Red Hat OpenShift Service on AWS GovCloud and Red Hat Insights Achieve FedRAMP® High Authorization
January 22, 2024

Red Hat announced that Red Hat OpenShift Service on AWS GovCloud and Red Hat Insights have achieved Federal Risk and Authorization Management Program (FedRAMP®) Agency Authority to Operate (ATO) at the High Impact Level.

With FedRAMP High authorization, organizations in highly regulated industries can address key government security and compliance requirements. US federal agencies and their contractors are now able to build, deploy and run Kubernetes-based applications on Red Hat OpenShift Service on AWS GovCloud. Additionally, with the authorization of Red Hat Insights, agencies can now monitor and manage their business, operations, and security use cases for Red Hat Enterprise Linux on AWS GovCloud using Red Hat Insights.

FedRAMP is a government-wide program that promotes the adoption of secure cloud services across the federal government by providing a standardized approach to security assessment, authorization and continuous monitoring for cloud products and services. FedRAMP introduced their High Impact Level to account for the government’s most sensitive, unclassified data in cloud computing environments, including data that involves law enforcement, emergency systems, financial systems, health systems and more. Achieving FedRAMP High indicates that Red Hat OpenShift Service on AWS GovCloud and Red Hat Insights have successfully undergone rigorous audits of critical security controls to highly-sensitive data in cloud computing environments. This news follows Red Hat OpenShift Service on AWS’s prioritization for provisional authorization through the Joint Authorization Board (JAB) last year.

Launched in March of 2021, Red Hat OpenShift Service on AWS (ROSA) is a joint, turnkey application platform from Red Hat and AWS that makes it easier for customers to build, scale and manage containerized applications on AWS.

Red Hat OpenShift Service on AWS GovCloud simplifies operations so agencies can focus on application innovation, rather than managing complex underlying infrastructure. For agencies who already use Red Hat OpenShift, the service simplifies moving on-premises OpenShift workloads to AWS and offers a tighter integration with other AWS services. With FedRAMP High, agencies can deploy highly-sensitive workloads on Red Hat OpenShift Service on AWS GovCloud with greater confidence in their ability to conform to data access and residency regulations, and to address known security vulnerabilities with applicable fixes. ROSA is backed by a Red Hat site reliability engineering (SRE) team that manages the underlying infrastructure, integrated tools and day to day operations, including automating updates, patches and upgrades.

Red Hat Insights is a predictive analytics offering as part of Red Hat Enterprise Linux subscriptions with enhanced threat visibility to enable customers to reduce risks in their hybrid cloud operating environments for a more secure IT framework. Insights for Red Hat Enterprise Linux uses predictive analytics and deep domain expertise to reduce complex operational tasks from hours to minutes, including identifying security and performance risks, reporting on subscriptions, and managing costs.

Companies with federal workloads can use Insights for Red Hat Enterprise Linux to experience the agility, flexibility and efficiency of cloud based solutions. Insights simplifies Red Hat Enterprise Linux operations by using predictive analytics and comprehensive domain expertise to assess IT environments and identify and prioritize operational and security risks, directly address identified issues, and simplify system management tasks.

Red Hat OpenShift Service on AWS GovCloud with FedRAMP High as well as Red Hat Insights with FedRAMP High are both now generally available.

Share this

Industry News

January 23, 2025

Progress announced the launch of Progress Data Cloud, a managed Data Platform as a Service designed to simplify enterprise data and artificial intelligence (AI) operations in the cloud.

January 23, 2025

Sonar announced the release of its latest Long-Term Active (LTA) version, SonarQube Server 2025 Release 1 (2025.1).

January 23, 2025

Idera announced the launch of Sembi, a multi-brand entity created to unify its premier software quality and security solutions under a single umbrella.

January 22, 2025

Postman announced the Postman AI Agent Builder, a suite empowering developers to quickly design, test, and deploy intelligent agents by combining LLMs, APIs, and workflows into a unified solution.

January 22, 2025

The Cloud Native Computing Foundation® (CNCF®), which builds sustainable ecosystems for cloud native software, announced the graduation of CubeFS.

January 21, 2025

BrowserStack and Bitrise announced a strategic partnership to revolutionize mobile app quality assurance.

January 21, 2025

Render raised $80M in Series C funding.

January 16, 2025

Mendix, a Siemens business, announced the general availability of Mendix 10.18.

January 16, 2025

Red Hat announced the general availability of Red Hat OpenShift Virtualization Engine, a new edition of Red Hat OpenShift that provides a dedicated way for organizations to access the proven virtualization functionality already available within Red Hat OpenShift.

January 16, 2025

Contrast Security announced the release of Application Vulnerability Monitoring (AVM), a new capability of Application Detection and Response (ADR).

January 15, 2025

Red Hat announced the general availability of Red Hat Connectivity Link, a hybrid multicloud application connectivity solution that provides a modern approach to connecting disparate applications and infrastructure.

January 15, 2025

Appfire announced 7pace Timetracker for Jira is live in the Atlassian Marketplace.

January 14, 2025

SmartBear announced the availability of SmartBear API Hub featuring HaloAI, an advanced AI-driven capability being introduced across SmartBear's product portfolio, and SmartBear Insight Hub.

January 14, 2025

Azul announced that the integrated risk management practices for its OpenJDK solutions fully support the stability, resilience and integrity requirements in meeting the European Union’s Digital Operational Resilience Act (DORA) provisions.

January 14, 2025

OpsVerse announced a significantly enhanced DevOps copilot, Aiden 2.0.