February of 2020 seems like a long time ago, for many reasons. But that was when the official version of the Cybersecurity Maturity Model Certification (CMMC) standards were released. Recently, the DoD issued an interim rule that will update the DFARS to implement the assessment methodology and CMMC framework for DoD procurements as well as add a new requirement for cybersecurity assessment under the NIST SP 800-171 framework. Here are some of the key points.Continue reading
The framework for the DOD’s Cybersecurity Maturity Model Certification (CMMC) process continues to move forward. Here’s an update on what’s currently happening with the CMMC that includes a few more details the DOD and the independent CMMC Accreditation Body have recently released about the nuts and bolts of the certification process.Continue reading
CMMC continues to be in the news as the government ramps up the process to start requiring contractors to be compliant with the Cybersecurity Maturity Model Certification. In this video, I remind contractors why CMMC is so important.
CMMC has been a hot topic for federal government contractors of late, for good reason: once CMMC is rolled out, contractors under a particular Defense Department procurement must meet the applicable cybersecurity level, or they’ll be considered ineligible.
But in case you’re still wondering what CMMC is and why it matters, let’s take a closer look. Here are five things you should know about the Department of Defense’s new Cybersecurity Maturity Model Certification (“CMMC”).Continue reading
Well, if you’d been waiting for DOD’s Cybersecurity Maturity Model Certification (CMMC) standards to stop being “draft” before you took a look at them, the wait is over! Version 1.0 (no longer marked draft) was released last week. DoD has indicated it will begin using CMMC requirements in requests for information starting June 2020.
Let’s take a look at some of the highlights from the recent release.Continue reading