In an period the place digital agility is synonymous with mission success, Cisco is proud to function a cornerstone of the U.S. public sector’s modernization journey. We acknowledge that authorities companies function underneath the very best requirements of safety and accountability; that’s the reason we’ve prioritized the supply of FedRAMP Licensed Class D (Excessive) options throughout key affords of our safety portfolio. By offering a safe, compliant basis that bridges the hole between legacy infrastructure and cloud-native innovation, we’re enabling companies to implement Zero Belief ideas and speed up digital transformation with confidence. Our dedication goes past expertise—we’re devoted to making sure that federal, state, and native companies have the strong, verified, and scalable Zero Belief platform options crucial to guard the nation’s most delicate information whereas delivering seamless, resilient companies to the general public.
Cisco is proud to announce a major milestone in our dedication to the U.S. Public Sector: the uplift of our key safety affords inside our safety portfolio from FedRAMP Licensed Class C (Reasonable) to FedRAMP Licensed Class D (Excessive).
This transition supplies federal companies and contractors with the improved safety required for his or her most delicate, mission-critical, unclassified information. By attaining this “Class D Certification” baseline throughout a set of built-in options, Cisco is enabling a seamless transition to a mature Zero Belief structure assembly the excessive requirements of the CISA Zero Belief Mannequin.
The Energy of FedRAMP Excessive
Whereas FedRAMP Licensed Class C (Reasonable) is the usual for a lot of civilian companies, FedRAMP Licensed Class D (Excessive) is designed for programs the place a breach may have catastrophic results. This consists of regulation enforcement, emergency companies, healthcare, and monetary programs. By assembly the 421 safety controls required for the Class D Licensed baseline, Cisco helps make sure that companies can shield delicate Personally Identifiable Info (PII) and Managed Unclassified Info (CUI) with the very best degree of cloud safety rigor.
A Zero Belief Basis for the Fashionable Mission
On the coronary heart of this authorization uplift is Cisco’s dedication to Zero Belief. Our technique facilities on the philosophy of “by no means belief, all the time confirm.” By integrating FedRAMP Excessive approved options, companies can implement granular entry insurance policies, preserve steady visibility, and cut back the assault floor throughout customers, units, and functions.
Zero Belief represents a elementary shift from conventional, perimeter-based safety to a mannequin centered on id and context. In a FedRAMP Excessive setting, the place the stakes of an information breach are extreme, this mannequin helps make sure that no person or system is granted entry to sources till they’re absolutely authenticated, and their safety posture is validated. By implementing least-privileged entry, these options may also help companies stop lateral motion by attackers and maintain delicate information remoted and guarded, even within the occasion of a compromised credential.
Cisco’s safety portfolio is particularly designed to align with the CISA Zero Belief Maturity Mannequin (ZTMM) throughout its 5 foundational pillars: Identification, Units, Community/Setting, Software Workload, and Knowledge.

Our FedRAMP Licensed Class D (Excessive) options present the visibility and automatic coverage enforcement crucial to maneuver companies from “Conventional” to “Superior” and “Optimum” maturity ranges. By integrating menace intelligence from Cisco Talos and offering cross-pillar visibility, Cisco helps companies meet the rigorous necessities of Government Order 14028 and the M-22-09 mandate, making a resilient defense-in-depth technique.
Cisco’s newly uplifted FedRAMP Excessive ecosystem
- Cisco Safe Entry for Authorities: As a premier Safety Service Edge (SSE) answer, Safe Entry affords a ZTNA-first strategy that simplifies the person expertise whereas implementing strict Zero Belief ideas. It allows seamless, safe entry to all non-public and public functions, serving to companies make sure that customers are verified and approved at each step. By hiding functions from the general public web and offering a unified agent, it reduces the assault floor and eliminates the friction usually related to legacy VPNs.
Cisco Safe Entry for Authorities has a multi-layered protection beginning on the DNS layer to dam threats earlier than a connection is ever established. Now approved on the FedRAMP Excessive degree, it integrates Safe Internet Gateway (SWG), Cloud Entry Safety Dealer (CASB), and cloud-delivered firewall capabilities. This permits companies to guard towards subtle web-based assaults, handle shadow IT, and forestall information exfiltration throughout a distributed workforce.
- Cisco Safety Cloud Management – Firewall Administration: Previously generally known as Protection Orchestrator, this answer permits for constant coverage administration throughout your entire federal enterprise. Cisco Safety Cloud Management – Firewall Administration supplies a centralized administration airplane that simplifies firewall coverage orchestration, enabling constant safety posture throughout your total infrastructure. By automating advanced change administration processes and offering unified visibility, we empower companies to cut back configuration errors, speed up compliance reporting, and strengthen their Zero Belief structure.
- Cisco Multicloud Protection: As federal companies speed up their digital transformation, the complexity of securing workloads throughout AWS, Azure, and GCP has change into a essential problem. Cisco Multicloud Protection simplifies safety technique by offering a unified material that ensures constant coverage enforcement and deep, actionable visibility throughout cloud environments. Cisco Multicloud Protection is now accessible with rigorous requirements of FedRAMP Licensed Class D (Excessive).
Securing the #1 Risk Vector: Cisco Safe E mail Risk Protection
We’re additionally excited to announce that Cisco Safe E mail Risk Protection has formally achieved FedRAMP Licensed Class D (Excessive). E mail stays the first entry level for superior threats, together with phishing and ransomware. With Cisco Safe E mail Risk Protection for Authorities approved on the Licensed Class D (Excessive) FedRAMP degree, companies can leverage industry-leading menace intelligence and automatic remediation to assist shield their most focused communication channel and sustaining safety for even essentially the most delicate correspondence.
Cisco Safety Cloud for Authorities
Cisco Safety Cloud for Authorities is a unified authorization boundary that integrates numerous Cisco safety companies, making certain that organizations can shield their customers, units, and functions no matter the place they reside. Authorities companies can leverage the complete suite of safety merchandise underneath the Cisco Safety Cloud for Authorities authorization.
The Cisco Safety Cloud for Authorities ecosystem is designed to satisfy the rigorous safety necessities of the general public sector and extremely regulated industries.
Cisco Duo Federal Excessive
Cisco Duo Federal Excessive is Cisco’s FedRAMP-authorized multi-factor authentication (MFA) answer tailor-made to public sector organizations. It delivers robust cloud-based authentication and system visibility that meet the stringent safety necessities of federal companies. Duo Federal helps FIPS 140-2/3 and NIST SP 800-63-3 compliance, together with authentication assurance ranges AAL2 and AAL3, with assist for biometric and {hardware} token authenticators.
In contrast to business variations, Duo Federal restricts telephony-related options and requires authentication by way of Duo Push on smartphones, {hardware} tokens, or passkeys. It enforces strict safety insurance policies equivalent to role-based and location-based entry, biometric enforcement, and system hygiene checks, serving to companies implement zero-trust safety fashions.
Cisco Safety Cloud Management (SCC)
Cisco Safety Cloud Management (SCC) has additionally achieved Class D (Excessive) standing. SCC is a centralized platform designed to unify the administration, coverage orchestration, and visibility of your Cisco safety investments. It’s important for organizations trying to simplify their safety structure by reworking the administration of advanced, distributed environments right into a extra environment friendly and cohesive course of.
Key Elements of Safety Cloud Management:
- Unified Visibility and Administration: SCC supplies a single dashboard to supervise safety insurance policies, configurations, and telemetry throughout hybrid and multi-cloud environments.
- Constant Coverage Enforcement: It allows directors to outline safety insurance policies as soon as and deploy them constantly throughout totally different parts of the Cisco safety portfolio.
- Streamlined Operations: Elevated effectivity permits groups to deal with proactive menace looking and strategic safety initiatives moderately than guide configuration administration.
- Platform Integration: Because the administration layer of the Cisco Safety Cloud, SCC is designed to combine seamlessly with numerous Cisco safety options.
Seamless Uplift: Safety With out the Friction
Probably the most vital benefits of Cisco’s strategy is that this transition is an environmental uplift, not a migration.
For present clients, this implies:
- No Operational Hurdles: The improve to the backend infrastructure is utilized routinely.
- No SKU Modifications: Businesses can transition to the next safety posture with out the necessity to change merchandise or re-configure core options.
- Unified Compliance: A single, high-security ecosystem that simplifies the trail to assembly Government Order 14028 and M-22-09 mandates.
Cisco a Trusted Accomplice for Defending Important Infrastructure, Cloud and Purposes
Cisco’s ongoing funding in FedRAMP Licensed Class D (Excessive) options displays our unwavering dedication to the U.S. authorities’s safety mission. By integrating Cisco Safe Entry (SSE) for complete SASE, Cisco Safety Cloud Management – Firewall Administration for centralized firewall administration, Multicloud Protection for constant workload safety, E mail Risk Protection for superior, proactive safety, Cisco Duo Federal Excessive for MFA, and Cisco Safety Cloud Management for unified administration, we offer a Zero Belief-aligned platform that simplifies the complexity of recent authorities operations. Because the federal panorama continues to evolve towards extra stringent safety frameworks and better Affect Ranges, Cisco stays your trusted accomplice—empowering companies to speed up digital transformation, safe distributed workforces, and safeguard the mission-critical information that powers our nation.
