Cortex Cloud federal compliance - Administrator Guide - Cortex CLOUD

Cortex Cloud Runtime Security Documentation

Product
Cortex Cloud Application Security > Cortex CLOUD
License
Cloud Runtime Security
Creation date
2024-12-24
Last date published
2026-06-04
Category
Administrator Guide

Cortex Cloud is FedRAMP High- and Moderate-authorized, providing a secure environment specifically for U.S. Federal agencies and highly regulated industries.

Security & infrastructure architecture

To ensure strict compliance, these environments utilize the following safeguards:

  • Isolation: Dedicated single-tenant instances that are physically and logically isolated from the commercial user base.

  • Data sovereignty: All logs and ingested data remain strictly within the United States.

  • Infrastructure: Usage of government-specific infrastructure, such as AWS GovCloud or Azure Government.

  • Secure egress: Implementation of federal FQDNs, such as p-proxy.federal.paloaltonetworks.com, to secure all egress traffic paths.

  • Scanning rights: FedRAMP instances are authorized to scan both secure government and standard commercial cloud accounts, whereas commercial instances are strictly prohibited from accessing government-authorized environments.