Low New document us

FedRAMP publishes NOTICE-0010 responding to CISA V1: ED 25-03

Original title: Added NOTICE-0010 regarding FedRAMP Response to CISA V1: ED 25-03

FedRAMP has published NOTICE-0010 as an official response to CISA V1: ED 25-03. This notice provides FedRAMP's position and guidance on how the CISA directive applies to the FedRAMP authorization process and cloud service providers operating under the FedRAMP framework. Organizations must review this notice to understand FedRAMP's implementation approach for CISA requirements.

What changed

  • FedRAMP published NOTICE-0010 on April 23, 2026, providing official guidance on FedRAMP's response to CISA V1: ED 25-03 directive

Who is affected

Cloud service providers operating under FedRAMP authorization, federal agencies authorizing and using FedRAMP-certified cloud services, and organizations subject to CISA requirements.

Language
EN

Frameworks

CISA FedRAMP

Open the original source