> ## Documentation Index
> Fetch the complete documentation index at: https://help.dsalta.com/llms.txt
> Use this file to discover all available pages before exploring further.

# TX-RAMP

> Achieve Texas Risk and Authorization Management Program certification for state agencies.

> Achieve Texas Risk and Authorization Management Program certification for state agencies.

The Texas Risk and Authorization Management Program (TX-RAMP) provides a standardized approach for security assessment, certification, and continuous monitoring of cloud computing services that process the data of Texas state agencies. It is modeled on FedRAMP and StateRAMP.

<Note>
  TX-RAMP certification is required for cloud service providers offering services to Texas state agencies.
</Note>

## Who needs TX-RAMP?

<CardGroup cols={2}>
  <Card title="Cloud providers" icon="cloud">
    Vendors offering cloud services to Texas state agencies.
  </Card>

  <Card title="GovTech companies" icon="landmark">
    Organizations selling SaaS to the Texas public sector.
  </Card>
</CardGroup>

## Key components

<CardGroup cols={3}>
  <Card title="Level 1 certification" icon="1">
    For services handling low-impact or non-confidential data.
  </Card>

  <Card title="Level 2 certification" icon="2">
    For services handling moderate or high-impact confidential data.
  </Card>

  <Card title="Continuous monitoring" icon="gauge">
    Ongoing security monitoring and reporting after certification.
  </Card>

  <Card title="Control baseline" icon="table-cells">
    Security controls aligned with FedRAMP and NIST 800-53.
  </Card>
</CardGroup>

## How DSALTA helps with TX-RAMP

<Steps>
  <Step title="Activate TX-RAMP">
    Select TX-RAMP and your target level. DSALTA maps the control baseline to controls.
  </Step>

  <Step title="Review mapped controls">
    Review the NIST 800-53-aligned controls and assign owners.
  </Step>

  <Step title="Collect evidence automatically">
    Connect integrations to gather technical evidence.
  </Step>

  <Step title="Document the SSP">
    Build your System Security Plan with DSALTA's guidance.
  </Step>

  <Step title="Prepare for certification">
    Organize evidence for the TX-RAMP assessment.
  </Step>
</Steps>

## Frequently asked questions

<AccordionGroup>
  <Accordion title="Which level do I need?" icon="layer-group">
    Level 1 for low-impact data; Level 2 for moderate/high-impact confidential data. The agency's data classification determines the requirement.
  </Accordion>

  <Accordion title="How does TX-RAMP relate to FedRAMP?" icon="arrows-left-right">
    TX-RAMP recognizes FedRAMP and StateRAMP authorizations, often allowing reciprocity that reduces duplicate work.
  </Accordion>
</AccordionGroup>

## Related pages

* [Active Frameworks](/guides/compliance/frameworks-active)
* [Available Frameworks](/guides/compliance/frameworks-available)
* [Controls](/guides/compliance/controls)
* [Audits](/guides/compliance/audits)
