# Government-Ready AI Enterprise **Software**

Enterprise AI solutions that satisfy requirements of security and compliance standards from around the globe.

[Read the Whitepaper](https://docs.nvidia.com/ai-enterprise/planning-resource/ai-software-regulated-environments-white-paper/latest/index.html)

### Workloads

Data Center / Cloud

### Industries

Public Sector

### Business Goal

Risk Mitigation

### Products

* [NVIDIA AI Enterprise](https://www.nvidia.com/en-us/data-center/products/ai-enterprise.md)

Overview

## Government-Ready AI Software

Government agencies and regulated industries around the world are poised to unlock unprecedented efficiencies—potentially reducing complex data analysis time by half—through transformative AI, but deployment is stalled by complex security mandates. With a secure, compliance-ready AI software foundation, organizations can:

* **Mitigate Compliance Risk**: Significantly reduce the burden of securing a sprawling, open source technology stack against continuous security vulnerabilities.
* **Accelerate AI Adoption**: Move AI initiatives from pilot to production faster by using software pre-vetted against the most demanding regulatory frameworks.
* **Ensure Continuous Security**: Manage vulnerabilities and meticulously document adherence to strict government security standards.
* **Handle Sensitive Workloads**: Deploy AI for Controlled Unclassified Information (CUI) with confidence, knowing every software component is subject to rigorous security scrutiny.
* **Build for Production:** Leverage commercially supported, production-ready AI software to establish a secure, compliant foundation for mission-critical AI applications.

NVIDIA AI Enterprise government-ready software is designed to address all these needs in a commercially supported, production-scale software suite.

#### Deploying an AI Factory for Regulated Industries With Northrop Grumman

Northrop Grumman deployed an AI factory—powered by NVIDIA and an ecosystem of partners—to boost productivity and operational efficiency across their workforce of nearly 100,000 employees.

[Watch Northrop Grumman Video (02:14)](https://www.youtube.com/watch?v=WNn8UyOt1IQ)

#### Shaping the future of nations with domestic AI capabilities.

AI is now a matter of national strategy, with governments seeking trusted domestic capabilities that support growth, improve decision-making, protect sensitive data, and reflect local values, languages, and institutions. NVIDIA helps governments build that foundation by pairing the NVIDIA AI platform with initiatives that expand in-country capacity, strengthen innovation ecosystems, and support long-term AI readiness.

[Learn More About National Transformation With AI](https://www.nvidia.com/en-us/industries/government/global-public-sector.md)

Quick Links

[NVIDIA AI Enterprise](https://www.nvidia.com/en-us/data-center/products/ai-enterprise.md)

[NVIDIA for Government](https://www.nvidia.com/en-us/industries/government.md)

## What Are the Characteristics of NVIDIA Government-Ready Software?

### Supply Chain Security for Compliant AI

Carefully vet software and its dependencies for security vulnerabilities and integrity, and ensure they originate from trusted and verifiable sources.

### Secure Software Development Processes

Ensure that third-party, open source, and in-house development adhere to rigorous security processes designed to produce consistently secured software. This includes but is not limited to code scanning, vulnerability remediation, and malware protection prior to initial release.

### Security Hardening for AI Software

Apply complex security configurations aligned with exacting standards like the Defense Information Systems Agency’s Security Technical Implementation Guides (DISA STIGs).

### FIPS Compliance for AI Data Protection

Integrate, configure, and validate Federal Information Processing Standards (FIPS) 140-3 compliant cryptographic modules to ensure all sensitive data, both at rest and in transit, is protected.

## Adherence to Global Compliance Standards

As an independent software provider, NVIDIA has invested in developing government-ready software that adheres to the applicable SDLC controls from FedRAMP High, FISMA High, and equivalent use cases. In adhering to these controls, NVIDIA enables its government-ready software for other global use cases, which require enhanced security and compliance.

NVIDIA provides the mapping report below to demonstrate that its government-ready software adheres to controls of various standards from around the world. NVIDIA has mapped these controls to the corresponding requirements for its government-ready software. This documentation facilitates customer assessments of the software within these various environments.

| Region | Country | Standards Body | Certification / Framework Report |
| --- | --- | --- | --- |
| NAM | Canada | <a href="https://www.cyber.gc.ca/en" target="\_blank">Canadian Centre for Cyber Security (CCCS)</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-cccs-medium" target="\_blank">CCCS</a> |
| NAM | U.S. | <a href="https://www.cisa.gov/topics/cyber-threats-and-advisories/federal-information-security-modernization-act" target="\_blank">Federal Information Security Modernization Act | CISA</a> | <a href="https://docs.nvidia.com/ai-enterprise/planning-resource/ai-software-regulated-environments-white-paper/latest/index.html" target="\_blank">FISMA</a> |
| NAM | U.S. | <a href="https://csrc.nist.gov/" target="\_blank">NIST Computer Security Resource Center</a> | <a href="https://docs.nvidia.com/ai-enterprise/planning-resource/ai-software-regulated-environments-white-paper/latest/index.html" target="\_blank">NIST 800-53</a> |
| NAM | U.S. | <a href="https://www.iso.org/standard/27001" target="\_blank">International Standards Organization</a> | <a href="https://docs.nvidia.com/ai-enterprise/planning-resource/ai-software-regulated-environments-white-paper/latest/index.html" target="\_blank">ISO27001</a> |
| NAM | U.S. | <a href="https://govramp.org/" target="\_blank">GovRAMP</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-nvgovramp" target="\_blank">GovRAMP High</a> |
| EMEA | EU | <a href="https://www.eiopa.europa.eu/digital-operational-resilience-act-dora\_en" target="\_blank">ENISA</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-eu-dora" target="\_blank">DORA</a> |
| EMEA | EU | <a href="https://www.enisa.europa.eu/publications/eucs-cloud-service-scheme" target="\_blank">ENISA</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-eucs" target="\_blank">EUCS</a> |
| EMEA | EU | <a href="https://eur-lex.europa.eu/eli/dir/2022/2555" target="\_blank">ENISA</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-nis2" target="\_blank">NIS2</a> |
| EMEA | Germany | <a href="https://www.bsi.bund.de/EN/Themen/Unternehmen-und-Organisationen/Informationen-und-Empfehlungen/Empfehlungen-nach-Angriffszielen/Cloud-Computing/Kriterienkatalog-C5/kriterienkatalog-c5\_node.html" target="\_blank">BSI (Federal Office for Information Security)</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-c5" target="\_blank">C5</a> |
| EMEA | Spain | <a href="https://ens.ccn.cni.es/en/" target="\_blank">Esquema Nacional de Seguridad</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-spain-ens" target="\_blank">ENS</a> |
| JAPAC | Australia | <a href="https://www.cyber.gov.au/business-government/protecting-devices-systems/assessment-evaluation-programs/irap" target="\_blank">Australian Cyber Security Centre (ACSC)</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-irap" target="\_blank">IRAP</a> |
| JAPAC | Japan | <a href="https://www.ismap.go.jp/csm?id=csm\_ismap\_index" target="\_blank">Information Technology Protection Agency</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-ismap" target="\_blank">ISMAP</a> |
| JAPAC | Korea | <a href="https://www.pipc.go.kr/eng/index.do" target="\_blank">Personal Information Protection Commission</a> | <a href="https://resources.nvidia.com/en-us-govt-ai-software/nvidia-govready-soft-kisms" target="\_blank">KISMS</a> |

### FAQs

## Does government-ready software require a special license?

No. NVIDIA AI Enterprise includes access to government-ready versions of a wide range of AI software and containers. Licensed customers can find this software on NGC by using the [government-ready policy filter in the search](https://catalog.ngc.nvidia.com/search?filters=policy%7CGovernment+ready%7Cgov_ready&orderBy=weightPopularDESC).

## Are there any performance limitations or any other restrictions?

Government-ready software does not differ in performance or functionality from other equivalent software. Instead, this software is built on a hardened, FIPS-compliant base image and undergoes a more rigorous development and maintenance process. More details can be found in the [NVIDIA Enterprise AI Software for Regulated Environments Whitepaper.](https://docs.nvidia.com/ai-enterprise/planning-resource/ai-software-regulated-environments-white-paper/latest/index.html)

## Is government-ready software, on its own, sufficient to achieve full compliance—like FedRAMP authorization?

No. While NVIDIA AI Enterprise software meets the applicable SDLC controls for adoption in FedRAMP High system environments, achieving full system compliance and final authorization cannot be attained by software alone. FedRAMP and other system-level certifications depend on the system owner implementing system-wide controls, including proper customer integration, configuration, data governance, continuous monitoring, and other controls.

## What is the role of the partner ecosystem in achieving a compliant AI solution with government-ready software?

The partner ecosystem is critical. The software, combined with the expertise of partners (including hardware vendors and systems integrators), forms a robust foundation for building auditable, compliant AI solutions. Partners contribute specialized capabilities like infrastructure orchestration, asset management, observability, and SIEM solutions to complement NVIDIA's government-ready software.

## How can I use government-ready software to help run a model of my own choosing?

The government-ready, model-free NVIDIA NIM™ (aka multi-LLM NIM) allows you to bring and deploy your own trusted model (compatible with Hugging Face or NVIDIA TensorRT™-LLM formats) directly into production, within regulated environments. By using this, you are relieved of the burden of building a compliant inference stack and container yourself, as the government-ready NIM provides the necessary, trusted, and comprehensive software stack.

Get Started

## Trusted Full-Stack Deployment for Regulated Industries

[NVIDIA AI Factory for Government](https://docs.nvidia.com/ai-enterprise/planning-resource/ai-factory-reference-design-for-government-white-paper/latest/index.html) reference design provides guidance for full-stack deployment in public sector and highly regulated industries. NVIDIA provides the trusted infrastructure powering these efforts, driving impact across all industries.

[Download Design Guide](https://docs.nvidia.com/ai-enterprise/planning-resource/ai-factory-reference-design-for-government-white-paper/latest/index.html)

## News

Load More

## Related Use Cases