CSP-AB的封面图片
CSP-AB

CSP-AB

计算机和网络安全

Cloud Service Providers - Advisory Board

关于我们

The Cloud Service Providers - Advisory Board (CSP-AB) represents the world’s leading cloud companies and supports standards and policies that promote and enable secure cloud adoption in the public and private sectors. Our member companies are global leaders in the drive to provide safe, scalable, and accredited digital government services, with a focus on both the civil servants delivering those services and the end-users receiving them.

网站
https://www.csp-ab.com/
所属行业
计算机和网络安全
规模
1 人
类型
非营利机构
创立
2023

CSP-AB员工

动态

  • CSP-AB转发了

    查看Pete Waterman的档案

    I do FedRAMP stuff! (but this is personal)

    #FedRAMP fam, it's time for some spoilers. Here's what you need to know coming into this week: (1) Rev 5 Agency Authorization is the only supported path to FedRAMP authorization right now. This path is not changing. Keep calm and authorize on. We're even working on significantly reducing the burden on everyone for continuously monitoring these authorizations! (2) FedRAMP isn't going to announce an alternative path to FedRAMP authorization that replaces agency ATOs with some weird thing where third parties get paid to accept risk on behalf of the federal government or CSPs become their own authorizing officials or something. That's, uh, not how the law works, but I think I understand how that rumor started... (3) Because FedRAMP *is* going to announce our intent to work with industry to develop a new approach to abstracting technical security controls with a goal of explicitly identifying security indicators that can easily and reliably be validated by code. We want proof that encryption is enabled on that device 1000x a day all year long to replace the proof you showed that one time last year to an auditor. And we're going to work with industry to build that and continuously improve it, year after year, with a constantly evolving and improving set of key security indicators and general expectations for validation that will ensure government information is secure while making it easier, faster, and cheaper for cloud service providers to get authorized. Let's take a crack at assessing modern systems as the complex automated code-driven systems they already are, and drive real security improvements together!

    • 该图片无替代文字
  • 查看CSP-AB的组织主页

    161 位关注者

    "Let's build something amazing together this year...". YES Pete Waterman we are with you ????

    查看Pete Waterman的档案

    I do FedRAMP stuff! (but this is personal)

    This is an informal message to the FedRAMP community that I'm making on personal social media that does not necessarily represent the views of GSA: The rumors of FedRAMP's demise are greatly exaggerated. A lot of stuff I'm hearing and seeing in the community right now is excessive fear, uncertainty, and doubt. Here are the publicly available facts: (1) FedRAMP agency authorizations continue to be finalized at a strong pace by the Noblis contract review team at the PMO and the authorization backlog is noticeably shrinking for the first time in ages (2) Agency authorizations continue to be the only path to FedRAMP authorizations and no changes to that path have been announced. Any changes to this path that affects CSPs would require public comment, ensuring no such change can be made before the public is informed and able to weigh in. (3) Things ARE changing. The administration has ordered government programs to focus on critical priorities to maximize efficiency. FedRAMP is established in law as a "Government-wide program that provides a standardized, resuable approach to security assessment and authorization..." The law is there, and things will change to align the program with it. (4) The operating environment is unpredictable AF. Folks are getting fired left and right with no warning, government agencies aren't communicating with stakeholders, maybe we're all getting shut down. Yeah, it's unprecedented. It has affected FedRAMP and it will continue to affect FedRAMP. It affects all of us. I get it - but please stop amplifying the FUD. Stop freaking out over rumors of a pilot concept for something new. My team goes into work every day focused on one mission: making more secure cloud services available to the government. We are public servants; we serve. If we can focus on the mission, so can you. Let's build something amazing together this year in spite of all this.

    • A bunch of engineers and astronauts working together on computers because they can.
  • 查看CSP-AB的组织主页

    161 位关注者

    ?? Great insights on FedRAMP and government efficiency! ?? CSP-AB Senior Policy Advisor Daniel Gorfine's latest piece highlights how modernizing #FedRAMP can streamline cloud adoption, cut costs, and enhance security across federal agencies. With the pace of innovation accelerating, a more agile and efficient approval process is key to ensuring that government technology keeps up with the needs of today. ???? Collaboration between the public and private sectors will be crucial in making this a reality. Looking forward to seeing how these efforts shape the future of cloud security and digital transformation in government! ?? Check out the full article here: https://lnkd.in/eMq8X9zT Laura Navaratnam Natalia Bailey Gattaca Horizons LLC #CloudSecurity #FedRAMP #DigitalTransformation #GovTech

  • 查看CSP-AB的组织主页

    161 位关注者

    The CSP-AB is very proud to be part of this important effort, thanks Leopold Wildenauer for your leadership ????

    查看Leopold Wildenauer的档案

    Cyber, Supply Chain, and Quantum Policy at ITI

    I had the privilege of leading ITI’s efforts to formulate a multi-association response to DFARS Case 2018-D064, which proposes new disclosure requirements for foreign obligations. These changes, stemming from Section 1655 of the NDAA FY 2019, could impact contractors, particularly those providing Commercially Available Off-the-Shelf products to the Department of Defense. Our key concern is that the proposal expands disclosure to COTS products, potentially creating barriers to entry and adding complexity. To align the rule with Congressional intent, we’ve proposed revisions to: limit disclosure to non-commercial products; preserve the nature of commercial products; and align requirements with vendors' actual knowledge. The defense industry needs regulations that foster growth and innovation, not hinder them. ITI stands ready to continue advocating for changes that benefit national security and a competitive defense sector. Read the letter here: https://lnkd.in/ejX53zew #Defense #Innovation #DefenseContracting #NDAA #COTS #IndustryFeedback #GovTech

  • 查看CSP-AB的组织主页

    161 位关注者

    Michael Vacirca we appreciate your support and leadership, and this new platform kicks the CSP-AB off to a great start for 2025! ??

    查看Michael Vacirca的档案

    Innovative Leader in Cloud Security & Compliance | Engineering Manager in Regulated Cloud | Public Sector Advocate

    ?? Excited to Relaunch the Cloud Service Providers Advisory Board Website! ?? ( CSP-AB ) I’m thrilled to unveil the official updated website of the Cloud Service Providers Advisory Board (CSP-AB)! As the Board Chairman, I have the privilege of working alongside an incredible team made of industry leaders across all cloud companies to drive forward the mission of advancing cloud security, compliance, and innovation across government and regulated industries. The CSP-AB is committed to fostering collaboration between cloud providers and government agencies, addressing critical topics like: ? Cybersecurity reciprocity to streamline compliance. ? Modernizing regulatory frameworks for scalable adoption. ? Integrating cutting-edge technologies like AI/ML and Zero Trust into secure cloud environments. Our new website serves as a hub for: ?? Key resources, guidelines, and thought leadership. ?? Updates on policies and initiatives shaping the future of secure cloud adoption. ?? Opportunities for stakeholders to connect, collaborate, and contribute. Visit us at www.csp-ab.com to explore our vision and join the conversation about the future of secure cloud solutions. Together, we can drive innovation, streamline processes, and empower organizations to achieve their missions securely. #CSPAB #CloudSecurity #Compliance #Innovation #Leadership

  • CSP-AB转发了

    ?? Applications are open: Join the Federal Secure Cloud Advisory Committee! ?? We’re pleased to announce that three seats are open on the Federal Secure Cloud Advisory Committee (FSCAC) this year! FSCAC plays a vital role in shaping the future of secure cloud adoption across the federal government. By collaborating with agencies, Cloud Service Providers (CSPs), third party assessment organizations (3PAOs), and other stakeholders, FSCAC drives recommendations to improve cloud security, streamline processes, and enhance the FedRAMP user experience. If you’re passionate about federal cloud security and have insights to contribute, we encourage you to apply! ?? Learn more about the application process and membership requirements: Visit our website: www.gsa.gov/FSCAC View the Federal Register Notice here: https://lnkd.in/eqssYzGe Don’t miss this opportunity to be part of the conversation that advances secure cloud solutions for the federal government. Apply today and help shape the future! #FSCAC #FedRAMP #CloudSecurity #FederalCloud #Collaboration #JoinUs

相似主页

查看职位