MeriTalk: 79% of Federal IT Officials Doubt FedRAMP Process

cloudMeriTalk survey of 150 government information technology leaders has showed that nearly 79 percent of respondent officials are not satisfied with the Federal Risk and Authorization Management Program to authorize cloud computing products for use at agencies.

MeriTalk said Monday the study also showed close to 17 percent did not include FedRAMP in their cloud considerations while 59 percent would likely use a non-compliant cloud product or service.

Fifty-five percent of federal officials and 65 percent of defense agencies do not believe FedRAMP has increased security, MeriTalk added.

Forty-one percent of respondents claim they do not not use another agency’s FedRAMP authority-to-operate, while 35 percent of agencies said they did not allow others to use their ATO and 26 percent were barred from using another agency’s ATO.

The General Services Administration launched efforts to restructure the cloud authorization program in March to address concerns, streamline the process for cloud service providers and provide provisional ATOs within three to six months.

MeriTalk noted 41 percent of government officials said they are not familiar with GSA’s plans.

Forty-seven percent want an clearinghouse where agencies can access and are required to accept all ATOs, while 27 percent recommend a change of leadership at GSA’s FedRAMP program management office, MeriTalk said.

Check Also

FireEye

FireEye to Provide Cybersecurity Defenses to Texas DIR; Pat Sheridan Quoted

FireEye, Inc. has announced that it will offer cyber security defenses to Texas public sector agencies, under Texas Department of Information Resources (DIR), the company reported on Thursday. Through the end of 2020, FireEye security products and Mandiant Solutions services will be available to all Texas agencies, county governments, cities and school districts through DIR’s Bulk Purchase Initiative for Endpoint Detection and Response (EDR) solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *