Joint Authorization Board

E1008921

The Joint Authorization Board is the primary governance body of the U.S. federal FedRAMP program, composed of CIOs from key agencies who make security authorization decisions for cloud services used across the government.

All labels observed (2)

How this entity was disambiguated

Statements (45)

Predicate Object
instanceOf FedRAMP governance body ⓘ
federal government board ⓘ
governance body ⓘ
beneficiary U.S. federal agencies ⓘ
cloud service providers participating in FedRAMP ⓘ
collaboratesWith FedRAMP Program Management Office ⓘ
federal agencies using cloud services ⓘ
composedOf Chief Information Officer of the Department of Defense ⓘ
Chief Information Officer of the Department of Homeland Security ⓘ
Chief Information Officer of the General Services Administration ⓘ
country United States ⓘ
decisionType risk-based security authorization decisions ⓘ
domain cloud computing security ⓘ
establishedFor centralized security authorization of cloud services ⓘ
focusesOn cloud service security ⓘ
federal information security risk management ⓘ
governs FedRAMP authorization decisions ⓘ
security authorization of cloud services for U.S. federal agencies ⓘ
hasRole authorizing official for cloud services ⓘ
primary governance body for FedRAMP ⓘ
risk executive for FedRAMP ⓘ
issues FedRAMP Provisional Authorizations to Operate ⓘ
jurisdiction U.S. federal civilian and defense agencies using FedRAMP ⓘ
language English ⓘ
locatedIn United States federal government ⓘ
makesDecisionOn FedRAMP Provisional ATOs ⓘ
Provisional Authorizations to Operate ⓘ
memberAgency U.S. Department of Defense ⓘ
U.S. Department of Homeland Security ⓘ
U.S. General Services Administration ⓘ
objective ensure standardized security for cloud services used by U.S. federal agencies ⓘ
reduce duplication of security assessments for cloud services ⓘ
operatesUnder U.S. federal information security policies ⓘ
oversees continuous monitoring requirements for FedRAMP-authorized services ⓘ
security assessment of cloud service offerings ⓘ
partOf Federal Risk and Authorization Management Program ⓘ
regulates security requirements for cloud service providers seeking FedRAMP authorization ⓘ
relatedConcept Authorization to Operate ⓘ
risk-based security authorization ⓘ
relatedProgram FedRAMP Marketplace ⓘ
scope government-wide cloud service security authorizations ⓘ
sector public sector IT ⓘ
shortName JAB ⓘ
usesFramework FedRAMP security baselines ⓘ
NIST security standards and guidelines ⓘ
linked to: NIST SP 800 series

How these facts were elicited

Referenced by (9)

Full triples — surface form annotated when it differs from this entity's canonical label.

FedRAMP Joint Authorization Board Provisional ATO → grantedBy → FedRAMP Joint Authorization Board ⓘ
linked to: Joint Authorization Board
3PAO → governingBody → FedRAMP Joint Authorization Board ⓘ
linked to: Joint Authorization Board
3PAO → outputUsedBy → FedRAMP Joint Authorization Board ⓘ
linked to: Joint Authorization Board
Third Party Assessment Organizations → recognizedBy → Joint Authorization Board ⓘ
FedRAMP Joint Authorization Board → fullName → FedRAMP Joint Authorization Board ⓘ
subject linked to: JAB
linked to: Joint Authorization Board
Department of Defense representative on JAB → partOf → Joint Authorization Board ⓘ
Department of Defense representative on JAB → memberOf → Joint Authorization Board ⓘ
FedRAMP Low → overseenBy → Joint Authorization Board ⓘ