News & Analysis as of

Supply Chain Department of Defense (DOD) National Institute of Standards and Technology

Morrison & Foerster LLP

A Call to Action: President Trump’s Policy Blueprint for AI Development and Innovation

On July 23, 2025, President Trump released his Artificial Intelligence (AI) Action Plan, with the aim of ushering in an era of American dominance in the rapidly emerging technology. The AI Action Plan delivers on a promise...more

Holland & Knight LLP

DoD Publishes Organization-Defined Parameters for NIST SP 800-171 Rev. 3

Holland & Knight LLP on

The U.S. Department of Defense (DoD) recently issued a memorandum signaling that defense contractors soon will be required to comply with new cybersecurity compliance requirements. The memorandum establishes...more

McCarter & English Blog: Government Contracts...

The “Prestige”: DoD Unveils NIST SP 800-171 Revision 3, Organizationally Defined Parameters

On April 15, 2025, the Department of Defense (DoD) released official guidance on Organizationally Defined Parameters (ODPs) appearing in the newly published NIST SP 800-171 Revision 3. At the same time, the DoD reaffirmed...more

Skadden, Arps, Slate, Meagher & Flom LLP

Government Contractor Settles FCA Case Over Cybersecurity Maturity Model Certification Violations

On March 26, 2025, the Department of Justice (DOJ) entered into a settlement agreement with MORSECORP, Inc. (MORSE), resolving False Claims Act (FCA) allegations that MORSE submitted false claims for payment under Department...more

Goodwin

Crossing Administrations: The Focus on Federal Cybersecurity Continues

Goodwin on

Federal contractors, including defense contractors, should prepare for the emergence of new requirements in the coming months that are designed to strengthen software supply chain security, impose more stringent cybersecurity...more

Morrison & Foerster LLP - Government...

Biden’s Final Cybersecurity Order Proposes Significant Changes, All to Be Implemented by the Incoming Administration

Citing the threats posed by foreign adversaries and criminal organizations, and seeking enhanced accountability for companies that provide software and cloud services to the federal government, the Biden administration has...more

McCarter & English Blog: Government Contracts...

They Did It. They Really Did It! The Arrival of the FAR CUI Proposed Rule

After years of anticipation, the Federal Acquisition Regulation (FAR) Council has announced the arrival of its proposed rule to enhance the safeguarding of Controlled Unclassified Information (CUI) in federal contracts (the...more

Wiley Rein LLP

Updates on Cybersecurity Requirements for Government Contractors

Wiley Rein LLP on

Part of the Biden Administration’s push to enhance U.S. cybersecurity capabilities has focused on imposing new requirements on government contractors. The 2023 National Cybersecurity Strategy suggested, for example, that...more

Wiley Rein LLP

Cybersecurity Updates: NIST Publishes SP 800-171 Revision 3. What Changed, and What Comes Next?

Wiley Rein LLP on

In May 2024, the National Institute of Standards and Technology (NIST) published Special Publication 800-171 Rev 3, Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations, and the accompanying...more

Akin Gump Strauss Hauer & Feld LLP

New Cybersecurity Controls for Government Contractors: NIST Revises SP 800-171

In May, the National Institute of Standards and Technology (NIST) issued updated recommendations for security controls for controlled unclassified information (CUI) that is processed, stored or transmitted by nonfederal...more

Holland & Knight LLP

Foundational Cybersecurity Standards for Contractors Updated

Holland & Knight LLP on

The National Institute of Standards and Technology (NIST) released the third revision of its Special Publication (SP) 800-171, "Protecting Controlled Unclassified Information in Nonfederal Systems and Organizations." This...more

Pillsbury Winthrop Shaw Pittman LLP

Contractor Settles Cybersecurity-Related False Claims Act Suit for $9 million

A seven-year long False Claims Act suit comes to an end after Aerojet Rocketdyne reaches a $9 million settlement agreement for its alleged false certification of compliance with cybersecurity requirements. In the settlement...more

Sheppard Mullin Richter & Hampton LLP

Updates Announced to Department of Defense Cybersecurity Certification Program

The Department of Defense (DOD) recently announced several changes to its Cybersecurity Maturity Model Certification program. The program applies to those who serve as contractors and suppliers to the DOD. As described in our...more

King & Spalding

Biden Administration Issues 100-Day Supply Chain Report

King & Spalding on

Industry-Specific Primer – Semiconductor Manufacturing And Advanced Packaging - On June 8, 2021, the Biden Administration issued the reports mandated by the Executive Order on America’s Supply Chains (the “America’s Supply...more

NAVEX

CMMC Is Coming: How Government Contractors Can Prepare

NAVEX on

People like to say that cybersecurity threats are constantly evolving. So perhaps it’s fitting that cybersecurity compliance is undergoing a significant evolution of its own this year, too. That evolution is the arrival of...more

Bradley Arant Boult Cummings LLP

New “Basic Assessment” Is a Bridge to CMMC for Defense Contractors

The Department of Defense (DoD) continues to enhance cybersecurity requirements in its supply chain. A new rule requires some contractors to assign a numerical score to their current cybersecurity practices. Additionally, the...more

Sheppard Mullin Richter & Hampton LLP

Interim Rule Solidifies Cybersecurity Requirements for Defense Industrial Base

The Department of Defense (DoD) recently published an interim rule that sets forth its Cybersecurity Maturity Model Certification (CMMC) program plan, as well as new requirements for a “NIST SP 800-171 DoD Assessment...more

Stinson - Government Contracting Matters

Senate and House Make Progress in Passing the National Defense Authorization Act for Fiscal Year 2021

A  recent article on this blog reported on the contents of the Senate version of the National Defense Authorization Act for Fiscal Year 2021 (NDAA), which had been rolled out of committee for consideration by the full Senate....more

American Conference Institute (ACI)

[Webinar] Virtual Conference on DCAA & DCMA Cost, Pricing, Compliance & Audits - August 25th - 26th, 9:00 am - 5:30 pm EDT

From the comfort of your own home office, join us at ACI's virtual Annual Advanced Forum on DCAA & DCMA Cost, Pricing, Compliance & Audits taking place on August 25-26, 2020 which addresses the latest developments on business...more

Hogan Lovells

Cybersecurity Maturity Model Certification Version 1.0 (CMMC v1.0)

Hogan Lovells on

What is CMMC? CMMC is a unified cybersecurity standard and certification program for all U.S. Department of Defense (DoD) contractors. On January 31, 2020, DoD’s Office of the Under Secretary of Defense for Acquisition &...more

Miles & Stockbridge P.C.

DOD Issues Version 1.0 of Its Cybersecurity Maturity Model Certification, and a Related “Accreditation Body” Has Been Formed as a...

January 2020 was a very important month for DOD’s Cybersecurity Maturity Model Certification (CMMC) initiative. Last week, on January 31, 2020, DOD issued CMMC “Version 1.0” to the public....more

Pillsbury Winthrop Shaw Pittman LLP

DoD Has Released Model Version 1.0 of the Cyber Maturity Model Certification Framework

- DoD has released the final version of the CMMC framework. - DoD anticipates that CMMC requirements will appear in a limited number of solicitations starting in October 2020 and that they will appear in all DoD...more

McDermott Will & Schulte

Tackling Increased Cybersecurity Requirements in the Defense Industrial Base

On January 30, the US Department of Defense (DoD) released version 1.0 of the Cybersecurity Maturity Model Certification (CMMC) framework, which will require DoD contractors and subcontractors to obtain third-party...more

Polsinelli

Counting Down to 2020 and the Department of Defense’s Cybersecurity Maturity Model Certification Program

Polsinelli on

2019 has been a year of pivotal developments for defense contractors in the realm of cybersecurity compliance. The Department of Defense (DoD) issued six guidance memoranda to assist its acquisition personnel in developing...more

Stinson - Government Contracting Matters

Securing the Supply Chain – CMMC Draft Version 0.7 Issued

Last month we reported on the Department of Defense’s (DoD’s) issuance of Version 0.6 of its draft Cybersecurity Maturity Model Certification (CMMC) standard. That draft included DoD updates and revisions to CMMC’s domains,...more

29 Results
 / 
View per page
Page: of 2

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide