Cybersecurity, Privacy, & AI

Trending Now
Top House Cyber Lawmaker Plans to Introduce DHS Overhaul Bill by Next Year • Executive Orders Seek to Hasten Quantum Computing—and Guard Against Its Use • In a First, a Court Takedown Goes After Two Cybercrime Tools at Once • NIST Opens Updated IoT Security Guidance to Public Review • Five Eyes Agencies Urge Leaders to Strengthen Cyber Resilience in AI Era

How Do You Address Solicitation Requirements and Contract Performance After CMMC Rollout?

G-Tech Studios | Shutterstock

Understanding the requirements for compliance with the interim DFARS rule on basic assessment and compliance with Cybersecurity Maturity Model Certification is not a task for the faint of heart. The rule requires that you accurately report the status of your compliance with the cybersecurity requirements in NIST Special Publication 800-171 and, for specific procurements in the initial CMMC pilot program and moving forward, that you address your level of compliance under the CMMC program. Preparation here is crucial as the Department of Defense has announced that all contractors, except those solely furnishing Commercial Off-The-Shelf, must submit their basic compliance assessment into the Supplier Performance Risk System to be considered for future contract awards.

Source:

Stay compliant and protected with daily updates on cybersecurity, data privacy, and federal oversight with our Cyber & Privacy newsletter, delivering up-to-the-minute intelligence Monday–Saturday — Subscribe here.