Resources and publications.
White papers, case studies, threat intelligence, and engineering write-ups from ServLogi's engineering and compliance teams.
Cloud Cryptography Standards
What FIPS 140-3 actually requires of a cloud provider, where the boundary sits, and why a validated module is not the same thing as a validated system.
Accelerating FedRAMP High for SaaS Partners
How a commercial SaaS provider reached an authorization decision in eleven months by inheriting a boundary instead of building one.
Defending Subsea Fiber Cables with Telemetry
Physical interference with undersea infrastructure is a routing problem before it is a security problem. What the telemetry shows, and what it cannot.
Hardware Attestation with AMD SEV-SNP
A working note on attestation report verification, the freshness problem, and the operational details that only surface once you run it at fleet scale.
Securing citizen services with FedRAMP High
A federal health agency moved a citizen-facing benefits portal into ServLogi enclaves ahead of a hard end-of-support deadline. Because the boundary was already assessed, the agency's review concentrated on its own application rather than on the hosting layer, and the authorization decision came through in eleven months.
- Sector Federal health agency
- Workload Public-facing benefits portal
- Baseline FedRAMP High, inherited on entry
- Time to ATO 11 months
Take the next step
Publications explain the thinking. These are the routes to something you can act on.
Request an operations consult
A working session applying any of the above to your own workload, with the engineers who wrote it.
Build a configuration
Set cores, memory, storage, and region to see the indicative band for a footprint.
Go from theory to procedure
Where the publications cover the why, the documentation covers the how: provisioning, control mapping, and cutover steps.
CLOUD INFRASTRUCTURE