Government
- Microsoft's FedRAMP Authorization: Security Theater at Federal Scale
ProPublica's investigation reveals that FedRAMP reviewers internally called Microsoft's GCC High documentation 'a pile of shit' and couldn't verify its encryption practices -- then approved it anyway because it was already too widely deployed to reject. What the story reveals about compliance theater in enterprise cloud security.