Cybersecurity, Privacy, & AI

Trending Now
Cyber Leaders Wary of Giving Agentic AI Too Much Authority • New ‘Water Watch Center’ Launched to Help Small Utilities Stop Cyberattacks • TikTok Can Be on Government Phones. Managing It Comes Next. • CISA, FBI and Partners Detail Gunra Ransomware Tactics • NIST Wants to Overhaul Its Vulnerability Database for the AI Age

Department of Defense Suspends the CMMC Pilot Program And CMMC Requirements In DoD Solicitations Pending Major Changes For CMMC 2.0.

Den Rise | Shutterstock

The Department of Defense (“DoD”) recently announced it will be revamping the nascent Cybersecurity Maturity Model Certification (“CMMC”) program pending two separate rulemaking processes. As detailed below, the DoD will be updating “the program structure and the requirements to streamline and improve implementation of the CMMC program.” We will be monitoring the rulemaking process for more details as they are known. However, the primary short-term takeaway is that until the rulemaking process is complete, the DoD is suspending the CMMC Pilot Program and will not include CMMC requirements in any DoD solicitations. However, the DoD is evaluating how it could “provide incentives” who voluntarily obtain a CMMC certification in the interim.

Source: 

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–SaturdaySubscribe here.