Print-friendly view · use your browser's Save as PDF option (Cmd/Ctrl-P) to attach this article to a brief.
FedRAMP AI Cloud Procurement Guidance
FEDRAMP-AI-2024 · US · policy statement
Source: https://policywindow.org/wiki/fedramp-ai-guidance
Generated 2026-06-04T00:32:23 UTC
Summary
Operational PMO guidance for agencies acquiring AI / generative-AI cloud services within the existing FedRAMP authorisation framework. Key operational themes that recur across the published surface: (1) AI cloud services that process federal data require a FedRAMP ATO (Low / Moderate / High baseline) per the standard FedRAMP scope; (2) GenAI-specific control tailoring — agencies + JAB consider model-specific risks (training-data exposure, prompt-injection, output disclosure) when scoping the SSP + selecting NIST SP 800-53 control overlays; (3) cross-walk to OMB M-24-10 minimum practices for safety- + rights-impacting AI; (4) supply-chain risk-management considerations for model + dataset provenance; (5) agency authorising-official discretion remains the operative gate — FedRAMP authorisation enables but does not by itself approve a specific AI use case (M-24-10 governance applies separately). Editorial note: limited public detail on this row reflects the PMO's web-page-plus-memo distribution pattern; a consolidated GenAI baseline document is the natural next milestone and would refresh this row.
At a glance
- Adopted
- 2024-01-01
- Effective
- 2024-01-01
- Status
- in force
- Primary source
- FedRAMP Program Management Office, AI / Generative-AI cloud procurement guidance (2024); operational guidance distributed across fedramp.gov landing + PMO memos under 44 U.S.C. §3607 statutory authority. See fedramp.gov for the current consolidated state.
- Source URL
- https://www.fedramp.gov/
How to cite this article
APA
Policy Window. (2024). FedRAMP AI Cloud Procurement Guidance [Wiki article — Instrument]. https://policywindow.org/wiki/fedramp-ai-guidance
Chicago
Policy Window. 2024. "FedRAMP AI Cloud Procurement Guidance." Wiki article (Instrument). https://policywindow.org/wiki/fedramp-ai-guidance.
Harvard
Policy Window (2024) 'FedRAMP AI Cloud Procurement Guidance', Wiki article — Instrument, available at: https://policywindow.org/wiki/fedramp-ai-guidance.
OSCOLA
Policy Window, 'FedRAMP AI Cloud Procurement Guidance' (Wiki article — Instrument, 2024) <https://policywindow.org/wiki/fedramp-ai-guidance> accessed [date].
BibTeX
@misc{policywindow-fedramp-ai-guidance,
title = {FedRAMP AI Cloud Procurement Guidance},
author = {Policy Window},
year = {2024},
howpublished = {FedRAMP Program Management Office, AI / Generative-AI cloud procurement guidance (2024); operational guidance distributed across fedramp.gov landing + PMO memos under 44 U.S.C. §3607 statutory authority. See fedramp.gov for the current consolidated state.},
url = {https://policywindow.org/wiki/fedramp-ai-guidance},
note = {Primary source: https://www.fedramp.gov/}
}