2 min read

GovRAMP Launches CJIS-Aligned Task Force to Advance Framework Harmonization and Compliance

GovRAMP Launches CJIS-Aligned Task Force to Advance Framework Harmonization and Compliance

INDIANAPOLIS, IN – (GovRAMP) – GovRAMP, the leading authority in cloud security standards for state and local governments, is thrilled to announce the establishment of the GovRAMP CJIS-Aligned Task Force. This pioneering initiative signifies a landmark collaboration between GovRAMP's members and leaders from the Federal Bureau of Investigation's Criminal Justice Information Services (FBI CJIS). The committee, with assistance of FBI CJIS advisors, will develop a GovRAMP CJIS-aligned overlay. 

The GovRAMP CJIS-aligned overlay will specify parameters to enhance GovRAMP's Moderate Impact Level, aligning it with current Criminal Justice Information Services Security Policy. Service Providers will use the overlay specification to confirm their posture relative to CJIS security control requirements, simplifying the process of determining a product's likelihood of CJIS conformance for both public and private sector stakeholders. 

The primary objective of this collaboration is to assemble state and local government leaders, GovRAMP approved assessors and provider members, alongside the expert guidance of FBI CJIS leadership. Together, they will craft an overlay to GovRAMP baseline controls that aligns seamlessly with CJIS requirements, ensuring robust security measures tailored to the unique needs of the criminal justice community. 

"While there will be no official CJIS certification, the GovRAMP CJIS-aligned overlay represents a significant step forward in providing clear guidance on a product's likelihood for CJIS conformity," said Leah McGrath, Executive Director of GovRAMP. "Achieving a GovRAMP Authorization with the CJIS-aligned overlay will offer invaluable directional guidance, empowering agencies to make informed decisions about their cloud security solutions." 

The task force, comprised of GovRAMP provider members, government representatives, and advisors from FBI CJIS Division, will spearhead the development of this critical overlay. Building upon the foundation laid by GovRAMP's Standards and Technical Committee, this initiative marks a pivotal moment in furthering framework harmonization of cloud security practices tailored to the needs of state and local governments. 

"We appreciate the ongoing leadership of the FBI CJIS Division that has made this overlay a tangible possibility," added McGrath. 

In addition to its core objectives, the Task Force aims to enhance awareness and acceptance of the CJIS overlay by incorporating insights from industry thought leaders. GovRAMP remains steadfast in its commitment to promoting greater harmonization in cloud security practices, ensuring vendors and government agencies receive comprehensive guidance to achieve CJIS compliance effectively.

To support these efforts, we invite you to participate in our CJIS-Aligned Task Force Survey. Your insights and feedback are crucial in shaping the development of the CJIS-aligned overlay, ensuring it meets the needs and challenges faced by the criminal justice community.

For more information about the GovRAMP CJIS-Aligned Task Force and to join this groundbreaking initiative, visit govramp.org/stateramp-cjis-aligned-task-force/.

About GovRAMP

GovRAMP is the premier authority in cloud security standards for state and local governments. By providing a standardized approach to assessing and authorizing cloud services, GovRAMP empowers government agencies to navigate the complexities of cloud security with confidence. Learn more at govramp.org. 

Understanding Threats and Vulnerabilities in Government Cybersecurity

Understanding Threats and Vulnerabilities in Government Cybersecurity

In cybersecurity, especially in the public sector, clarity matters. Terms like “threat” and “vulnerability” are often used interchangeably, but they...

Read More
What Is Risk—And Why It Matters in Cybersecurity Risk Management for Government

What Is Risk—And Why It Matters in Cybersecurity Risk Management for Government

Risk isn’t just a technical concern. For both public and private sector organizations, it's a strategic consideration tied directly to trust,...

Read More
HRTec: Enabling Secure Government Infrastructure with GovRAMP

HRTec: Enabling Secure Government Infrastructure with GovRAMP

HRTec has long supported public sector organizations through its secure, scalable FedHIVE platform and Compliance as a Service model. As a GovRAMP...

Read More
GovRAMP Adopts CJIS-Aligned Overlay, Setting New Benchmark for Criminal Justice Cloud Security Standards

GovRAMP Adopts CJIS-Aligned Overlay, Setting New Benchmark for Criminal Justice Cloud Security Standards

INDIANAPOLIS, IN – (January 13, 2025) – GovRAMP, the leading authority in cloud security standards for state and local governments, is proud to...

Read More
GovRAMP Introduces Core Status: A New Milestone in Cloud Security Validation

GovRAMP Introduces Core Status: A New Milestone in Cloud Security Validation

May 5, 2025 – INDIANAPOLIS, IN – GovRAMP today announced the official launch of GovRAMP Core, a new verified security status that expands the...

Read More
StateRAMP Announces Rebrand to GovRAMP, Reflecting Mission to Unite Public and Private Sectors in Advancing Cybersecurity

StateRAMP Announces Rebrand to GovRAMP, Reflecting Mission to Unite Public and Private Sectors in Advancing Cybersecurity

INDIANAPOLIS, IN — February 14, 2025 — StateRAMP, a 501(c)(6) nonprofit organization dedicated to advancing cybersecurity in the public sector, today...

Read More