Top 5 Insights from IACP Annual 2025 

The 2025 International Association of Chiefs of Police (IACP) Annual conference served as a premier gathering for law enforcement and partners to share the latest in technology and industry solutions.

Carahsoft and its partners attended to connect on the latest in law enforcement technology.  

Five key themes stood out throughout the sessions:  

1. AI-Assisted Investigations 

In the session “The AI-Powered Investigator: Surfacing Insights in Law Enforcement,” speaker Jeremy Peterson presented on leveraging artificial intelligence (AI) to enhance law enforcement investigations while maintaining compliance and auditability. While AI offers tremendous potential for supercharging investigations, its function as a “black box” means it lacks the transparency required in regulated environments. With the use of multiple specialized AI agents, law enforcement can utilize guardrails and clear audit trails for working within structured workflows, rather than relying on a single generic AI. In one case study, Special Agent Isabella Rossi investigated a multi-state burglary operation, where AI identified connections between stolen crypto-mining hardware and a warehouse fire, helped draft legal documents like subpoenas and generated lookout alerts. Solutions from industry innovators such as Veritone and Tranquility AI are already helping agencies put these concepts into practice, offering AI-powered tools that enable law enforcement agencies to rapidly analyze data and tailor solutions to their specific workflows, expediting investigation processes.

2. Protecting Officers Through Drones 

In the panel “Don’t Let Them Go in Blind: Evolving Drones as First Responders to Protect Every Patrol Officer,” speakers discussed the role of comprehensive Drones as First Responders (DFR) for law enforcement. DFR designed with public safety in mind effectively address critical challenges in the field, including staffing shortages, response times and officer safety. Outdoor DFR systems, which are currently operational across multiple jurisdictions with multiple docks per city responding to thousands of monthly calls, have demonstrated the ability to arrive on scene in under two minutes, reduce crime through rapid visual documentation, decrease use of force incidents and clear 20-40% of calls without officer dispatch. New indoor drones address the situational awareness gap that occurs when officers enter buildings, providing capabilities for confined space navigation, perching for up to three hours, two-way communication replacing traditional throw phones, 4K night vision and obstacle avoidance technology. They are all deployable within 30 seconds from a patrol vehicle. The new technology offers remote piloting, freeing officers to focus on incident command rather than drone operation. 

3. Instant Translation with AI Services 

At the panel “Enhancing Emergency Communications with an End-to-End AI Assistive Platform,” speaker Brad Flanagan, Prepared’s Public Safety Answering Point (PSAP) Ambassador, discussed how AI-powered platforms are improving the efficiency of for 911 emergency call centers by providing comprehensive support and incident resolution. Translation-based AI systems, such as those created by Prepared and Hyper, offer real-time language interpretation in over 240 languages through text, automatic transcription and AI agent conferencing, significantly reducing wait times for interpreters and improving emergency response, including instances where cardiac arrests and domestic violence situations were handled more effectively. The platform consolidates multiple location verification systems into a single interface, reducing address errors from six per month to a timeframe of six months, despite having less experienced staff. AI translators enable rapid incident review and reporting by automatically organizing call recordings, radio traffic and transcripts, reducing review time. The current system includes AI-assisted call triage during high-volume situations, post-call performance analysis within two minutes, live guidance for call-takers on protocol-specific questions and training simulations for staff development. AI platforms provide field responders and administrators with real-time data insights and analytics to improve emergency response quality and efficiency. 

4. Cybersecurity in the Modern Age 

During the session “Cyber Threats to Critical Communications Systems,” speaker Travis Randall discussed the evolving cybersecurity threats that Public Safety organizations face. Agencies are increasingly vulnerable due to their combination of sensitive data and critical high-availability systems, such as dispatch, 911 and radio networks. The primary threat is ransomware groups, who often operate through a sophisticated criminal ecosystem of developers, affiliates and access brokers, conducting attacks at scale that have significantly disrupted emergency communications. Randall details how these attacks typically exploit valid credentials, unpatched vulnerabilities, misconfigured VPNs and weak access controls to compromise networks, often using legitimate system tools rather than obvious malware to evade detection. To stay on top of ransomware groups, agencies must employ essential defensive measures like offline backups, multi-factor authentication, privilege management, vulnerability patching and continuous network monitoring.  

5. Improving Awareness with Real-Time Crime Centers 

In the session “Real-Time Crime Centers: A Real Possibility for Small and Midsize Agencies,” speakers Chris Henningsen, President at the National Real Time Crime Center Association, and Chris Settle, Police Chief of Culpeper Police Department, discussed the operation of real-time crime centers. The speakers emphasize that real-time centers serve as technology hubs providing situational awareness and acting as force multipliers during staffing shortages, are attainable for agencies of all sizes. Centers can start small with minimal resources, such as a computer, radio and analyst, and scale over time based on demonstrated successes and measurable outcomes. Key components include integrating existing resources like traffic cameras, body-worn cameras, license plate readers, drones and community partner camera feeds to provide officers with critical information before arriving at scenes, often achieving response times of seconds rather than minutes.  

Some of the benefits include that real-time crime centers can: 

  • Reduce investigation time with camera networks and LPR technology 
  • Enhance recruitment and retention by demonstrating technological investment and officer safety support 
  • Enables officers to connect with back-up support, who can view footage and provide aid in real-time 

Henningsen and Settle stress that effective implementation requires cross-training staff, tracking progress through data analytics and continuously pursuing partnerships with technology vendors, such as Flock Safety, to share resources and best practices.  

Maintaining pace with the evolving technology landscape ensures that law enforcement and confidential data remains protected. Through AI, real-time crime centers, drones and ransomware protection, law enforcement remains committed to protecting civilians.  

Missed IACP Annual? Attend Carahsoft’s 2026 law enforcement innovation summit to learn more about the latest technology and solutions in law enforcement.  

The Practical Applications of Artificial Intelligence in Government Programs

A Government’s ability to lead, protect and serve is tied to how boldly it embraces technology. Artificial intelligence (AI) is no longer a distant concept. It’s a force already redefining the way agencies operate, safeguard resources and deliver services. In an era where global competitors are racing ahead with automation and advanced analytics, standing still is not an option. Agencies that adopt AI strategically will not only keep pace but set new standards for effectiveness, transparency and citizen trust.

Key Use Cases for Artificial Intelligence in Government

Across the Public Sector, AI is moving beyond pilot projects into critical programs. Government agencies are weaving AI into their daily operations. They are detecting fraud before it drains budgets, automating compliance that once accounted for many staff hours and analyzing risks too complicated for manual review. The practical applications are real, measurable and growing. What once seemed like gradual innovation is quickly becoming a foundation for modern governance.

Common AI use cases in Government include:

Fraud detection and prevention

The U.S. Government loses between $233 billion and $521 billion a year to fraud. While no agency is immune to fraud, AI is helping the Government fight back. For example:

  • The Treasury Departmentuses machine learning to detect fraud in real time, enabling it to recover over $4 billion in fraudulent funds during fiscal year 2024.
  • The Centers for Medicare & Medicaid Services (CMS)has integrated AI in its fraud prevention system to review claims before payment. Between January and August 2025 alone, it denied over 800,000 fraudulent claims, saving more than $141 million.
  • The IRS uses AI-powered tools, such as the Risk-Based Collection Model, to improve fraud detection and reduce the tax gap.

Compliance reporting

Compliance is time-consuming for agencies, but AI is now automating much of the process. Agencies use AI to monitor real-time data and flag inconsistencies to simplify reporting. With these capabilities, AI enables greater transparency and faster responses to regulatory requirements.

While AI doesn’t replace human oversight, it frees staff to focus on higher-value analysis, cutting the time and costs of compliance. A good example is the Securities and Exchange Commission’s (SEC) use of natural language processing to automate reporting for financial markets. It processes millions of filings and generates compliance reports to improve enforcement efficiency.

Risk management

Government programs face constant risks:

  • Operational
  • Financial
  • Security
  • Environmental
  • Third-party exposure

AI in Government is already helping agencies with minimum risk management practices. For instance, automating third-party risk management with AI-enabled Governance, Risk and Compliance (GRC) platforms helps agencies assess vendor reliability and track compliance to reduce exposure.

Supply chain monitoring

The COVID-19 pandemic revealed the vulnerability of the public supply chain. AI is now helping the Government strengthen resilience with real-time monitoring.

Machine learning models predict bottlenecks to help agencies optimize their logistics. Additionally, enhanced visibility allows policymakers to proactively mitigate third-party risks in the supply chain, as they can monitor vendors and flag vulnerabilities before they escalate.

Policy cycle integration

Public policies move through cycles: setting the agenda, designing solutions, implementing programs and evaluating results. AI has a role at each stage.

Policy cycle stageAI’s roles
Agenda-settingAnalyzes citizen feedback and emerging trends to identify priorities
Solution development Models the likely impact of different policy options
ImplementationAutomates program operations
EvaluationMeasures outcomes against goals

Used thoughtfully, AI makes the policy cycle more evidence-driven and adaptive.

Citizen services

According to a 2024 Salesforce report, 75% of Americans expect Government digital technologies to match the quality of the best private sector organizations. To meet these expectations, U.S. and State Government agencies are using:

  • Chatbots to answer common questions and improve the availability of Government services
  • Digital assistants to provide personalized help and handle more complex inquiries
  • Self-service portals to let citizens complete tasks like renewing licenses on their own

Benefits of Artificial Intelligence in Government

Beyond mere modernization, embracing AI in Government delivers measurable value:

Increased efficiency and productivity

According to a 2023 McKinsey report, generative AI can automate 60%–70% of tasks and add $2.6–4.4 trillion annually to global productivity. Federal and State agencies are using AI to reduce repetitive tasks such as data entry and document reviews to free Government employees’ time for more strategic efforts. This shift in focus raises productivity without adding headcount.

Improved strategy

Insights from AI help policymakers see the bigger picture. Agencies use predictive analytics to forecast outcomes and test scenarios so they can design public policies to prevent undesirable outcomes to begin with, instead of just reacting to them.

Greater responsiveness

AI makes public services more responsive. Examples include agencies using chatbots to answer citizens’ questions and sentiment analysis tools to better listen to community concerns.

Implementation Challenges that Hinder the Strategic Use of AI in Government

While AI is already delivering results in Government agencies, several obstacles hinder its broader adoption.

Skill gaps and training

A 2024 Salesforce survey found that 60% of Public Sector IT professionals say limited AI skill is their top challenge in implementing AI.

Data biases and ethics

AI learns from data that often reflects existing societal inequities, which can perpetuate or even amplify bias.

Data management

Many agencies rely on siloed or outdated systems. In fact, the Federal Government faces a $100 billion legacy IT challenge, making it difficult to integrate and secure data effectively.

Public trust

Government agencies are expected to operate with a high degree of accountability and transparency. Public skepticism, shaped with legitimate concerns about bias and privacy, may stall or derail AI initiatives.

The Way Forward: Building Smarter, Trustworthy Public Programs

The potential of AI in Government is huge, but so are the risks. To enjoy the benefits while protecting public trust, it’s important to follow best practices for managing AI risks:

  • Treat AI as a strategic asset that drives smart, citizen-focused outcomes, rather than just a technical tool.
  • Pair AI with human oversight to address biases and provide context in decision-making, so the outcomes remain fair and ethical.
  • Invest in responsible governance frameworks to guide the development and deployment of AI within your agency.
  • Monitor AI continuously after deployment to address any unintended consequences.

Managing AI in GRC Solutions

Building Sustainable Automation: How Government Agencies Can Scale IT Operations for the AI Era

Despite investing in numerous automation tools, Government agencies still struggle to achieve true operational efficiency. The issue is not a lack of technology, but the need to better align organizational processes with automation strategies. Agencies often find that automation scattered across teams does not equate to automation at scale.

For State and Local Government agencies navigating budget constraints, workforce transitions and mounting pressure to adopt artificial intelligence (AI), understanding how to make automation sustainable is now mission critical.

Understanding the Foundation

The most effective automation transformations begin not with technology selection but with process evaluation. Agencies that achieve lasting results recognize that automation amplifies existing workflows, accelerating efficient processes while exposing areas in need of standardization. The key lies in establishing organizational readiness before scaling solutions.

Experience shows that technical excellence alone does not guarantee adoption. Many organizations implement advanced automation tools only to see them underutilized because processes were not standardized first. This pattern repeats across ticketing, project management and AI initiatives when solutions are deployed before process design. Sustainable change requires equal focus on culture, workflow and collaboration.

The distinction between organizational and technical capability becomes clear during initiatives like enterprise-wide patching. While patching might appear technically simple, it requires coordination across teams, standardized processes and consistent execution. When approached strategically, patching strengthens structures and communication across departments.

Moving Beyond Linear Scaling

Traditional methods for managing IT complexity have centered on workforce expansion, but modern infrastructure requires new thinking. As organizations add personnel to manage new systems, coordination overhead grows, reducing visibility and collaboration, which then drives additional staffing needs. This challenge extends beyond budgets. Larger teams face higher coordination demands, and IT professionals often overlook their time as an organizational resource until capacity constraints emerge. The question is not just about staffing; it is about designing systems that scale efficiently.

For Government agencies, this issue is especially pressing. Retirements and limited hiring flexibility leave positions unfilled, putting institutional knowledge at risk and resulting in expanding workloads for current employees. In this environment, automation becomes a strategic enabler for maintaining service levels and mission delivery. Manual processes scale linearly, while infrastructure complexity grows exponentially. Centralized automation helps break this cycle by handling routine operations, freeing staff to focus on work that demands human expertise.

Creating Connected Workflows

Sustainable automation strategies move beyond isolated, team-specific implementations toward centralized platforms that enable consistent workflows across the organization. Many agencies have distributed automation capabilities, where infrastructure teams automate provisioning, security teams automate compliance validation and network teams automate configuration, but these workflows often lack seamless integration.

Red Hat, Building Sustainable Automation blog, embedded image, 2025

A single application deployment spans multiple domains, such as provisioning, networking, security scanning, compliance validation and monitoring. When automation operates independently, staff must still coordinate manual handoffs between automated steps. According to Conway’s Law, organizations design systems that reflect their communication structures; fragmented communication results in fragmented architecture.

Centralized platforms address this by establishing shared, standardized automation for common tasks. Instead of multiple teams maintaining separate scripts, one validated and documented process can serve all. This approach enhances auditability, improves consistency, enables scalable growth and eliminates redundant development. Updates to shared workflows require modifying a single authoritative source rather than tracking changes across multiple implementations.

Importantly, centralization is as much about culture and process as technology. Success depends on clear communication of the value of standardization, demonstrating tangible benefits and building trust that centralized approaches will serve all teams effectively. When alignment is achieved, automation platforms reach their full potential, transforming disconnected efforts into unified, scalable operations.

Building the Foundation for Advanced Technologies

The growing interest in AI has created momentum for agencies to explore new solutions, but success requires careful groundwork. Agencies realize the greatest benefits from AI when they first established stable, standardized automation foundations. MIT research shows that 95% of enterprise AI solutions encounter challenges not because of model quality but due to integration difficulties and organizational readiness. Effective AI deployment depends on how well technology integrates within existing workflows.

Many agencies have expanded infrastructure incrementally, developing complex architectures held together by manual processes and specialized expertise. Deploying AI on such foundations is difficult. AI cannot effectively optimize systems when the underlying processes lack consistent automation. In practice, agencies deploying AI to optimize Customer Relationship Management (CRM) operations or automate incident response achieve better results when data and workflows are standardized. This consistency enables organizations to act confidently on AI-driven insights.

Building AI readiness involves working backward from AI’s requirements: integrated systems that share data reliably, standardized processes that AI can learn from and consistent execution that produces trustworthy patterns. Agencies that mature their automation capabilities create the foundation AI needs to succeed, significantly improving the likelihood of achieving meaningful results from AI investments.

Partnering for Success

Achieving sustainable automation is a progressive journey best supported by experienced partners. Leading strategies emphasize a “crawl, walk, run” approach:

  1. Start with a manageable scope
  2. Expand systematically
  3. Build organizational capability over time

This measured progression ensures transformation occurs sustainably for the teams implementing and maintaining these systems.

Many agencies are undertaking comprehensive automation for the first time, making guidance from experienced organizations like Red Hat particularly valuable. Effective partnerships emphasize knowledge transfer over dependency, helping agencies build autonomous, capable teams rather than relying on long-term external support.

The results of this approach are measurable. Red Hat customers have achieved 50% faster networking provisioning, 65% reductions in certain provisioning activities and 67% improvements in other operational areas, freeing staff for innovation and strategic initiatives. These gains also reduce unplanned downtime and improve the overall quality of life for IT teams.

This journey addresses multiple organizational objectives simultaneously. Leadership achieves cost optimization and stronger security, while practitioners gain time, efficiency and better work-life balance. Sustainable automation delivers across these dimensions because the same standardization that drives efficiency also enhances security and empowers staff to focus on meaningful challenges.


Government agencies have reached a pivotal moment where growing infrastructure complexity demands a more evolved approach to IT operations. The path forward lies in fundamentally integrating automation into organizational processes and culture. By prioritizing standardization, embracing centralization and partnering for sustainable transformation, agencies can develop scalable automation strategies that prepare the organizations to leverage emerging technologies like AI.To discover proven strategies for building sustainable automation foundations that prepare your agency for advanced technology adoption, watch Red Hat’s webinar, “The Backbone of Modern Government: Sustainable Automation at Scale.”

Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator for our vendor partners, including Red Hat, we deliver solutions for Geospatial, Cybersecurity, MultiCloud, DevSecOps, Artificial Intelligence, Customer Experience and Engagement, Open Source and more. Working with resellers, systems integrators and consultants, our sales and marketing teams provide industry leading IT products, services and training through hundreds of contract vehicles. Explore the Carahsoft Blog to learn more about the latest trends in Government technology markets and solutions, as well as Carahsoft’s ecosystem of partner thought-leaders.

Billington CyberSecurity Summit: AI Takes Center Stage

Premier U.S. Government cyber conference previews AI on offense, on defense and as a target

  • While adversaries can boost the quality and volume of attacks with artificial intelligence (AI), defenders will apply AI to counter attacks with predictive and proactive defenses.
  • The advent of Agentic AIs will accelerate this trend and provide more avenues for attack, but defenders will always have the advantage by being able to train AIs with proprietary information and use them to identify vulnerabilities before attackers do.
  • The transition to post-quantum cryptography will be an industry-wide heavy lift, with extensive rewriting of code to meet post-quantum standards.

Recently, I had the opportunity to share some of my experience and insights at the Billington CyberSecurity Summit in Washington, D.C. Moderated by Chris Townsend, Global Vice President of Public Sector at Elastic, our panel session, “The Future of Cyber Threat: Anticipating Threat Actors’ Next Steps,” explored how threat actors are evolving and what organizations can do now to prepare. Not surprisingly, AI was a hot topic. We also discussed quantum computing, emerging threats and the cybersecurity staffing shortage.

How Attackers Will Leverage AI

Attackers are already using AI to power their attacks, but it is important not to over-sensationalize the impact that AI is having because the proportion of AI-driven attacks is still quite small relative to the overall amount of malicious activity we are seeing. However, we expect that proportion to grow quickly.

One of the main ways attackers are using it now is to create phishing materials, because it addresses what is a weak point for many threat actors, who often are not native English speakers. Attacks that are technically sophisticated can fail because they begin with a spear phishing email whose spelling or grammar is wrong. Large Language Models (LLMs) solve that problem brilliantly because if there is one thing they are good at, it is creating plausible narratives in perfect English.

The other area we see attackers using it is to automate their work. We have already documented examples of code that appears to have been written by an AI.

In the short term, AI will not enable adversaries to do anything new, but we expect it to enhance the quality and volume of their attacks. AI is lowering the entry bar for threat actors. They do not even need to know how to code anymore. Naturally, the number of attacks will begin to go up.

In the medium term, the arrival of Agentic AI is likely to accelerate malicious activity levels, since agents can act autonomously, further minimizing the level of input needed from attackers.

We have already done some research on how agents could be abused and proven that they can already be used to carry out a basic spear phishing attack and deliver malicious code to a target. Agents are still in their infancy, and it is only a matter of time before they become capable of carrying out more sophisticated attacks with minimal instruction.

Preparing For the Quantum Era

The advent of quantum computing presents another significant challenge for cybersecurity. Quantum computers have the potential to break current encryption standards, making it imperative for organizations to transition to post-quantum encryption algorithms.

Adversaries are already preparing for this shift. The “harvest now, decrypt later” strategy involves stealing encrypted data today with the intention of decrypting it once quantum computing becomes viable.

This process of transitioning to post-quantum encryption is not without its challenges. Decades of work have gone into refining and protecting the implementation of existing encryption methods, and we now face the task of revising and rewriting code using new, post-quantum standards. This will inevitably introduce a new generation of bugs, but we will have the benefit of AI to mitigate them.

It Does Not Stop Here

Conferences such as Billington are essential as we navigate this complex landscape. It embodies the Public and Private Sector collaboration that will be key to realizing better cyber defense outcomes moving forward. Together, with partners like Carahsoft delivering mission-critical industry expertise to U.S. Federal and Public Sector agencies, we can anticipate and counter the next generation of cyber threats, ensuring the safety and resilience of our digital ecosystems.

Learn more about how industry icons like Symantec and Carbon Black are putting AI on the front lines of cybersecurity.

Want to learn how Symantec, Carbon Black and Carahsoft can strengthen your cybersecurity posture? Contact us at Broadcom@Carahsoft.com for more information.

Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator for our vendor partners, including Broadcom, we deliver solutions for Geospatial, Cybersecurity, MultiCloud, DevSecOps, Artificial Intelligence, Customer Experience and Engagement, Open Source and more. Working with resellers, systems integrators and consultants, our sales and marketing teams provide industry leading IT products, services and training through hundreds of contract vehicles. Explore the Carahsoft Blog to learn more about the latest trends in Government technology markets and solutions, as well as Carahsoft’s ecosystem of partner thought-leaders.

This post originally appeared on security.com, and is re-published with permission.

Forecasting Resilience: How Atlas 14 Strengthens Stormwater and Sewer Design

What forward-leaning State and Local agencies are doing to turn risk into readiness.

Most of us in public works know exactly what the National Oceanic and Atmospheric Administration’s (NOAA) Atlas 14 is, where it is used and why it matters. What has changed lately is not the definition, it is the urgency.

Across jurisdictions, we are seeing the same trend: Flood risk is up, funding scrutiny is rising and legacy assumptions are hitting resistance. The Federal Emergency Management Agency (FEMA) reports that over 75% of federally declared disasters are flood-related, and NOAA’s latest data shows record-setting rainfall intensity increasing across several states.

So, it is no surprise that design criteria anchored in decades-old rainfall estimates are facing hard questions during permitting and public review. For teams navigating FEMA, the National Flood Insurance Program (NFIP) and local requirements, the gap between historical design standards and current expectations has never been more apparent.

That is where updated Atlas 14 data is reshaping workflows—not in concept, but in practice.

A Familiar Tool, New Pressures

Atlas 14 has always been foundational, but recent updates and regulatory emphasis have made it non-negotiable in many contexts. Whether it is used to update a stormwater ordinance or justify capital investments, the message is clear: Designs that do not reflect this data face uphill battles—especially when tied to Federal funding.

In North Carolina, for example, several jurisdictions have already adjusted their stormwater management ordinances to explicitly require Atlas 14 integration. Fairfax County’s own guidelines mandate its use in culvert sizing and detention basin design. And in Texas, new flood risk mitigation plans are using Atlas 14 data as a baseline for grant applications under FEMA’s Building Resilient Infrastructure and Communities (BRIC) program. The bottom line: If your designs are not grounded in this data, your funding case—and your technical case—can be hard to defend.

With rainfall intensity trending higher across multiple regions, stormwater programs that once relied on 10- or 25-year benchmarks are now expected to model 50- and 100-year events—or even higher.

Design For What Is Likely, Defend Against What Is Possible

Colleagues across State and Local Government (SLG) are asking the same question: How can we use this data not just for box-checking, but for making better decisions? How do we defend design assumptions in permit review? How do we model flood events that reflect local topography and future rainfall patterns? How can we show that our Capital Improvement Plan (CIP) priorities align with resilience goals, rather than just meeting regulatory minimums?

That is where predictive modeling comes in. Teams using tools like Bentley OpenFlows Sewer or Bentley OpenFlows Storm are leveraging Atlas 14 as a referenced input to:

  • Run scenario comparisons based on updated precipitation probabilities
  • Assess cascading impacts across watershed and sewer networks

The result? Models that are both technically sound and strategically aligned—with funding cycles, risk standards and permitting expectations.

Join Leading Experts to Learn More

But even with strong tools and solid data, the path forward is not always clear. We have heard from agencies weighing how to phase in new standards across legacy systems, how to navigate inconsistencies between State and Federal expectations and how to model flood risk in a way that resonates with both engineers and elected officials.

It is time to take a practical look at how SLG agencies are integrating Atlas 14 into their workflows, especially as new standards and funding opportunities continue to evolve.

Join us on November 13, 2025, to learn more.

If your team is mapping out what is next—or preparing to defend the next infrastructure request—this session will offer insight into what is working across the sector.

Conclusion

We do not need to be convinced of the value of Atlas 14. We use it every day. But as expectations shift and standards evolve, how we apply it matters more than ever.

This is not about reintroducing the data. It is about strengthening the decisions built on it.

Join us for Bentley and Carahsoft’s webinar, “Future-Proofing Flood Modeling: Meeting Today’s Federal Standards and Tomorrow’s Flood Risks,” on November 13, 2025. Register Now.

Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator for our vendor partners, including Bentley, we deliver solutions for Geospatial, Cybersecurity, MultiCloud, DevSecOps, Artificial Intelligence, Customer Experience and Engagement, Open Source and more. Working with resellers, systems integrators and consultants, our sales and marketing teams provide industry leading IT products, services and training through hundreds of contract vehicles. Explore the Carahsoft Blog to learn more about the latest trends in Government technology markets and solutions, as well as Carahsoft’s ecosystem of partner thought-leaders.

Tightening Federal OT Cyber Incident Reporting For Critical Infrastructure

Process-Oriented OT Cybersecurity with SIGA

Federal agencies and regulated operators of critical infrastructure are entering a new phase in operational technology (OT) cybersecurity. While many sectors have long followed voluntary guidance such as the National Institute of Standards and Technology (NIST) Special Publication (SP) 800-82 Revision 3, recent years have seen a steady tightening of Federal cyber incident reporting requirements for critical infrastructure. This trend continues in 2025 with additional sector-specific rules taking effect and the Cyber Incident Reporting for Critical Infrastructure Act (CIRCIA) moving toward its final rule.

From Guidance to Requirements

Federal oversight of OT cybersecurity has moved beyond broad guidelines into a phase where specific reporting obligations are being set by sector. The shift reflects a growing emphasis on timely and consistent incident data that can be used for coordinated national response.

In 2025, several key developments are shaping the landscape:

Federal OT Cyber Incident Reporting, blog, embedded image, 2025
  • Pipelines: The Transportation Security Administration (TSA) Security Directive Pipeline-2021-02F, effective May 3, 2025, continues to require mitigation measures, testing and contingency planning for pipeline operators. These measures have been in place since the Colonial Pipeline incident and are now firmly embedded in regulatory practice.
  • Water and Wastewater: The EPA Water Sector Cybersecurity Program has updated its technical assistance and incident-response guidance. While participation is voluntary, the program mirrors many of the practices found in regulated sectors, indicating where expectations are headed.
  • CIRCIA: The Act is expected to be finalized in late 2025. Once in effect, it will require reporting significant incidents within 72 hours and ransomware payments within 24 hours, creating a cross-sector Federal baseline for incident reporting.

For Public Sector operators in energy, transportation, water and other essential services, these actions confirm that Federal expectations are moving toward consistent, evidence-based incident reporting across critical infrastructure.

The Reporting Challenge in OT Environments

Meeting Federal reporting requirements depends not only on having the right policies in place but also on the ability to detect and verify incidents quickly. In OT environments, many cyber events start as small changes in process behavior that do not appear in traditional network monitoring. When these early signs go unnoticed, agencies may be unable to confirm the incident, assess its impact or provide the detailed operational evidence that regulators require.

In the Purdue Enterprise Reference Architecture (commonly referred to as the Purdue Model), Level Zero refers to the lowest layer of an industrial control system. This is where raw input and output (I/O) signals from field devices report the actual status of equipment such as pumps, valves, circuit breakers and turbines. These electrical signals are the first and most reliable indicators of what is happening in a physical process, and they exist independently of the network data that higher levels use.

Without visibility into Level Zero, operators face several obstacles:

  • Difficulty confirming whether a cyber event has actually affected operations
  • Limited ability to quantify operational and safety impacts with precision
  • Gaps in the time-stamped evidence needed to meet short Federal reporting windows

The challenge is heightened in environments that mix aging legacy systems with modernized control platforms. These environments often lack unified monitoring, making it harder to capture the unaltered operational data regulators now expect.

Why Process-Oriented OT Cybersecurity Matters

In the Purdue Model, Level Zero is the process interface where the control system reads and drives raw I/O signals. Those unprocessed signals provide the closest, most reliable view of real operating conditions, so early signs of a cyber-physical impact frequently show up there first.

Process-oriented OT cybersecurity focuses on monitoring these raw signals in real time. By capturing them out of band from the operational network, agencies gain a trusted source of truth that cannot be spoofed or altered by a network-based attack. This data enables:

  • Clear timelines of operational changes before, during and after an incident
  • Early detection of anomalies that may indicate tampering or failure
  • Reliable forensic evidence for post-incident reporting and compliance audits

This approach bridges the gap between traditional IT security tools and the operational realities of critical infrastructure, ensuring that reporting requirements can be met with both speed and accuracy.

SIGA’s Role in Compliance Readiness

SIGA delivers process-oriented OT cybersecurity for critical infrastructure. SigaGuard connects directly to control-system I/O modules and continuously monitors raw electrical signals at Level 0, entirely out of band from the operational network. This preserves system performance and provides a tamper-proof view of operational data.

SigaGuardX: Early Threat Detection
SigaGuardX supports evidence-based determination of when a cyber event is underway. It classifies whether activity reflects normal operations or an OT cyber breach by applying multiple artificial intelligence (AI) models and cross-referencing the MITRE database of known attacks. It also performs real-time comparisons between Level 0 signal behavior and data from Levels 1 through 4 to surface possible false-data injection attacks, including Stuxnet-like patterns.

Siga-PAS: Process Attack Simulation
Software-based simulated anomalies replicate real-world attack scenarios. Siga-PAS enables agencies to prepare for and respond to OT-specific threats without disrupting ongoing operations, while validating detection logic, incident playbooks and reporting workflows.

Compliance Outcomes

  • High-fidelity operational evidence that aligns with CIRCIA and sector-specific reporting requirements
  • Regulator-ready forensic records of sequence, scope and impact
  • Faster reporting through actionable alerts with operational context
  • Rapid verification of whether a cyber event affected critical processes

By integrating SIGA’s Level 0 monitoring into existing security operations, agencies can meet tightening Federal reporting requirements and improve their ability to detect, contain and recover from OT cyber incidents. This strengthens both regulatory compliance and the continuity of essential public services.

Visit Carahsoft’s SIGA solutions page to learn more about how SIGA’s cyber-physical security solutions can strengthen your agency’s infrastructure.

Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator for our vendor partners, including SIGA, we deliver solutions for Geospatial, Cybersecurity, MultiCloud, DevSecOps, Artificial Intelligence, Customer Experience and Engagement, Open Source and more. Working with resellers, systems integrators and consultants, our sales and marketing teams provide industry leading IT products, services and training through hundreds of contract vehicles. Explore the Carahsoft Blog to learn more about the latest trends in Government technology markets and solutions, as well as Carahsoft’s ecosystem of partner thought-leaders.

Transforming Public Services: A Digital Approach to Efficiency and Trust

Since the founding of the U.S. Government Accountability Office (GAO) in 1921, efficiency has been a focus of the Federal Government. According to the legislation, the GAO aims to provide “greater economy and efficiency in the conduct of public service” and has been integral in the effort to aid our Government to do more with less. Today, this mission continues with the adoption of modern technologies to expand Government outreach. The adoption of modern technology allows for increases in interactions such as website visits, applications for services and public outreach. The hope is that building on these foundations of new technology will meet and improve public expectations (Pew Research).

Designing Trusted Digital Services

Today’s digital world has brought about a rising set of expectations from the constituents that public agencies work with. People now expect their Public Sector experiences to be on par with their favorite online retailers. This is likely why digital services are a priority of both the “America by Design” Executive Order and State CIOs (NASCIO 2025). To meet these expectations and create trusted services, Government websites need their digital offerings to be intuitive, personalized and responsive to the needs of every user. Making every interaction count is what is important. Everything from the smallest information request to the most complex, multi-year service transactions should be built with the user in mind. These user-centered designs can ensure that agencies construct the kinds of welcoming, trusted experiences that users want.

The potential for citizens to interact with their Governments in the digital space is limitless, and creating personalized content is pivotal to meeting those expectations. Trusted, engaging experiences are built on equal pillars of data, content and meaningful delivery. However, they begin with a modern foundation to meet the demands necessary for true personalization.

Technology and Workforce Modernization

Modernization is about streamlining outdated processes that have long hindered efficiency. Many Government websites still struggle with outdated designs and inconsistent content, yet the website of a Government agency is often the first point of contact for constituents seeking information or services. Therefore, the America by Design EO requires agencies to “prioritize improving websites…that have a major impact on Americans’ everyday lives” (Executive Order). With a well-designed website that is easy to navigate, constituents can quickly find the information that they need.

After agencies inform constituents about services, they must enroll them in the appropriate ones. Enrollment processes have traditionally been slow and time-consuming, often relying on paper-intensive systems. To reduce administrative burdens and improve data collection accuracy, agencies must transition from manual, paper-centric workflows to digital tools. When employees aren’t bogged down by administrative cleanup work, they have more time to work on tasks that make a bigger impact on their agencies’ missions.

This means that modernization is also about enabling the workforce to adapt to this new digital foundation. Efficiency here involves enhancing communication between employees, aligning project tasks with agency goals and providing transparency into this progress. Agencies that foster a culture of collaboration and trust in their workforce will see that workforce more empowered to deliver efficient results that align better with overall goals.

Looking Forward

Today, efficiency has expanded beyond the scope of the GAO itself and has been integrated into nearly every aspect of the Public Sector and how residents think about it. By prioritizing intuitive, personalized and efficient digital services that meet public expectations, agencies can increase trust in our Government.

Check out this on-demand webinar series to learn how Adobe’s digital experience solutions can help your agency modernize public services, digitize internal workflows and accelerate content delivery, while ensuring compliance and protecting sensitive data.

Securing Government AI: Why Federal Agencies Need a Trust Layer for Accountable, Compliant Deployment

Federal agencies must deploy AI fast – but safely. The White House’s Executive Order, new OMB guidance requiring Chief AI Officers, and citizen expectations are driving rapid adoption. More than 1,700 AI use cases are already live across Government, doubling in just one year.

The challenge? Traditional security can’t keep up with AI systems operating at machine speed and scale. Federal agencies need Zero Trust architecture built specifically for AI agents, not retrofitted legacy systems. The recent addition of Nuggets’ Trust Layer solutions to the GSA Schedule provides exactly that foundation.

The Zero Trust Imperative for Government AI

Here’s the reality: AI agents make thousands of decisions per second across multiple systems. Without Zero Trust verification, agencies can’t prove who authorized what action, when or with which data.

The core challenges are clear:

  • Speed vs oversight: AI operates faster than current security can verify
  • Scale: Thousands of simultaneous agent interactions with no unified oversight
  • Accountability gaps: No audit trails for autonomous decisions in black-box systems
  • Compliance blind spots: NIST IAL2/IAL3 standards weren’t designed for autonomous AI
  • Sophisticated threats: AI-powered spoofing attacks that overwhelm legacy defenses

Federal agencies face intense pressure to adopt AI, but risks around bias, privacy, accountability and public trust threaten safe deployment. The gap between what agencies must deliver–secure, transparent, compliant services—and what legacy systems can support continues to widen.

Why Legacy Solutions Can’t Keep Up

Traditional identity systems were built for humans, not AI agents. While protocols like Agent-to-Agent (A2A) and Model Context Protocol (MCP) enable coordination between agents and tools, they don’t verify trust, intent or authorization, especially when handling sensitive Government data.

Point solutions create security silos and compliance blind spots. Legacy frameworks simply don’t account for autonomous decision-making, leaving agencies without proof of who or what acted, when and with proper authorization. Without this foundation, compliance and accountability are left to chance.

The Trust Layer Solution: Zero Trust for AI

Nuggets provides purpose-built Zero Trust architecture for agentic AI. Recognized by Gartner as a leader in decentralized identity, our trust layer embeds verification into every AI interaction, no matter the agent, system or data involved.

The comprehensive architecture creates compliance by design through three core capabilities:

Verifiable Identity: Cryptographically verified identity for every human, organization and AI agent that works across all platforms, contexts, devices and systems.

Complete Audit Trails: Every AI decision creates tamper-proof records with consent receipts and authorization proofs that meet Federal accountability requirements.

Standards Compliance: Built-in adherence to NIST IAL2/IAL3, AAL2 and UK Digital Identity Trust Framework requirements, ensuring agencies can deploy AI while meeting stringent security standards.

The result: a Zero Trust foundation on which agencies can deploy autonomous AI systems with confidence that every action is verified, compliant and auditable. This will enable both rapid innovation and Government accountability.

Real Impact: Government AI That Works

For Government IT leaders, the practical outcomes are substantial and measurable. Agencies using Nuggets’ trust layer achieve:

Operational Confidence: AI agents operate autonomously while maintaining security standards, delivering efficiency without sacrificing oversight.

Compliance Assurance: Built-in adherence to Federal identity verification requirements eliminates compliance guesswork.

Mission Success: Complete audit trails for all AI interactions and decisions ensure accountability while preventing unauthorized actions that could compromise sensitive operations.

Real-world use cases demonstrate the impact: automated document processing across agencies with complete audit trails, AI-driven eligibility checks and fraud detection that withstand regulatory scrutiny, secure inter-agency data sharing with verified agent identities and AI-powered citizen services that maintain privacy while delivering efficiency.

Each deployment proves that agencies can achieve both AI innovation and Government accountability, systems that are trusted by regulators, citizens and the mission itself.

The GSA Schedule Advantage

Procurement complexity often slows Government adoption of new technologies, but Nuggets eliminates these barriers. The solution is available through multiple pre-vetted contract vehicles, including GSA Schedule No. 47QSWA18D008F, SEWP V contracts, ITES-SW2, NASPO ValuePoint, OMNIA Partners and E&I Contract.

This means agencies can move from evaluation to deployment quickly, leveraging Carahsoft’s established Government relationships and support infrastructure. No lengthy procurement delays, no security gaps, no compliance questions.

Ready for Trusted AI Deployment?

As agencies expand AI capabilities, traditional security cannot keep pace with the speed, scale and complexity of autonomous systems. Purpose-built Zero Trust infrastructure is essential for agencies that must balance innovation mandates with compliance requirements and public accountability.

See how Federal agencies are deploying AI that’s secure, compliant, transparent and trusted. Schedule a personalized demo to explore how Nuggets’ Trust Layer can secure your agency’s AI deployment with the accountability that Government operations require.

Deploy AI that’s trusted by regulators, citizens and your mission. Contact Carahsoft at (844) 214-4790 or Nuggets@carahsoft.com. Learn more at www.carahsoft.com/nuggets.

Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator for our vendor partners, including Nuggets, we deliver solutions for Geospatial, Cybersecurity, MultiCloud, DevSecOps, Artificial Intelligence, Customer Experience and Engagement, Open Source and more. Working with resellers, systems integrators and consultants, our sales and marketing teams provide industry leading IT products, services and training through hundreds of contract vehicles. Explore the Carahsoft Blog to learn more about the latest trends in Government technology markets and solutions, as well as Carahsoft’s ecosystem of partner thought-leaders.

Enabling Rapid Compliance with Sysfleet’s RPA Tools

As technology evolves, Government agencies seek to modernize effectively, securely and efficiently. By utilizing Sysfleet’s RPA tools, agencies can reach compliance, automate workflows, embed data loss prevention and promote solution-based, application life-cycle models.

The Power of RPA

Robotic Process Automation (RPA) tools refer to automation software that performs repetitive, rule-based tasks. In Government agencies, increasing efficiency is a primary concern, as it enables agencies to deliver solutions in a timely fashion.

There are three main benefits to RPA tools. RPA tools:

  1. Shorten the life cycle of requests
  2. Eradicate human error by automating menial tasks
  3. Improve security by detecting anomalies

Traditionally, Government struggles with high-risk projects; projects require an investment of time to gain approvals, and market monopolies result in high premiums. RPA enables Government to shorten the life cycle of projects, which reduces costs and expedites delivery time.

With the added capabilities of artificial intelligence (AI) and machine learning (ML), RPA tools can replace old-school application program interfaces (APIs) development, which can be draining and slow. Through hyper-automation, RPA enables users to carry out operations swiftly.

Meeting Government Needs with RPA

Before onboarding new technology like RPA tools, the Government expects certain inherited features, such as web content, accessibility controls, guidelines and FedRAMP certification. Sysfleet Consulting LLC, a technology solutions company that simplifies business processes, automates workflows and improves efficiency through system integration, is equipped to address the unique needs of Government agencies and enterprises.

Sysfleet helps Government agencies and enterprises gain compliance and audit readiness with its RPA solutions. Sysfleet’s RPA solutions have a unique focus on compliance automation. By transforming manual workflows into controlled, automated processes, Sysfleet embeds audit readiness and data security directly into agency workflow. Additionally, Sysfleet’s RPA tools can modernize with existing legacy systems without disrupting ongoing operations, cutting down on modernization costs. Sysfleet has delivered measurable results, enabling agencies to cut down on processing time by 30-70%, saving hundreds of labor hours quarterly.

Products to Enable Rapid Compliance

As an official Microsoft partner, Sysfleet utilizes applications such as Power Automate, UiPath and Blue Prism Automation to help customers automate repetitive tasks. Through the Power Platform’s  Center of Excellence (CoE), a Microsoft product that enables data loss prevention, Sysfleet automatically captures data, enabling users to follow and trace data trails. Additionally, Power Platform maps to National Institute of Standards and Technology (NIST) and  Federal Regulation section 508, and can operate within existing Government cloud boundaries and other external systems.

Benefits of the RPA-Enabled Automation

Sysfleet improves operational performance through automation. Traditionally, State Government approvals take years, draining time and resources. With Sysfleet’s RPA tools, agencies can shorten internal approval time by 55%, gaining a return of investment within just six months. The tools automate safely and are easy to scale to existing applications. Additionally, Sysfleet’s RPA tool can expedite long manual processes that traditionally contain human errors due to their complexity.

Carahsoft and Sysfleet

Through strategic partnerships, Sysfleet ensures secure, scalable, future-ready solutions. Sysfleet has proven leadership in Government automation projects, delivering measurable results in mission-critical workflows. By partnering with Carahsoft, Sysfleet is further empowered to support the Public Sector. Carahsoft enables Sysfleet to reach Government customers nation-wide, to help agencies expedite the procurement process, scale and reach marketing and offer solution bundling.

Learn how agencies can accelerate modernization and embed security into every workflow.

Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator for our vendor partners, including Sysfleet, we deliver solutions for Geospatial, Cybersecurity, MultiCloud, DevSecOps, Artificial Intelligence, Customer Experience and Engagement, Open Source and more. Working with resellers, systems integrators and consultants, our sales and marketing teams provide industry leading IT products, services and training through hundreds of contract vehicles. Explore the Carahsoft Blog to learn more about the latest trends in Government technology markets and solutions, as well as Carahsoft’s ecosystem of partner thought-leaders.

Why CMDBs Alone Aren’t Enough for Effective Asset Management

Federal agencies rely on Configuration Management Databases (CMDBs) to track and manage their assets. But here’s the challenge: CMDBs depend entirely on the data that gets fed into them.

When discovery tools miss devices, when multiple tools report the same device but with different details, when manual processes slow down or when new virtual environments spin up outside of standard procedures, those assets are either invisible or in conflict in your CMDB.

IT and security teams are forced to turn to manual processes to prevent duplicate or inaccurate CMDB records and update missed asset changes. Yet even then, the system inevitably lags behind the reality of the assets in Federal environments. 

As a result, your inventory becomes incomplete or outdated and creates real risks, from failed audits to unaddressed vulnerabilities to disruptions in critical business operations.

Your Federal team faces a difficult choice. You can spend significant time and resources continually auditing the CMDB, manually joining data from disparate tools to seek out the truth. Or you can accept the risk that comes with low-quality, “dirty” data. Neither option is ideal when you are accountable for meeting Federal security requirements.

Fortunately, there’s a third, and much better option.

How to complement a CMDB with automated, actionable asset intelligence

To get a full picture of your asset landscape, you need to architect your asset data framework so that it continuously updates both itself and your CMDB. This is where the Axonius Asset Cloud platform comes in.

The Axonius Asset Cloud is an actionability platform that addresses the common gaps in CMDBs by automating asset discovery and inventory across the entire IT and security footprint. You get an always-current, comprehensive and accurate inventory of your entire asset ecosystem. Axonius also looks for potential policy violations and helps administrative and security teams in prioritizing configuration and vulnerability response efforts.

The Axonius Asset Cloud natively provides more than 1,200 adapters that connect to and integrate with commonly deployed security and IT tools, including 27 CMDB platforms. These adapters continuously collect information on 40+ types of assets across IT and security, including devices, users, software, vulnerabilities and configurations.

Axonius turns raw, noisy and overlapping data into a complete, accurate and always up-to-date model of your entire environment through the Axonius Asset Intelligence pipeline. The bar we set for the information Axonius serves is decision-grade output. Each stage in this intelligence pipeline solves a specific class of data engineering problems that static inventories, vulnerability scanners, SIEMs and CMDBs struggle to optimize on their own.

The Axonius Intelligence Pipeline

After building this normalized and correlated view of the assets and risks in your environment, Axonius then compares them to what’s in your agency’s CMDB, deletes unwanted or redundant tools from the list and adds any missing assets or metadata to your inventory. You can finally trade hours of data cleanup for decisive moves that secure your systems.

Uncover assets not tracked in your CMDB

Security operations teams benefit from the Axonius Asset Cloud as well. The platform can automatically create remediation tickets whenever it discovers a vulnerability. Operations teams can be alerted immediately and prioritize their response to the tickets based on severity or urgency, confident that they have a clear and complete picture of affected systems, users and devices.

Post-incident, the same reports in the Axonius Asset Cloud give teams confidence that the incident has been fully resolved by confirming that affected systems, applications or user accounts have been successfully and completely remediated.

Supercharging your CMDB with Axonius accomplishes multiple objectives:

  1. Your agency gains a real-time, comprehensive view of all its assets, maximizing your CMDB investment and empowering both IT and Security operations.
  2. You can instantly identify rogue or non-compliant assets and respond to ticket requests within a day.
  3. You can uncover unused or legacy assets that are costing your agency money or putting it at risk.
  4. You significantly reduce manual CMDB upkeep and free up hours for higher-impact work.
Spot conflicting details or missing attributes

Axonius in action: How the platform works with ServiceNow

Let’s take a look at how this works using the ServiceNow CMDB as an example. First, select the configuration items (assets) you want to ingest into ServiceNow. Axonius imports the selected data into ServiceNow via APIs. This allows you to query, visualize and take action on all of the CMDB data imported into the system.

From there, the platform goes to work, scanning assets, creating tickets, updating inventory and removing assets that should not be in the CMDB, all in real-time. You can then generate reports that highlight vulnerability gaps and items that require correction.

Axonius complements CMDBs, such as ServiceNow, by highlighting asset trends and identifying missing devices and fields.

You can use the combination of Axonius and ServiceNow, or other CMDBs, to ensure compliance with FISMA, CISA BOD 23-01 and other relevant standards. The Axonius Asset Cloud platform can pull compliance data from ServiceNow, eliminating the need for manual compliance tracking through the CMDB.

Want to see Axonius in action? Here’s a quick demo by James Flores showing how Axonius improves CMDB coverage.

Leveling up your CMDB

In a time when Government efficiency is under the microscope, agencies need more than a CMDB alone to manage their assets effectively. While CMDBs are valuable for tracking configurations and relationships, relying on them as the sole source of asset information can be time-consuming, impractical and potentially inaccurate. This leads to significant lost hours, unnecessary costs and damaging security vulnerabilities.

The best option—the only option, really—is to complement your CMDB with a solution that gives you instant visibility into its coverage.

The Axonius Asset Cloud allows you to identify gaps, track trends, update CIs and asset data in the CMDB and power incident response teams. It levels up your CMDB to save time, money and your organization from potentially serious security risks.

Learn more at https://www.axonius.com/federal-systems.

Carahsoft Technology Corp. is The Trusted Government IT Solutions Provider, supporting Public Sector organizations across Federal, State and Local Government agencies and Education and Healthcare markets. As the Master Government Aggregator for our vendor partners, including Axonius we deliver solutions for Geospatial, Cybersecurity, MultiCloud, DevSecOps, Artificial Intelligence, Customer Experience and Engagement, Open Source and more. Working with resellers, systems integrators and consultants, our sales and marketing teams provide industry leading IT products, services and training through hundreds of contract vehicles. Explore the Carahsoft Blog to learn more about the latest trends in Government technology markets and solutions, as well as Carahsoft’s ecosystem of partner thought-leaders.