Questions tagged with FedRAMP
The Federal Risk and Authorization Management Program (FedRAMP) is a US government-wide program that delivers a standard approach to the security assessment, authorization, and continuous monitoring for cloud products and services.
Content language: English
Select tags to filter
Sort by most recent
Browse through the questions and answers listed below or filter and sort to narrow down your results.
17 results
Hi all
I'm working on to create an env which is FedRAMP compliant. I need to use Windows EC2 instance, is there any popular antivirus tool for me? I'm looking at https://www.clamav.net/ , but I'm won...
Hello everyone,
I’m deploying my application to AWS GovCloud (East) because the majority of our users are based in that region. Currently, my stack uses Amazon EC2, RDS, and S3 to handle sensitive go...
Hi all
I deployed AWS Config Conformance Pack for FedRAMP Moderate - https://docs.aws.amazon.com/config/latest/developerguide/conformancepack-sample-templates.html. I want to add remediation actions ...
Hi all
I used the Landing Zone Accelerator (LZA) to create infrastructure to make my env FedRAMP compliant - https://aws.amazon.com/blogs/publicsector/support-fedramp-cmmc-compliance-landing-zone-acc...
Hi all
For NIST 800-53 rev 5 compliance standard, AWS Config provides conformance pack - https://docs.aws.amazon.com/config/latest/developerguide/operational-best-practices-for-nist-800-53_rev_5.html...
Hi all
I know there are AWS provided AWS Config conformance packs for FedRAMP Low/Moderate/High, e.g., Low - https://docs.aws.amazon.com/config/latest/developerguide/operational-best-practices-for-fe...
Hi all
I have a client who wants to use bastion host per environment. They want their application to be FedRAMP compliant and their agency wanted to use bastion host per environment. We all know we c...
Hi all
I created a landing zone using LZA https://aws.amazon.com/solutions/implementations/landing-zone-accelerator-on-aws/ for FedRAMP compliance and configured a centralized ingress and egress vpc ...
## Assumptions
1) We will eventually have AWS accounts running workloads that fall under FedRAMP Moderate compliance requirements
2) We would like to use US East/West commercial regions to avoid ad...
Hi all
From the FedRAMP compliance doc, I could see "Please clarify how the AWS CLI is used and if that allows direct access or is CLI through AWS workspaces or another service. Direct CLI or SDK sh...
Hi everyone,
I wonder what should customers undergoing FedRamp do with EKS add-on images, which are not FIPS compliant?
Namely, those are 'kube-proxy', 'coredns', 'aws-ebs-csi-driver', 'aws-network-po...
It seems that the Amazon Bedrock service is not yet FedRAMP so I would like to use Claude without Bedrock. I also need the Claude model running in my AWS account versus using Anthropic's API. Is this...