News & Analysis as of

DFARS Department of Defense (DOD) Risk Management

Holland & Hart LLP

A Defense Contractor's Guide to CMMC, DFARS, and FAR Requirements

Holland & Hart LLP on

Cyber-attacks against America’s defense industrial base are becoming more sophisticated and more frequent. To reduce the risk of sensitive national security information landing in the hands of bad actors, the Department of...more

Burr & Forman

Modernizing Defense Acquisition and Spurring Innovation in the Defense Industrial Base

Burr & Forman on

On April 9, 2025, President Donald J. Trump signed an Executive Order, titled “Modernizing Defense Acquisition and Spurring Innovation in the Defense Industrial Base.” This order outlines a broad and ambitious reform effort...more

Bradley Arant Boult Cummings LLP

GAO Sustains Protest Over Agency’s Failure to Conduct Price Risk Analysis Under DFARS 252.204-7024

In the recent MicroTechnologies LLC and SMS Data Products Group, Inc. decisions, the Government Accountability Office (GAO) sustained protests challenging the Agency’s failure to perform the required price risk analysis under...more

Dickinson Wright

The Air Force “Contractor Responsibility Watch List” De Facto Debarment for Space Companies?

Dickinson Wright on

The Air Force is showing increased interest in using its Contractor Responsibility Watch List (CRWL). This is for companies that, in the agency’s view, should be blocked from further space projects. ...more

McCarter & English Blog: Government Contracts...

Tariffs, Leprechauns, and Contract Gold: Navigating the Hidden Costs of Trade Policies

As St. Patrick’s Day approaches, many of us are on the lookout for four-leaf clovers, a pot of gold, or perhaps even a mischievous leprechaun guarding his treasure. But in the world of government contracting, the real...more

Morris, Manning & Martin, LLP

New CMMC 2.0 Guidance Issued

The Department of Defense (DoD) recently issued a memo titled, "Implementing the Cybersecurity Maturity Model Certification (CMMC) Program: Guidance for Determining Appropriate CMMC Compliance Assessment Levels and Process...more

Morrison & Foerster LLP - Government...

Proposed Regulation on Controlled Unclassified Information Standardizes Process for CUI Identification and Handling Across Federal...

The Federal Acquisition Regulation (FAR) Council issued its long awaited proposed rule on Controlled Unclassified Information (CUI) on January 15, 2025. The proposed rule establishes a common form to be used by all federal...more

Jenner & Block

Client Alert: FAR Council Issues Long-Awaited Proposed Rule to Implement Controlled Unclassified Information Program

Jenner & Block on

On January 15, 2025, the Department of Defense (DOD), General Services Administration (GSA), and the National Aeronautics and Space Administration (NASA) (collectively, “the FAR Council”) issued a long-anticipated proposed...more

McCarter & English Blog: Government Contracts...

They Did It. They Really Did It! The Arrival of the FAR CUI Proposed Rule

After years of anticipation, the Federal Acquisition Regulation (FAR) Council has announced the arrival of its proposed rule to enhance the safeguarding of Controlled Unclassified Information (CUI) in federal contracts (the...more

Sheppard Mullin Richter & Hampton LLP

Governmental Practice Cybersecurity and Data Protection: 2024 Recap & 2025 Forecast Alert

To kick off the New Year (and as is now tradition, since we put out a similar Recap & Forecast last year), Sheppard Mullin’s Governmental Practice Cybersecurity & Data Protection Team has prepared a cybersecurity-focused 2024...more

Wiley Rein LLP

Updates on Cybersecurity Requirements for Government Contractors

Wiley Rein LLP on

Part of the Biden Administration’s push to enhance U.S. cybersecurity capabilities has focused on imposing new requirements on government contractors. The 2023 National Cybersecurity Strategy suggested, for example, that...more

Troutman Pepper Locke

Federal Cybersecurity Requirements Ought Not Be Ignored by Contractors

Troutman Pepper Locke on

Since 2016, the federal government has implemented numerous procurement regulations and associated contract clauses to address cybersecurity by requiring contractors to adopt various controls and standards to protect...more

McCarter & English Blog: Government Contracts...

DOJ Went Down to Georgia: Lessons Learned from Recent Cybersecurity Enforcement Actions

Some might say there’s little difference between dealing with the devil and being a federal contractor. And for the unwary or unprepared, that may not be far off. Federal contracting comes with a litany of “fine print” that...more

Fox Rothschild LLP

The Future of DOD Cybersecurity Is Here – The CMMC 2.0 Proposed Rule

Fox Rothschild LLP on

On August 15, 2024, the Department of Defense (DOD) announced the much-anticipated Proposed Rule that would amend the Defense Federal Acquisition Regulation Supplement (DFARS) to include Cybersecurity Maturity Model...more

Akin Gump Strauss Hauer & Feld LLP

New Cybersecurity Controls for Government Contractors: NIST Revises SP 800-171

In May, the National Institute of Standards and Technology (NIST) issued updated recommendations for security controls for controlled unclassified information (CUI) that is processed, stored or transmitted by nonfederal...more

McCarter & English Blog: Government Contracts...

NIST SP 800-171 Revision 3 Goes Final: Who’s Down with ODP?

On May 14, 2024, the National Institute of Standards and Technology (NIST) dropped the third remix…er, revision…of its Special Publication (SP) 800-171, “Protecting Controlled Unclassified Information in Nonfederal Systems...more

McDermott Will & Emery

CMMC Level 3: Strict Scoping and Expansive Requirements

McDermott Will & Emery on

In this series of articles, we explore the different certification requirements of CMMC Levels 1, 2 and 3; the impact on contractors and external service providers; and proposed next steps... On December 26, 2023, the US...more

McCarter & English Blog: Government Contracts...

DoD’s Proposed CMMC Rule: Groundhog Day… or a Final Rule in the Works?

On December 26, 2023, the Department of Defense (“DoD”) belatedly gifted defense contractors and subcontractors a Proposed Rule on the Cybersecurity Maturity Model Certification (“CMMC”) Program. DoD also released eight CMMC...more

McDermott Will & Emery

CMMC Level 2: The Good, The Bad and The Ugly

In this series of articles, we explore the different certification requirements of CMMC Levels 1, 2 and 3; the impact on contractors and external service providers; and proposed next steps... On December 26, 2023, the US...more

Morrison & Foerster LLP - Government...

An Overview Of The Defense Department’s Long-awaited Proposed Regulations For Its Cybersecurity Maturity Model Certification...

The U.S. Department of Defense released a special holiday treat for government contractors and subcontractors last week in the form of long-promised proposed regulations for its Cybersecurity Maturity Model Certification...more

Alston & Bird

Penn State University Hit With False Claims Act Suit for Alleged Cyber Security Deficiencies

Alston & Bird on

On September 1, 2023, the U.S. District Court for the Eastern District of Pennsylvania unsealed a qui tam False Claims Act (“FCA”) lawsuit (originally filed on October 5, 2022) alleging Penn State University failed to provide...more

Wiley Rein LLP

Cybersecurity Updates: What We’ve Learned About CMMC 2.0 So Far

Wiley Rein LLP on

Last November, the U.S. Department of Defense (DOD) announced sweeping changes to the Cybersecurity Maturity Model Certification (CMMC) program in a new “version 2.0.” Although we are still awaiting the interim regulations,...more

NAVEX

CMMC Is Coming: How Government Contractors Can Prepare

NAVEX on

People like to say that cybersecurity threats are constantly evolving. So perhaps it’s fitting that cybersecurity compliance is undergoing a significant evolution of its own this year, too. That evolution is the arrival of...more

Stinson - Government Contracting Matters

Continuing Developments on the Supply Chain Front

Recent weeks have brought news on multiple fronts regarding supply chain risks and actions in response thereto: Commerce ICTS Regulations to Go Into Effect; Chinese ICTS Companies, Products and Services in the...more

Hogan Lovells

ADG Insights | NIST set to "enhance" contractor cybersecurity duties

Hogan Lovells on

Through ADG Insights, we share with you the top legal and political issues affecting the aerospace, defense, and government services (ADG) industry. Our ADG industry team monitors the latest developments to help our clients...more

27 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide