Project Hosts Inc.: GSS One - Azure
What its stage means
An agency or the FedRAMP program authorized it. Agencies can reuse that authorization.
The provider's description
The GSSOne Azure is a General Support System (GSS) operated by Project Hosts and deployed within Azure Government. The platform is designed as a secure, multi-tenant PaaS/SaaS environment that enables federal, DoD, state, local, and tribal agencies, as well as government contractors, members of the DIB and the public to deploy and operate applications in compliance with federal security requirements. The GSSOne Azure Core provides a standardized set of centrally managed services that support secure application deployment and operations, including access control, authentication, auditing, monitoring, scanning, patching, configuration management, malware prevention, intrusion prevention, incident response, backup, and disaster recovery. These capabilities are implemented and managed by Project Hosts and are leveraged by applications deployed on the platform to meet security and compliance requirements. The GSSOne Azure supports two primary application deployment models: 1. Applications Included Within the GSS One Authorization Boundary Certain SaaS applications are incorporated directly into the GSSOne Azure authorization boundary and are assessed and certified as part of the GSSOne Azure system. 2. Applications Supported on the Platform GSSOne Azure also supports customer and Independent Software Vendor (ISV) applications that are deployed on the platform but maintain their own authorization boundary (e.g., agency ATO or ISV-owned system). In this model, Project Hosts provides the underlying infrastructure, security services, and operational support, while the application owner maintains responsibility for their system authorization and application-specific controls. This flexible deployment model allows agencies to either leverage existing SaaS capabilities or deploy their own applications within a secure, FedRAMP-authorized environment. Applications Included Within the GSS One Authorization Boundary These applications are deployed, secured, and operated as part of the GSSOne Azure system and certification. - GSSOne Azure Portal/Admin Page Provided by Project Hosts this application provides user and administrative interfaces for account management, access provisioning, and operational support activities. - GSSOne Command Center (GSSOCC) The GSS One Azure Command Center is a one stop shop for agency and CSP customers to view relevant information for their system and aid in implementing and maintaining ConMon requirements including a document repo for SSP and appendixes, POA&Ms and vulnerability scans, allows them to manage training, track incidents, track vulnerabilities and other corrective actions, track red teaming activities, view availability monitoring alerts, change control ticketing, link controls to artifacts and evidence to speed up ATO times and provide continuous monitoring/ Trust Center views for agencies leveraging their systems.
- GSS One Azure Support Center: Project Hosts has configured a customer-facing support portal for creating and managing support tickets powered by Atlassian Jira. This allows customers to view all of their relevant tickets, create tickets, upload screenshots and communicate with PH staff through a secure channel. - Quest Security Management Platform (Quest-SMP): The Quest-SMP is a browser-based application with different agents that can be deployed on the agency devices/systems based on their individual use case. The Quest-SMP contains two major components: - Quest Identity Recovery for Entra ID: Quest Identity Recovery for Entra ID is a SaaS-based backup and recovery solution for Microsoft Entra ID and Microsoft 365 that extends protection beyond native Microsoft tools. It enables fast, secure restoration of users, groups, attributes, and memberships from a single cloud interface. Administrators can compare backups, view changes, and recover only what’s needed—reducing manual errors and downtime. All recovery actions are logged and auditable to support complianc
What FedXchange has recorded
GSS One - Azure from Project Hosts Inc. lists 2 agency authorizations fewer, 6 in all.
GSS One - Azure from Project Hosts Inc. gained 4 agency authorizations, 8 in all.