FedRAMP-Authorized Qualys Cloud & Government Platform

Accelerate ATO. Inherit Controls. Reduce Risk at Scale. One Authorized Boundary.

Qualys’ FedRAMP-authorized boundaries include tightly integrated capabilities that help federal agencies and partners accelerate compliance, reduce cyber risk, and streamline security operations. By operating within the Qualys platform, organizations inherit pre-validated NIST 800-53 controls, cutting months from Authorization to Operate (ATO) timelines while consolidating vulnerability management, compliance monitoring, asset discovery, and security operations into a single risk management platform.

Proven FedRAMP Track Record

FedRAMP High is designed for systems handling high-impact, sensitive unclassified data, where confidentiality, integrity, and availability failures would have severe consequences.

What You Inherit by Using Qualys

FedRAMP Authorization by Qualys Products

The authorization status of each core Qualys capability across FedRAMP Moderate and FedRAMP High is shown below.

Qualys Product / CapabilityFedRAMP Moderate AuthorizedFedRAMP High Authorized
Certificate View
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
CSAM – CyberSecurity Asset Management
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
EASM – External Attack Surface Management
FedRAMP Moderate Authorized
FedRAMP High Authorized
EDR – Endpoint Detection & Response
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
ETM – Enterprise TruRisk Management
FedRAMP Moderate Authorized
FedRAMP High Authorized
FIM – File Integrity Monitoring
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
GAV – Global Asset View
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
PC – Policy Compliance
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
PCI – PCI Compliance
FedRAMP Moderate Authorized
FedRAMP High Authorized
PM – Patch Management
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
Qflow – Qualys Flow Application
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
TotalAI
FedRAMP Moderate Authorized
FedRAMP High Authorized
TotalAppSec (WAS & API Security)
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
TotalCloud
FedRAMP Moderate Authorized
FedRAMP High Authorized
TP – Threat Protection
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized
VMDR – Vulnerability Management, Detection & Response
FedRAMP Moderate Authorized
FedRAMP Moderate Authorized

Which Qualys Platform Are You On?

If you’re unsure whether your current Qualys subscription resides in an authorized environment, reference the table below.

PlatformFedRAMP AuthorizationPlatform URL
US1FedRAMP Moderatehttps://qualysguard.qualys.com/
US2FedRAMP Moderatehttps://qualysguard.qg2.apps.qualys.com/
US3FedRAMP Moderatehttps://qualysguard.qg3.apps.qualys.com/
FedHigh (GovCloud)FedRAMP Highhttps://qualysguard.gov1.qualys.us/

Want to confirm eligibility, plan a migration, or understand inheritance details?

Contact your Qualys account team to map your use cases to the right authorized boundary.

Request for a trial