The DOD is working with civilian agencies on a new FAR rule that would apply new requirements for vendors that handle controlled unclassified information.
A logo sits illuminated at the Microsoft booth on day 2 of the GSMA Mobile World Congress at Fira Barcelona on February 28, 2023 in Barcelona, Spain. (Photo by Xavi Torrent/Getty Images)
DIB contractors that use Microsoft cloud services may only need to meet a small portion of CMMC's 110 controls after the cloud provider passed its voluntary assessment.
John Sherman and others in the Pentagon are working to eradicate roadblocks keeping cybersecurity startups and other companies from scaling business with the Department of Defense.
The NIST standards have been part of federal law for contractors for several years, but until now, contracting officers have been "lackadaisical" about enforcing them, said the…
The accreditation body also issued a draft document detailing the assessment process that third-party assessment organizations will need to follow once the final CMMC rule takes effect.