Logo for Box

Box

Box provides cloud content management and file sharing service for businesses.

Users

Logo for Department of Agriculture

Department of Agriculture

Logo for General Services Administration

General Services Administration

Logo for Department of Justice

Department of Justice

Logo for Department of Labor

Department of Labor

Logo for Department of State

Department of State

Logo for Department of the Interior

Department of the Interior

Logo for Department of the Treasury

Department of the Treasury

Logo for Small Business Administration

Small Business Administration

Logo for Department of Defense

Department of Defense

Logo for Department of Energy

Department of Energy

Logo for Federal Communications Commission

Federal Communications Commission

Logo for Office of Personnel Management

Office of Personnel Management

Logo for Department of Health and Human Services

Department of Health and Human Services

Logo for Department of Commerce

Department of Commerce

Logo for Department of Education

Department of Education

Logo for Social Security Administration

Social Security Administration

Logo for National Aeronautics and Space Administration

National Aeronautics and Space Administration

Logo for Department of Veterans Affairs

Department of Veterans Affairs

Links

FedRAMP Marketplace

On Carahsoft

Accreditations

StateRAMP (Approved)

StateRAMP is a state government led program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services based on the FedRAMP program.

FedRAMP (Approved)

The Federal Risk and Authorization Management Program (FedRAMP) is a government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services.

DoD-Wide (Approved)

DoD-Wide is a process sponsored by the U.S. Department of Defense to assess and authorize commercially-operated cloud services for use by the Department of Defense and its components. It provides a standardized approach for security assessment, authorization, and continuous monitoring based on the FedRAMP program.

HIPAA

HIPAA (Health Insurance Portability and Accountability Act) is a U.S. federal law that establishes privacy and security standards to protect the confidentiality and integrity of individuals' health information, while also ensuring the portability of health insurance coverage.

ISO 27018

ISO 27018 is an international standard that outlines privacy controls and guidelines for the protection of personally identifiable information (PII) in cloud computing environments, emphasizing the importance of data privacy and compliance with applicable data protection regulations.

Standards

NIST 800-171

NIST 800-171 is a set of security guidelines and controls designed by the National Institute of Standards and Technology (NIST) to enhance the protection of Controlled Unclassified Information (CUI) in non-federal systems and organizations.

FIPS 140-2

FIPS 140-2 is a federal standard issued by the National Institute of Standards and Technology (NIST) that defines security requirements for cryptographic modules used to protect sensitive information, ensuring they meet specific security standards and capabilities. The information security community has occasionally disputed the efficacy of the standard due to concerns that the certification process may not always align with the latest security threats and that it can be slow to adapt to evolving cryptographic technologies.