Work together to provide a simple standardized approach to cybersecurity verification and validation.

A 501(c)6 nonprofit, StateRAMP levels the playing field for private-sector organizations serving the public sector and reduces hassles for public institutions with strict cybersecurity requirements.

Governments Can Procure and Secure More Efficiently and Confidently with StateRAMP

Diverse government standards and significant data sprawl through cloud service providers complicate today’s security environment, leaving governments less secure than ever amidst increasing cyber threats. StateRAMP lets governments trust but verify service provider products, making procurement more efficient and data more secure.

Service Providers Can Improve Security and Simplify Compliance with StateRAMP

Meeting the complex security standards and supplying (and resupplying) documentation required by various government partners can be confusing, time consuming, and costly. StateRAMP offers transferable credentials through standardized cybersecurity verification, allowing providers to verify once and serve many.

StateRAMP Cybersecurity Framework Harmonization Symposium

Join top policymakers, cybersecurity experts, and industry leaders for a dynamic half-day event on March 10, 2025, focused on addressing one of the most critical challenges in today’s digital landscape: cybersecurity framework harmonization. The Symposium also coincides and is co-located with the Billington State & Local CyberSecurity Summit, which provides additional opportunities to engage with state, local and federal cyber leaders while in Washington, D.C.

Learn, Connect, and Engage

October 2 - October 3

2025 StateRAMP Cyber Summit

Join us on October 2-3, 2025 in Chicago for the 2nd annual StateRAMP Cyber Summit with presenting sponsor Carahsoft! THE event for public and private sector leaders come together to explore the latest in cybersecurity.

Save the Date! Join us on October 2-3, 2025 in Chicago for the 2nd annual StateRAMP Cyber Summit with presenting sponsor Carahsoft! THE event for public and private sector leaders come together to explore the latest in cybersecurity, risk management, and compliance.

Sign up now for priority interest and be the first to know when registration opens.

March 11 - March 12

2nd Annual Billington State & Local CyberSecurity Summit

The 2nd Annual Summit on March 10–12, 2025 will again bring together top federal, state, local, and tribal government officials along with industry experts to share best practices.

The 2nd Annual Summit on March 10–12, 2025 will again bring together top federal, state, local, and tribal government officials along with industry experts to share best practices, learn from one another, enhance current cyber operations and bolster future defenses.

March 10 at 12:00 pm - 4:30 pm

2025 StateRAMP Cybersecurity Framework Harmonization Symposium

Join top policymakers, cybersecurity experts, and industry leaders for a dynamic half-day event focused on addressing one of the most critical challenges in today’s digital landscape: cybersecurity framework harmonization.

Join top policymakers, cybersecurity experts, and industry leaders for a dynamic half-day event focused on addressing one of the most critical challenges in today’s digital landscape: cybersecurity framework harmonization.

Rev. 5 Updates – StateRAMP Office Hours

StateRAMP staff discusses the NIST 800-53 Rev 5 updates. This special Office Hours was an open forum for Service Providers, 3PAOs, State and local governments, and higher education institutions to ask questions to StateRAMP staff.

Rev. 5 Updates – StateRAMP Office Hours

This panel discussion explores the landscape of cybersecurity and third-party risk management.

Understanding StateRAMP’s Rev 5 Baseline Controls

Explore the latest updates to the StateRAMP Baseline Controls, incorporating NIST 800-53 Rev. 5. Learn how StateRAMP will align with the most current and comprehensive security guidelines for cloud cybersecurity.

Who We Are

As a 501(c)6 nonprofit, our mission is to promote cybersecurity best practices through education and policy development and improve the cyber posture of public institutions and the citizens they serve. We support the shared interests of state and local government entities, their prospective cloud service provider partners, and accredited third-party assessment organizations (3PAOs).