Cybersecurity, Privacy, & AI

Trending Now
OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns • Cyber-attacks Against State Water Supplies Continue—12 to Date • A Crucial Cybersecurity System Is Getting a Closer Look From Congress • Why Federal AI Governance Must Be Built for Continuous Change • NATO and an AI Startup Can Now Name and Track Software Vulnerabilities

As CMMC Enters the Readiness Phase Will Subcontractors be Ready?

CMMC direction is becoming more refined, and the CMMC Accreditation Body is adding details and structure to the CMMC ecosystem. Applications are now being accepted for four levels of assessors and assessment organizations. Applications are also open for Registered Practitioners — individuals and organizations that facilitate CMMC understanding, but do not perform certified consulting. Other things that may be coming include:

  • An assessment guide that provides more information about CMMC processes, and details of what assessors may be looking for in terms of documentation or artifacts for each practice.
  • The CMMC AB is still working on assessor training, so expect to see more details this summer about Licensed Instructors, Licensed Training Providers, and training material.
  • A CMMC marketplace would be a website where defense contractors and subs could find registered assessors, assessment companies, registered practitioners, and providers.

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–Saturday — Subscribe here.