FedRAMP Moderate Baseline (NIST 800-53 Rev 5)
The FedRAMP Moderate baseline — the NIST 800-53 Rev 5 control set a cloud service must meet to be authorized for U.S. federal use (the most common FedRAMP impact level). EchelonGraph live-scores the technical control set against your actual cloud posture so ConMon is continuous, not annual.
Account Management
Manage information-system accounts through their lifecycle.
Least Privilege
Enforce least privilege across all accounts and roles.
Remote Access
Authorize, monitor, and control all remote-access methods.
Event Logging
Log auditable events across all components for ConMon.
Multifactor Authentication
Require MFA for network and local access to privileged accounts.
Boundary Protection
Control communications at the authorization boundary.
Transmission Confidentiality & Integrity
Protect data in transit with FIPS-validated TLS.
Cryptographic Protection
Use FIPS-validated cryptography for protection.
Protection of Information at Rest
Protect federal information at rest.
System Monitoring
Detect attacks and unauthorized activity for ConMon.
Configuration Settings
Establish and enforce a secure baseline configuration.
Authenticator Management
Manage credentials including rotation and strength.