Section 8.4 - Register entry
DOC-REF: FRC-MKT-FR1801046750
Treasury Cloud (TCloud)
United States Department of the Treasury lists Treasury Cloud (TCloud) on the FedRAMP Marketplace with the status FedRAMP Certified, at High impact, on the Agency path under the Rev5 process. Package FR1801046750, read from the marketplace feed as of September 3, 2026.
Section A. Register entry
What the marketplace records
- FedRAMP package ID
- FR1801046750
- Cloud service provider
- United States Department of the Treasury
- Certification status
- FedRAMP Certified
- Impact level
- High
- Certification class
- Class D (High)
- Authorization path
- Agency
- Certification type
- Rev5
- Marketplace phase
- Ongoing Certification
- Deployment model
- Government Community Cloud
- Register snapshot
- September 3, 2026
- Service model
- IaaS, PaaS
- Independent assessor
- Excentium, Inc.
- Certification date
- March 2, 2020
- Status date
- March 2, 2020
- Annual assessment
- October 31, 2011
- Agency authorizations
- 5
- Recorded reuses
- 4
- Milestones on record
- 3
The marketplace carries Treasury Cloud (TCloud) under package FR1801046750 with 18 recorded fields. Its certification date is March 2, 2020. Excentium, Inc. is named as the independent assessor, with an annual assessment date of October 31, 2011. 3 agencies are listed as having authorized it, among them Department of the Treasury, Internal Revenue Service and Treasury Inspector General for Tax Administration, and the feed records 4 reuses of the package. It is delivered as IaaS and PaaS on a government community cloud.
Section B. Milestones
3 entries in the marketplace event log
Most recent first, as recorded by FedRAMP.
| Date | Category | Recorded |
|---|---|---|
| March 2, 2020 | Status Change | Status changed from Agency Review to FedRAMP Certified |
| September 21, 2018 | Status Change | Status changed from PMO Review to Agency Authorization In Process |
| September 27, 2017 | Status Change | Status set to FedRAMP In Process |
Section C. Cost context
What reaching High costs
Our own published ranges for a provider going through this level. Nothing here is a figure this provider has disclosed.
Cost context
Budget for a High authorization
Our published planning range for a provider pursuing High. It is not a figure any listed provider has disclosed.
Read the FedRAMP High cost guide / annual assessment cost / continuous monitoring cost
Path
Agency Authorization is the route for 578 of the offerings on the marketplace. Our cost pages put it at $800,000 to $2,000,000 over 12 to 18 months for Moderate. Agency authorization cost
Assessment and monitoring
An annual assessment date of October 31, 2011 is on the record, and that assessment recurs for as long as the package stays listed. Annual assessment cost / continuous monitoring cost
Section E. Agencies on the record
3 agencies listed against this package
As published on the marketplace. An agency named here has issued its own authorization to operate; FedRAMP does not issue ATOs itself.
- Department of the Treasury
- Internal Revenue Service
- Treasury Inspector General for Tax Administration
Section G. Nearest entries on the register
Comparable offerings
Scored on impact level, path, status, shared business categories and how close the two entries sit in the register's own timeline.
United States Department of the Treasury lists 2 offerings on the marketplace. The others are:
- AuthentX Cloud
XTec, Incorporated
FedRAMP Certified, High impact, Agency path, Rev5, certified August 2, 2019.
- US AI
United Solutions
FedRAMP Certified, High impact, Agency path, Rev5, certified April 18, 2022.
- Okta IDaaS Government High Cloud (GHC)
Okta
FedRAMP Certified, High impact, Agency path, Rev5, certified March 23, 2023.
- Juvare Federal Cloud
Juvare, LLC
FedRAMP Certified, High impact, Agency path, Rev5, certified May 5, 2023.
- Red Hat OpenShift Service on AWS (ROSA)
Red Hat
FedRAMP Certified, High impact, Agency path, Rev5, certified August 9, 2023.
Section H. Description
As published on the marketplace
The provider's own description of the service, reproduced from the FedRAMP feed without edits.
The Treasury Cloud High (TCloud-H) system is owned and operated by the Department of the Treasury, serving as a multi-cloud IaaS/PaaS hosting environment designed to process High Impact level information. It includes the following multitenant, government-exclusive cloud platforms: • Amazon Web Services (AWS) GovCloud East/West, • Oracle Cloud Infrastructure (OCI) GovCloud East/West, • Microsoft Azure GovCloud East/West, and • Google Cloud Platform (GCP) GovCloud East4/Central1 TCloud-H FedRAMP'ed environment is offered as a shared service to Treasury Bureau's, available in two cloud hosting models: Boundary Protected and Managed. Contractual support from each cloud vendor is in place to design, build, maintain, and manage every individual platform based on the hosting model. TCloud-H allows Treasury customers to incorporate innovative tools and forward-thinking IT solutions throughout the design, build, and maintenance phases of a cloud-based project. TCloud provides the following Boundary Protected and Managed services to meet business or mission requirements: Boundary Protected Hosting Environment • Cloud account provisioning and invoicing, with transparency on service utilization with FinOps dashboards. • Intrusion Prevention Services (IPS); VPN; Direct connection with Treasury T-NET network. • Monitoring of network ingress and egress traffic. • Preconfigured networking resources. • Single Sign-On with connection to TCloud Active Directory. • IAM policies, groups, roles, preconfigured to enforce identify guardrails. • Audit trails and change monitoring that produce alerts and notifications to predetermined set of stakeholders. • Management, configuration, and provisioning of Atlassian software suite available for customers- JIRA, Confluence, Stash (BitBucket), and Bamboo. • Self-managed access to private or intra-VPC native cloud services and resources provided by each CSP. Managed Hosting Environment • Cloud account provisioning and invoicing, with transparency on service utilization with FinOps dashboards. • Remote Desktop Services. • Operating System (OS) level patching performed as part of monthly patch deployments. • Vulnerability scanning: OS and Databases. • Identification, prioritization, and mitigation of OS and Database level vulnerabilities. • Configuration management for OS and Databases. • Intrusion Prevention Services (IPS); VPN; Web Application Firewall (WAF); Direct connection with Treasury T-NET network. • Anti-Virus and Host Based Firewall. • Endpoint Detection and Response. • Audit log ingestion and monitoring (OS Level, Database, and CSP). • Directory services, accounts and permission management provided through Microsoft Active Directory. • IAM policies, groups, roles, preconfigured to enforce identify guardrails. • IAM audit trails and change monitoring that produce alerts and notifications to predetermined set of stakeholders. • Single Sign-On with connection to TCloud Active Directory. • Monitoring of network ingress and egress traffic. • Preconfigured networking resources, with audit trails and change monitoring that produce alerts and notifications to predetermined set of stakeholders. • Unified cloud security platform that includes vulnerability management, compliance and posture management, workload protection, and container security. • Disaster recovery and Contingency Planning - Backup and restore. • Disaster recovery and Contingency Planning - Different availability zones for resiliency. • Security incident and response monitoring and coordination with appropriate stakeholders. • Management, configuration, and provisioning of Atlassian software suite available for customers- JIRA, Confluence, Stash (BitBucket), and Bamboo. • Access to native cloud services and resources provided by each CSP.
Next step
What the same authorization would cost you
The worksheet turns an impact level, an existing security posture and an organization size into a line-by-line budget, with the 3PAO fee split out.
Provenance and independence
Source: the FedRAMP Marketplace product feed, produced by the General Services Administration. The feed's own last-change stamp is September 3, 2026; this copy was taken on September 5, 2026.
GSA's disclaimers page states that FedRAMP content about a specific commercial product or service is provided for the information and convenience of the public and “does not constitute endorsement, recommendation, or favoring by the General Services Administration”. A listing here is a record of a certification status, not a judgment about the product.
FedRAMPCost.com is an independent cost reference. We are not affiliated with FedRAMP, the GSA, any provider listed on this page, or any assessment organization, and no provider pays to appear in this register.