SAP NS2 Chief Executive Harish Luthra explains why treating security compliance as a competitive edge, rather than a roadblock, is vital to mission readiness and vendors’ long-term…
The Defense Department wants to introduce PQC requirements into the CMMC program, but experts warn industry and the underlying technology is far from ready.
A new report from the Government Accountability Office found that the Pentagon has not completely identified factors beyond its control that risk the CMMC program’s overall success.
ISACA has assumed responsibility as Cybersecurity Assessor and Instructor Certification Organization, and will work to scale the number of third-party CMMC assessors to meet a rising demand.
Contractors chasing certification often risk overspending or over-securing. Virtru’s Trevor Foskett explains why data-focused strategies help meet requirements and keep small businesses in the game.
Experts told DefenseScoop that readiness gaps are fueled by CMMC’s controversial history, misconceptions of what the rule change means and challenges in proving compliance.
Soldiers gather during a promotion and reenlistment ceremony outside Army Counterintelligence Command headquarters, July 14, 2025, Fort George G. Meade, Maryland. (Photo by Adam Lowe, DVIDS)
The amendment to the Defense Federal Acquisition Regulation Supplement marks the near end of a years-long effort to enforce CMMC 2.0 cybersecurity standards for defense contractors.