, sign in
-
Combination of defence mechanisms at all layers is the key! An interesting read in the right step for protecting your enterprise environments !
How AWS protects customers from DDoS events | Amazon Web Services
aws.amazon.com
To view or add a comment, sign in
-
Akamai Prolexic introduces two new options, Prolexic On-Prem and Prolexic Hybrid, which extend Akamai’s cloud-based #DDoS defense solution. Learn more: #AkamaiSecurity
Akamai Prolexic Now Offers Cloud, On-Prem, and Hybrid DDoS Protection
akamai.voicestorm.com
To view or add a comment, sign in
-
Akamai Prolexic introduces two new options, Prolexic On-Prem and Prolexic Hybrid, which extend Akamai’s cloud-based #DDoS defense solution. Learn more: #AkamaiSecurity
Akamai Prolexic Now Offers Cloud, On-Prem, and Hybrid DDoS Protection
akamai.voicestorm.com
To view or add a comment, sign in
-
Akamai Prolexic introduces two new options, Prolexic On-Prem and Prolexic Hybrid, which extend Akamai’s cloud-based #DDoS defense solution. Learn more: #AkamaiSecurity
Akamai Prolexic Now Offers Cloud, On-Prem, and Hybrid DDoS Protection
akamai.voicestorm.com
To view or add a comment, sign in
VP, Corporate Strategy, ServiceNow
2mo+1 to "never made any sense for each service to issue their own ATO on top of Fedramp and DISA PA Impact Levels." Delays digitization and adoption of critical technology