Home icon

AWS achieves third-party attestation of conformance with the Secure Software Development Framework (SSDF)

Security Blog



The article discusses AWS achieving third-party attestation of conformance with the Secure Software Development Framework (SSDF) from the National Institute of Standards and Technology (NIST).

Specifically, the article covers:

  • Executive Order 14028 directing U.S. government agencies to enhance software supply chain security
  • NIST releasing the SSDF guidance and OMB requiring agencies to use software from producers attesting to SSDF conformance
  • A FedRAMP certified Third Party Assessment Organization (3PAO) assessing AWS against the 42 security tasks in the SSDF
  • AWS's attestation form being available in the CISA repository for government agencies
  • AWS's commitment to software supply chain security and integrity


Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Jul 11
2024
Amazon ECS now enforces software version consistency for containerized applications
Jul 15
2024
AWS renews TISAX certification (Information with Very High Protection Needs (AL3)) across 19 regions
Jul 11
2024
Announcing software version consistency for Amazon ECS services
Jun 6
2024
Enhancing SSO visibility and security with AWS AppFabric and JumpCloud

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.