

a16z Podcast: What to Know about FedRAMP
Aug 28, 2019
Lisa Hawke, VP of Security and Compliance at Everlaw, shares her expertise on navigating FedRAMP compliance, crucial for SaaS companies aiming to serve the U.S. government. The discussion unpacks the challenges and steps to certification, shedding light on the comparison between FedRAMP and other standards like ISO and GDPR. Lisa emphasizes the impact of effective compliance on organizational culture and sales strategies, and highlights the importance of a customer-focused approach and collaboration with federal partners to streamline the process.
AI Snips
Chapters
Transcript
Episode notes
FedRAMP Benefits
- Consider pursuing FedRAMP authorization to open a world of opportunity.
- It's essential for selling to the U.S. government and increases credibility with other customers.
FedRAMP Requirement
- FedRAMP authorization is required for selling to the U.S. government and many state organizations.
- Even private/public companies may seek FedRAMP-certified vendors.
FedRAMP Risk Assessment
- FedRAMP assesses risk based on the Confidentiality, Integrity, and Availability (CIA) framework.
- It considers impact levels (high, moderate, low) to determine the necessary controls.