3 Difficulties Faced, 5 Reasons to Hope, and 3 Next Steps
Discover one contractor’s story in navigating a FedRAMP and Security Level 4 DISA certification
As well prepared as our team came into the FedRAMP certification process, we could never have been prepared for the difficulty of navigating the road that is FedRAMP+/DISA certification.
Before making it appear that we are complaint, allow us to clarify that FedRAMP itself has admitted that the process is still too time-consuming and costly for most small businesses. In fact, the FedRAMP expert we hired to initially guide us through this process told us, “You are crazy to try: you might not be able to sustain it financially as a small business and should consider whether this opportunity is worth the risk. By the time you get through the whole process (esp. with the DoD involved), you might not be a business anymore.” At the same time, FedRAMP is an unusual Government organization in how committed it is to improving this—since 2011, there have been many changes for the better.