CJIS-Aligned Task Force
The GovRAMP CJIS-Aligned Task Force unites public safety agencies, industry experts, and FBI CJIS advisors to align CJIS Policy 5.9.5 with GovRAMP’s Moderate Impact Level requirements. Together, we’re delivering a unified framework that simplifies secure cloud adoption for criminal justice and public safety organizations—advancing both innovation and trust.
Supporting Public Safety Through Secure Cloud Adoption
The CJIS-Aligned Task Force was established to bring consistency and clarity to CJIS compliance in cloud environments. Through close collaboration with state and local agencies, law enforcement, and private-sector leaders, the team developed the GovRAMP CJIS-Aligned Overlay Controls and Parameters, mapping CJIS Policy 5.9.5 to GovRAMP’s Moderate Impact Level baseline.
This alignment empowers agencies to confidently procure cloud solutions that meet both CJIS and GovRAMP standards—while helping providers align their offerings to better serve the public safety community.
Task Force Members
The CJIS-Aligned Task Force brings together leaders from government, law enforcement, industry, and advisory organizations to ensure the overlay reflects diverse expertise and real-world application.
CO-CHAIR
Sean Hughes
Principal | Head of xCJIS
xFact, Inc
CO-CHAIR
Dan Lohrmann
Field CISO for Public Sector
Presidio
ADVISOR
Jeffrey Campbell
ADVISOR
Charlie Rote
Acting CISO
Office of Information Technology, State of Maine
ADVISOR
John "Chris" Weatherly
MEMBER
Dan Aiken
Staff Information Security Program Manager
Rubrik
MEMBER
Gayle Berkeley
Director, Information Security
Rubrik
MEMBER
Emily Boudreau
Head Account Manager
Secure Smart Solutions, LLC
STAFF
Fred Brittain
Executive Advisor
GovRAMP NIST PMO
MEMBER
Noah Brown
Chief CISO
Knowledge Services
MEMBER
Nick Cahall
Sr. Global Security Compliance Analyst
Snowflake
MEMBER
Ben Caruso
Field CTO - State & Local Government
Hewlett Packard Enterprise
MEMBER
Stephanie Cervantes
Founder & CEO, Security & Privacy Strategist
Secure Smart Solutions
MEMBER
Siddique Chaudhry
Sr. Manager, Global Public Sector Compliance
Snowflake
MEMBER
James Coe
Enterprise Architect
Washington State Patrol
MEMBER
Brian DaSilva
Senior Director, GRC
Mark 43
MEMBER
Tim Davis
Senior Manager
Fortreum
MEMBER
Heidi Davis
Director of Compliance
State of Indiana
MEMBER
Violeta Dudley
Information Security Officer
Washington State Patrol
MEMBER
Kyle Dwyer
Manager, Governance, Risk & Compliance
Mark 43
MEMBER
Gary Egner
Director, Key Accounts, Partner and Industry Relations
equivant Court
MEMBER
Pete Fagan
CJIS Information Security Officer - CJIS Compliance Program Manager
Motorola Solutions, Inc.
MEMBER
Yvette Florez
Head of Security
City of Lakewood
MEMBER
Joel Grein
Senior Account Executive, Public Sector
InterVision Systems
MEMBER
Chance Grubb
Sr. Advisor, Government Engagement Strategy
RAMPQuest
MEMBER
Christine Horan
Deputy Chief Risk Officer
Commonwealth of Massachusetts, Executive Office of Technology Services & Security
MEMBER
Nithya Kashyap
Engineering Senior TPM | Applied AI
MEMBER
Alex Kreilein
Vice President, Product Security & Public Sector Solutions
Qualys
MEMBER
Matt LeMiere
VP SLED USA
Semperis
MEMBER
Roberta Lopez
CDHS Data Privacy Officer
Colorado Department of Human Services
STAFF
Leah McGrath
Executive Director
GovRAMP
STAFF
Chandler McGuire
Marketing Specialist
GovRAMP
MEMBER
Tom Miller
Grant Unit Director
MN Office of Justice Programs - Department of Public Safety
MEMBER
Tracey Mills
VP Public Sector & Healthcare Sales
CrowdStrike
MEMBER
Jodie Monette
CJIS Systems Agency Information Security Officer
Minnesota Bureau of Criminal Apprehension
MEMBER
Rodney Nelson
Program Manager
MEMBER
Brian O'Connor
Director - Global Security & Compliance Office
Extreme Networks
MEMBER
Robert Otten
Senior Director Cybersecurity and Risk Management
Flock Safety
MEMBER
Paul Peterson
Sr Dir Product Management - Managing PM
Qlik
MEMBER
Stephen "Doc" Petty
Private Consulting
STAFF
David Resler
Chief Operating Officer & Chief of Technology
GovRAMP
MEMBER
Nikki Rosecrans
Manager of Information Security and Compliance
Arapahoe County
MEMBER
Amit Patel
Director of Product Management, Developer AI
MEMBER
Tina Smith
Chief Information Security Officer (CISO)
Executive Office of Public Safety and Security (EOPSS)
MEMBER
Brandyn Smith
Director Of Operations
Exacom, Inc.
MEMBER
Ryan Swanson
Sr. Global Public Sector Compliance Analyst
Snowflake
MEMBER
Matt Young
Security Engineer
Arapahoe County
MEMBER
Stephen Younger
IT Compliance Program Manager
State of Oregon, Enterprise Information Services
MEMBER
Richard Zak
Principal
Zak Advisory Group
Progress to Date
Since its formation in 2024, the CJIS-Aligned Task Force has created the first mapping between CJIS Policy 5.9.5 and GovRAMP’s Moderate Impact Level baseline. Today, the team continues refining and maintaining the overlay to ensure agencies and providers have up-to-date, actionable guidance that supports evolving public safety needs.
Task Force Launch
May 2024
GovRAMP launches the CJIS-Aligned Task Force to advance framework harmonization and compliance.
October 2024
Draft of the CJIS-Aligned Overlay released for review and comment.
October 2024
January 2025
GovRAMP formally adopts the CJIS-Aligned Overlay Controls and Parameters.
Ongoing Support
The task force continues to update and enhance the CJIS-Aligned Overlay as policies evolve, ensuring agencies and providers have the latest, most reliable framework for CJIS-compliant cloud adoption.
Key Resources

FAQs
-
What is the GovRAMP CJIS-Aligned Overlay?
The overlay maps CJIS Policy 5.9.5 to GovRAMP’s Moderate Impact Level baseline, giving agencies and providers one clear framework for secure cloud adoption.
-
Who can use it?
State and local public safety agencies, cloud service providers, and 3PAOs can all leverage the overlay to streamline CJIS alignment.
-
Why does it matter?
By unifying GovRAMP and CJIS requirements, the overlay reduces complexity, strengthens security, and helps agencies make procurement decisions with confidence.
-
How does it help cloud providers?
The overlay shows providers exactly how to align their offerings with both GovRAMP and CJIS, making it easier to serve public safety customers.
-
How does it fit GovRAMP’s process?
The overlay ties directly to GovRAMP’s Moderate Impact Level at the Authorized status, supporting the same assurance framework used across government.
Stay Connected with GovRAMP
Be the first to know about new frameworks, task force opportunities, and updates like the CJIS-Aligned Overlay. Sign up to receive GovRAMP news, insights, and resources that support secure cloud adoption across government.