DOC-REF: FRC-2026-04-28Rev 04 / 2026

Section 8.4 - Register entry

DOC-REF: FRC-MKT-FR2435353186

Kiteworks Secure Gov Cloud

Kiteworks USA, LLC lists Kiteworks Secure Gov Cloud on the FedRAMP Marketplace with the status Agency Authorization In Process, at High impact, on the Agency path under the Rev5 process. Package FR2435353186, read from the marketplace feed as of September 3, 2026.

Agency Authorization In ProcessRev5Agency path

Section A. Register entry

What the marketplace records

FedRAMP package ID
FR2435353186
Cloud service provider
Kiteworks USA, LLC
Impact level
High
Certification class
Class D (High)
Authorization path
Agency
Certification type
Rev5
Marketplace phase
Initial Implementation
Deployment model
Government Community Cloud
Register snapshot
September 3, 2026
Service model
SaaS
Independent assessor
Coalfire Systems, Inc.
Sponsoring agency
Centers for Disease Control and Prevention
Status date
March 12, 2026
FedRAMP Ready date
March 6, 2026
Business categories
Data Management
Milestones on record
2

The marketplace carries Kiteworks Secure Gov Cloud under package FR2435353186 with 17 recorded fields. Its current status was set on March 12, 2026, and a FedRAMP Ready date of March 6, 2026. Coalfire Systems, Inc. is named as the independent assessor. Centers for Disease Control and Prevention is recorded as the sponsoring agency. No agency authorizations are listed against it in the current feed. It is delivered as SaaS on a government community cloud, filed under 1 business categories including Data Management.

Section B. Milestones

2 entries in the marketplace event log

Most recent first, as recorded by FedRAMP.

Event log
DateCategoryRecorded
March 12, 2026Status ChangeStatus changed from FedRAMP Ready to Agency Authorization In Process
March 6, 2026Status ChangeStatus set to Legacy FedRAMP Ready

Section C. Cost context

What reaching High costs

Our own published ranges for a provider going through this level. Nothing here is a figure this provider has disclosed.

Cost context

Budget for a High authorization

Initial authorization$2,500,000 to $5,000,000+
Continuous monitoring$300,000 to $600,000+ a year
Typical timeline18 to 24 months
Control baseline421+ controls
Annual assessment$180,000 to $450,000 a year

Our published planning range for a provider pursuing High. It is not a figure any listed provider has disclosed.

Read the FedRAMP High cost guide / annual assessment cost / continuous monitoring cost

Path

Agency Authorization is the route for 578 of the offerings on the marketplace. Our cost pages put it at $800,000 to $2,000,000 over 12 to 18 months for Moderate. Agency authorization cost

Assessment and monitoring

No annual assessment date is on the record. Assessment recurs annually for as long as a package stays listed. Annual assessment cost / continuous monitoring cost

Section G. Nearest entries on the register

Comparable offerings

Scored on impact level, path, status, shared business categories and how close the two entries sit in the register's own timeline.

Kiteworks USA, LLC lists 2 offerings on the marketplace. The others are:

Section H. Description

As published on the marketplace

The provider's own description of the service, reproduced from the FedRAMP feed without edits.

The Kiteworks Private Data Network (PDN) secures sensitive information across all communication channels with centralized controls, automated enforcement, and comprehensive visibility-without sacrificing operational efficiency. The service consists of the following core components and functions: System Components - Virtual private cloud (VPC) environment with dedicated servers for each customer - Encrypted file storage system - Data transfer protocols including SFTP, HTTPS, and SMTP - Authentication and authorization services - Audit logging and monitoring systems - Security scanning and threat detection services Core Functions - File transfer and sharing capabilities via web interface, email, SFTP, MFT, and APIs - Secure Data Forms - Role- and attribute-based access control and user authentication - File encryption at rest and in transit using FIPS 140-3 validated cryptographic modules - Audit logging of all system and user activities - Integration with customer directory services (LDAP/Active Directory, etc., see below) - Multi-factor authentication support - DLP integration - Embedded antivirus Possessionless Editing (SafeEDIT) System Components and Functions - File streaming service for secure remote data access and collaboration - Data rendering system for file type conversion - Audit logging system for data interactions - Versioning system for file changes - Authorization validation service - File integrity verification system - Session management service - Access revocation controls - Activity monitoring system Security Features - Customer-managed encryption keys - Single-tenant deployment providing data isolation between customers - Continuous security monitoring and scanning - File-level role- and attributed-based access controls - Remote device management capabilities - Security event logging and reporting - Integration with customer SIEM systems Compliance Capabilities - Audit log generation and retention - Policy enforcement mechanisms - Compliance reporting tools - Data locality controls - Access tracking and monitoring - Chain of custody documentation Integration Interfaces - REST APIs for system integration and SCIM authentication support - SMTP interface for email services - SFTP/FTPS/CIFS/SMB interfaces for file transfer - LDAP/AD, SAML 2.0, Kerberos, PIV/CAC, time-based one-time password (TOTP) authenticators, SMS, and SFTP certificate connectors for authentication - SIEM integration for security monitoring - DLP and CDR system integrations - The system operates within a defined authorization boundary and undergoes continuous monitoring and regular security assessments in accordance with FedRAMP requirements. To learn more about what Kiteworks can do for government agencies, please visit: https://www.kiteworks.com/solutions/government/

Next step

What the same authorization would cost you

The worksheet turns an impact level, an existing security posture and an organization size into a line-by-line budget, with the 3PAO fee split out.

Provenance and independence

Source: the FedRAMP Marketplace product feed, produced by the General Services Administration. The feed's own last-change stamp is September 3, 2026; this copy was taken on September 5, 2026.

GSA's disclaimers page states that FedRAMP content about a specific commercial product or service is provided for the information and convenience of the public and “does not constitute endorsement, recommendation, or favoring by the General Services Administration”. A listing here is a record of a certification status, not a judgment about the product.

FedRAMPCost.com is an independent cost reference. We are not affiliated with FedRAMP, the GSA, any provider listed on this page, or any assessment organization, and no provider pays to appear in this register.

DOC-REF: FRC-2026-04-28 / Updated 2026-04-28