News & Analysis as of

Defense Contracts Cybersecurity Maturity Model Certification (CMMC)

BakerHostetler

CMMC Barrels Closer to Implementation with Latest Proposed Rule Establishing DFARS Contract Clauses

BakerHostetler on

Cybersecurity Maturity Model Certification (CMMC) is coming — and now appears to be coming faster than many defense contractors believed. In the latest signal of CMMC’s forward momentum, the Department of Defense (DoD) issued...more

McCarter & English Blog: Government Contracts...

CMMC and DFARS 252.204-7021—Is the Sequel Better than the Original?

Sequels are rarely better than the films that precede them, and yet, sometimes a story is just too compelling to be limited to just one film. At the tail end of a summer full of Hollywood sequels, the Department of Defense...more

Woods Rogers

DOD’s CMMC 2.0 Program Takes Step Forward with Release of Contract Rule Proposal

Woods Rogers on

The United States Department of Defense (DoD) took another big step on the path to instituting its highly anticipated Cybersecurity Maturity Model Certification 2.0 program (CMMC 2.0). Once finalized, CMMC 2.0 will establish...more

PilieroMazza PLLC

Win or Lose: Using CMMC 2.0 Proposed Rule to Position Yourself for DOD Contracts

PilieroMazza PLLC on

The Cybersecurity Maturity Model Certification (CMMC) Program has been a headache for many defense contractors since the idea was first introduced in 2019. The program seeks to protect unclassified information, including...more

Skadden, Arps, Slate, Meagher & Flom LLP

How Defense Contractors Can Prepare Now for CMMC Implementation

The Department of Defense (DoD) is currently reviewing and adjudicating the public comments received in response to its proposed regulations implementing its Cybersecurity Maturity Model Certification 2.0 program (CMMC)....more

Wiley Rein LLP

Cybersecurity Updates: NIST Publishes SP 800-171 Revision 3. What Changed, and What Comes Next?

Wiley Rein LLP on

In May 2024, the National Institute of Standards and Technology (NIST) published Special Publication 800-171 Rev 3, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations, and the accompanying...more

Dunlap Bennett & Ludwig PLLC

CMMC 2.0: Level One: A Self-Assessment

As we promised a trilogy in our earlier 2024 CMMC Blog – “Get Ahead of Compliance: The Proposed Rule for the Cybersecurity Maturity Model Certification (CMMC 2.0) Is Out!” – we continue our series with a discussion of each...more

Holland & Knight LLP

Foundational Cybersecurity Standards for Contractors Updated

Holland & Knight LLP on

The National Institute of Standards and Technology (NIST) released the third revision of its Special Publication (SP) 800-171, "Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations." This...more

McCarter & English Blog: Government Contracts...

DoD’s Proposed CMMC Rule: Groundhog Day… or a Final Rule in the Works?

On December 26, 2023, the Department of Defense (“DoD”) belatedly gifted defense contractors and subcontractors a Proposed Rule on the Cybersecurity Maturity Model Certification (“CMMC”) Program. DoD also released eight CMMC...more

Goodwin

CMMC 2.0: Defense Contractors Get Ready

Goodwin on

The US Department of Defense (DoD) has issued a proposed rule to implement its long-awaited Cybersecurity Maturity Model Certification program (CMMC 2.0). This proposed rule — released on December 26, 2023, and published in...more

Sheppard Mullin Richter & Hampton LLP

New Year, New Rules: The CMMC Proposed Rule is Here

Well, the wait is over. Just as 2023 came to a close, on December 26, 2023, the Department of Defense (“DoD”) published the much-anticipated Proposed Rule for the DoD’s Cybersecurity Maturity Model Certification (“CMMC”)...more

Bass, Berry & Sims PLC

Department of Defense Publishes Long-Awaited CMMC Proposed Rule

On December 26, the Department of Defense (DoD) published its long-awaited Cybersecurity Maturity Model Certification (CMMC) Program proposed rule, which places comprehensive cybersecurity and information security...more

Venable LLP

The New CMMC Rule: FAQs for Federal Contractors and Subcontractors

Venable LLP on

The Department of Defense (DoD) delivered its proposed Cybersecurity Maturity Model Certification Program rule (CMMC) the day after Christmas this year, including several related guidance documents (listed here). The proposed...more

Holland & Knight LLP

Department of Defense Issues Report Critical of Contractor Cybersecurity Compliance

Holland & Knight LLP on

The Inspector General (IG) for the U.S. Department of Defense (DOD) issued a report critical of recent efforts by contractors to protect Controlled Unclassified Information (CUI). The report, which followed the DOD IG's...more

Holland & Knight LLP

Podcast - The State of Contractor Cybersecurity with Katie Arrington

Holland & Knight LLP on

In this episode of "Regulatory Phishing," former U.S. Department of Defense Chief Information Security Officer (CISO) Katie Arrington joins Government Contracts and Cybersecurity attorney Eric Crusius to discuss the state of...more

Holland & Knight LLP

What Do the Newly Released CMMC 2.1 Documents Mean?

Holland & Knight LLP on

In this episode of "Regulatory Phishing," government contracts and cybersecurity attorney Eric Crusius examines the newly released Cybersecurity Maturity Model Certification (CMMC) program documents. Mr. Crusius breaks down...more

Holland & Knight LLP

Podcast - Third-Party Assessments and NIST SP 800-171

Holland & Knight LLP on

In this episode of "Regulatory Phishing," Eric Crusius is joined by Tom Tollerton, a partner with FORVIS, a Certified Third-Party Assessment Organization (C3PAO). In this episode, Eric and Tom discuss the role of the C3PAO in...more

Holland & Knight LLP

Third-Party Assessments and NIST SP 800-171

Holland & Knight LLP on

In this episode of "Regulatory Phishing," Eric Crusius is joined by Tom Tollerton, a partner with FORVIS, a Certified Third-Party Assessment Organization (C3PAO). In this episode, Eric and Tom discuss the role of the C3PAO in...more

Holland & Knight LLP

Third-Party Cybersecurity Assessments Potentially Coming Soon to Department of Defense

Holland & Knight LLP on

Contractors that do business with the U.S. Department of Defense (DoD) and handle Controlled Unclassified Information (CUI) have been awaiting the issuance of a rule implementing the Cybersecurity Maturity Model Certification...more

PilieroMazza PLLC

Get Ready! Enhanced Cybersecurity Standards for Federal Contractors Coming Soon

PilieroMazza PLLC on

The Federal Acquisition Regulatory Council (FAR Council) announced it was preparing a proposed rule to standardize cybersecurity requirements for unclassified Federal Information Systems across federal agencies in accordance...more

Whitcomb Selinsky, PC

CMMC Program Enhances DOD Contractors’ Cybersecurity

Whitcomb Selinsky, PC on

The Cybersecurity Maturity Model Certification (CMMC) program, first announced in 2019 by the Department of Defense (DoD), aims to enhance the cybersecurity profile of DoD contractors. The original iteration of DoD’s...more

Kaufman & Canoles

Government Contracts & Defense Industries Client Alert – Making Sense of the DOJ Cyber-Fraud Initiative and What it Means For...

Kaufman & Canoles on

The Department of Justice recently announced the launch of a Civil Cyber-Fraud Initiative, which has direct implications for government contractors and serves as a warning that slack cybersecurity practices will be a target...more

Bass, Berry & Sims PLC

DoD Scraps CMMC 1.0 for CMMC 2.0

Bass, Berry & Sims PLC on

For nearly two years, we have been reporting on this blog about the Department of Defense’s (DoD) Cybersecurity Maturity Model Certification (CMMC) program. CMMC is a training, certification, and third-party assessment...more

Holland & Knight LLP

CMMC 2.0 Simplifies Requirements But Raises Risks for Government Contractors

Holland & Knight LLP on

With the announcement of a revamped Cybersecurity Maturity Model Certification (known as CMMC 2.0),1 for the third time in five years, the U.S. Department of Defense (DOD) announced new, comprehensive cybersecurity standards...more

Foley & Lardner LLP

CMMC 2.0 Brings Increased Flexibility — and Increased Risks — for Contractors

Foley & Lardner LLP on

Defense contractors and their subcontractors and supply chains that have been preparing for the challenge of complying with the Cybersecurity Maturity Model Certification (CMMC) recently received some welcome news from the...more

47 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide