scm.cc / FedRAMP 20x KSIs

KSI-CNA-EIS - Cloud Native Architecture

Enforcing Intended State

Official statement

Automated services are used to persistently assess the security of all machine-based information resources and automatically enforce their intended operational state.

Official class marker: C.

Related SP 800-53 controls (official citation)

Other Cloud Native Architecture indicators

Source: https://fedramp.gov/2026/reference/20x/c/key-security-indicators/. Pinned 2026-09-27 (catalog fedramp-20x-ksi/official-1.0.0-cr26). This page shows the list as pinned on that date. A weekly automated check flags any difference from the official page.

All 20x Key Security Indicators