Accelerate FedRAMP Compliance Through Automatic Generation of Required FedRAMP Documentation
Simplify—and accelerate—FedRAMP compliance by automatically generating required FedRAMP documentation with Xacta
Xacta® is at the forefront of leveraging NIST’s Open Security Controls Assessment Language (OSCAL) standard now being adopted by FedRAMP to speed and automate authorization. With OSCAL integration in Xacta 360™, organizations are able to submit FedRAMP system security plans (SSPs) and other documentation in machine-readable format, including:
• Security Assessment Plans (SAPs)
• Security Assessment Reports (SARs)
• Plans of Action and Milestones (POAMs)
• Contingency Plans
• Privacy Impact Assessments
And much more.
This will accelerate the approval process for inclusion in the FedRAMP Marketplace and speed time-to-revenue for federal cloud applications. Essentially, Xacta and OSCAL put you in the express lane to FedRAMP compliance to start selling to the $6 billion+ federal marketplace for cloud solutions and services.
Future versions of Xacta 360 will build upon OSCAL capabilities to offer even more benefit for users in various industries as NIST continues to develop the standard.
What is OSCAL?
Open Security Control Assessment Language is a standardized, data-centric framework that can be applied to an information system for documenting and assessing its security controls.
Why OSCAL?
- Control information lacks standardization
- Assessing control implementation across multiple components
- Supporting multiple regulatory frameworks simultaneously
- Streamline documentation reviews and assessment process
Quick Facts about OSCAL Functionality Within Xacta:
- Xacta’s workflow supports FedRAMP OSCAL package requirements, while maintaining support of legacy documents.
- Packages meeting requirements are ingested into Xacta leveraging the API and/or data exchange model (XDE).
- One-click OSCAL SSP export functionality allows CSPs to publish and validate their package on a regular basis (and prior to submission).
With Xacta for FedRAMP, It’s Possible to Export SSPs with the Click of a Button:
Blog
The New Era of FedRAMP: Expediting SSP Submissions via OSCAL
FedRAMP is trying something new: adopting the use of Open Security Controls Assessment Language (OSCAL) for all packages.
BROCHURE
Xacta for FedRAMP
Reduce the time and cost needed to achieve and maintain FedRAMP compliance.
Request a Demo
Let us show you Xacta in action.