The 38North Security Podcast

FedRAMP: Goodbye FedRAMP JAB! Hello TAG, Board, and FSCAC!

32 min · 10. kesä 2024
jakson FedRAMP: Goodbye FedRAMP JAB! Hello TAG, Board, and FSCAC! kansikuva

Kuvaus

FedRAMP just came out with *three* new bodies governing the program going forward: the TAG, the Board, and the FSCAC. There's a lot of uncertainty right now, not to mention confusion and misinformation. Why are these changes happening? What does it mean for CSPs, 3PAOs, and agencies? Is the JAB gone?!! Matt Strasburg and Jeremiah Thompson shed light on these massive changes and discuss their wide-reaching impact.

Kommentit

0

Ole ensimmäinen kommentoija

Rekisteröidy nyt ja liity The 38North Security Podcast-yhteisöön!

Aloita maksutta

14 vrk ilmainen kokeilu

Kokeilun jälkeen 7,99 € / kuukausi. · Peru milloin tahansa.

  • Podimon podcastit
  • 20 kuunteluaikaa / kuukausi
  • Lataa offline-käyttöön

Kaikki jaksot

6 jaksot

jakson Why Engineers Hate Compliance—And Why They’re Not Wrong kansikuva

Why Engineers Hate Compliance—And Why They’re Not Wrong

Welcome to Part 1 of our Compliance Engineering Mini-Series, a focused look at what it means to build secure, auditable systems by design. In this kickoff episode, 38North Director of Engineering Larry Spector joins Chris Davis to talk about a familiar tension: engineers want to move fast, and compliance gets in the way. But what if the engineers are right? Or at least, right to feel the way they do? Together, they explore: * Why compliance often fails when it’s treated as a bolt-on * How audit fatigue and rework are symptoms of deeper engineering gaps * The difference between “checking boxes” and proving operational excellence * What it actually means to build systems that generate their own evidence Larry and Chris reframe the problem and set the stage for a new way of thinking about compliance, engineering, and trust.

28. heinä 202516 min