By Kyle Brasseur2023-12-28T16:28:00
The Department of Defense (DoD) released for comment a proposed rule setting guidelines for implementation of the Cybersecurity Maturity Model Certification (CMMC) program.
The proposal, published Tuesday, would “establish requirements for a comprehensive and scalable assessment mechanism to ensure defense contractors and subcontractors have … implemented required security measures” under the CMMC, which applies to federal contract information and controlled unclassified information.
Comments on the proposal are due by Feb. 26.
2025-03-28T14:22:00Z By Thomas Graham, CW guest columnist
Many small organizations within the Defense Industrial Base are struggling to meet the rigorous requirements validated through the Cybersecurity Maturity Model Certification, writes Thomas Graham, CISO at Redspin. If you haven’t been tracking it closely, CMMC was finalized in October, with an effective date of December 16, 2024.
2023-12-08T21:42:00Z By Adrianne Appel
Use of generative artificial intelligence by businesses will ramp up in 2024, as will risk of AI-driven cyberattacks and fraud, according to experts.
2023-08-23T20:17:00Z By Adrianne Appel
Data security and compliance are not one and the same but have enough overlap that organizations can take steps when building a data security program to move closer to achieving compliance.
2025-08-01T22:31:00Z By Oscar Gonzalez
The Securities and Exchange Commission is taking its pro-crypto messaging on the road, planning a series of events for its Crypto Task Force that will be held across the U.S. starting on Aug. 4.
2025-08-01T20:07:00Z By Aly McDevitt
The DOJ is warning that simply scrubbing DEI-related words from policy documents or training materials—and replacing them with thinly veiled proxies—will not protect federally funded organizations from legal scrutiny.
2025-07-31T20:37:00Z By Neil Hodge
When growth slows, governments often cut rules to attract investment, as the U.K. has in its financial services sector, which contributes 8.8% of GDP, but easing the “compliance burden” raises concerns about oversight, governance, and prioritizing profits over safety.
Site powered by Webvision Cloud