The Federal Risk and Authorization Management Program — a US government framework that standardises the security assessment, authorisation, and continuous monitoring of cloud service providers (CSPs) used by federal agencies. FedRAMP authorisation signals a cloud product has met rigorous NIST-based security controls, and is often required for identity and fraud vendors selling into US government contracts.
Identity vendors pursuing US federal contracts must obtain FedRAMP authorisation. Buyers evaluating vendors for government use cases should treat FedRAMP status as a minimum security baseline requirement.
Category: compliance. Part of the Identity Technologist Glossary — more than 200 practitioner-grade definitions covering identity verification, KYC/AML, biometrics, fraud prevention, and compliance. See all terms at https://identitytechnologist.com/glossary.