Guidance on the Protection of Personal Identifiable Information U S. Department of Labor


FedRAMP is split into three Impact levels and PII types differ by level. Many Low Impact systems for example might not contain PII outside of login credentials while High Impact systems may handle data like PHI. Emailing PII is prohibited under FedRAMP unless it is encrypted.

