Cybersecurity

A person hugging a computer with a flag that says Help

What to Do if Your Prime is Asking You Demonstrate Compliance with DFARS 252.204-7012 and NIST 800-171?

Lockheed Martin and other prime contractors are contacting their suppliers and requesting a security status update; in many cases requesting a demonstration of compliance before the DOD November 30th deadline.  If you’ve received this request, you’re not alone. We’re helping

What to Do if Your Prime is Asking You Demonstrate Compliance with DFARS 252.204-7012 and NIST 800-171? Read More »

A blue transparent gavel and block graphic overlaid with code

DFARS Interim Rule and Emergency Justification FAQ: Everything You Need to Know

It’s been quite a week. The DOD released an interim rule to “amend the Defense Federal Acquisition Regulation Supplement (DFARS) to implement a DOD Assessment Methodology and Cybersecurity Maturity Model Certification framework in order to assess contractor implementation of cybersecurity

DFARS Interim Rule and Emergency Justification FAQ: Everything You Need to Know Read More »

An aerial view of the pentagon with a computer code overlay

DOD Released a New Interim Final DFARS Rule Covering CMMC and NIST 800-171

Defense Federal Acquisition Regulation Supplement: Assessing Contractor Implementation of Cybersecurity Requirements (DFARS Case 2019-D041) is here. Often referred to as CMMC this long-awaited and hotly debated Interim Rule harmonizes legacy (DFARS clause 252.204-7012) and future (CMMC) requirements with the following

DOD Released a New Interim Final DFARS Rule Covering CMMC and NIST 800-171 Read More »

The word 'Update' in front of a pair of hands typing on a laptop

Calling Industries Bluff: The DOD Emergency Action on NIST 800-171 Compliance

The Department of Defense (DOD) has instituted an emergency action, possibly to confirm what is widely already known on cybersecurity compliance among the defense industrial base (DIB). Self-certification for defense contractors has enabled “barely there” cybersecurity unless you are one

Calling Industries Bluff: The DOD Emergency Action on NIST 800-171 Compliance Read More »

A person's hand touching a lock graphic that connects to other lock graphics and app icon graphics

Is Your MSSP Your Weakest Link in CMMC Certification?

Background In 2019, the Department of Defense (DOD) officially announced the introduction of a Cybersecurity Maturity Model Certification (CMMC). This unique maturity model is designed to improve the cybersecurity regarding Controlled Unclassified Information (CUI) within supply chains, especially as it applies to the Defense Industrial

Is Your MSSP Your Weakest Link in CMMC Certification? Read More »