CISA Releases Guidance on Secure Migration to the Cloud
Thursday, June 23, 2022 | Comments

The Cybersecurity and Infrastructure Security Agency (CISA) published the second version of it “Cloud Security Technical Reference Architecture (TRA)”, which strengthens guidance to fulfill a key mandate under President Biden’s Executive Order (EO) 14028 – “Improving the Nation's Cybersecurity."

The cloud services TRA is designed to guide agencies’ secure migration to the cloud by defining and clarifying considerations for shared services, cloud migration and cloud security posture management.

As the federal government, along with organizations across sectors, continues to migrate to the cloud, it is paramount that agencies implement measures to protect it. The cloud security TRA, co-authored by CISA, the United States Digital Service (USDS) and the Federal Risk and Authorization Management Program (FedRAMP), provides foundational guidance for organization to use public cloud more security and improve the ability of the federal government to identify, detect, protect, respond and recover from cyber incidents.

“As the nation’s cyber defense agency, CISA works collaboratively with our interagency partners to implement improvements that make our federal civilian agencies more resilient to cyber threats,” said Eric Goldstein, executive assistant director for cybersecurity, CISA. “The updated cloud security TRA is a key step forward for each agency’s transition to the cloud environment. CISA and our partners will continue to provide expert, coherent and timely guidance to help agencies modernize their networks with sound cybersecurity and resilience to protect against evolving cyber adversaries. While the TRA was developed for federal agencies, all organizations using or migrating to cloud environments should review this document and adopt the practices therein as applicable to most effectively manage organizational risk.”

In consultation with the Office of Management and Budget (OMB), the three agencies adjudicated more than 300 public comments received in September. This feedback helped to further strengthen the cloud security TRA and fully address a host of considerations for secure cloud migration.

Find the architecture here.

Would you like to comment on this story? Find our comments system below.

Post a comment
Name: *
Email: *
Title: *
Comment: *


No Comments Submitted Yet

Be the first by using the form above to submit a comment!


May 2023

23 - 25
Critical Communications World (CCW)
Helsinki, Finland

More Events >
White Papers
More White Papers >

Site Navigation