Back

Federal Cloud First FedRAMP Enhances Cloud Security

We've said it before, and we'll say it again... Cloud computing and Office 365 are not just for the private sector. Governmental agencies are slowly but surely making their way to the Cloud. ...

4 min read
Published on Sep 18, 2014
Federal Cloud First FedRAMP Enhances Cloud Security

 We’ve said it before, and we’ll say it again… Cloud computing and Office 365 are not just for the private sector.  Governmental agencies are slowly but surely making their way to the Cloud.  With the way technology advances, it is inefficient and costly to be operating on hosted or on-premises servers.  With a move to Office 365, governmental agencies are finding lower costs and new capabilities.  So whether your organization is in the public sector, private sector, non-profit or education, contact Agile IT today to arrange your free consultation and start planning your move to Office 365.

 

According to IDC, the federal government will spend $118.3 million on public cloud solutions in FY14, and more than $1.7 billion on private cloud solutions. The private cloud expenditure is slightly lower than it was in FY13, while the public cloud figure reflects an increase of about 33 percent. Looking ahead a few years, however, private cloud expenditures are expected to grow dramatically, reaching $7.7 billion by FY17.

 

The increase in cloud usage is prompted in large part by a policy change that began in the federal government several years ago. At the end of 2010, the Office of Management and Budget established the “Cloud First” policy as part of an IT reform plan.

 

The plan was designed to modernize federal IT systems on a number of fronts, including reducing the number of data centers and fixing or eliminating unsuccessful IT projects. As with the use of cloud technology in the private sector, the goal of transitioning to the cloud was to reduce costs and increase efficiency, agility and innovation.

 

Each agency was required to identify, within three months, three services that could be moved to the cloud, to move one of them to the cloud within a year and to move the other two within 18 months. Given the technological and administrative challenges involved, it is not surprising that many agencies fell short.

 

In a well-publicized report issued by the Government Business Council and Accenture in December 2013, only 30 percent of the federal executives surveyed indicated that they had cloud plans underway. A much smaller percent of respondents had actually transitioned any of their applications to the cloud.

 

Other milestones, including the June 5, 2014, deadline for agencies to certify their cloud systems with the Federal Risk and Authorization Management Program (FedRAMP) also proved difficult to meet. Yet some agencies were successful, and those agencies that were able to launch cloud services are being rewarded with lower costs and new capabilities.

 

Numerous agencies—including the departments of Agriculture, Health and Human Services, Homeland Security, State and Treasury, as well as the General Services Administration—successfully met the initial requirement for identifying and deploying three cloud services.

 

In 2013, the Environmental Protection Agency (EPA) migrated to Microsoft Office 365, the cloud version of Microsoft’s productivity suite. In addition to fostering collaboration, the shift to the cloud is expected to save the agency $12 million over four years.

 

Two types of FedRAMP approval are available. One is through the Joint Authorization Board (JAB), which is the primary governance and decision-making body for the FedRAMP program. JAB provides Provisional Authorization to Operate (P-ATO) for cloud solutions, and approves accreditation criteria for third-party assessment organizations (3PAOs). JAB approvals can be used throughout the federal government. Companies can also seek agency-sponsored FedRAMP approvals, which are only valid for that agency.

 

In the Government Business Council/Accenture report, the largest single concern expressed by respondents related to security. As compliance with FedRAMP continues to take root, that unease may diminish, but it remains a concern in the government sector as it does in the private sector.

 

Another challenge is staffing. Only a third of the executives felt certain that their agency had the staff necessary to execute a transition to the cloud. Half were not sure if the length of the procurement process was having an impact on cloud adoption, but the majority of those who did know felt that it was having an adverse effect.

 

Contracting procedures are also in a state of flux. Agencies are accustomed to paying a specified dollar amount for a specified service, and “pay as you go” is not part of that model.

This article excerpt, by Judith Lamont, Ph.D., originally appeared here: http://bit.ly/1rfQMKq

This post has matured and its content may no longer be relevant beyond historical reference. To see the most current information on a given topic, click on the associated category or tag.

Related Posts

Implement Azure Backup Encryption for Data Security

Implementing Encryption for Azure Backup Data

Learn how to implement encryption in Azure Backup to protect your cloud data. Discover key methods, tools, and best practices to ensure data confidentiality and compliance.

Nov 19, 2025
6 min read
Best Practices for Migrating Email to GCC High

Best Practices for Migrating Email to GCC High

Discover the best practices for migrating email to GCC High. Ensure security, compliance, and business continuity throughout your transition.

Nov 18, 2025
9 min read
Ensure Microsoft 365 Backup Data Integrity

Ensuring Data Integrity During Backups in Microsoft 365

Discover strategies to maintain data integrity during Microsoft 365 backups. Prevent corruption, ensure reliability, and meet compliance standards.

Nov 7, 2025
5 min read
Microsoft 365 Tenant Migration for ITAR Organizations

Microsoft 365 Tenant Migration for ITAR-Regulated Organizations

Ensure compliance with ITAR during Microsoft 365 tenant migrations. Learn how to protect export-controlled data and choose the right cloud environment.

Nov 7, 2025
7 min read
NIST SP 800-171 vs 800-172: Key Differences Explained

Key Differences Between NIST SP 800-171 and NIST SP 800-172

Explore the key differences between NIST SP 800-171 and NIST SP 800-172, including how 800-172 enhances security for protecting Controlled Unclassified Information (CUI) against advanced threats.

Nov 4, 2025
6 min read
Tenant Migrations for DFARS-Covered Entities

Handling Sensitive Data in Tenant Migrations for DFARS-Covered Entities

Learn how to securely manage sensitive data during tenant migrations for DFARS-covered entities. Understand CUI protections, cloud tools, and compliance strategies.

Oct 31, 2025
7 min read

Ready to Secure and Defend Your Data
So Your Business Can Thrive?

Fill out the form to see how we can protect your data and help your business grow.

Loading...
Secure. Defend. Thrive.

Let's start a conversation

Discover more about Agile IT's range of services by reaching out.

Don’t want to wait for us to get back to you?

Schedule a Free Consultation

Location

Agile IT Headquarters
4660 La Jolla Village Drive #100
San Diego, CA 92122