Cybersecurity, Privacy, & AI

Trending Now
Cyber Leaders Wary of Giving Agentic AI Too Much Authority • New ‘Water Watch Center’ Launched to Help Small Utilities Stop Cyberattacks • TikTok Can Be on Government Phones. Managing It Comes Next. • CISA, FBI and Partners Detail Gunra Ransomware Tactics • NIST Wants to Overhaul Its Vulnerability Database for the AI Age

CMMC-AB CEO Identifies Remaining Hurdles for C3PAOs to Start

G-Tech Studios | Shutterstock

During an event sponsored by Washington Technology, CMMC Accreditation Body CEO Matt Travis says that CMMC assessors can begin their work once some training and IT access issues are worked out. DoD and the CMMC Accreditation Board are finalizing plans to provide CMMC Third Party Assessment Organizations (C3PAOs) with access and training on the Enterprise Mission Assurance Support Service (eMASS) application – where CMMC data will be housed. “While they’re authorized in the marketplace, we’re not yet in a place where we can authorize them to conduct assessments, but we’re not far away. And that burden is on us and the Pentagon in terms of getting those companies access to eMASS,” Travis said.

The CMMC AB also is finalizing guidance documents for the assessment process. Nonetheless, the CMMC standard is now being applied to certain contracts, anticipating that these details will be worked out soon.

Source:

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.