From the course: How to Get FedRAMP Authorized

Unlock this course with a free trial

Join today to access over 25,300 courses taught by industry experts.

GAP analysis and readiness assessment

GAP analysis and readiness assessment

From the course: How to Get FedRAMP Authorized

GAP analysis and readiness assessment

- What is a readiness assessment? Well, the readiness assessment is required for JAB authorizations. 20% of the most stringent controls are audited. You must use a third-party audit organization and it's required for JAB and it will expire after one year. At the end, you'll receive the FedRAMP Ready designation and be listed on the website. Now the readiness assessment is only required if you're going through the JAB. First, the cloud service provider will engage FedRAMP via FedRAMP Connect and will be selected to work with the JAB. Next, the CSP will engage a third-party assessment organization that's going to conduct the readiness assessment. The 3PAO creates the readiness assessment report also called a RAR, R-A-R, and they will conduct the readiness assessment. They'll finalize the report and they will either approve or deny the readiness assessment. Once approved, then the 3PAO will send it to the PMO that will…

Contents