Cybersecurity, Privacy, & AI

Trending Now
Doxim Data Breach Settlement Underscores Third-Party Data Security Risk • SASC Proposes Reorganization of Pentagon’s IT, Cyber Leadership • Anthropic Suspends Top AI Models After U.S. Export Control Order • Senate Bill Seeks to Restore Funding for Cyber Information-Sharing Program • CISA Directive Orders Agencies to Prioritize Vulnerability Patching in a New Way

Cybersecurity Maturity Model Certification: The Final Countdown

Aleksandar Malivuk | Shutterstock

Piliero Mazza attorneys identify primary concerns for DoD contractors in revision 0.7 of the Department of Defense’s Cybersecurity Maturity Model Certification. Rev. 0.7’s biggest change to Levels 1–3 lies not in direct changes, but in the materials surrounding them. It now contains discussions and clarifications for Levels 1–3, including helpful models of how the practices in those Levels might look when applied to real-life situations.

The new revision has fleshed out the requirements for Levels 4 and 5 specifically, providing new summaries of the practices and processes required for those Levels. It also significantly streamlines these practices and processes. In particular, rev. 0.7 has removed 36 practices from Level 4 and removed 10 practices from Level 5.

More at Piliero Mazza

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.