Document Category: Continuous Monitoring
This document explains the actions taken when a service provider fails to maintain an adequate continuous monitoring program.
Continuous monitoring review procedures outline the process to examine each monthly package.
This document provides guidance on completing the GovRAMP Continuous Monitoring Matrix template in support of achieving and maintaining a security authorization that meets GovRAMP requirements.
This document describes the process for GovRAMP stakeholders to use when reporting information concerning information system security incidents or suspected information system security incidents.
This guide describes the requirements for all vulnerability scans provided by service providers to GovRAMP for products with a Ready, Provisionally Authorized, or Authorized status.