News & Analysis as of

National Institute of Standards and Technology Federal Acquisition Regulations (FAR)

BakerHostetler

CMMC Barrels Closer to Implementation with Latest Proposed Rule Establishing DFARS Contract Clauses

BakerHostetler on

Cybersecurity Maturity Model Certification (CMMC) is coming — and now appears to be coming faster than many defense contractors believed. In the latest signal of CMMC’s forward momentum, the Department of Defense (DoD) issued...more

Wiley Rein LLP

CMMC 2.0 Update: DOD Proposed Rule Introduces Standard Terms for Contracts Subject to CMMC 2.0, Including Yet Another 72-Hour...

Wiley Rein LLP on

WHAT: The U.S. Department of Defense (DOD) just published the second of two proposed rules setting forth key requirements for its long-anticipated Cybersecurity Maturity Model Certification (CMMC) 2.0 program. The earlier...more

PilieroMazza PLLC

Win or Lose: Using CMMC 2.0 Proposed Rule to Position Yourself for DOD Contracts

PilieroMazza PLLC on

The Cybersecurity Maturity Model Certification (CMMC) Program has been a headache for many defense contractors since the idea was first introduced in 2019. The program seeks to protect unclassified information, including...more

Wiley Rein LLP

Policy Patches: An Update on Software Security Regulation

Wiley Rein LLP on

So far, 2024 has been another very busy year for U.S. cybersecurity regulation. Among the top priorities has been software security, as we previewed early this year. Companies that sell software to the federal government or...more

American Conference Institute (ACI)

CMMC 2.0 and FOCI Assessments: Preparing for What Lies Ahead

Defense contractors and subcontractors that handle Controlled Unclassified Information (CUI) and do not have robust information-security system controls in place better get their house in order now if they want to do business...more

Dunlap Bennett & Ludwig PLLC

CMMC 2.0: Level One: A Self-Assessment

As we promised a trilogy in our earlier 2024 CMMC Blog – “Get Ahead of Compliance: The Proposed Rule for the Cybersecurity Maturity Model Certification (CMMC 2.0) Is Out!” – we continue our series with a discussion of each...more

McCarter & English Blog: Government Contracts...

NIST SP 800-171 Revision 3 Goes Final: Who’s Down with ODP?

On May 14, 2024, the National Institute of Standards and Technology (NIST) dropped the third remix…er, revision…of its Special Publication (SP) 800-171, “Protecting Controlled Unclassified Information in Nonfederal Systems...more

Wiley Rein LLP

As Cyber Regulators Rush Toward New Rules, Shifting Foundations May Complicate Compliance

Wiley Rein LLP on

These days, cyber regulators are in a hurry. Commentators have observed, the “federal government is quietly directing a seismic shift in the economy” with new mandates. Ann Neuberger, Deputy National Security Advisor for...more

Wiley Rein LLP

What Does CISA’s Secure Software Development Form Mean for Contractors?

Wiley Rein LLP on

WHAT: The U.S. Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency (CISA) published the final version of its Secure Software Development Attestation Common Form (Common Form) and announced...more

Oberheiden P.C.

Defense Department Looks to Update DFARS Cybersecurity Compliance Requirements

Oberheiden P.C. on

Over the holidays, the U.S. Department of Defense (DoD) issued proposed rules for updating its Cybersecurity Maturity Model Certification (CMMC) program from its existing Defense Acquisition Regulatory Supplement (DFARS)...more

McCarter & English Blog: Government Contracts...

DoD’s Proposed CMMC Rule: Groundhog Day… or a Final Rule in the Works?

On December 26, 2023, the Department of Defense (“DoD”) belatedly gifted defense contractors and subcontractors a Proposed Rule on the Cybersecurity Maturity Model Certification (“CMMC”) Program. DoD also released eight CMMC...more

Womble Bond Dickinson

Recent Changes for Contractors to Consider - SBA Small Business Credit Rules, CMMC Updates, CTA Reporting, FLSA Overtime...

Womble Bond Dickinson on

Aerospace, defense, and security businesses are subject to a myriad of regulations and operational requirements that are constantly changing. These include things like SBA rules for credit for small businesses and...more

Goodwin

CMMC 2.0: Defense Contractors Get Ready

Goodwin on

The US Department of Defense (DoD) has issued a proposed rule to implement its long-awaited Cybersecurity Maturity Model Certification program (CMMC 2.0). This proposed rule — released on December 26, 2023, and published in...more

Pillsbury Winthrop Shaw Pittman LLP

Department of Defense Delivers Highly Anticipated CMMC Proposed Rule

The proposed rule requires contractors to make annual affirmations regarding their cybersecurity maturity, thus increasing their risk of False Claims Act Liability. The proposed rule allows for limited use of Plans of...more

Jenner & Block

Government Contracts Legal Round-Up | 2024 Issue 1

Jenner & Block on

Welcome to Jenner & Block’s Government Contracts Legal Round‑Up, a biweekly update on important government contracts developments. This update offers brief summaries of key developments for government contracts legal,...more

McDermott Will & Emery

CMMC From the Bottom Up: A Detailed Review of Level 1

In this series of articles, we explore the different certification requirements of CMMC Level 1, 2 and 3, the impact on contractors and external service providers, and proposed next steps... On December 26, 2023, the US...more

Dunlap Bennett & Ludwig PLLC

Get Ahead Of Compliance: The Proposed Rule For The Cybersecurity Maturity Model Certification (CMMC 2.0) Is Out!

As a lawyer working in a firm with a sophisticated legal team providing robust regulatory, government contract, and cybersecurity services, our Christmas present and holiday reading arrived early with the publication of the...more

Perkins Coie

DoD Issues Proposed CMMC Rule Requiring Cybersecurity Assessments of Contractors

Perkins Coie on

The U.S. Department of Defense (DoD) has issued its long-awaited proposed rule implementing its Cybersecurity Maturity Model Certification (CMMC) program to protect sensitive, unclassified government information in the...more

Wiley Rein LLP

Cybersecurity in 2024: Ten Top Issues to Consider

Wiley Rein LLP on

As we enter the New Year, Wiley has looked back at the top cyber issues for 2023 and what they mean for 2024. Last year, we saw the rollout of the National Cybersecurity Strategy—which outlined a new era of cyber oversight—as...more

Venable LLP

The New CMMC Rule: FAQs for Federal Contractors and Subcontractors

Venable LLP on

The Department of Defense (DoD) delivered its proposed Cybersecurity Maturity Model Certification Program rule (CMMC) the day after Christmas this year, including several related guidance documents (listed here). The proposed...more

PilieroMazza PLLC

Weekly Update for Government Contractors and Commercial Businesses – November 2023 #4

PilieroMazza PLLC on

Small Business Administration (SBA) Press Release: SBA Announces Biden-Harris Administration’s Progress in Small Business Lending with End-of-Year Capital Program Numbers - On November 21, Small Business Administrator...more

Davis Wright Tremaine LLP

CISA Releases Revised Draft of Secure Software Development Self-Attestation Form

The Cybersecurity and Infrastructure Security Agency (CISA) has released a revised draft of its Secure Software Development Attestation Common Form ("Form"). The Form, once finalized, will obligate vendors providing software...more

Morrison & Foerster LLP - Government...

National Security And Government Contractor Implications Of Biden AI Executive Order

The Biden administration issued a widely anticipated executive order on artificial intelligence (“AI”) earlier this week. The Executive Order on the Safe, Secure, and Trustworthy Development and Use of Artificial Intelligence...more

PilieroMazza PLLC

Weekly Update for Government Contractors and Commercial Businesses – November 2023

PilieroMazza PLLC on

Protecting Our Nation’s Data, Part 1: Cybersecurity Standardization Requirements for Unclassified Federal Information Systems - New standardized cybersecurity compliance requirements are inbound. In early October 2023, the...more

Hogan Lovells

Aerospace & Defense Insights | Part 1: Proposed cybersecurity FAR rules for government contractors

Hogan Lovells on

Through Aerospace & Defense Insights, we share with you the top legal and political issues affecting the aerospace and defense (A&D) industry. Our A&D industry team monitors the latest developments to help our clients stay in...more

89 Results
 / 
View per page
Page: of 4

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide