Latest Posts › Cybersecurity

Share:

DoD Announces Cybersecurity Maturity Model Certification 2.0 Final Rule (Finally!)

After numerous fits and starts, on October 14, the Department of Defense (DoD) published a final rule implementing the Cybersecurity Maturity Model Certification (CMMC) program. Borne from documented deficiencies in the...more

DoD Publishes Proposed Rule to Amend DFARS Provisions Related to the CMMC 2.0 Program

On August 15, the Department of Defense (DoD) published a proposed rule to amend the Defense Federal Acquisition Regulation Supplement (DFARS) to incorporate contractual requirements related to the proposed Cybersecurity...more

Department of Defense Issues Class Deviation Delaying Application of NIST SP 800-171, Revision 3

On May 2, the Department of Defense (DOD) issued a class deviation to DFARS 252.204-7012 “to provide industry time for a more deliberate transition upon the forthcoming release of [National Institute of Standards and...more

Final Rule Expands Defense Industrial Base Cybersecurity Program Eligibility Criteria

On March 12, the Department of Defense (DOD) promulgated a final rule that expands the eligibility criteria for the Defense Industrial Base (DIB) Cybersecurity Program, a voluntary initiative aimed at bolstering the DIB’s...more

Department of Defense Publishes Long-Awaited CMMC Proposed Rule

On December 26, the Department of Defense (DoD) published its long-awaited Cybersecurity Maturity Model Certification (CMMC) Program proposed rule, which places comprehensive cybersecurity and information security...more

DoD Scraps CMMC 1.0 for CMMC 2.0

For nearly two years, we have been reporting on this blog about the Department of Defense’s (DoD) Cybersecurity Maturity Model Certification (CMMC) program. CMMC is a training, certification, and third-party assessment...more

Federal Circuit Confirms DoD Contractor’s Expanded Restrictions on Non-Government Parties Rights in Data

Last month, the U.S. Court of Appeals for the Federal Circuit’s (Federal Circuit) opinion in The Boeing Co. v. Secretary of the Air Force shed additional light on the technical data rights of contractors under defense...more

It’s Here! DoD Issues Interim Rule Launching Two Cyber Assessment Programs

For over a year, we have been discussing the Department of Defense’s (DoD) eventual implementation of a Cybersecurity Maturity Model Certification (CMMC) program for Defense contractors, most recently during a webinar in...more

Covering the Basics: CISA Announces Cybersecurity Essentials for Small Businesses

In line with recent actions taken across the government to enhance the resilience of the nation’s cybersecurity apparatus, the Cybersecurity Infrastructure Security Agency (CISA) recently released a set of best practices for...more

DoD’s Recently Released Draft Framework Signals Significant Changes in Cybersecurity Requirements

A major shift in cybersecurity requirements for Department of Defense (DoD) contractors is about to come into effect—earlier this month the DoD released for public comment the long-anticipated Version 0.4 of the draft...more

Vulnerable Systems: Contractor Protection of Controlled Unclassified Information at Risk

The Department of Defense (DoD) Inspector General recently issued a report summarizing the findings of an audit into the protection of Controlled Unclassified Information (CUI) on contractor networks. Based on an in-depth...more

Final Draft of NIST SP 800-171A Still Open for Comments

The National Institute of Standards and Technology (NIST) is responsible for developing information security standards and guidelines—including minimum requirements for federal information systems. At the end of February,...more

General Services Administration Announces Plans to Update Cybersecurity Requirements for Contractors

In mid-January, the General Services Administration (GSA) released their Semiannual Regulation Agenda. Within this agenda, GSA announced plans to update requirements in the General Services Administration Acquisition...more

CFIUS Continues Focus on Information Security, Blocks Chinese Acquisition of MoneyGram

- MoneyGram and Ant Financial mutually terminate $1.2 billion proposed merger - CFIUS’s concerns focused on cyber and information security - Scrutiny of buyers’ information security processes is likely to increase On...more

April Showers Bring Mass Mods: New GSA Schedule Refresh and Mass Modification

Later this month, the GSA will issue a refresh to all GSA Multiple Award Schedules (MAS) to incorporate new provisions and clause updates. Even if you are already a GSA Schedule holder, keep reading – a bilateral modification...more

15 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide