-->

Save with Early Bird Pricing for KMWorld 2026!
Register NOW and join us November 16-19

Checkmarx One for Government achieves FedRAMP Certification

Checkmarx announced that its Checkmarx One for Government application security platform has achieved FedRAMP Moderate Certification and is now listed in the FedRAMP Marketplace. 

According to the company, the certification reflects growing federal demand for a comprehensive application security platform that enables agencies to secure software development at scale while meeting stringent government security requirements. 

“In an AI-driven world where the velocity of software development is accelerating and the threat landscape is multiplying even faster, application security has never been more critical,” said Sandeep Johri, CEO of Checkmarx. “Federal agencies making long-term security investments need a platform that provides visibility, governance, and risk-based prioritization across the entire software lifecycle. Checkmarx One for Government provides the essential AppSec toolset in one platform, helping agencies strengthen security today while building a foundation for the future of software development. FedRAMP Certification means federal agencies can now access those capabilities with the compliance confidence their missions demand.” 

FedRAMP Moderate Certification enables federal agencies to adopt Checkmarx One for Government through a streamlined procurement and security review process.

The Moderate baseline supports most civilian agency workloads, providing a trusted foundation for cloud-based application security programs. For organizations operating in highly-sensitive environments, Checkmarx also offers deployment options that support more stringent security requirements, the company said.

Unlike many FedRAMP-certified application security offerings that focus on a single testing capability, Checkmarx One for Government delivers an integrated platform for securing software throughout the development lifecycle. The platform combines Static Application Security Testing (SAST), Software Composition Analysis (SCA), Malicious Package Detection, Infrastructure as Code (IaC) Security, Container Security, and Application Security Posture Management (ASPM) within a unified environment. 

At the center of the platform is Checkmarx ASPM, which provides a consolidated view of application risk across code, open-source dependencies, infrastructure, containers, and cloud environments.

By correlating findings across security disciplines, ASPM helps federal teams prioritize the vulnerabilities that matter most, reduce remediation time, maintain continuous compliance, and strengthen security posture throughout the software lifecycle. This platform-wide visibility and risk intelligence enables agencies to move beyond isolated testing tools and adopt a more effective, operational approach to application security. 

The certification marks another milestone in Checkmarx’s continued investment in helping organizations secure software in increasingly complex development environments.  

For more information about this news, visit https://checkmarx.com.

KMWorld Covers
Free
for qualified subscribers
Subscribe Now Current Issue Past Issues