Cybersecurity, Privacy, & AI

Trending Now
NIST SP Standards Strike Again: DOJ Announces Another Cyber FCA Settlement • Trump Administration Turning to Private Firms in Cyber Offensive • Trump Signs Executive Order Curbing State Regulation of AI • Pentagon Plans to Publish Zero Trust Strategy 2.0 in Early 2026 • 2025 Year-In-Review: Biometric Privacy Litigation

4 Ways to Prepare for Cybersecurity Maturity Model Certification

Dave Simprini of Grant Thornton identifies four best practices that defense suppliers can use to prepare for – and ultimately achieve the necessary rating under – the Cybersecurity Maturity Model Certification:

  • Select the CMMC level that is right for your organization, for now and in the future. Level 3 or higher is needed only if you handle controlled unclassified information.
  • Evaluate your business relationships with subcontractors; this involves them, too. It is your responsibility to ensure that your subcontractors achieve the right level of compliance.
  • Define your system boundaries to minimize threat surface, and designate a defined enclave that can hold CMMC relevant data.
  • Approach CMMC as an enterprise-wide initiative, not just a security challenge. It is critical to get stakeholder buy-in and continue to engage decision-makers from across your organization.

More at Federal Computer Week

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.