Skip to main content

FedRAMP

Federal agencies, contractors, and prospects evaluating Files.com for use with federal data can find our current FedRAMP Certification status, scope, and documentation access here.

Files.com is pursuing FedRAMP Certification (Class A) under the FedRAMP Consolidated Rules for 2026, using our existing SOC 2 Type II report as our qualifying alternative security framework.

What Is FedRAMP?

FedRAMP (Federal Risk and Authorization Management Program) is a U.S. government-wide program that standardizes security assessment, authorization, and continuous monitoring for cloud products and services used by federal agencies. It allows agencies to reuse a cloud provider's certification instead of independently assessing every vendor, accelerating secure adoption of cloud services across government.

FedRAMP Certification is issued in four classes, in order of increasing documentation and ongoing reporting requirements: Class A, Class B, Class C, and Class D. Class A allows providers to qualify using an existing alternative security framework — for example, a SOC 2 Type II report — instead of completing a full traditional assessment.

Files.com's FedRAMP Certification Status

  • FedRAMP ID: Pending assignment

  • Certification Class: Class A

  • Status: Preparing to apply for FedRAMP Marketplace listing (Initial Implementation Phase)

  • Service Model: SaaS

  • Deployment Model: Public Cloud

  • Business Category: Data Management, Storage

  • UEI Number: E41FM27LQUY7

  • Product Website: files.com

  • Product Logo: files.com brand logoExternal LinkThis link leads to an external website and will open in a new tab

  • Overall Service Description: Files.com is a Software-as-a-Service (SaaS) platform with one unified application and API to manage, store, and transfer files across your organization.

  • Included Services & Security Categories:

    ServiceConfidentialityIntegrityAvailabilityOverall Category
    Core File Orchestration/MFT Platform (transfer engine, workflows, automation)ModerateModerateModerateModerate
    Managed Storage (customer files at rest)ModerateModerateModerateModerate
    Admin/Management Console & Access Control (SSO, user/permission management)ModerateModerateModerateModerate
    API layerModerateModerateModerateModerate
    Public marketing site / status page (no authenticated federal data)LowLowLowLow (often out of boundary entirely)

Sales & Security Contacts

Accessing Our Trust Center

Files.com maintains a FedRAMP-compatible Trust Center where agencies, auditors, and qualified prospects can request access to our current FedRAMP Certification Data, including our Security Decision Record, POA&M summary, and SOC 2 Type II report.

How to request access: Visit the Trust Center and submit the access request form with your first name, last name, work email, company name, and reason for access (existing customer, prospective customer, or other). Requests are reviewed by the Files.com security team before access is granted. If you already have access, use the "Reclaim access" option on the same page.

Secure Configuration Guidance

Configuring Files.com for Maximum Security

Ongoing Certification Reporting

Files.com publishes an Ongoing Certification Report (OCR) every three months, summarizing changes to our certification data, accepted vulnerabilities, and any FedRAMP Reportable Incidents.

  • Next Ongoing Certification Report Date: October 1, 2026

Independent Assessment

Files.com is currently selecting an independent assessment organization recognized under FedRAMP to support this certification. This section will be updated once that selection is finalized.

Documentation Overview

Files.com maintains a FedRAMP Certification Package, including a Security Decision Record and supporting evidence, in our Trust Center. To request access to specific documentation, visit trust.files.comExternal LinkThis link leads to an external website and will open in a new tab.

Public product documentation is available at files.com/docs.