krusynth / digitalpolicy

This guide is a very brief introduction to key laws, policies, and guidance surrounding the practice of information technology in the US federal government.
https://digitalpolicy.us/
Other
15 stars 8 forks source link

Federal Usage of Cloud Services / FedRAMP explainer #42

Open cschroedl-gov opened 10 months ago

cschroedl-gov commented 10 months ago

I have spent a lot of time explaining to folks individually why we can/can't use certain cloud services. I haven't found great resources elsewhere. Would this be a good place to try to explain it?

krusynth commented 10 months ago

That sounds great! You should feel free to propose a draft in a PR, or just provide some notes here of what you think needs to be included and I can make an attempt at it.

I've got a fedramp section here:

https://digitalpolicy.us/policies/cybersecurity/#FedRAMP

which pulls from this:

https://github.com/krusynth/digitalpolicy/blob/ghpages/content/_policies/cybersecurity.md

cschroedl-gov commented 10 months ago

Thanks for pointing that out! I missed the FedRAMP section somehow. It's pretty great already! I will try to add a bit about the journey from a feature being released by a CSP to it being available for government use.