No Result
View All Result
  • Login
Monday, September 15, 2025
FeeOnlyNews.com
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading
No Result
View All Result
FeeOnlyNews.com
No Result
View All Result
Home Market Analysis

US State and Local Government Edition 

by FeeOnlyNews.com
4 months ago
in Market Analysis
Reading Time: 4 mins read
A A
0
US State and Local Government Edition 
Share on FacebookShare on TwitterShare on LInkedIn


US State and Local governments lean on public cloud to: 1) enable citizen services delivery and business agility; 2) fulfill scalability requirements, 3) drive down labor and infrastructure cost, and 4) resolve compliance and audit pressures. Most recently it has been used to power smart city, AI, and open data platforms. Today, there are no shortages state and local examples: Delaware, Texas, California, Iowa, Michigan, Massachusetts, New York, North Carolina, City of San Francisco, City of Houston, City of Baltimore, New York City Cyber Command etc.  

A central theme in most state and local government (SLG) cloud strategies is security and governance to ensure protection of data and resilience of critical systems. While many of the drivers for state and local cloud security and governance match or overlap Federal ones listed in our “Tackling Cloud Security: US Federal Edition” blog, state and local gov presents unique challenges in the following areas.  

SLG certification requirements go beyond federal ones. There are security certifications by state that often go above and beyond FedRAMP. Many states need to certify across every individual service enabled (for example AWS S3, and EBS).  There are also requirements for third party monitoring (e.g., New York Department of Financial Services’ (NYDFS) NY CRR 500 for third party risk management and monitoring.) Often, these monitoring requirements extend to employees who may also be subject to other states’ regulations. 

Agencies must harmonize state, federal, and foreign security controls. Data privacy has significant impacts on cloud security controls – especially in data protection. How you handle and protect subjects’ data in your state and how you handle subjects that are out of state may be governed by different regulations. Reconciling different states’ regulatory and data privacy requirements with one another and federal/foreign jurisdictions’ mandates  (for example California’s CCPA with Illinois’ BIPA act or Massachusetts’ MIPSA law, sprinkled in with EU’s  GDPR) when agencies deal with multi-state, business partner or organizational clients/subjects is non-trivial. 

Agencies must overcome higher levels of technical debt in state infrastructure. Based on anecdotal evidence, Forrester expects that security-related technical IT debt is generally higher with SLGs than at the federal level. Overcoming this debt – especially in the light of the above harmonization requirements – is expensive and time consuming.  

Talent pressures are even greater than with federal level. Not only may SLG have lower budgets to staff IT management and cloud security operations, but often the talent pool they can use is much smaller – because of employee residency and physical office presence requirements – than for federal agencies. Many state and local groups also struggle with unions, unified titles that fail to describe the work, and pay grade limitations.  

To overcome the above challenges, Forrester recommends that SLGs: 

Factor in unique locally applicable requirements into their cloud security strategy. Unique aspects of talent pool size, connectivity bandwidth restrictions, point of presence availability of major cloud service providers’ government zones all define SLGs’ cloud security strategies. SLG has to tailor its cloud adoption, governance and security strategies to meet state-specific compliance requirements while continually performing a reality check in budgeting and operations.  

Use locally available vendor and service provider services. SLGs should opt to work with service providers that have a proven track record of meeting state specific regulatory requirements by offering products and services that do not excessively depend on out-of-state labor. Many cloud providers are certified on the state requirements for large states like California and Texas, but you may find the list of pre-certified services more limited in smaller states.   
Build on federal government specific certifications. To the greatest extent possible, SLG should not reinvent the wheel when it comes to new certifications. Find ways to build on and harmonize with federal (FedRAMP, NIST) as well as industry requirements (HIPAA, PCI-DSS, ISO 27001, SOC 2 Type 2/3) to meet state and local security, data protection, and privacy mandates. This will keep your contracting and tech state options more open such that you can focus what you’re doing with the technology or how your team is securing applications in the cloud.  
Collaborate across jurisdictions. We have seen interagency collaboration in federal government to overcome resource constraints. In some creative instances, open-source communities provide an avenue for collaboration between jurisdictions absent of political and bureaucratic hurdles. SLGs should engage with both peer governments and the broader open-source ecosystem to share best practices, collectively address vulnerabilities, and implement proven, SLG-ready solutions without large capital expenditures.  



Source link

Tags: editiongovernmentLocalstate
ShareTweetShare
Previous Post

What Moody’s U.S. Credit Rating Downgrade Means for Treasurys

Next Post

Eighty percent of Americans favor converting US gold reserves to Bitcoin, poll reveals

Related Posts

Reintroducing A Classic: The S&R Executive Spotlight

Reintroducing A Classic: The S&R Executive Spotlight

by FeeOnlyNews.com
September 14, 2025
0

As the world moves forward, some things really should stay behind — like eighties shoulder pads, popcorn ceilings, and fondue...

School Is In Session And Attackers Are Grading Your Software Supply Chain Security

School Is In Session And Attackers Are Grading Your Software Supply Chain Security

by FeeOnlyNews.com
September 12, 2025
0

Software supply chain attacks continue to be a top external attack vector for attackers to breach enterprises, government agencies, and...

The Abyss Of The Salesloft-Salesforce Breach May Reach The Challenger Deep

The Abyss Of The Salesloft-Salesforce Breach May Reach The Challenger Deep

by FeeOnlyNews.com
September 12, 2025
0

News has been trickling out since August 20 about a security issue in Salesloft’s Drift product, a marketing and sales...

Rewind And Fast-Forward TV Advertising

Rewind And Fast-Forward TV Advertising

by FeeOnlyNews.com
September 12, 2025
0

TV’s stakeholders — consumers, advertisers, and publishers — are out of sync. Consumers love streaming TV but say they don’t...

Answer Engines Outpace Antitrust Law

Answer Engines Outpace Antitrust Law

by FeeOnlyNews.com
September 12, 2025
0

To remedy Google’s monopoly in search, Judge Amit Mehta ruled that Google merely has to share limited search data with...

Digital Analytics Solutions, Q3 2025

Digital Analytics Solutions, Q3 2025

by FeeOnlyNews.com
September 12, 2025
0

Digital analytics is no longer just about tracking clicks and page views — it’s about unlocking the full story behind...

Next Post
Eighty percent of Americans favor converting US gold reserves to Bitcoin, poll reveals

Eighty percent of Americans favor converting US gold reserves to Bitcoin, poll reveals

Trump allows New York offshore wind project after gas compromise

Trump allows New York offshore wind project after gas compromise

  • Trending
  • Comments
  • Latest
1 Stock to Buy, 1 Stock to Sell This Week: Walmart, Target

1 Stock to Buy, 1 Stock to Sell This Week: Walmart, Target

August 17, 2025
Of Property Rights, Civil Society, and Shampoo

Of Property Rights, Civil Society, and Shampoo

September 1, 2025
Engine Capital takes a stake in Avantor. Activist sees several ways to create value

Engine Capital takes a stake in Avantor. Activist sees several ways to create value

August 16, 2025
James Galbraith: Crash in Top Economist Hiring Contradicts Elite-Favoring “Skill Biased Technical Change” Theory

James Galbraith: Crash in Top Economist Hiring Contradicts Elite-Favoring “Skill Biased Technical Change” Theory

September 2, 2025
Vanguard reaches .5M SEC settlement

Vanguard reaches $19.5M SEC settlement

August 29, 2025
RBC wealth revenue rises despite recruiting costs

RBC wealth revenue rises despite recruiting costs

August 27, 2025
Australia’s financial regulator slaps a 0 million fine on ANZ, its largest ever on a single entity

Australia’s financial regulator slaps a $160 million fine on ANZ, its largest ever on a single entity

0
Construction begins on Israel’s tallest residential tower

Construction begins on Israel’s tallest residential tower

0
Stressed and Distressed Credit: Risk and Reward

Stressed and Distressed Credit: Risk and Reward

0
Hanes Knit Sleep Pants 4-Pack only .98, plus more!

Hanes Knit Sleep Pants 4-Pack only $19.98, plus more!

0
Iceland’s ORF Genetics lands €5M to scale plant-based growth factors for cultivated meat; eyes €7M total

Iceland’s ORF Genetics lands €5M to scale plant-based growth factors for cultivated meat; eyes €7M total

0
Reintroducing A Classic: The S&R Executive Spotlight

Reintroducing A Classic: The S&R Executive Spotlight

0
Australia’s financial regulator slaps a 0 million fine on ANZ, its largest ever on a single entity

Australia’s financial regulator slaps a $160 million fine on ANZ, its largest ever on a single entity

September 15, 2025
Construction begins on Israel’s tallest residential tower

Construction begins on Israel’s tallest residential tower

September 15, 2025
Ethereum Price Pullback Limited – Support Levels Could Spark Upside Again

Ethereum Price Pullback Limited – Support Levels Could Spark Upside Again

September 14, 2025
Dollar steadies ahead of Fed meeting

Dollar steadies ahead of Fed meeting

September 14, 2025
Reintroducing A Classic: The S&R Executive Spotlight

Reintroducing A Classic: The S&R Executive Spotlight

September 14, 2025
Trump says he doesn’t want to ‘frighten off’ foreign investment after ICE raid on Korean plant

Trump says he doesn’t want to ‘frighten off’ foreign investment after ICE raid on Korean plant

September 14, 2025
FeeOnlyNews.com

Get the latest news and follow the coverage of Business & Financial News, Stock Market Updates, Analysis, and more from the trusted sources.

CATEGORIES

  • Business
  • Cryptocurrency
  • Economy
  • Financial Planning
  • Investing
  • Market Analysis
  • Markets
  • Money
  • Personal Finance
  • Startups
  • Stock Market
  • Trading

LATEST UPDATES

  • Australia’s financial regulator slaps a $160 million fine on ANZ, its largest ever on a single entity
  • Construction begins on Israel’s tallest residential tower
  • Ethereum Price Pullback Limited – Support Levels Could Spark Upside Again
  • Our Great Privacy Policy
  • Terms of Use, Legal Notices & Disclaimers
  • About Us
  • Contact Us

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.

Welcome Back!

Sign In with Facebook
Sign In with Google
Sign In with Linked In
OR

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Business
  • Financial Planning
  • Personal Finance
  • Investing
  • Money
  • Economy
  • Markets
  • Stocks
  • Trading

Copyright © 2022-2024 All Rights Reserved
See articles for original source and related links to external sites.