Every access request verified at the data layer, never assumed from network location or taken on a self-reported claim, backed by FedRAMP High In Process authorization and a FedRAMP Moderate Authorization held since 2017. Meet the Kiteworks Federal Team and Solution Engineers at Booth 319 for a 20-minute walkthrough of how your agency governs CUI and sensitive data across every channel, including the contractors and partners you exchange it with.
Stop by for a live FedRAMP High and Zero-Trust Data Exchange walkthrough with the Federal Team and Solution Engineers, or, if you support DoD contract work, a complimentary CMMC Readiness Assessment. No appointment required, though booking ahead holds your slot.
Moderated by Craig Pfister, VP Global Sales Engineering, Kiteworks. What federal and state technology leaders should verify from every vendor now, and what their contractors need to have ready.
Confirm, in minutes, that a vendor’s own authorization is independently issued and continuously monitored, not self-reported; marketplace.fedramp.gov settles that before any procurement conversation continues. The relevant question here is FedRAMP High In Process, not a vendor’s CMMC status. State and local programs increasingly reference the same federal control baselines, so the same verification holds.
CMMC 2.0 is a contract requirement on your organization if you hold DoD work, not on the agencies you sell to; see a documented path through the Phase II pause, now written directly into DFARS contract text as of September 3. If your contract runs through a state or civilian agency instead, the same NIST 800-171 controls typically sit behind that flow-down clause. Either way: inherited FedRAMP-assessed controls, an open POA&M, and one audit trail across every channel of sensitive data.
90% (100 of 110) CMMC 2.0 Level 2 controls, delivered out of the box and inherited from FedRAMP High In Process authorization, built on FedRAMP Moderate Authorized status held continuously since 2017. Not assembled control by control.
Every access request is verified at the data layer itself, not assumed from network location. Email, file sharing, managed file transfer, web forms, and APIs unified under one continuously monitored control plane, with granular controls that persist with the data and a single real-time audit trail feeding your SIEM.
AI agents join people as governed identities under the same control plane; the same audit trail, the same policy enforcement. Not a separate or newly extended capability.
Book 20 minutes with the Kiteworks Federal Team and Solution Engineers at Booth 319, or reserve a slot now and skip the line.
Prefer email? Reach the Kiteworks Federal Team and Solution Engineers directly at federal@kiteworks.com. Submitting this form does not attach or restate any internal Kiteworks planning document. It only shares what you enter above.