Cybersecurity, Privacy, & AI

Trending Now
What Business Leaders Need to Know About Cybersecurity Certification and Enforcement in 2025–2026 • NRC Efficiency Plan to Reuse DOE, DoD Data Met With Skepticism • Closed Briefing Sets Stage For House Hearing On Anthropic’s Mythos and Cyber Risks • CISA, G7 Partners Release AI Software Bill of Materials Guidance • OMB to Refresh the Federal IT Dashboard

Cybersecurity Maturity Model Certification: The Final Countdown

Aleksandar Malivuk | Shutterstock

Piliero Mazza attorneys identify primary concerns for DoD contractors in revision 0.7 of the Department of Defense’s Cybersecurity Maturity Model Certification. Rev. 0.7’s biggest change to Levels 1–3 lies not in direct changes, but in the materials surrounding them. It now contains discussions and clarifications for Levels 1–3, including helpful models of how the practices in those Levels might look when applied to real-life situations.

The new revision has fleshed out the requirements for Levels 4 and 5 specifically, providing new summaries of the practices and processes required for those Levels. It also significantly streamlines these practices and processes. In particular, rev. 0.7 has removed 36 practices from Level 4 and removed 10 practices from Level 5.

More at Piliero Mazza

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.