With CMMC on the horizon, Redspin's chief information security officer Thomas Graham explains the five steps organizations should take to show they are an early adopter.
Blending FedRAMP High and a commercial cloud environment can be an efficient way to reach CMMC Level 3 while optimizing your security and costs, writes Andrew Bream, vice president of enterprise IT at SOSi.
The framework considers the private sector’s increased role in helping the federal government in day-to-day operations and aims to reduce the risk of supply chain cyberattacks.
Cyber industry executive Felipe Fernandez offers insights on the actions companies should take now as the Cybersecurity Maturity Model Certification rule moves toward becoming final.
Derek Kernus explains how his company went through the Defense Department's assessment process for complying with the standards at the heart of CMMC, the rule that will lay out how contractors protect information on their systems.
The Defense Department needs to adjudicate comments and Congress needs to review the final rule on how contractors protect information before the standard takes effect.
The Pentagon’s draft CMMC rule doesn’t exempt small firms from the security standards for defense contractors and subcontractors, but that doesn’t mean they won’t receive any help meeting the requirements.
Cybersecurity expert Derek Kernus explains what was learned when a small business client went through a voluntary Defense Department assessment of how it protects controlled, unclassified information, meeting many of the CMMC requirements.
Stephanie Smith, RSM's GovCon guru and our first guest for 2024, lays out key themes and discussion points that are poised to shape the industry during this new year.
This video conversation features Matt Travis, CEO of the Cyber AB, and Eric Crusius, partner with Holland & Knight, who give their first impressions on the draft CMMC rule and where things go from here.
The draft rule for how government contractors will protect their customers' information is long and defense as it was two years in the making, but here are five things to keep in mind in putting together your comments.
In a new set of video interviews, we explore the challenges unique to small businesses regarding CMMC and what updates to the underlying cybersecurity standard mean for compliance.
In the first of a series of videos, we talk to informed observers about what contractors should be doing ahead of the release of the CMMC draft rule and how they should approach what promises to be a massive and complex document for this new cybersecurity standard.