Cybersecurity Insights
CMMC & Cybersecurity Blog
Practical guidance on CMMC compliance, NIST 800-171, CUI handling, and DoD cybersecurity — written by assessors who do this every day.
OIRA Concludes Review of 48 CFR Proposed CMMC Rule
The Office of Information and Regulatory Affairs (OIRA) concluded its review of the 48 CFR proposed CMMC rule — the contract clause that will be added to a defense contractor's contractual agreement (DFARS 252.204-7021).…
Read ArticleThe Department of Defense submitted the CMMC Program rule to OIRA for final review and publication. OIRA has 90–120 days to review,…
DoD plans to start the CMMC rollout in Q1 2025. Organizations should begin preparing now to ensure readiness when the rule takes…
The long awaited NIST SP 800-171 revision 3 and NIST SP 800-171A revision 3 have been published — establishing updated cybersecurity requirements…
The DoD released a class deviation on DFARS 252.204-7012 to require contractors to comply with NIST SP 800-171 rev. 2, which will…
The Cybersecurity Maturity Model Certification (CMMC) Program rule has been published to the Federal Register. This marks an important milestone in the…