Oracle Cloud Infrastructure Attains Expanded FedRAMP Authorization
February 07, 2024

More than 16 new Oracle Cloud Infrastructure (OCI) services and features have attained FedRAMP approval, bringing enhanced AI, DevOps, and security capabilities to federal agencies and partners.

In total, customers can now benefit from 93 FedRAMP authorized services available in Oracle's U.S. government regions.

"Adding these new services to our U.S. government cloud underscores our commitment to providing our government customers with comprehensive cloud services, and we will continue to use feedback from our customers to build new innovative solutions," said Rand Waldron, vice president, Global Government Sector, Oracle. "Moreover, government agencies and the companies that support them can always use our government cloud regions at the same globally consistent price as our public cloud, enabling them to spend more of their resources on core mission needs."

The newly approved services include: OCI DevOps Service, OCI Data Labeling, OCI AI Vision, OCI AI Forecasting, OCI AI Speech to Text, OCI AI Language, OCI Web Application Firewall, OCI Network Firewall, Oracle Data Safe, Oracle NoSQL Database Cloud Service, Oracle Content Management, Visual Builder Cloud Service, Application Performance Monitoring, Ksplice, License Manager, and Oracle Big Data Service.

Highlights of the new capabilities available at FedRAMP High in the U.S. Government Cloud include:

- Network Firewall is an integrated, cloud native, managed firewall service built using next-generation technology from Palo Alto Networks.

- DevOps service is a complete continuous integration/continuous delivery (CI/CD) platform for developers to simplify and automate their software development lifecycle.

- AI Vision is an AI service for performing deep-learning–based image analysis at scale.

- AI Forecasting delivers univariate and multivariate time-series forecasts through statistical, machine learning, and deep learning algorithms.

- Data Safe empowers organizations to understand data sensitivity, evaluate data risks, mask sensitive data, implement and monitor security controls, assess user security, and monitor user activity—all in a single, unified console.

- Big Data Service is a fully managed, automated cloud service that provides enterprises with a cost-effective Hadoop environment.

Oracle has also introduced nine new features to existing FedRAMP High approved cloud services:

- DevOps users can now create a DevOps project to group the resources required to implement a CI/CD workflow. Developers can build and manage pipelines for compiling, testing, and running software applications before deployment. Development teams can also create private code repositories or connect to external code repositories such as GitHub, GitLab, Bitbucket Cloud, Visual Builder Studio, Bitbucket Server, and GitLab Server.

- Identity and Access Management (IAM) can now use identity domains to provide identity and access management features such as authentication, single sign-on (SSO), and identity lifecycle management for Oracle Cloud, as well as for Oracle and non-Oracle applications, whether they are SaaS, cloud hosted, or on premises.

- Cloud Guard Threat Detector now identifies malicious activities and reduces the volume of alerts that security operators need to manage with serious threats. Using the MITRE ATT&CK framework and Oracle's threat intelligence and data science capabilities, Threat Detector uncovers nefarious behaviors across an organization's network.

To attain the approval for these services and features, Oracle used a FedRAMP recognized third-party assessment organization (3PAO). The services were then thoroughly reviewed and approved by technical representatives from FedRAMP's Joint Authorization Board (JAB) for use within the Oracle Cloud FedRAMP High Authorized offering.

Share this

Industry News

May 16, 2024

Pegasystems announced the general availability of Pega Infinity ’24.1™.

May 16, 2024

Mend.io and Sysdig unveiled a joint solution to help developers, DevOps, and security teams accelerate secure software delivery from development to deployment.

May 16, 2024

GitLab announced new innovations in GitLab 17 to streamline how organizations build, test, secure, and deploy software.

May 16, 2024

Kobiton announced the beta release of mobile test management, a new feature within its test automation platform.

May 15, 2024

Gearset announced its new CI/CD solution, Long Term Projects in Pipelines.

May 15, 2024

Rafay Systems has extended the capabilities of its enterprise PaaS for modern infrastructure to support graphics processing unit- (GPU-) based workloads.

May 15, 2024

NodeScript, a free, low-code developer environment for workflow automation and API integration, is released by UBIO.

May 14, 2024

IBM announced IBM Test Accelerator for Z, a solution designed to revolutionize testing on IBM Z, a tool that expedites the shift-left approach, fostering smooth collaboration between z/OS developers and testers.

May 14, 2024

StreamNative launched Ursa, a Kafka-compatible data streaming engine built on top of lakehouse storage.

May 14, 2024

GitKraken acquired code health innovator, CodeSee.

May 13, 2024

ServiceNow introduced a new no‑code development studio and new automation capabilities to accelerate and scale digital transformation across the enterprise.

May 13, 2024

Security Innovation has added new skills assessments to its Base Camp training platform for software security training.

May 13, 2024

CAST introduced CAST Highlight Extensions Marketplace — an integrated marketplace for the software intelligence product where users can effortlessly browse and download a diverse range of extensions and plugins.

May 09, 2024

Red Hat and Elastic announced an expanded collaboration to deliver next-generation search experiences supporting retrieval augmented generation (RAG) patterns using Elasticsearch as a preferred vector database solution integrated on Red Hat OpenShift AI.

May 09, 2024

Traceable AI announced an Early Access Program for its new Generative AI API Security capabilities.