Kiteworks USA, LLC: Kiteworks Secure Gov Cloud
What its stage means
The provider is working toward an authorization with an agency that sponsors it.
The provider's description
The Kiteworks Private Data Network (PDN) secures sensitive information across all communication channels with centralized controls, automated enforcement, and comprehensive visibility—without sacrificing operational efficiency. The service consists of the following core components and functions:
System Components - Virtual private cloud (VPC) environment with dedicated servers for each customer - Encrypted file storage system - Data transfer protocols including SFTP, HTTPS, and SMTP - Authentication and authorization services - Audit logging and monitoring systems - Security scanning and threat detection services
Core Functions - File transfer and sharing capabilities via web interface, email, SFTP, MFT, and APIs - Secure Data Forms - Role- and attribute-based access control and user authentication - File encryption at rest and in transit using FIPS 140-3 validated cryptographic modules - Audit logging of all system and user activities - Integration with customer directory services (LDAP/Active Directory, etc., see below) - Multi-factor authentication support - DLP integration - Embedded antivirus
Possessionless Editing (SafeEDIT) System Components and Functions - File streaming service for secure remote data access and collaboration - Data rendering system for file type conversion - Audit logging system for data interactions - Versioning system for file changes - Authorization validation service - File integrity verification system - Session management service - Access revocation controls - Activity monitoring system
Security Features - Customer-managed encryption keys - Single-tenant deployment providing data isolation between customers - Continuous security monitoring and scanning - File-level role- and attributed-based access controls - Remote device management capabilities - Security event logging and reporting - Integration with customer SIEM systems
Compliance Capabilities - Audit log generation and retention - Policy enforcement mechanisms - Compliance reporting tools - Data locality controls - Access tracking and monitoring - Chain of custody documentation
Integration Interfaces - REST APIs for system integration and SCIM authentication support - SMTP interface for email services - SFTP/FTPS/CIFS/SMB interfaces for file transfer - LDAP/AD, SAML 2.0, Kerberos, PIV/CAC, time-based one-time password (TOTP) authenticators, SMS, and SFTP certificate connectors for authentication - SIEM integration for security monitoring - DLP and CDR system integrations - The system operates within a defined authorization boundary and undergoes continuous monitoring and regular security assessments in accordance with FedRAMP requirements.
To learn more about what Kiteworks can do for government agencies, please visit: https://www.kiteworks.com/solutions/government/
What FedXchange has recorded
Kiteworks Secure Gov Cloud from Kiteworks USA, LLC moved from FedRAMP In Process to Agency In Process.