DoD Previews Final Cybersecurity Maturity Model Certification with Revision 0.7
Client Alert | 1 min read | 12.17.19
The Department of Defense (DoD) recently released another revision to its Cybersecurity Maturity Model Certification (CMMC) that, starting next year, independent auditors will use to certify contractor compliance with DoD cybersecurity requirements. Most notably, Revision 0.7 previews the requirements for cybersecurity maturity Levels 4 and 5. Moving beyond the cyber hygiene requirements of Levels 1 through 3, Levels 4 and 5 require even more robust cybersecurity programs capable of addressing the dynamic threats posed by advanced persistent threats (APTs). These two highest levels of certification also implement the enhanced security requirements documented in NIST SP 800-171B, which remains in draft form.
The DoD is expected to announce the final CMMC in January of next year and begin introducing “go/no-go” certification requirements in solicitations as early as June 2020.
Insights
Client Alert | 6 min read | 03.04.25
Coalition of the Willing: EU and UK, but Not the US, Impose New Russia Sanctions
As they have on each previous anniversary, the EU and UK released new sanctions against Russia on February 24, 2025, to mark the three-year anniversary of Russia’s full-scale invasion of Ukraine. For the first time, the United States did not do the same, electing to issue a limited set of Iran-related sanctions on the anniversary instead. The EU package was more fulsome than the UK package, including new port and airport restrictions, additional trade restrictions (including an aluminium ban), enhanced military end-user restrictions, and additional asset freezes and vessel designations.
Client Alert | 4 min read | 03.04.25
The FTC’s Request for Public Comment on Online Content Moderation – Are You Ready for a Sea Change?
Client Alert | 6 min read | 03.04.25