top of page

Infrastructure Compliance

Hosted within AWS GovCloud supporting secure cloud solutions complying with:

- FedRAMP (High Baseline Compliant Data Center)(Matterport is NOT FEDRAMP Approved)

- DOJ's Criminal Justice Information Systems (CJIS) Policy

- U.S. International Traffic in Arms Regulations (ITAR)

- Export Administration Regulations (EAR) Requirements Guide (SRG) for Impact

Levels 2, 4 and 5

- FIPS 140-2; IRS-1075

- Executive Order 14028 and CMMC

- State & local government regulations surrounding (data) privacy and security

- Matterport is SOC 2 Type II Certified provided by Coalfire

(Available via NDA and Trust Center Access)

Platform Level

- Agreement terms and conditions (aligned with agency requirements)

- SSO / Identity and access management (multi-tier)

No generic accounts – all named users

- Integration capabilities with agency networks and AWS infrastructure

- Compliant customer support

Program/project management, ad-hoc reports, specialized monitoring, etc.

- No use of data for machine/spatial data “learning”

- Models can be flagged as “Confidential”, and banner displayed in UI

- US owned, operated and managed solution

AWS GovCloud (US)
There may be use cases where customers must orchestrate actions spanning AWS GovCloud (US) and standard AWS partitions. The common reasons customers may need to invoke Amazon Web Services (AWS) services in a standard account from an AWS GovCloud (US) account (or vice versa) include: cross-domain applications, feature parity, and if the AWS service doesn’t exist in AWS GovCloud (US). In this blog post, we explore how customers can navigate these scenarios.

An AWS Region is a physical location around the world where AWS clusters data centers. Each group of one or more discrete data centers forms an Availability Zone (AZ) and multiple AZs make up a Region. Distinct Regions exist in the AWS standard partition and AWS GovCloud (US) partition. An AWS partition logically and physically separates groups of AWS Regions. This provides data, network, and machine isolation from AWS Regions in other AWS partitions. An AWS Region can’t be a part of two partitions.

Why AWS GovCloud (US)?

AWS GovCloud (US) supports customers who must adhere to U.S. International Traffic in Arms Regulations (ITAR) regulations; the Federal Risk and Authorization Management Program (FedRAMP) requirements; Defense Federal Acquisition Regulation Supplement (DFARS); Department of Defense (DoD) Cloud Computing Security Requirements Guide (SRG) Impact Levels 2 and 4 and 5; and several other security and compliance requirements. Workloads that don’t adhere to these compliance requirements can be deployed in the AWS standard partition.

CONUS

- Federal, State and Local Agency vetted & validated

- Successful track record of passing Audit/Compliance reviews from public sector agencies and entities.

Secure Hosting Overview

bottom of page