News & Analysis as of

Data Security Federal Acquisition Regulations (FAR)

Sheppard Mullin Richter & Hampton LLP

Governmental Practice Cybersecurity and Data Protection - 2023 Recap & 2024 Forecast Alert

To kick off the New Year, Sheppard Mullin’s Governmental Practice Cybersecurity & Data Protection Team has prepared a cybersecurity-focused 2023 Recap (including links to all of the resources the team has put out over the...more

PilieroMazza PLLC

Protecting Our Nation’s Data, Part 3: Are Goods or Services Subject to FASCSA Orders?

PilieroMazza PLLC on

Substantive cybersecurity amendments to the Federal Acquisition Regulation (FAR) are underway, significantly altering the duties and obligations of federal government contractors both prior to award and during contract...more

PilieroMazza PLLC

Protecting Our Nation’s Data, Part 2: Implementing Cyber Threat Incident Reporting and Information Sharing

PilieroMazza PLLC on

In October 2023, the federal government released a  Proposed Rule aimed at incorporating new cybersecurity reporting requirements into the Federal Acquisition Regulation (FAR). In this second installment of PilieroMazza’s...more

PilieroMazza PLLC

Protecting Our Nation’s Data, Part 1: Cybersecurity Standardization Requirements for Unclassified Federal Information Systems

PilieroMazza PLLC on

New standardized cybersecurity compliance requirements are inbound. In early October 2023, the Federal Acquisition Regulation (FAR) Council issued a proposed rule (Proposed Rule) to standardize cybersecurity requirements...more

Wilson Sonsini Goodrich & Rosati

New Proposed Rules Published for Cyber Incident Reporting and Cybersecurity Requirements Will Have Major Impacts on Federal...

Reflective of the Government’s increasing focus on cybersecurity, on October 3, 2023, the Federal Acquisition Regulation Council (FAR Council) released two new proposed rules that will have major impacts on federal...more

Sheppard Mullin Richter & Hampton LLP

Two New Cybersecurity Proposed Rules Mean Big Changes for Federal Contractors

On October 3, 2023, the FAR Council released two long-awaited proposed rules for federal contractor cybersecurity stemming from the Biden Administration’s Cybersecurity Executive Order from May 2021 (Executive Order 14028)....more

PilieroMazza PLLC

DHS Updates Cybersecurity Regulations Clarifying Old and New Obligations

PilieroMazza PLLC on

The Department of Homeland Security (DHS) recently released a final rule (Final Rule), effective July 21, 2023, updating the Homeland Security Acquisition Regulation (HSAR) to include cybersecurity provisions aimed at...more

Jackson Lewis P.C.

Navigating the Federal Contractor TikTok Ban

Jackson Lewis P.C. on

A new Federal Acquisition Regulation (FAR 52.204-27) enacted in June 2023 requires companies with covered contracts to ban the use of TikTok and other apps developed by ByteDance Limited on employee devices, including...more

Bass, Berry & Sims PLC

DHS Publishes Long-Awaited Final Rule on Controlled Unclassified Information

Bass, Berry & Sims PLC on

On June 21, the Department of Homeland Security (DHS) published a final rule to implement security measures that safeguard controlled unclassified information (CUI) from unauthorized access and disclosure and improve incident...more

PilieroMazza PLLC

Time Runs Out on TikTok: New FAR Clause Bans TikTok on Federal Contractor Devices  

PilieroMazza PLLC on

The federal government recently issued an interim rule, effective immediately, prohibiting the presence or use of the TikTok application in the performance of a contract. This rule continues the government’s actions against...more

Sheppard Mullin Richter & Hampton LLP

NIST Releases Initial Public Draft of NIST SP 800-171, Revision 3 for Protection of Sensitive Government Information

The National Institute of Standards and Technology (NIST) has released an initial public draft of NIST SP 800-171, Revision 3, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations. Compliance...more

PilieroMazza PLLC

GSA Technology Contractors: 4 Requirements to Ensure Only Approved Software Is Used

PilieroMazza PLLC on

Almost two years ago, Executive Order 14028 – Improving the Nation’s Cybersecurity (EO) was issued requiring a host of actions be taken by the Federal Acquisition Regulation (FAR) Council, the National Institute of Standards...more

Sheppard Mullin Richter & Hampton LLP

Do Business With the Federal Government? Here’s a 2022 Cybersecurity Recap: Part Four - Cybersecurity Federal Acquisition...

The federal government has continued its efforts to fulfill the requirements set forth in Executive Order 14028, Improving the Nation’s Cybersecurity. For companies that do business with the Federal government, beyond looking...more

Sheppard Mullin Richter & Hampton LLP

Do Business With the Federal Government? Here’s a 2022 Cybersecurity Recap: Part Three - Secure Software Development Attestation...

Yesterday we continued our series... with the Office of Management and Budget’s September 2022 memorandum requiring federal agencies to only use software from software producers that attest compliance with secure software...more

Sheppard Mullin Richter & Hampton LLP

Do Business With the Federal Government? Here’s a 2022 Cybersecurity Recap: Part Two – NIST SP 800-171, Revision 3

In this second in our series, we look at the long awaited update to NIST SP 800-171, “Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations,” which is expected to be released in late spring...more

Sheppard Mullin Richter & Hampton LLP

2021 Cybersecurity Recap for Government Contractors (and What to Expect in 2022) – Part 1 of 4: Biden’s Cybersecurity Executive...

As 2021 draws to a close, we wanted to share a recap of some of the most important cybersecurity developments we covered this past year along with some suggestions on what companies (particularly those that do business with...more

PilieroMazza PLLC

GSA Polaris and the New SCRM Requirements: Supply Chain Risk May Put Your Proposal at Risk

PilieroMazza PLLC on

With the release of GSA Polaris around the corner, one looming issue remains: Contractors may lose out on an award or, perhaps worse, they may find themselves without access to task orders after granted a Polaris award due to...more

Jackson Lewis P.C.

Federal Contractors: Have You Done Your Privacy Training?

Jackson Lewis P.C. on

Federal contractors know all too well the list of annual requirements and obligations can seem overwhelming at times. One that may get overlooked by some is annual training requirements. A fairly new such training went into...more

Stinson - Government Contracting Matters

And Still More Guidance Comes Out on Section 889 Implementation

The saga of what is prohibited and what is covered by an exception to the National Defense Authorization Act, FY 2019, Section 889 prohibition on the use or delivery of covered telecommunications and video surveillance...more

Stinson - Government Contracting Matters

Another (Minor) Step in the Evolution of Section 889(a)(1)(B) Obligations

In the latest development relating to the implementation of Section 889 of the National Defense Authorization Act for FY 2019, a second interim rule was issued on August 27, 2020. We previously reported on the Federal...more

Troutman Pepper

Government Contracts Cyber Café: 2019 Wrap Up and Privacy, CMMC, and GRC in 2020

Troutman Pepper on

The Government Contracts Cyber Café provides coaching, training and analysis to help you work through the technical, legal, accounting and other requirements confronting your organization, with the goal of helping you achieve...more

Stinson - Government Contracting Matters

Securing the Supply Chain – CMMC Draft Version 0.7 Issued

Last month we reported on the Department of Defense’s (DoD’s) issuance of Version 0.6 of its draft Cybersecurity Maturity Model Certification (CMMC) standard. That draft included DoD updates and revisions to CMMC’s domains,...more

Sheppard Mullin Richter & Hampton LLP

“Internet of Things” Guidance to be Added to Cybersecurity Requirements for Agencies and Federal Contractors

In 2019, cybersecurity has become top-of-mind for most federal government contractors and agencies that share sensitive information. In addition to updated Department of Defense guidance and procedures for evaluating...more

PilieroMazza PLLC

Cybersecurity's Increasing Impact on Prime Contract and Subcontract Awards

PilieroMazza PLLC on

Since last year, I have been writing about the increasing impact of cybersecurity on contract awards. DoD has issued guidance on how it will evaluate system security plans, and it has indicated that, along with cost,...more

Akin Gump Strauss Hauer & Feld LLP

DOD and Other Agencies Seek to Enhance Contractors’ Cyber and Supply Chain Security

The Department of Defense (DOD) and its component services and agencies are taking several independent steps to assess and enhance their cyber and supply chain security that will directly or indirectly affect DOD contractors...more

37 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide