Splunk Moves Closer to a Secure Cloud Solution for SLED with an 'In Process' Status for StateRAMP Authorization

The State Risk and Authorization Management Program (StateRAMP) is a nonprofit organization founded in 2020 to help state and local governments by establishing a standard and simplified approach for verifying the security posture of cloud offerings. StateRAMP is based on the National Institute of Standards and Technology (NIST) SP 800-53 standards and modeled in part after the Federal Risk Authorization Management Program (FedRAMP) based on a “complete once, use many” concept that saves time and reduces costs for service providers and governments.

As of today, Splunk is in “In Process” to attain a StateRAMP Authorization. This means Splunk Cloud Platform is working toward a StateRAMP-verified status of Ready or Authorized. The designation further validates Splunk’s continued commitment to state, local and higher institutions. State and local IT leaders increasingly turn to data-driven strategies to handle their priorities, from modernization to risk management to citizen experience improvements. Only Splunk offers a unified, cost-effective, extensible and massively scalable data platform that helps them make confident decisions.

In a time where many breaches occur due to vulnerabilities in third-party software, achieving a StateRAMP authorization ensures state and local governments and higher education institutions that our technology has achieved the highest standard of security. We work daily to build a safer more resilient digital experience in government services. State and local governments need to build digital resilience — keeping their systems secure and reliable in the face of digital disruptions — to accomplish their mission to those they serve.

A quick scan of recent significant cyber incidents could give the impression that cybersecurity in the government sector is only a concern for the federal government due to references to federal agencies or because cyber attacks seemingly only originate overseas. Yet this would be misleading — oftentimes ransomware attacks target municipalities. Public sector cybersecurity is a concern for state and local governments.

Splunk will provide more details on progress and timelines as work progresses. Want to learn more about our StateRAMP designation or secure cloud solutions? Take a look here.

Related Articles

A Zero Trust Security Approach for Government: Increasing Security but also Improving IT Decision Making
Industries
3 Minute Read

A Zero Trust Security Approach for Government: Increasing Security but also Improving IT Decision Making

Public sector organisations are in the middle of a massive digital transformation. This transformation also opens new avenues for cyberthreats and expands the attack surface. The traditional approach is to collect data at the rapidly eroding perimeter, subsequently ignoring users as they continue into the network. Zero-trust architectures require government departments to continuously monitor, detect, evaluate, and enforce policy as users move about the network.
EU AI ACT: KEY ISSUES TO WATCH
Industries
8 Minute Read

EU AI ACT: KEY ISSUES TO WATCH

The EU is currently developing one of the world’s first comprehensive regulations on Artificial Intelligence. Initially proposed in April 2021, the draft AI Act is now entering its last stage of negotiations, with the stated aim by policymakers to agree on a final text before the end of the year. Given the scope of the Regulation, and its likely impact in the EU and beyond, it’s an opportunity to review some of the key issues still in discussion and what they could mean for AI adoption and innovation in Europe.
Improvements to Detecting Modern Financial Crime
Industries
5 Minute Read

Improvements to Detecting Modern Financial Crime

This blog provides advice to scale the collection and detection of risk scores that are attributed to Financial Crime rules stored in Splunk.