Pentagon seeks input for upgraded cybersecurity certification program.

December 30, 2023
1 min read

The US Department of Defense is seeking public input on a proposed revision to its Cybersecurity Maturity Model Certification (CMMC) program. The CMMC program ensures that defense contractors have implemented necessary security measures to protect federal contract and controlled unclassified information. The proposed revision allows for self-assessment for some requirements, simplifies compliance, prioritizes information protection, and enhances collaboration between the DoD and industry. The program involves assessments at three levels, with self-assessments permitted for lower levels and Government assessors reducing costs for higher levels. The public comment period is open for 60 days and the Pentagon is seeking feedback on various CMMC guidance documents and new information collections.

URL: https://www.securityweek.com/pentagon-wants-feedback-on-revised-cybersecurity-maturity-model-certification-program/

Key Points:

  • The US Department of Defense is seeking public input on a proposed revision to its Cybersecurity Maturity Model Certification (CMMC) program.
  • The CMMC program ensures that defense contractors have implemented necessary security measures to protect federal contract and controlled unclassified information.
  • The proposed revision allows for self-assessment for some requirements, simplifies compliance, prioritizes information protection, and enhances collaboration between the DoD and industry.
  • The program involves assessments at three levels, with self-assessments permitted for lower levels and Government assessors reducing costs for higher levels.
  • The public comment period is open for 60 days and the Pentagon is seeking feedback on various CMMC guidance documents and new information collections.

Latest from Blog

Bridging the cyber talent gap: tips for CISOs

TLDR: – Global cyber threats have increased twofold in recent years, leading to a talent gap of nearly 4 million cyber professionals worldwide. – Existing cyber staff are under strain, with vacancies

North Korean hackers pivot to ransomware attacks

TLDR: North Korean hackers from APT45 have shifted from cyber espionage to ransomware attacks APT45 has targeted critical infrastructure and is linked to ransomware families SHATTEREDGLASS and Maui A North Korea-linked threat

Cyber insurance evolves to cover all your online needs

TLDR: Cyber insurance coverage is evolving to help raise security baselines across businesses. Only one-quarter of companies have a standalone cyber insurance policy. In today’s evolving cybersecurity landscape, cyber insurance coverage is