Cortex Cloud is FedRAMP High- and Moderate-authorized, providing a secure environment specifically for U.S. Federal agencies and highly regulated industries.
Security & infrastructure architecture
To ensure strict compliance, these environments utilize the following safeguards:
Isolation: Dedicated single-tenant instances that are physically and logically isolated from the commercial user base.
Data sovereignty: All logs and ingested data remain strictly within the United States.
Infrastructure: Usage of government-specific infrastructure, such as AWS GovCloud or Azure Government.
Secure egress: Implementation of federal FQDNs, such as
p-proxy.federal.paloaltonetworks.com, to secure all egress traffic paths.Scanning rights: FedRAMP instances are authorized to scan both secure government and standard commercial cloud accounts, whereas commercial instances are strictly prohibited from accessing government-authorized environments.