When the Department of Defense announced the suspension of CMMC Phase II implementation, many contractors breathed a sigh of relief.
When the Department of Defense announced the suspension of CMMC Phase II implementation, many contractors breathed a sigh of relief.
When defense contractors delay their initial assessments, they often fall victim to predictable, costly complications.
The Department of War has announced the immediate suspension of CMMC Phase II requirements and launched a 60-day review of the program.
Understanding the anatomy of a CMMC assessment is the first step toward building a sustainable compliance routine.
Cybersecurity compliance is no longer just a defensive IT measure, it is now the support system for your government’s contract pipeline.
If you’re a subcontractor working with the DoD, you’ve probably heard about CMMC. Here are the most common mistakes we’re seeing and why they matter.
As we move closer to November, more contracts are expected to include CMMC requirements. That means subcontractors will need to show they meet a specific level or risk being left out.
Learn why CIS IG2 may be a better cybersecurity framework than NIST CSF 2.0 for small to midsize businesses.
CMMC Memo January 17, 2025 Since the publication of CFR 32, which put CMMC in place for all Defense Contracts, one of the main questions has been regarding CMMC level 2 and self-attestation vs third party assessment and when each applies. Recently, the DoD has issued the attached memo that sheds some light on the subject. […]
CMMC Final Rule Is Here-What You Need To Know CMMC is finally here! It’s been quite a journey since CMMC 1.0 was first announced back in January 2020. Now, almost five years later, there have been many important changes, and we’ve kept you updated along the way. As we get closer to the official rollout, […]
Becoming compliant with Cybersecurity Maturity Model Certification (CMMC) is expected to become a requirement in March of 2025 for government contractors handling Federal Contract Information (FCI) or Controlled Unclassified Information (CUI) / Covered Defense Information (CDI). Attaining this certification, designed to enhance cybersecurity standards within the Defense Industrial Base, can be a complex and challenging process. […]
The Cybersecurity Maturity Model Certification (CMMC) 2.0 is a comprehensive framework that aims to protect the controlled unclassified information (CUI) of the Defense Industrial Base (DIB) from frequent and increasingly complex cyberattacks. Failure to meet the controls within the CMMC 2.0 standard and gain a certification can eliminate your ability as a firm to be […]