FedRAMP for Low/Moderate Cloud Computing Environments

3 Day Course

SecureInfo Corporation is pleased to announce the release of our newest offering relating to Federal Cloud Cyber Security. Every federal department/agency must use the Federal Risk and Authorization Management Program (FedRAMP) when conducting risk assessments, security authorizations and granting ATO’s for all use of cloud computing services.

This FedRAMP for Low/Moderate Cloud Computing Environments, 3-day course, introduces the attendees to the program’s innovative policy approach to developing trusted relationships between the government departments/agencies, third party assessment organizations (3PAOs), and cloud service providers (CSPs). The roles and responsibilities of all key FedRAMP players will be covered in detail, including the government, 3PAOs, and the CSPs.

Attendees will be introduced to the sets of NIST SP 800-53 security controls required for a low impact and a moderate impact cloud environment. The newly proposed Cloud Security Assessment and Authorization (A&A) Process will be covered, in detail, along with the numerous documents needed to support the A&A.

Cost of Course: $1500 (GSA rates and volume discounts available)

Materials Required

Students of mobile training classes must provide own computers.Students of mobile training classes must provide own computers.

Course Materials Provided

Students will receive a workbook (to include instructional slides) and resource kit with applicable Federal guidance.

Instructor Policy

Students should arrive no later than 10 minutes prior to start time on the first day of class. If you have any special requirements that need to be addressed prior to arrival please let us know at the time of registration. Please do not make any travel arrangements prior to 6pm on the last day of training.

Locations

We offer this course in the SecureInfo training classroom (San Antonio, Texas or Virginia locations) or via mobile training at your facility for up to 20 students per course. Contact us at training@secureinfo.com or (210) 403-5600 (ask for training) for more information and pricing on mobile training options.

Who Should Attend?

Individuals associated with the design, development, implementation, operation, maintenance, and disposition of federal cloud computing environments including:

  • Individuals with mission/business ownership responsibilities or fiduciary responsibilities (e.g., heads of federal agencies, chief executive officers, chief financial officers)
  • Individuals with cloud/information system development and integration responsibilities (e.g., program managers, information technology product developers, information system developers, information systems integrators, enterprise architects, information security architects)
  • Individuals with cloud/information system and/or security management/oversight responsibilities (e.g., senior leaders, risk executives, authorizing officials, chief information officers, senior information security officers)
  • Individuals with cloud/information system and security control assessment and monitoring responsibilities (e.g., system evaluators, assessors/assessment teams, independent verification and validation assessors, auditors, or information system owners)
  • Individuals with cloud/information security implementation and operational responsibilities (e.g., cloud service providers, information system owners, common control providers, information owners/stewards, mission/business owners, information security architects, information system security engineers/officers)

Course Topics

Module 1 (Introduction to FedRAMP)

  • Purpose/Applicability/Operational Capabilities
  • Key Terms
  • Goals/Benefits
  • Roles and Responsibilities
    • Government
    • 3PAOs
    • CSPs

Module 2 (The Cloud Security Assessment and Authorization (A&A) Process)

  • Initiating/Applying
  • Assessing
  • Authorizing
  • Leveraging
  • FedRAMP Documents
    • SSP/Control Tailoring Workbook/Control Implementation Summary
    • SAR/POA&M
    • Authorization Request Letters
    • PIA Questionnaires
    • Contingency Plan

Module 3 (FedRAMP Security Controls)

  • For Low Impact Cloud Environments
  • For Moderate Impact Cloud Environments

Register Now

Questions about our corporate training may be directed to training@secureinfo.com, or call 888.677.9351.

Ask about our mobile training capability--it saves you money!