§ 3607. Definitions
535 words·~2 min read·
/usc/title-44/section-3607A research copy — for the controlling text, always check the official state or federal source. Not legal advice.
(a)In General.— Except as provided under subsection (b), the definitions under sections 3502 and 3552 apply to this section through section 3616.
(b)Additional Definitions.— In this section through section 3616:
(1)Administrator.— The term “Administrator” means the Administrator of General Services.
(2)Appropriate congressional committees.— The term “appropriate congressional committees” means the Committee on Homeland Security and Governmental Affairs of the Senate and the Committee on Oversight and Reform of the House of Representatives.
(3)Authorization to operate; federal information.— The terms “authorization to operate” and “Federal information” have the meaning given those term 1 in Circular A–130 of the Office of Management and Budget entitled “Managing Information as a Strategic Resource”, or any successor document.
(4)Cloud computing.— The term “cloud computing” has the meaning given the term in Special Publication 800–145 of the National Institute of Standards and Technology, or any successor document.
(5)Cloud service provider.— The term “cloud service provider” means an entity offering cloud computing products or services to agencies.
(6)FedRAMP.— The term “FedRAMP” means the Federal Risk and Authorization Management Program established under section 3608.
(7)FedRAMP authorization.— The term “FedRAMP authorization” means a certification that a cloud computing product or service has—
(A)completed a FedRAMP authorization process, as determined by the Administrator; or
(B)received a FedRAMP provisional authorization to operate, as determined by the FedRAMP Board.
(8)Fedramp authorization package.— The term “FedRAMP authorization package” means the essential information that can be used by an agency to determine whether to authorize the operation of an information system or the use of a designated set of common controls for all cloud computing products and services authorized by FedRAMP.
(9)FedRAMP board.— The term “FedRAMP Board” means the board established under section 3610.
(10)Independent assessment service.— The term “independent assessment service” means a third-party organization accredited by the Administrator to undertake conformity assessments of cloud service providers and the products or services of cloud service providers.
(11)Secretary.— The term “Secretary” means the Secretary of Homeland Security.
(Added Pub. L. 117–263, div. E, title LIX, § 5921(b), Dec. 23, 2022, 136 Stat. 3449.)
Repeal of Section
For repeal of section by section 5921(d)(1) of Pub. L. 117–263, see Effective Date of Repeal note below.
Connections20 cite this · traces to 2
Cited by 20 sections · top 14
public-private-law
U.S. Code
- § 101Joint Committee on Printing: membership
- § 3608Federal risk and authorization management program
- § 3614Roles and responsibilities of the Office of Management and Budget
- § 3610FedRAMP Board
- § 3612Declaration of foreign interests
- § 3609Roles and responsibilities of the General Services Administration
- § 3611Independent assessment
- § 3615Reports to Congress; GAO report
- § 3613Roles and responsibilities of agencies
- § 3616Federal Secure Cloud Advisory Committee
statute-compilations
Traces to 2 documents
3 references not yet in our index
- 1
- 136 Stat. 3449
- 136 Stat. 3458
Citation graph
cites case law
§ 3607
Definitions
U.S.C.×10
Pub. L.×3
Stat. Comp.×3
Stat.×3
Fed. Reg.×1
Cite1
Stat.136 Stat. 3449
Stat.136 Stat. 3458
Cites 5Cited by 20 across 5 sources