Questions tagged with FedRAMP
The Federal Risk and Authorization Management Program (FedRAMP) is a US government-wide program that delivers a standard approach to the security assessment, authorization, and continuous monitoring for cloud products and services.
Content language: English
Filter questions
Select tags to filter
Sort by
Sort by most recent
Browse through the questions and answers listed below or filter and sort to narrow down your results.
18 results
Hi Team, I need some help here. IHAC needs to deploy an ONNX model using SageMaker. They scanned the latest Triton and DJL DL containers and found more than 1k vulnerabilities in different packages. T...
2
answers
0
votes
280
views
asked a year ago
Hi all
I'm working on to create an env which is FedRAMP compliant. I need to use Windows EC2 instance, is there any popular antivirus tool for me? I'm looking at https://www.clamav.net/ , but I'm won...
2
answers
0
votes
178
views
asked a year ago
Hello everyone,
I’m deploying my application to AWS GovCloud (East) because the majority of our users are based in that region. Currently, my stack uses Amazon EC2, RDS, and S3 to handle sensitive go...
1
answers
0
votes
165
views
asked a year ago
Hi all
I deployed AWS Config Conformance Pack for FedRAMP Moderate - https://docs.aws.amazon.com/config/latest/developerguide/conformancepack-sample-templates.html. I want to add remediation actions ...
1
answers
0
votes
399
views
asked 2 years ago
Hi all
I used the Landing Zone Accelerator (LZA) to create infrastructure to make my env FedRAMP compliant - https://aws.amazon.com/blogs/publicsector/support-fedramp-cmmc-compliance-landing-zone-acc...
1
answers
0
votes
284
views
asked 2 years ago
Hi all
For NIST 800-53 rev 5 compliance standard, AWS Config provides conformance pack - https://docs.aws.amazon.com/config/latest/developerguide/operational-best-practices-for-nist-800-53_rev_5.html...
2
answers
0
votes
470
views
asked 2 years ago
Hi all
I know there are AWS provided AWS Config conformance packs for FedRAMP Low/Moderate/High, e.g., Low - https://docs.aws.amazon.com/config/latest/developerguide/operational-best-practices-for-fe...
1
answers
0
votes
271
views
asked 2 years ago
Hi all
I have a client who wants to use bastion host per environment. They want their application to be FedRAMP compliant and their agency wanted to use bastion host per environment. We all know we c...
2
answers
0
votes
357
views
asked 2 years ago
Hi all
I created a landing zone using LZA https://aws.amazon.com/solutions/implementations/landing-zone-accelerator-on-aws/ for FedRAMP compliance and configured a centralized ingress and egress vpc ...
1
answers
0
votes
172
views
asked 2 years ago
## Assumptions
1) We will eventually have AWS accounts running workloads that fall under FedRAMP Moderate compliance requirements
2) We would like to use US East/West commercial regions to avoid ad...
1
answers
0
votes
634
views
asked 2 years ago
Hi all
From the FedRAMP compliance doc, I could see "Please clarify how the AWS CLI is used and if that allows direct access or is CLI through AWS workspaces or another service. Direct CLI or SDK sh...
1
answers
0
votes
174
views
asked 2 years ago
Hi everyone,
I wonder what should customers undergoing FedRamp do with EKS add-on images, which are not FIPS compliant?
Namely, those are 'kube-proxy', 'coredns', 'aws-ebs-csi-driver', 'aws-network-po...
1
answers
0
votes
1.5K
views
asked 2 years ago