Cybersecurity, Privacy, & AI

Trending Now
Cyber Leaders Wary of Giving Agentic AI Too Much Authority • New ‘Water Watch Center’ Launched to Help Small Utilities Stop Cyberattacks • TikTok Can Be on Government Phones. Managing It Comes Next. • CISA, FBI and Partners Detail Gunra Ransomware Tactics • NIST Wants to Overhaul Its Vulnerability Database for the AI Age

CMMC Countdown Is On but Are There Enough Assessors To Do the Job?

M_Agency | Shutterstock

Katie Arrington, the Department of Defense’s CISO for acquisition, says she is concerned that DoD will not have enough available assessors for in-person audits as it implements the Cybersecurity Maturity Model Certification program. “My biggest concern on the rollout…is making sure that I have enough assessors in the geographical area for the assessments as we roll these pilot programs out,” Arrington remarked during a keynote presentation at the virtual CyberSheath’s virtual CMMC conference. Some audits must be conducted on-site, which will involve travel and in-person contact with proper health precautions and social distancing. The CMMC Accreditation Board began training assessors last summer, but so far only a few of the estimated 2,000 required auditors are ready.

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–Saturday — Subscribe here.